
Certified Cloud Security Professional
Domain 2Objective 3
Design and Apply Data Security Technologies and Strategies CCSP Practice Questions (Page 7)
Part of the Cloud Data Security domain, which accounts for 20% of the CCSP exam. ISC2 does not publish an official question count, but from its 180-minute exam (~70–120 total, ~14–24 in this domain), expect 2–3 from this objective — we provide 36 practice questions to prepare you well beyond it. (estimate)
36questions here
8free pages
12concepts
20%of the exam
Questions 31–35
- 31
Which stage of the encryption key lifecycle involves securely deleting a key and all of its backups so that data encrypted with it can no longer be decrypted?
Select an answer first - 32
What is a primary security consideration when designing a tokenization system in the cloud?
Select an answer first - 33
In a digital signature scheme, what is the role of the hash of the message?
Select an answer first - 34
What is the primary purpose of a data loss prevention (DLP) policy?
Select an answer first - 35
A company uses a cloud-based file-sharing service for collaboration. The security team is concerned that employees might share files containing customer credit card numbers with external parties. The company wants to detect and block such sharing in real time. Which control should the company implement?
Select an answer first
Finished these 5 questions?
Review the revealed explanations, or continue through the curriculum.
Free Basic Practice is a study aid with revealable answers — not a scored exam. Examers.io is independent and not affiliated with or endorsed by ISC2. “CCSP” is a trademark of its owner, used for identification only.