
Systems Security Certified Practitioner
Domain 5Objective 4
5.4 - Understand Public Key Infrastructure (PKI) SSCP Practice Questions (Page 6)
Part of the Cryptography domain, which accounts for 9% of the SSCP exam. ISC2 does not publish an official question count, but from its 120-minute exam (~50–80 total, ~5–7 in this domain), expect 1–2 from this objective — we provide 35 practice questions to prepare you well beyond it. (estimate)
35questions here
7free pages
11concepts
9%of the exam
Questions 26–30
- 26
What is the primary purpose of the Diffie-Hellman key exchange protocol?
Select an answer first - 27
An administrator needs to decommission a server that stored a private key used for signing software updates. The key must be destroyed so that it cannot be recovered. Which method is most appropriate?
Select an answer first - 28
A large enterprise has a PKI with multiple subordinate CAs. A subordinate CA's private key is suspected of being compromised. The enterprise needs to minimize the impact on clients while ensuring that certificates issued by that CA are no longer trusted. Which approach should be taken?
Select an answer first - 29
What is a key advantage of using blockchain technology for decentralized public key infrastructure (PKI)?
Select an answer first - 30
What is the purpose of a certificate revocation list (CRL)?
Select an answer first
Finished these 5 questions?
Review the revealed explanations, or continue through the curriculum.
Free Basic Practice is a study aid with revealable answers — not a scored exam. Examers.io is independent and not affiliated with or endorsed by ISC2. “SSCP” is a trademark of its owner, used for identification only.