
Systems Security Certified Practitioner
Domain 5Objective 4
5.4 - Understand Public Key Infrastructure (PKI) SSCP Practice Questions (Page 7)
Part of the Cryptography domain, which accounts for 9% of the SSCP exam. ISC2 does not publish an official question count, but from its 120-minute exam (~50–80 total, ~5–7 in this domain), expect 1–2 from this objective — we provide 35 practice questions to prepare you well beyond it. (estimate)
35questions here
7free pages
11concepts
9%of the exam
Questions 31–35
- 31
A small software development team wants to use email encryption without relying on a central certificate authority. They prefer a model where trust is established through personal connections and peer endorsements. Which approach should they adopt?
Select an answer first - 32
Why is a high-quality source of entropy essential when generating cryptographic keys?
Select an answer first - 33
What is the goal of secure key destruction?
Select an answer first - 34
A journalist uses GPG to encrypt emails with sources. A source's key is signed by a journalist's colleague, but the journalist has never met the source. The journalist wants to verify the source's key. What is the most appropriate action in the web of trust model?
Select an answer first - 35
A company's security policy requires that all TLS certificates be rotated every 12 months. An administrator notices that a certificate used for internal applications is about to expire in 30 days. What is the most important reason to rotate the certificate before expiration?
Select an answer first
Finished these 5 questions?
Review the revealed explanations, or continue through the curriculum.
No more pagesBack to SSCP
Free Basic Practice is a study aid with revealable answers — not a scored exam. Examers.io is independent and not affiliated with or endorsed by ISC2. “SSCP” is a trademark of its owner, used for identification only.