EC-Council
712-50 · Question #393
As the CISO, you have been tasked with the execution of the company's key management program. You MUST ensure the integrity of encryption keys at the point of generation. Which principal of…
The correct answer is A. Dual Control. https://info.townsendsecurity.com/bid/23881/PCI-DSS-2-0-and-Encryption-Key-Management
Information Security Core Competencies
Question
As the CISO, you have been tasked with the execution of the company's key management program. You MUST ensure the integrity of encryption keys at the point of generation. Which principal of encryption key control will ensure no single individual can constitute or re-constitute a key?
Options
- ADual Control
- BSeparation of Duties
- CSplit Knowledge
- DLeast Privilege
How the community answered
(57 responses)- A82% (47)
- B4% (2)
- C4% (2)
- D11% (6)
Explanation
https://info.townsendsecurity.com/bid/23881/PCI-DSS-2-0-and-Encryption-Key-Management
Topics
#key management#dual control#encryption key generation#separation of duties
Community Discussion
No community discussion yet for this question.