nerdexam
EC-Council

712-50 · Question #393

As the CISO, you have been tasked with the execution of the company's key management program. You MUST ensure the integrity of encryption keys at the point of generation. Which principal of…

The correct answer is A. Dual Control. https://info.townsendsecurity.com/bid/23881/PCI-DSS-2-0-and-Encryption-Key-Management

Information Security Core Competencies

Question

As the CISO, you have been tasked with the execution of the company's key management program. You MUST ensure the integrity of encryption keys at the point of generation. Which principal of encryption key control will ensure no single individual can constitute or re-constitute a key?

Options

  • ADual Control
  • BSeparation of Duties
  • CSplit Knowledge
  • DLeast Privilege

How the community answered

(57 responses)
  • A
    82% (47)
  • B
    4% (2)
  • C
    4% (2)
  • D
    11% (6)

Explanation

https://info.townsendsecurity.com/bid/23881/PCI-DSS-2-0-and-Encryption-Key-Management

Topics

#key management#dual control#encryption key generation#separation of duties

Community Discussion

No community discussion yet for this question.

Full 712-50 Practice