nerdexam
(ISC)2

CCSP · Question #869

Which device is specifically designed to protect and manage cryptographic keys for maximum security?

The correct answer is A. Key Management Box (KMB) / Hardware Security Module (HSM). An HSM (sometimes called a KMB) is a hardware appliance that securely stores and handles cryptographic keys. TPM is a smaller chip on a motherboard (not full HSM capabilities). NAC controls network access. IPS blocks attacks.

Submitted by viktor_hu· Apr 18, 2026Cloud Data Security

Question

Which device is specifically designed to protect and manage cryptographic keys for maximum security?

Options

  • AKey Management Box (KMB) / Hardware Security Module (HSM)
  • BTrusted Platform Module (TPM)
  • CNetwork Access Control (NAC)
  • DIntrusion Prevention System (IPS)

How the community answered

(46 responses)
  • A
    93% (43)
  • B
    4% (2)
  • D
    2% (1)

Explanation

An HSM (sometimes called a KMB) is a hardware appliance that securely stores and handles cryptographic keys. TPM is a smaller chip on a motherboard (not full HSM capabilities). NAC controls network access. IPS blocks attacks.

Topics

#Hardware Security Module (HSM)#Key Management#Cryptography#Data Security

Community Discussion

No community discussion yet for this question.

Full CCSP Practice