(ISC)2
CCSP · Question #869
Which device is specifically designed to protect and manage cryptographic keys for maximum security?
The correct answer is A. Key Management Box (KMB) / Hardware Security Module (HSM). An HSM (sometimes called a KMB) is a hardware appliance that securely stores and handles cryptographic keys. TPM is a smaller chip on a motherboard (not full HSM capabilities). NAC controls network access. IPS blocks attacks.
Submitted by viktor_hu· Apr 18, 2026Cloud Data Security
Question
Which device is specifically designed to protect and manage cryptographic keys for maximum security?
Options
- AKey Management Box (KMB) / Hardware Security Module (HSM)
- BTrusted Platform Module (TPM)
- CNetwork Access Control (NAC)
- DIntrusion Prevention System (IPS)
How the community answered
(46 responses)- A93% (43)
- B4% (2)
- D2% (1)
Explanation
An HSM (sometimes called a KMB) is a hardware appliance that securely stores and handles cryptographic keys. TPM is a smaller chip on a motherboard (not full HSM capabilities). NAC controls network access. IPS blocks attacks.
Topics
#Hardware Security Module (HSM)#Key Management#Cryptography#Data Security
Community Discussion
No community discussion yet for this question.