nerdexam
Isaca

CISA · Question #581

Which of the following public key infrastructure (PKI) elements provides detailed descriptions for dealing with a compromised private key?

The correct answer is A. Certification practice statement. A Certification Practice Statement (CPS) is a detailed document that describes the practices a Certificate Authority (CA) uses when issuing and managing digital certificates. It includes procedures for handling compromised private keys, revocation, renewal, and security controls.

Submitted by femi9· Apr 18, 2026Protection of Information Assets

Question

Which of the following public key infrastructure (PKI) elements provides detailed descriptions for dealing with a compromised private key?

Options

  • ACertification practice statement
  • BCertificate policy
  • CPKI disclosure statement
  • DCertificate revocation list

How the community answered

(52 responses)
  • A
    92% (48)
  • B
    4% (2)
  • C
    2% (1)
  • D
    2% (1)

Explanation

A Certification Practice Statement (CPS) is a detailed document that describes the practices a Certificate Authority (CA) uses when issuing and managing digital certificates. It includes procedures for handling compromised private keys, revocation, renewal, and security controls. Certificate policy (B): High-level rules governing certificate usage, but not operational details. PKI disclosure statement (C): Provides users with general PKI-related information. Certificate revocation list (D): A technical mechanism listing revoked certificates, but not the procedures for managing compromise.

Topics

#PKI#Certification Practice Statement#Key Management#Information Security Policies

Community Discussion

No community discussion yet for this question.

Full CISA Practice