nerdexam
(ISC)2

CISSP-ISSAP · Question #191

You are the Network Administrator for a small business. You need a widely used, but highly secure hashing algorithm. Which of the following should you choose?

The correct answer is B. SHA. SHA (Secure Hash Algorithm) is the correct choice because it is a widely adopted, cryptographically secure hashing algorithm designed specifically to produce a fixed-length digest that verifies data integrity - making it the industry standard for password storage, digital…

Infrastructure Security

Question

You are the Network Administrator for a small business. You need a widely used, but highly secure hashing algorithm. Which of the following should you choose?

Options

  • AAES
  • BSHA
  • CEAP
  • DCRC32

How the community answered

(47 responses)
  • A
    2% (1)
  • B
    91% (43)
  • C
    4% (2)
  • D
    2% (1)

Explanation

SHA (Secure Hash Algorithm) is the correct choice because it is a widely adopted, cryptographically secure hashing algorithm designed specifically to produce a fixed-length digest that verifies data integrity - making it the industry standard for password storage, digital signatures, and certificates. AES (A) is a symmetric encryption algorithm, not a hashing algorithm - it encrypts/decrypts data rather than producing a one-way digest. EAP (C) is an authentication framework used in wireless and point-to-point networks, not a hashing algorithm at all. CRC32 (D) is a cyclic redundancy check used for error detection (e.g., in file transfers), not a secure hash - it is trivially reversible and not suitable for security purposes.

Memory tip: Think SHA = Security Hash Always - when you need a secure hash, SHA is the answer; the others are encryption (AES), authentication (EAP), or error-checking (CRC32).

Topics

#SHA#Cryptographic hashing#Data integrity#Algorithm selection

Community Discussion

No community discussion yet for this question.

Full CISSP-ISSAP Practice