nerdexam
(ISC)2(ISC)2

SSCP · Question #292

SSCP Question #292: Real Exam Question with Answer & Explanation

The correct answer is C: Trusted computing base. The Trusted Computing Base (TCB) is the totality of all protection mechanisms within a computer system - encompassing hardware, firmware, and software - that are responsible for enforcing the security policy. It is the complete combination of components that must be trusted to op

Submitted by emma.c· Apr 18, 2026Security Concepts and Practices

Question

What can best be defined as the sum of protection mechanisms inside the computer, including hardware, firmware and software?

Options

  • ATrusted system
  • BSecurity kernel
  • CTrusted computing base
  • DSecurity perimeter

Explanation

The Trusted Computing Base (TCB) is the totality of all protection mechanisms within a computer system - encompassing hardware, firmware, and software - that are responsible for enforcing the security policy. It is the complete combination of components that must be trusted to operate correctly. A Security Kernel is a subset of the TCB (just the kernel portion). A Trusted System is a broader concept. The Security Perimeter defines the boundary of the TCB, not the TCB itself.

Topics

#Trusted Computing Base#System Security Architecture#Security Models

Community Discussion

No community discussion yet for this question.

Full SSCP PracticeBrowse All SSCP Questions