A security architect must mitigate the risks from what is su - CompTIA CAS-005

Question

A security architect must mitigate the risks from what is suspected to be an exposed, private cryptographic key. Which of the following is the BEST step to take?

Answers
  1. correct
Explanation

The correct answer is: A. Revoke the certificate.

If a private cryptographic key is suspected to be exposed, revoking the associated certificate is the most effective and immediate action to mitigate risks. Certificate revocation ensures:

  1. The certificate is no longer trusted: Revocation informs browsers, systems, and applications to stop trusting the compromised certificate, preventing further misuse.
  2. Security of communications: It reduces the risk of attackers using the exposed key for malicious purposes, such as impersonating the website or decrypting secure communications.

Revocation is handled by the Certificate Authority (CA), and the status is updated in Certificate Revocation Lists (CRLs) or Online Certificate Status Protocol (OCSP) responses.

Why the other options are incorrect:

Inform all the users of the certificate:

  • Incorrect: While informing users may be part of the response plan, it does not mitigate the risk of the compromised key being misused.

Contact the company's Chief Information Security Officer:

  • Incorrect: Informing the CISO is good practice, but it is not a mitigation step. The compromised certificate needs immediate action, which revocation provides.

Disable the website using the suspected certificate:

  • Incorrect: Disabling the website might disrupt services but does not stop the compromised certificate from being exploited elsewhere.

Alert the root CA:

  • Incorrect: While notifying the CA (Certificate Authority) is part of the revocation process, simply alerting the CA without taking the action to revoke the certificate is not sufficient to mitigate the risk.

No Payment Cards Needed

Related Courses

Discover a range of courses designed to provide you with the knowledge and skills needed to excel in your chosen field.

a prepsaret exam featured image
CompTIA Prep

220-1201 - CompTIA A+ Exam Core 1

Start Course Prep
a prepsaret exam featured image
CompTIA Prep

220-1202 - CompTIA A+ Exam Core 2

Start Course Prep
a prepsaret exam featured image
CompTIA Prep

CompTIA Cloud Essentials+ CLO-002

Start Course Prep
a prepsaret exam featured image
CompTIA Prep

CompTIA Network+ N10-009

Start Course Prep
a prepsaret exam featured image
CompTIA Prep

CompTIA Security+ SY0-701

Start Course Prep
a prepsaret exam featured image
CompTIA Prep

CompTIA Data + DA0-001

Start Course Prep
a prepsaret exam featured image
CompTIA Prep

CompTIA Pentest+

Start Course Prep
a prepsaret exam featured image
CompTIA Prep

CompTIA Linux+ XK0-005

Start Course Prep
a prepsaret exam featured image
CompTIA Prep

CompTIA CySA+ CSO-003

Start Course Prep
a prepsaret exam featured image
CompTIA Prep

CompTIA DataSys+ DS0-001

Start Course Prep
a prepsaret exam featured image
CompTIA Prep

CompTIA Tech+ FC0-U71

Start Course Prep
a prepsaret exam featured image
CompTIA Prep

CompTIA Cloud+ CV0-004

Start Course Prep
a prepsaret exam featured image
CompTIA Prep

CompTIA Server+ SK0-005

Start Course Prep

Easy way to pass your test within a week with prepsaret

You don’t need one month to study and pass your test.
With Prepsaret, it takes you a few days to grasp all the concepts needed to pass your exams

View Courses Offered