A security architect must mitigate the risks from what is suspected to be an exposed, private cryptographic key. Which of the following is the BEST step to take?
The correct answer is: A. Revoke the certificate.
If a private cryptographic key is suspected to be exposed, revoking the associated certificate is the most effective and immediate action to mitigate risks. Certificate revocation ensures:
Revocation is handled by the Certificate Authority (CA), and the status is updated in Certificate Revocation Lists (CRLs) or Online Certificate Status Protocol (OCSP) responses.
Why the other options are incorrect:
Inform all the users of the certificate:
Contact the company's Chief Information Security Officer:
Disable the website using the suspected certificate:
Alert the root CA:
No Payment Cards Needed
Discover a range of courses designed to provide you with the knowledge and skills needed to excel in your chosen field.
You don’t need one month to study and pass your test.
With Prepsaret, it takes you a few days to grasp all the concepts needed to pass your exams