Certified In Cybersecurity CC · Free Practice Question Easy
Question 86
Which of the following is the FIRST step in implementing encryption for data at rest?
- A Establishing key management practices
- B Configuring the encryption algorithm
- C Determining the data classification level
- D Identifying which data needs to be encrypted
Reveal correct answer
Correct answer: D
Explanation
The correct answer: The FIRST step in implementing encryption for data at rest is to identify which data needs to be encrypted, as this will help determine the scope and requirements for the encryption process. This is crucial as not all data might require encryption, and encryption itself can add to processing overhead and complexity. Identification of data to be encrypted can be based on various factors such as data sensitivity, regulatory requirements, or the business value of the data. The incorrect answers: While selecting and configuring the right encryption algorithm is an important part of the encryption process, it's not the first step. This can only be done effectively once you have identified which data needs to be encrypted. It's true that the level of data classification can determine whether data should be encrypted or not but the actual process of determining this classification level is usually a part of identifying which data needs to be encrypted, and not a separate first step. Key management is a vital part of maintaining secure encryption practices, as it deals with how encryption keys are generated, distributed, stored, retired, and replaced. However, this is typically a subsequent step that takes place after identifying the data that needs to be encrypted and deciding on the encryption method to be used.Discussion
Think the marked answer is wrong, or have a better explanation? Share it below — comments appear after review.
You must be logged in to post a comment.
