CCP Endpoint Security & Data Protection Flashcards
6 cards from real CCP practice questions. Tap to flip, then mark Knew It or Still Learning โ missed cards come back until you master them.
Read the first 6 CCP Endpoint Security & Data Protection flashcards as text
What does the concept of 'data at rest' refer to?
Answer: Data stored persistently on drives, databases, or file systems
Data at rest refers to inactive data stored in any persistent digital form, such as hard drives, databases, or backup media.
Which privacy and security concept calls for limiting the collection and retention of personal data to only what is necessary?
Answer: Data minimization
Data minimization restricts the collection and storage of personal data to only what is necessary for a defined purpose, reducing exposure risk.
An organization is decommissioning hard drives containing sensitive data. Which method most effectively prevents data recovery?
Answer: Cryptographic erasure or physical destruction
Cryptographic erasure destroys the encryption keys rendering data unreadable, while physical destruction ensures no data can ever be recovered.
What is the primary risk that endpoint patch management is designed to address?
Answer: Exploitation of known software vulnerabilities
Patch management closes known software vulnerabilities before attackers can exploit them, directly reducing the attack surface.
Which security control verifies device identity and health posture before granting access to any organizational resource?
Answer: Zero Trust Network Access (ZTNA)
ZTNA enforces the zero-trust principle by continuously verifying device health and user identity before allowing resource access.
What is the primary purpose of a Trusted Platform Module (TPM)?
Answer: To provide hardware-based cryptographic key storage and platform integrity verification
A TPM is a dedicated security chip that provides secure cryptographic key storage and verifies the integrity of the platform during boot.