New Year Sale 2026! Hurry Up, Grab the Special Discount - Save 25% - Ends In 00:00:00 Coupon code: SAVE25
Welcome to Pass4Success

- Free Preparation Discussions

ISC2 SSCP Exam - Topic 10 Question 55 Discussion

Actual exam question for ISC2's SSCP exam
Question #: 55
Topic #: 10
[All SSCP Questions]

Virus scanning and content inspection of SMIME encrypted e-mail without doing any further processing is:

Show Suggested Answer Hide Answer
Suggested Answer: A

Content security measures presumes that the content is available in cleartext on the central mail server.

Encrypted emails have to be decrypted before it can be filtered (e.g. to detect viruses), so you need the decryption key on the central 'crypto mail server'.

There are several ways for such key management, e.g. by message or key recovery methods. However, that would certainly require further processing in order to achieve such goal.


Contribute your Thoughts:

0/2000 characters
Melvin
4 months ago
I’m not sure about that, seems too complicated.
upvoted 0 times
...
Otis
4 months ago
X509 Version 3 is a requirement, right?
upvoted 0 times
...
Merrilee
4 months ago
Wait, can you really brute force SMIME? Sounds risky!
upvoted 0 times
...
Melda
4 months ago
I agree, key recovery is a must for scanning.
upvoted 0 times
...
Britt
4 months ago
Definitely not possible without the keys.
upvoted 0 times
...
Marylin
5 months ago
Brute force decryption sounds risky and time-consuming. I don't think that's a practical method for scanning emails, so I'm leaning towards option A as well.
upvoted 0 times
...
Chuck
5 months ago
I vaguely recall something about X509 certificates, but I can't remember if they specifically relate to virus scanning. Option C seems a bit off to me.
upvoted 0 times
...
Bev
5 months ago
I remember studying that SMIME encryption makes it really hard to scan emails without decrypting them first. So, I think option A might be correct.
upvoted 0 times
...
Helaine
5 months ago
I feel like I came across a similar question about key recovery schemes in my practice tests. I think option B could be the answer, but I'm not entirely sure.
upvoted 0 times
...
Angella
5 months ago
Ugh, I'm not totally sure about this one. The settings all sound kind of similar, but I think the key is to focus on the one that specifically mentions "events" and "EPM Server". Let me think this through step-by-step.
upvoted 0 times
...
Moon
5 months ago
Ah, this is a good one! I remember discussing the importance of aligning total rewards with the company's vision and mission during our class discussions. I'm pretty sure the answer is True.
upvoted 0 times
...
Devorah
5 months ago
I remember drive0 being used in some examples, but I don't think it applies to USB transfers for this case.
upvoted 0 times
...
Barbra
5 months ago
If I recall correctly, A and D were mentioned quite often in practice questions, but I can't remember much about C.
upvoted 0 times
...

Save Cancel