100-160 exam dumps

100-160 practice question 40 of 265

Cisco Certified Support Technician (CCST) Cybersecurity. Associate level, Cisco. Free question with the correct answer and a full explanation.

100-160 Question 40

Select 3

A healthcare organization needs to ensure that sensitive patient data is protected during both storage and transmission. Which encryption methods should the organization implement to meet this requirement?

  1. A

    AES (Advanced Encryption Standard) for data at rest

  2. B

    RSA (Rivest-Shamir-Adleman) for secure key exchange during data transmission

  3. C

    MD5 (Message Digest 5) for encrypting sensitive data

  4. D

    TLS (Transport Layer Security) for encrypting data in transit

  5. E

    SHA-256 (Secure Hash Algorithm 256) for protecting data during transmission

Show answer and explanation

Correct answers: A, B, D

Explanation

The healthcare organization requires encryption methods that protect sensitive data both at rest and in transit. AES is suitable for securing stored data, RSA facilitates secure key exchanges for encrypted connections, and TLS ensures the encryption of data while it is being transmitted. MD5 and SHA-256 are hashing algorithms, not encryption methods, and do not provide the required protection for this scenario.

  • A. Correct.

    AES is a widely used symmetric encryption algorithm, ideal for encrypting data at rest, such as files stored in databases or hard drives.

  • B. Correct.

    RSA is an asymmetric encryption algorithm commonly used for secure key exchanges, particularly during the process of establishing encrypted connections.

  • C. Incorrect.

    MD5 is a hashing algorithm, not an encryption method, and is considered insecure for protecting sensitive data due to its vulnerability to collisions.

  • D. Correct.

    TLS is a protocol that ensures encryption of data in transit, making it essential for securing data during transmission over networks.

  • E. Incorrect.

    SHA-256 is a cryptographic hashing algorithm, not an encryption method, and is primarily used for data integrity verification, not data protection during transmission.

Timed practice exam

Take a 100-160 practice test under exam conditions

75 questions in 120 minutes, drawn from this bank, with a score report and a per-question review when you finish.

Start timed exam