CCAR-P Advanced Agentic Architecture Practice Question
Which THREE strategies should be employed to securely manage sensitive data within an agentic workflow?
⚠ Common exam trap
Candidates often focus solely on encrypting data at rest while forgetting that sensitive PII must be actively scrubbed before being passed to external LLM APIs.
Answer choices
Why each option matters
Answer the question above first, then reveal the full breakdown to understand why each option is right or wrong.
Correct answer & explanation
✓
Apply PII masking/redaction before passing text to the LLM.
Securing agents requires a layered approach: PII masking before sending to the model keeps data private; granular access control ensures the agent only touches data it is authorized to see; and audit logging provides traceability for every decision made. These components ensure that even if the agent is compromised or hallucinates, the impact is contained, data privacy is maintained, and there is a clear record of actions taken for compliance and forensics.
Answer analysis
Option-by-option breakdown
For each option: why learners choose it and why it is or isn't the right answer here.
- ✓
Apply PII masking/redaction before passing text to the LLM.
Why this is correct
PII masking ensures that sensitive data never leaves your secure environment in a readable format. By replacing names, emails, or IDs with tokens, the model can still perform logic based on the pattern without ever having access to the real, private data, which is essential for GDPR/HIPAA compliance.
- ✗
Enable the model to have full administrative access to the file system.
Why it's wrong here
Granting administrative access is a major security vulnerability. An agent should operate within a heavily sandboxed environment with the minimum set of permissions required. Full access would allow a prompt-injection attack to potentially compromise the entire infrastructure and lead to catastrophic data leaks or system destruction.
- ✓
Implement fine-grained access control (RBAC) on all tool calls.
Why this is correct
RBAC ensures that the agent can only invoke the tools and access the resources explicitly permitted for its specific service account. This prevents an agent from inadvertently or maliciously performing actions that are outside its defined scope of work, providing a critical layer of defense-in-depth.
- ✓
Maintain immutable audit logs of all model inputs and outputs.
Why this is correct
Audit logs are vital for forensics and transparency. If an agent performs an unauthorized action, you need a complete record of the prompts and tool calls that led to that decision. Immutable logs ensure that this history cannot be tampered with after the fact by an attacker.
- ✗
Embed all user data directly into the system prompt for faster access.
Why it's wrong here
Putting sensitive user data in the system prompt increases the risk of exposure and makes it impossible to manage permissions effectively. It also bloats the context window unnecessarily. Data should be fetched dynamically with appropriate security controls, rather than hard-coded into the persistent system prompt.
About these practice questions
This CCAR-P question is part of Courseiva's 262-question bank — original exam-style content with full explanations and wrong-answer analysis, never real exam questions or exam dumps. Learn why practice questions differ from exam dumps →
JA
Written and reviewed by Johnson Ajibi, MSc IT Security
Senior Network & Security Engineer · founder of Courseiva
Last reviewed September 2026 · checked against the official Anthropic exam blueprint
This CCAR-P practice question is part of Courseiva's free Anthropic certification practice question bank. Courseiva provides original exam-style practice questions with explanations, topic-based practice, mock exams, readiness tracking, and study analytics to help learners prepare for the CCAR-P exam.