ISC2 CISSP Practice Question

A financial services organization is decommissioning several servers that were used to process and store highly sensitive customer financial data. The servers contain solid-state drives (SSDs). According to the company's security policy, which is aligned with NIST 800-88, the data on these drives must be made irrecoverable using the method that provides the highest level of assurance. Which of the following procedures BEST meets this requirement?

  • Physically shredding the SSDs to a particle size of 2mm or less

  • Performing a multipass overwrite using a DoD 5220.22-M compliant tool

  • Executing a cryptographic erase (CE) command on the drives

  • Degaussing the SSDs with a certified, high-power degausser

ISC2 CISSP
Asset Security
Your Score:
Settings & Objectives
Random Mixed
Questions are selected randomly from all chosen topics, with a preference for those you haven’t seen before. You may see several questions from the same objective or domain in a row.
Rotate by Objective
Questions cycle through each objective or domain in turn, helping you avoid long streaks of questions from the same area. You may see some repeat questions, but the distribution will be more balanced across topics.

Check or uncheck an objective to set which questions you will receive.

Bash, the Crucial Exams Chat Bot
AI Bot