A financial services organization is decommissioning several servers that were used to process and store highly sensitive customer financial data. The servers contain solid-state drives (SSDs). According to the company's security policy, which is aligned with NIST 800-88, the data on these drives must be made irrecoverable using the method that provides the highest level of assurance. Which of the following procedures BEST meets this requirement?
Physically shredding the SSDs to a particle size of 2mm or less
Performing a multipass overwrite using a DoD 5220.22-M compliant tool
Executing a cryptographic erase (CE) command on the drives
Degaussing the SSDs with a certified, high-power degausser
According to NIST 800-88, physical destruction (Destroy) provides the highest level of assurance that data is irrecoverable. For SSDs, methods like shredding to a small particle size ensure that the memory chips are physically destroyed, making data recovery impossible. Cryptographic erase is a valid 'Purge' method but relies on the correct implementation of the drive's firmware and encryption, which carries a residual risk if compromised. Degaussing is ineffective on SSDs as they are not magnetic media. Multipass overwriting is also not recommended for SSDs due to wear-leveling and over-provisioning, which can leave data remnants in unaddressable areas.
Ask Bash
Bash is our AI bot, trained to help you pass your exam. AI Generated Content may display inaccurate information, always double-check anything important.
Why does rendering a storage device unusable provide the highest assurance of data elimination?
Open an interactive chat with Bash
What is the difference between overwriting and physical destruction of a storage device for data removal?
Open an interactive chat with Bash
What are some effective methods to physically destroy a storage device?
Open an interactive chat with Bash
ISC2 CISSP
Asset Security
Your Score:
Report Issue
Bash, the Crucial Exams Chat Bot
AI Bot
Loading...
Loading...
Loading...
Pass with Confidence.
IT & Cybersecurity Package
You have hit the limits of our free tier, become a Premium Member today for unlimited access.
Military, Healthcare worker, Gov. employee or Teacher? See if you qualify for a Community Discount.
Monthly
$19.99
$19.99/mo
Billed monthly, Cancel any time.
3 Month Pass
$44.99
$14.99/mo
One time purchase of $44.99, Does not auto-renew.
MOST POPULAR
Annual Pass
$119.99
$9.99/mo
One time purchase of $119.99, Does not auto-renew.
BEST DEAL
Lifetime Pass
$189.99
One time purchase, Good for life.
What You Get
All IT & Cybersecurity Package plans include the following perks and exams .