ISC2 Certified Secure Software Lifecycle Professional (CSSLP) Practice Question
A financial services firm is retiring a legacy reporting platform that contains transaction records subject to a 7-year regulatory retention requirement. The data must remain immutable and auditable, yet it must not be easily returned to production use. Which data disposition strategy BEST meets these goals?
Leave the database online in read-only mode on a segregated subnet to allow auditors to query it when needed.
Shred the encryption keys for the database, then physically destroy all storage drives associated with the application.
Compress the data files and place them on the organization's shared file server with read-only permissions.
Export the records to tamper-resistant WORM media in an offline cold archive, apply strict access controls, and record the 7-year retention schedule.
Write-once, read-many (WORM) archival storage keeps the records for the mandated period while preventing alteration or casual restoration to production, and access controls plus documented retention schedules support audit needs. Cryptographically erasing media would destroy data prematurely, storing files on an active server or keeping the database running keeps them too accessible and increases the risk of accidental reuse or tampering.
Ask Bash
Bash is our AI bot, trained to help you pass your exam. AI Generated Content may display inaccurate information, always double-check anything important.
What is WORM media and why is it used for data retention?
Open an interactive chat with Bash
Why is shredding encryption keys not a suitable strategy for regulatory data retention?
Open an interactive chat with Bash
What benefits does an offline cold archive provide for sensitive data storage?
Open an interactive chat with Bash
ISC2 Certified Secure Software Lifecycle Professional (CSSLP)
Secure Software Lifecycle Management
Your Score:
Report Issue
Bash, the Crucial Exams Chat Bot
AI Bot
Loading...
Loading...
Loading...
Pass with Confidence.
IT & Cybersecurity Package
You have hit the limits of our free tier, become a Premium Member today for unlimited access.
Military, Healthcare worker, Gov. employee or Teacher? See if you qualify for a Community Discount.
Monthly
$19.99
$19.99/mo
Billed monthly, Cancel any time.
3 Month Pass
$44.99
$14.99/mo
One time purchase of $44.99, Does not auto-renew.
MOST POPULAR
Annual Pass
$119.99
$9.99/mo
One time purchase of $119.99, Does not auto-renew.
BEST DEAL
Lifetime Pass
$189.99
One time purchase, Good for life.
What You Get
All IT & Cybersecurity Package plans include the following perks and exams .