Which SP 800 document provides guidelines for media sanitization, including techniques and disposal?

Enhance your preparation for the Federal IT Security Professional Test. Use quizzes, flashcards, and detailed explanations to ensure success. Stay ahead in the field of IT Security!

Multiple Choice

Which SP 800 document provides guidelines for media sanitization, including techniques and disposal?

Explanation:
Media sanitization is specifically addressed by NIST SP 800-88, Guidelines for Media Sanitization. This document tells you how to permanently remove data from storage media and dispose of it securely. It covers practical methods such as overwriting data with patterns or random data, degaussing for magnetic media, physical destruction to make recovery impossible, and cryptographic erasure where destroying keys renders the data unusable. It also guides you on choosing the appropriate method based on factors like the sensitivity of the data, the type of media (magnetic, optical, solid-state, etc.), and the risk of data recovery, as well as considerations for proper disposal and handling when media is retired or recycled. The other listed SP 800 documents focus on different security areas—log management, intrusion detection and prevention systems, and continuous monitoring—not on how to sanitize or dispose of media.

Media sanitization is specifically addressed by NIST SP 800-88, Guidelines for Media Sanitization. This document tells you how to permanently remove data from storage media and dispose of it securely. It covers practical methods such as overwriting data with patterns or random data, degaussing for magnetic media, physical destruction to make recovery impossible, and cryptographic erasure where destroying keys renders the data unusable. It also guides you on choosing the appropriate method based on factors like the sensitivity of the data, the type of media (magnetic, optical, solid-state, etc.), and the risk of data recovery, as well as considerations for proper disposal and handling when media is retired or recycled. The other listed SP 800 documents focus on different security areas—log management, intrusion detection and prevention systems, and continuous monitoring—not on how to sanitize or dispose of media.

Subscribe

Get the latest from Passetra

You can unsubscribe at any time. Read our privacy policy