CompTIA Security+ (SY0-601) — Question 78
Which of the following is a known security risk associated with data archives that contain financial information?
Answer options
- A. Data can become a liability if archived longer than required by regulatory guidance.
- B. Data must be archived off-site to avoid breaches and meet business requirements.
- C. Companies are prohibited from providing archived data to e-discovery requests.
- D. Unencrypted archives should be preserved as long as possible and encrypted.
Correct answer: A
Explanation
The correct answer, A, highlights the risk that retaining data longer than necessary can lead to legal liabilities if there are regulations that dictate how long data should be kept. Option B is incorrect because while off-site archiving can mitigate risks, it is not a requirement that addresses the specific liability concern. Option C is false as companies are usually required to comply with e-discovery requests for archived data. Option D is misleading, as unencrypted data should not be preserved indefinitely, and encryption is essential for data security.