Certified in the Governance of Enterprise IT (CGEIT) — Question 152
Prior to decommissioning an IT system, it is MOST important to:
Answer options
- A. assess compliance with environmental regulations.
- B. review the media disposal records.
- C. assess compliance with the retention policy.
- D. review the data sanitization records.
Correct answer: D
Explanation
The correct answer is D because ensuring that data has been properly sanitized is critical to prevent unauthorized access to sensitive information after the system is decommissioned. While compliance with environmental regulations, media disposal records, and retention policies are important, they do not directly impact the security of the data that may still be recoverable if not sanitized properly.