What is the best way to ensure that all data has been removed from a public cloud environment including all media such as back-up tapes?
A.
Allowing the cloud provider to manage your keys so that they have the ability to access and delete the data from the main and back-up storage.
B.
Maintaining customer managed key management and revoking or deleting keys from the key management system to prevent the data from being accessed again.
C.
Practice Integration of Duties (IOD) so that everyone is able to delete the encrypted data.
D.
Keep the keys stored on the client side so that they are secure and so that the users have the ability to delete their own data.
Chosen Answer:
This is a voting comment (?). You can switch to a simple comment. It is better to Upvote an existing comment if you don't have anything to add.
Submit