Isaca Certified Information Systems Auditor CISA Question # 34 Topic 4 Discussion
CISA Exam Topic 4 Question 34 Discussion:
Question #: 34
Topic #: 4
An organization is disposing of a system containing sensitive data and has deleted all files from the hard disk. An IS auditor should be concerned because:
A.
deleted data cannot easily be retrieved.
B.
deleting the files logically does not overwrite the files ' physical data.
C.
backup copies of files were not deleted as well.
D.
deleting all files separately is not as efficient as formatting the hard disk.
An IS auditor should be concerned because deleting the files logically does not overwrite the files’ physical data. Deleting a file from a hard disk only removes the reference or pointer to the file from the file system, but does not erase the actual data stored on the disk sectors. The deleted data can still be recovered using special tools or techniques until it is overwritten by new data. This poses a risk of data leakage, theft, or misuse if the hard disk falls into the wrong hands. To securely dispose of a system containing sensitive data, the hard disk should be wiped or sanitized using methods that overwrite or destroy the physical data beyond recovery. References:
CISA Review Manual (Digital Version)
CISA Questions, Answers and Explanations Database
Contribute your Thoughts:
Chosen Answer:
This is a voting comment (?). You can switch to a simple comment. It is better to Upvote an existing comment if you don't have anything to add.
Submit