ExamGecko
Question list
Search
Search

Related questions











Question 346 - CISA discussion

Report
Export

An organization is disposing of a system containing sensitive data and has deleted all files from the hard disk. An IS auditor should be concerned because:

A.
deleted data cannot easily be retrieved.
Answers
A.
deleted data cannot easily be retrieved.
B.
deleting the files logically does not overwrite the files' physical data.
Answers
B.
deleting the files logically does not overwrite the files' physical data.
C.
backup copies of files were not deleted as well.
Answers
C.
backup copies of files were not deleted as well.
D.
deleting all files separately is not as efficient as formatting the hard disk.
Answers
D.
deleting all files separately is not as efficient as formatting the hard disk.
Suggested answer: B

Explanation:

An IS auditor should be concerned because deleting the files logically does not overwrite the files' physical data. Deleting a file from a hard disk only removes the reference or pointer to the file from the file system, but does not erase the actual data stored on the disk sectors. The deleted data can still be recovered using special tools or techniques until it is overwritten by new data. This poses a risk of data leakage, theft, or misuse if the hard disk falls into the wrong hands. To securely dispose of a system containing sensitive data, the hard disk should be wiped or sanitized using methods that overwrite or destroy the physical data beyond recovery.Reference:

CISA Review Manual (Digital Version)

CISA Questions, Answers & Explanations Database

asked 18/09/2024
Blake Heffelfinger
37 questions
User
Your answer:
0 comments
Sorted by

Leave a comment first