CISSP Practice Question: What would MOST likely happen if a company fails to implement proper…
Correct Answer: A. Increased risk of data breaches
Explanation (CISSP Manager Logic):
Improper asset disposal leaves sensitive data on retired hardware, creating a critical vulnerability for unauthorized access. Failing to sanitize media before it leaves organizational control violates the data lifecycle and exposes the firm to significant legal and reputational liability.
By implementing proper disposal procedures, you:
- Protect intellectual property and sensitive PII/PHI.
- Ensure compliance with privacy regulations and industry standards.
- Maintain confidentiality throughout the entire asset lifecycle.
While the other options are relevant, they fall short because:
- B: Customer trust is destroyed, not enhanced, when a company fails to protect data during decommissioning.
- C: Neglecting disposal creates technical debt and security gaps rather than improving operational efficiency.
- D: Non-compliance leads to regulatory fines and legal fees, significantly increasing total business costs.
Think like a manager:
Security is a lifecycle process where assets must be protected from acquisition through destruction. Managers must prioritize secure decommissioning to mitigate long-term liability and ensure regulatory alignment.
Ready to find out if you'd pass?
5,000+ expert-calibrated questions, adaptive CAT mock exams, and gap analysis that shows exactly what to study next.
Try 5 free questions Start 7-day free trial