220-1002 · Question #310
A technician for a large accounting firm is in the process of delivering all assets for retired equipment to a third-party vendor. The equipment contains printers, laptops, desktops, and hard…
The correct answer is B. Certificate of destruction. When retiring equipment containing sensitive data and sending it to a third-party vendor for disposal, the organization must receive a Certificate of Destruction for audit and compliance purposes. This document is a formal attestation from the vendor confirming that all…
Question
A technician for a large accounting firm is in the process of delivering all assets for retired equipment to a third-party vendor. The equipment contains printers, laptops, desktops, and hard drives. Which of the following should the technician receive from the third-party vendor for audit and compliance purposes?
Options
- ASensitive and proprietary data
- BCertificate of destruction
- CEquipment security logs
- DIncident reports
How the community answered
(35 responses)- B94% (33)
- C3% (1)
- D3% (1)
Explanation
When retiring equipment containing sensitive data and sending it to a third-party vendor for disposal, the organization must receive a Certificate of Destruction for audit and compliance purposes. This document is a formal attestation from the vendor confirming that all data-bearing media (hard drives, etc.) has been securely destroyed according to regulatory standards. It serves as legal proof that the organization fulfilled its data destruction obligations-critical for industries like accounting that handle sensitive financial data. Sensitive data should never be handed over (A), security logs and incident reports (C, D) are internal documents unrelated to third-party asset disposal.
Topics
Community Discussion
No community discussion yet for this question.