Topic 15 Practice Test 2 covers Asset Management and Secure Disposal for CompTIA Security+ SY0-701 and maps to objective 4.2: Explain the security implications of proper hardware, software, and data asset management. For broader exam preparation, review the CompTIA Security+ Exam Dumps. Every option includes focused editorial reasoning explaining both the concept and its fit to the scenario.
Question 1
As part of an asset-lifecycle governance review, reviewers identify a need for rendering media unusable through methods such as shredding or crushing. Which option should they select?
- Asset enumeration
- Physical destruction
- Secure procurement
- Data retention
Correct Answer: B
Correct Answer
Answer B is correct because Physical destruction means rendering media unusable through methods such as shredding or crushing. The requirement maps directly to this function, whereas Data retention is aimed at policy-driven preservation of information for a defined period followed by approved disposition.
Incorrect Answers
Answer A is incorrect because Asset enumeration means discovery and identification of specific assets, attributes, versions, or exposed services. That concept can be valid in another scenario, but this question is testing rendering media unusable through methods such as shredding or crushing; Physical destruction therefore fits the requirement more directly.
Answer C is incorrect because Secure procurement means evaluation of security requirements, supplier risk, support lifecycle, and contractual obligations before acquiring an asset. The question is not asking for this function. It is testing rendering media unusable through methods such as shredding or crushing, so Physical destruction is the stronger fit.
Answer D is incorrect because Data retention means policy-driven preservation of information for a defined period followed by approved disposition. The question is not asking for this function. It is testing rendering media unusable through methods such as shredding or crushing, so Physical destruction is the stronger fit.
Question 2
The team is resolving a gap found during an asset-lifecycle governance review: it needs policy-driven preservation of information for a defined period followed by approved disposition. Which option is most appropriate?
- Asset classification
- Data retention
- Physical destruction
- Secure procurement
Correct Answer: B
Correct Answer
Answer B is correct because Data retention means policy-driven preservation of information for a defined period followed by approved disposition. The deciding point is functional fit: this option covers the stated need, while Secure procurement addresses evaluation of security requirements, supplier risk, support lifecycle, and contractual obligations before acquiring an asset.
Incorrect Answers
Answer A is incorrect because Asset classification means categorization of assets according to sensitivity, criticality, or business value. The concept is valid, but it does not match this stem. The required function is policy-driven preservation of information for a defined period followed by approved disposition, which maps to Data retention.
Answer C is incorrect because Physical destruction means rendering media unusable through methods such as shredding or crushing. The question is not asking for this function. It is testing policy-driven preservation of information for a defined period followed by approved disposition, so Data retention is the stronger fit.
Answer D is incorrect because Secure procurement means evaluation of security requirements, supplier risk, support lifecycle, and contractual obligations before acquiring an asset. This could be appropriate elsewhere, but the required function is policy-driven preservation of information for a defined period followed by approved disposition; that makes Data retention the precise choice.
Question 3
An architect working on an asset-lifecycle governance review needs one capability that provides assignment of a responsible person or function for an asset throughout its lifecycle and another that provides maintained record of hardware, software, services, and other managed assets. Which TWO selections are the best match? Choose TWO.
- Media sanitization
- Asset inventory
- Destruction certification
- Asset ownership
- Asset enumeration
Correct Answers: B, D
Correct Answers
Answer B is correct because Asset inventory means a maintained record of hardware, software, services, and other managed assets. This option satisfies a specific requirement in the stem; Media sanitization serves removal of data from storage so it cannot be recovered through normal means and according to required standards and therefore is not interchangeable with it.
Answer D is correct because Asset ownership means assignment of a responsible person or function for an asset throughout its lifecycle. The fixed-count item needs this function in the answer set. Destruction certification covers formal evidence that an asset or storage medium was destroyed according to required procedure, a different requirement.
Incorrect Answers
Answer A is incorrect because Media sanitization means removal of data from storage so it cannot be recovered through normal means and according to required standards. The question requires exactly 2 selections: Asset inventory, Asset ownership. This option falls outside that required set.
Answer C is incorrect because Destruction certification means formal evidence that an asset or storage medium was destroyed according to required procedure. The scenario calls for Asset inventory, Asset ownership. Selecting this option would leave one of those required functions uncovered.
Answer E is incorrect because Asset enumeration means discovery and identification of specific assets, attributes, versions, or exposed services. The fixed-count answer set is Asset inventory, Asset ownership; this option does not fill one of those named functions. For example, Asset ownership is required for assignment of a responsible person or function for an asset throughout its lifecycle.
Question 4
During an asset-lifecycle governance review, the team has two independent requirements: (1) evaluation of security requirements, supplier risk, support lifecycle, and contractual obligations before acquiring an asset; and (2) categorization of assets according to sensitivity, criticality, or business value. Which TWO choices best satisfy those requirements? Choose TWO.
- Asset enumeration
- Secure procurement
- Asset classification
- Destruction certification
- Asset inventory
Correct Answers: B, C
Correct Answers
Answer B is correct because Secure procurement means evaluation of security requirements, supplier risk, support lifecycle, and contractual obligations before acquiring an asset. The fixed-count item needs this function in the answer set. Asset enumeration covers discovery and identification of specific assets, attributes, versions, or exposed services, a different requirement.
Answer C is correct because Asset classification means categorization of assets according to sensitivity, criticality, or business value. This selection maps directly to one of the named needs. Asset enumeration addresses discovery and identification of specific assets, attributes, versions, or exposed services, so it does not satisfy the same slot.
Incorrect Answers
Answer A is incorrect because Asset enumeration means discovery and identification of specific assets, attributes, versions, or exposed services. The scenario calls for Asset classification, Secure procurement. Selecting this option would leave one of those required functions uncovered. For example, Secure procurement is required for evaluation of security requirements, supplier risk, support lifecycle, and contractual obligations before acquiring an asset.
Answer D is incorrect because Destruction certification means formal evidence that an asset or storage medium was destroyed according to required procedure. The required choices are Asset classification, Secure procurement. Although this option is security-relevant, it does not satisfy one of the functions named in the stem.
Answer E is incorrect because Asset inventory means a maintained record of hardware, software, services, and other managed assets. The question requires exactly 2 selections: Asset classification, Secure procurement. This option falls outside that required set. For example, Asset classification is required for categorization of assets according to sensitivity, criticality, or business value.
Question 5
To prove compliance with disposal policy or contractual obligations, which security approach should be selected?
- Destruction certification
- Asset tracking
- Physical destruction
- Data retention
Correct Answer: A
Correct Answer
Answer A is correct because Destruction certification means formal evidence that an asset or storage medium was destroyed according to required procedure. The requirement maps directly to this function, whereas Physical destruction is aimed at rendering media unusable through methods such as shredding or crushing.
Incorrect Answers
Answer B is incorrect because Asset tracking refers to ongoing monitoring of asset status, location, ownership, and lifecycle state. That concept can be valid in another scenario, but this question is testing formal evidence that an asset or storage medium was destroyed according to required procedure; Destruction certification therefore fits the requirement more directly.
Answer C is incorrect because Physical destruction refers to rendering media unusable through methods such as shredding or crushing. The question is not asking for this function. It is testing formal evidence that an asset or storage medium was destroyed according to required procedure, so Destruction certification is the stronger fit.
Answer D is incorrect because Data retention refers to policy-driven preservation of information for a defined period followed by approved disposition. The key mismatch is functional: Destruction certification addresses formal evidence that an asset or storage medium was destroyed according to required procedure, the need stated by the question.
Question 6
A security engineer is working through an asset-lifecycle governance review. The immediate requirement is categorization of assets according to sensitivity, criticality, or business value. Which choice is the best fit?
- Asset classification
- Destruction certification
- Asset enumeration
- Physical destruction
Correct Answer: A
Correct Answer
Answer A is correct because Asset classification means categorization of assets according to sensitivity, criticality, or business value. This is the precise fit for the scenario. Destruction certification serves the different purpose of formal evidence that an asset or storage medium was destroyed according to required procedure.
Incorrect Answers
Answer B is incorrect because Destruction certification means formal evidence that an asset or storage medium was destroyed according to required procedure. The question is not asking for this function. It is testing categorization of assets according to sensitivity, criticality, or business value, so Asset classification is the stronger fit.
Answer C is incorrect because Asset enumeration means discovery and identification of specific assets, attributes, versions, or exposed services. The key mismatch is functional: Asset classification addresses categorization of assets according to sensitivity, criticality, or business value, the need stated by the question.
Answer D is incorrect because Physical destruction means rendering media unusable through methods such as shredding or crushing. This could be appropriate elsewhere, but the required function is categorization of assets according to sensitivity, criticality, or business value; that makes Asset classification the precise choice.
Question 7
During an asset-lifecycle governance review, the team has two independent requirements: (1) maintained record of hardware, software, services, and other managed assets; and (2) discovery and identification of specific assets, attributes, versions, or exposed services. Which TWO choices best satisfy those requirements? Choose TWO.
- Asset inventory
- Asset enumeration
- Media sanitization
- Data retention
- Destruction certification
Correct Answers: A, B
Correct Answers
Answer A is correct because Asset inventory means a maintained record of hardware, software, services, and other managed assets. The fixed-count item needs this function in the answer set. Media sanitization covers removal of data from storage so it cannot be recovered through normal means and according to required standards, a different requirement.
Answer B is correct because Asset enumeration means discovery and identification of specific assets, attributes, versions, or exposed services. This selection maps directly to one of the named needs. Media sanitization addresses removal of data from storage so it cannot be recovered through normal means and according to required standards, so it does not satisfy the same slot.
Incorrect Answers
Answer C is incorrect because Media sanitization means removal of data from storage so it cannot be recovered through normal means and according to required standards. The scenario calls for Asset enumeration, Asset inventory. Selecting this option would leave one of those required functions uncovered.
Answer D is incorrect because Data retention means policy-driven preservation of information for a defined period followed by approved disposition. Every answer slot must map to a stated requirement. The correct set is Asset enumeration, Asset inventory, so this option cannot replace one of those selections.
Answer E is incorrect because Destruction certification means formal evidence that an asset or storage medium was destroyed according to required procedure. The required choices are Asset enumeration, Asset inventory. Although this option is security-relevant, it does not satisfy one of the functions named in the stem.
Question 8
As part of an asset-lifecycle governance review, reviewers identify a need for discovery and identification of specific assets, attributes, versions, or exposed services. Which option should they select?
- Secure procurement
- Asset enumeration
- Asset inventory
- Destruction certification
Correct Answer: B
Correct Answer
Answer B is correct because Asset enumeration means discovery and identification of specific assets, attributes, versions, or exposed services. That is the function the question is testing. Secure procurement would instead be used for evaluation of security requirements, supplier risk, support lifecycle, and contractual obligations before acquiring an asset.
Incorrect Answers
Answer A is incorrect because Secure procurement means evaluation of security requirements, supplier risk, support lifecycle, and contractual obligations before acquiring an asset. This could be appropriate elsewhere, but the required function is discovery and identification of specific assets, attributes, versions, or exposed services; that makes Asset enumeration the precise choice.
Answer C is incorrect because Asset inventory means a maintained record of hardware, software, services, and other managed assets. The scenario instead requires discovery and identification of specific assets, attributes, versions, or exposed services, which is why Asset enumeration is the better answer; this option serves the different function defined above.
Answer D is incorrect because Destruction certification means formal evidence that an asset or storage medium was destroyed according to required procedure. The question is not asking for this function. It is testing discovery and identification of specific assets, attributes, versions, or exposed services, so Asset enumeration is the stronger fit.
Question 9
To avoid introducing technology that cannot meet security or compliance needs, which security approach should be selected?
- Asset classification
- Secure procurement
- Destruction certification
- Asset tracking
Correct Answer: B
Correct Answer
Answer B is correct because Secure procurement means evaluation of security requirements, supplier risk, support lifecycle, and contractual obligations before acquiring an asset. This is the precise fit for the scenario. Destruction certification serves the different purpose of formal evidence that an asset or storage medium was destroyed according to required procedure.
Incorrect Answers
Answer A is incorrect because Asset classification refers to categorization of assets according to sensitivity, criticality, or business value. The scenario instead requires evaluation of security requirements, supplier risk, support lifecycle, and contractual obligations before acquiring an asset, which is why Secure procurement is the better answer; this option serves the different function defined above.
Answer C is incorrect because Destruction certification refers to formal evidence that an asset or storage medium was destroyed according to required procedure. That concept can be valid in another scenario, but this question is testing evaluation of security requirements, supplier risk, support lifecycle, and contractual obligations before acquiring an asset; Secure procurement therefore fits the requirement more directly.
Answer D is incorrect because Asset tracking refers to ongoing monitoring of asset status, location, ownership, and lifecycle state. The scenario instead requires evaluation of security requirements, supplier risk, support lifecycle, and contractual obligations before acquiring an asset, which is why Secure procurement is the better answer; this option serves the different function defined above.
Question 10
A design decision in an asset-lifecycle governance review must provide removal of data from storage so it cannot be recovered through normal means and according to required standards. Which choice most directly satisfies that requirement?
- Asset inventory
- Destruction certification
- Media sanitization
- Asset ownership
Correct Answer: C
Correct Answer
Answer C is correct because Media sanitization means removal of data from storage so it cannot be recovered through normal means and according to required standards. The requirement maps directly to this function, whereas Destruction certification is aimed at formal evidence that an asset or storage medium was destroyed according to required procedure.
Incorrect Answers
Answer A is incorrect because Asset inventory means a maintained record of hardware, software, services, and other managed assets. This could be appropriate elsewhere, but the required function is removal of data from storage so it cannot be recovered through normal means and according to required standards; that makes Media sanitization the precise choice.
Answer B is incorrect because Destruction certification means formal evidence that an asset or storage medium was destroyed according to required procedure. This could be appropriate elsewhere, but the required function is removal of data from storage so it cannot be recovered through normal means and according to required standards; that makes Media sanitization the precise choice.
Answer D is incorrect because Asset ownership means assignment of a responsible person or function for an asset throughout its lifecycle. This could be appropriate elsewhere, but the required function is removal of data from storage so it cannot be recovered through normal means and according to required standards; that makes Media sanitization the precise choice.
Question 11
To apply handling and protection requirements appropriate to risk, which security approach should be selected?
- Physical destruction
- Destruction certification
- Asset ownership
- Asset classification
Correct Answer: D
Correct Answer
Answer D is correct because Asset classification means categorization of assets according to sensitivity, criticality, or business value. This matches the requirement as written. Destruction certification can be valid in another context, but it is used for formal evidence that an asset or storage medium was destroyed according to required procedure.
Incorrect Answers
Answer A is incorrect because Physical destruction refers to rendering media unusable through methods such as shredding or crushing. The question is not asking for this function. It is testing categorization of assets according to sensitivity, criticality, or business value, so Asset classification is the stronger fit.
Answer B is incorrect because Destruction certification refers to formal evidence that an asset or storage medium was destroyed according to required procedure. The key mismatch is functional: Asset classification addresses categorization of assets according to sensitivity, criticality, or business value, the need stated by the question.
Answer C is incorrect because Asset ownership refers to assignment of a responsible person or function for an asset throughout its lifecycle. This could be appropriate elsewhere, but the required function is categorization of assets according to sensitivity, criticality, or business value; that makes Asset classification the precise choice.
Question 12
To find devices and software that may not yet be fully represented in inventory, which security approach should be selected?
- Data retention
- Asset inventory
- Asset enumeration
- Asset ownership
Correct Answer: C
Correct Answer
Answer C is correct because Asset enumeration means discovery and identification of specific assets, attributes, versions, or exposed services. The deciding point is functional fit: this option covers the stated need, while Asset inventory addresses a maintained record of hardware, software, services, and other managed assets.
Incorrect Answers
Answer A is incorrect because Data retention refers to policy-driven preservation of information for a defined period followed by approved disposition. The question is not asking for this function. It is testing discovery and identification of specific assets, attributes, versions, or exposed services, so Asset enumeration is the stronger fit.
Answer B is incorrect because Asset inventory refers to a maintained record of hardware, software, services, and other managed assets. The scenario instead requires discovery and identification of specific assets, attributes, versions, or exposed services, which is why Asset enumeration is the better answer; this option serves the different function defined above.
Answer D is incorrect because Asset ownership refers to assignment of a responsible person or function for an asset throughout its lifecycle. This could be appropriate elsewhere, but the required function is discovery and identification of specific assets, attributes, versions, or exposed services; that makes Asset enumeration the precise choice.
Question 13
The control set for an asset-lifecycle governance review must address both evaluation of security requirements, supplier risk, support lifecycle, and contractual obligations before acquiring an asset and removal of data from storage so it cannot be recovered through normal means and according to required standards. Which TWO choices map directly to those needs? Choose TWO.
- Secure procurement
- Asset tracking
- Media sanitization
- Asset ownership
- Data retention
Correct Answers: A, C
Correct Answers
Answer A is correct because Secure procurement means evaluation of security requirements, supplier risk, support lifecycle, and contractual obligations before acquiring an asset. The fixed-count item needs this function in the answer set. Asset ownership covers assignment of a responsible person or function for an asset throughout its lifecycle, a different requirement.
Answer C is correct because Media sanitization means removal of data from storage so it cannot be recovered through normal means and according to required standards. It belongs in the fixed-count answer set because it covers one of the stated requirements. Data retention instead serves policy-driven preservation of information for a defined period followed by approved disposition and cannot replace this function.
Incorrect Answers
Answer B is incorrect because Asset tracking means ongoing monitoring of asset status, location, ownership, and lifecycle state. The question requires exactly 2 selections: Media sanitization, Secure procurement. This option falls outside that required set. For example, Media sanitization is required for removal of data from storage so it cannot be recovered through normal means and according to required standards.
Answer D is incorrect because Asset ownership means assignment of a responsible person or function for an asset throughout its lifecycle. The question requires exactly 2 selections: Media sanitization, Secure procurement. This option falls outside that required set. For example, Secure procurement is required for evaluation of security requirements, supplier risk, support lifecycle, and contractual obligations before acquiring an asset.
Answer E is incorrect because Data retention means policy-driven preservation of information for a defined period followed by approved disposition. The fixed-count answer set is Media sanitization, Secure procurement; this option does not fill one of those named functions.
Question 14
A security engineer is working through an asset-lifecycle governance review. The immediate requirement is assignment of a responsible person or function for an asset throughout its lifecycle. Which choice is the best fit?
- Destruction certification
- Media sanitization
- Asset ownership
- Data retention
Correct Answer: C
Correct Answer
Answer C is correct because Asset ownership means assignment of a responsible person or function for an asset throughout its lifecycle. This matches the requirement as written. Media sanitization can be valid in another context, but it is used for removal of data from storage so it cannot be recovered through normal means and according to required standards.
Incorrect Answers
Answer A is incorrect because Destruction certification means formal evidence that an asset or storage medium was destroyed according to required procedure. The scenario instead requires assignment of a responsible person or function for an asset throughout its lifecycle, which is why Asset ownership is the better answer; this option serves the different function defined above.
Answer B is incorrect because Media sanitization means removal of data from storage so it cannot be recovered through normal means and according to required standards. This could be appropriate elsewhere, but the required function is assignment of a responsible person or function for an asset throughout its lifecycle; that makes Asset ownership the precise choice.
Answer D is incorrect because Data retention means policy-driven preservation of information for a defined period followed by approved disposition. The key mismatch is functional: Asset ownership addresses assignment of a responsible person or function for an asset throughout its lifecycle, the need stated by the question.
Question 15
Which term describes evaluation of security requirements, supplier risk, support lifecycle, and contractual obligations before acquiring an asset?
- Data retention
- Physical destruction
- Asset tracking
- Secure procurement
Correct Answer: D
Correct Answer
Answer D is correct because Secure procurement means evaluation of security requirements, supplier risk, support lifecycle, and contractual obligations before acquiring an asset. This is the precise fit for the scenario. Physical destruction serves the different purpose of rendering media unusable through methods such as shredding or crushing.
Incorrect Answers
Answer A is incorrect because Data retention refers to policy-driven preservation of information for a defined period followed by approved disposition. The question is not asking for this function. It is testing evaluation of security requirements, supplier risk, support lifecycle, and contractual obligations before acquiring an asset, so Secure procurement is the stronger fit.
Answer B is incorrect because Physical destruction refers to rendering media unusable through methods such as shredding or crushing. This could be appropriate elsewhere, but the required function is evaluation of security requirements, supplier risk, support lifecycle, and contractual obligations before acquiring an asset; that makes Secure procurement the precise choice.
Answer C is incorrect because Asset tracking refers to ongoing monitoring of asset status, location, ownership, and lifecycle state. The concept is valid, but it does not match this stem. The required function is evaluation of security requirements, supplier risk, support lifecycle, and contractual obligations before acquiring an asset, which maps to Secure procurement.
Question 16
An architect working on an asset-lifecycle governance review needs one capability that provides categorization of assets according to sensitivity, criticality, or business value and another that provides removal of data from storage so it cannot be recovered through normal means and according to required standards. Which TWO selections are the best match? Choose TWO.
- Asset ownership
- Media sanitization
- Asset classification
- Physical destruction
- Asset inventory
Correct Answers: B, C
Correct Answers
Answer B is correct because Media sanitization means removal of data from storage so it cannot be recovered through normal means and according to required standards. This selection maps directly to one of the named needs. Asset inventory addresses a maintained record of hardware, software, services, and other managed assets, so it does not satisfy the same slot.
Answer C is correct because Asset classification means categorization of assets according to sensitivity, criticality, or business value. One required function is exactly what this option provides. Physical destruction may be useful elsewhere, but it is used for rendering media unusable through methods such as shredding or crushing.
Incorrect Answers
Answer A is incorrect because Asset ownership means assignment of a responsible person or function for an asset throughout its lifecycle. The fixed-count answer set is Asset classification, Media sanitization; this option does not fill one of those named functions.
Answer D is incorrect because Physical destruction means rendering media unusable through methods such as shredding or crushing. The required choices are Asset classification, Media sanitization. Although this option is security-relevant, it does not satisfy one of the functions named in the stem.
Answer E is incorrect because Asset inventory means a maintained record of hardware, software, services, and other managed assets. The fixed-count answer set is Asset classification, Media sanitization; this option does not fill one of those named functions. For example, Media sanitization is required for removal of data from storage so it cannot be recovered through normal means and according to required standards.
Question 17
Which term describes rendering media unusable through methods such as shredding or crushing?
- Physical destruction
- Asset inventory
- Secure procurement
- Destruction certification
Correct Answer: A
Correct Answer
Answer A is correct because Physical destruction means rendering media unusable through methods such as shredding or crushing. That makes it the best answer here; Asset inventory addresses a maintained record of hardware, software, services, and other managed assets, not the function requested in the stem.
Incorrect Answers
Answer B is incorrect because Asset inventory refers to a maintained record of hardware, software, services, and other managed assets. The scenario instead requires rendering media unusable through methods such as shredding or crushing, which is why Physical destruction is the better answer; this option serves the different function defined above.
Answer C is incorrect because Secure procurement refers to evaluation of security requirements, supplier risk, support lifecycle, and contractual obligations before acquiring an asset. The concept is valid, but it does not match this stem. The required function is rendering media unusable through methods such as shredding or crushing, which maps to Physical destruction.
Answer D is incorrect because Destruction certification refers to formal evidence that an asset or storage medium was destroyed according to required procedure. The question is not asking for this function. It is testing rendering media unusable through methods such as shredding or crushing, so Physical destruction is the stronger fit.
Question 18
A security plan created during an asset-lifecycle governance review must provide discovery and identification of specific assets, attributes, versions, or exposed services, rendering media unusable through methods such as shredding or crushing, and policy-driven preservation of information for a defined period followed by approved disposition. Which THREE options should be selected? Choose THREE.
- Data retention
- Secure procurement
- Asset inventory
- Asset enumeration
- Destruction certification
- Physical destruction
Correct Answers: A, D, F
Correct Answers
Answer A is correct because Data retention means policy-driven preservation of information for a defined period followed by approved disposition. The fixed-count item needs this function in the answer set. Destruction certification covers formal evidence that an asset or storage medium was destroyed according to required procedure, a different requirement.
Answer D is correct because Asset enumeration means discovery and identification of specific assets, attributes, versions, or exposed services. It belongs in the fixed-count answer set because it covers one of the stated requirements. Destruction certification instead serves formal evidence that an asset or storage medium was destroyed according to required procedure and cannot replace this function.
Answer F is correct because Physical destruction means rendering media unusable through methods such as shredding or crushing. The fixed-count item needs this function in the answer set. Secure procurement covers evaluation of security requirements, supplier risk, support lifecycle, and contractual obligations before acquiring an asset, a different requirement.
Incorrect Answers
Answer B is incorrect because Secure procurement means evaluation of security requirements, supplier risk, support lifecycle, and contractual obligations before acquiring an asset. Every answer slot must map to a stated requirement. The correct set is Asset enumeration, Physical destruction, Data retention, so this option cannot replace one of those selections.
Answer C is incorrect because Asset inventory means a maintained record of hardware, software, services, and other managed assets. The fixed-count answer set is Asset enumeration, Physical destruction, Data retention; this option does not fill one of those named functions.
Answer E is incorrect because Destruction certification means formal evidence that an asset or storage medium was destroyed according to required procedure. The fixed-count answer set is Asset enumeration, Physical destruction, Data retention; this option does not fill one of those named functions.
Question 19
A security engineer is working through an asset-lifecycle governance review. The immediate requirement is formal evidence that an asset or storage medium was destroyed according to required procedure. Which choice is the best fit?
- Data retention
- Asset classification
- Asset enumeration
- Destruction certification
Correct Answer: D
Correct Answer
Answer D is correct because Destruction certification means formal evidence that an asset or storage medium was destroyed according to required procedure. This matches the requirement as written. Asset enumeration can be valid in another context, but it is used for discovery and identification of specific assets, attributes, versions, or exposed services.
Incorrect Answers
Answer A is incorrect because Data retention means policy-driven preservation of information for a defined period followed by approved disposition. The question is not asking for this function. It is testing formal evidence that an asset or storage medium was destroyed according to required procedure, so Destruction certification is the stronger fit.
Answer B is incorrect because Asset classification means categorization of assets according to sensitivity, criticality, or business value. The key mismatch is functional: Destruction certification addresses formal evidence that an asset or storage medium was destroyed according to required procedure, the need stated by the question.
Answer C is incorrect because Asset enumeration means discovery and identification of specific assets, attributes, versions, or exposed services. The key mismatch is functional: Destruction certification addresses formal evidence that an asset or storage medium was destroyed according to required procedure, the need stated by the question.
Question 20
As part of an asset-lifecycle governance review, reviewers identify a need for ongoing monitoring of asset status, location, ownership, and lifecycle state. Which option should they select?
- Data retention
- Asset classification
- Asset tracking
- Asset ownership
Correct Answer: C
Correct Answer
Answer C is correct because Asset tracking means ongoing monitoring of asset status, location, ownership, and lifecycle state. That makes it the best answer here; Data retention addresses policy-driven preservation of information for a defined period followed by approved disposition, not the function requested in the stem.
Incorrect Answers
Answer A is incorrect because Data retention means policy-driven preservation of information for a defined period followed by approved disposition. The scenario instead requires ongoing monitoring of asset status, location, ownership, and lifecycle state, which is why Asset tracking is the better answer; this option serves the different function defined above.
Answer B is incorrect because Asset classification means categorization of assets according to sensitivity, criticality, or business value. The scenario instead requires ongoing monitoring of asset status, location, ownership, and lifecycle state, which is why Asset tracking is the better answer; this option serves the different function defined above.
Answer D is incorrect because Asset ownership means assignment of a responsible person or function for an asset throughout its lifecycle. The scenario instead requires ongoing monitoring of asset status, location, ownership, and lifecycle state, which is why Asset tracking is the better answer; this option serves the different function defined above.