The city is decommissioning an old ERP. Which retirement actions are most essential from a security perspective?
Select an answer to reveal the explanation.
Short Explanation
Turning off an ERP is not the same as making its secrets go away. Wipe or destroy data, kill accounts, and retire keys so yesterday's system cannot haunt tomorrow's breach report.
Full Explanation
Secure retirement and disposal include data sanitization or destruction per policy, removal of user and service access, decommissioning of interfaces, and handling of keys and certificates. Incomplete disposal leaves residual data and credentials exposed. CISSP lifecycle practice treats disposal as an active security phase, not merely powering equipment down.