WITH VERIFIED ANSWERS 2026 EDITION.
Incremental backups
Job type in which all selected files that have changed since the last full or incremental backup
(whichever was most recent) are backed up.
On site backup storage
Media rotation scheme that ensures at least one copy of data is held at a different location to mitigate
the risk of a disaster that destroys all storage at a single site.
3-2-1 backup rule
Best practice maxim stating that at any given time there should be at least three copies of data stored
on two media types, with one copy held off site
Regulated data
nformation that has storage- and handling-compliance requirements defined by national and state
legislation and/or industry regulations.
Personal Government-issued Information
Data related to identity documents issued by governments, such as passports, social security IDs, and
driving licenses, that is liable to be subject to strict legal and regulatory compliance requirements.
Healthcare data
Data that can be used to identify an individual and includes information about past, present, or future
health as well as related payments and data used in the operation of a healthcare busines
credit card transactions
Regulated data related to processing financial transactions.
prohibited content
Data found on a computer system that is not permitted by policy or that is not compliant with relevant
legislation or regulations.
end-user license agreement (EULA)
Contract governing the installation and use of software.
open-source
Licensing model that grants permissive rights to end-users, such as to install, use, modify, and distribute
a software product and its source code, as long as redistribution permits the same rights.
digital rights management (DRM)
, Copyright protection technologies for digital media. DRM solutions usually try to restrict the number of
devices allowed for playback of a licensed digital file, such as a music track or ebook.
incident response plan (IRP)
Procedures and guidelines covering appropriate priorities, actions, and responsibilities in the event of
security incidents, divided into preparation, detection/analysis, containment, eradication/recovery, and
post-incident stages.
Computer Security Incident Response Team (CSIRT)
Team with responsibility for incident response. The CSIRT must have expertise across a number of
business domains (IT, HR, legal, and marketing, for instance).
Digital forensics
Process of gathering and submitting computer evidence to trial. Digital evidence is latent, meaning that
it must be interpreted. This means that great care must be taken to prove that the evidence has not
been tampered with or falsified.
chain of custody
Record of evidence-handling from collection to presentation in court to disposal.
sanitization
Process of thoroughly and completely removing data from a storage medium so that file remnants
cannot be recovered.
standard formatting
Using a vendor tool to delete the file system and/or partition table on storage media before recycling or
repurposing. This method carries the greatest risk of leaving persistent data remnants.
erasing/wiping
Using a third-party tool to fully erase storage media before recycling or repurposing, minimizing the risk
of leaving persistent data remnants.
low level format
Using a vendor tool to fully erase storage media before recycling or repurposing, minimizing the risk of
leaving persistent data remnants.
Secure Erase (SE)
Method of sanitizing a drive using the ATA command set.
Instant Secure Erase (ISE)
Media sanitization command built into HDDs and SSDs that are self-encrypting that works by erasing the
encryption key, leaving remnants unrecoverable.
certificate of destruction