New Year Sale 2026! Hurry Up, Grab the Special Discount - Save 25% - Ends In 00:00:00 Coupon code: SAVE25
Welcome to Pass4Success

- Free Preparation Discussions

WGU (JY02) Managing Cloud Security Exam - Topic 4 Question 2 Discussion

Actual exam question for WGU's WGU (JY02) Managing Cloud Security exam
Question #: 2
Topic #: 4
[All WGU (JY02) Managing Cloud Security Questions]

A customer requests that a cloud provider physically destroys any drives storing their personal dat

a. What must the provider do with the drives?

Show Suggested Answer Hide Answer
Suggested Answer: C

Cloud providers typically manage multi-tenant infrastructure, where physical hardware is shared among customers. Therefore, drives are not destroyed for each customer unless explicitly required in the contract. If the customer's agreement specifies dedicated hardware disposal, then the provider must comply by physically destroying the drives.

Cryptographic erasure and degaussing are valid sanitization methods, but they may not meet the specific contractual requirement of physical destruction. Insurance clauses are unrelated to disposal.

This question underscores the importance of negotiating contractual terms in cloud agreements. Customers handling highly sensitive or regulated data may require physical destruction, while others may accept logical erasure. Clear agreements ensure both compliance and alignment of security responsibilities.


Contribute your Thoughts:

0/2000 characters
Tasia
12 hours ago
Definitely agree, they should destroy the drives if that's what the customer wants!
upvoted 0 times
...
Aide
6 days ago
I think cryptographic erasure is enough, no need to destroy them.
upvoted 0 times
...
Bernardo
11 days ago
Degaussing? Cryptographic erasure? What is this, a James Bond movie?
upvoted 0 times
...
Virgina
16 days ago
This question is a real head-scratcher. I'd need to consult the fine print to be sure.
upvoted 0 times
...
Brent
21 days ago
C) The contract should specify the disposal method. Can't just destroy drives without that.
upvoted 0 times
...
Fabiola
26 days ago
D) Degaussing is the industry standard for secure data removal. Gotta go with that.
upvoted 0 times
...
Leatha
1 month ago
B) Cryptographic erasure is the way to go. Keeps the data secure and the customer happy.
upvoted 0 times
...
Lashon
1 month ago
I practiced a similar question, and I think the contract does play a role in whether they have to destroy the drives or not.
upvoted 0 times
...
Judy
1 month ago
I feel like degaussing is an option, but I can't recall if it's the best method for this situation.
upvoted 0 times
...
Tayna
2 months ago
I remember something about cryptographic erasure, but I don't think that's enough if the customer wants physical destruction.
upvoted 0 times
...
Truman
2 months ago
I'm pretty confident the answer is B. Cryptographic erasure is the best way to securely remove personal data from the drives, and the question doesn't say the provider has to physically destroy them.
upvoted 0 times
...
Shawnta
2 months ago
I think the key here is that the customer specifically requested physical destruction of the drives. So B and D aren't enough - the provider needs to actually destroy the drives, which means answer C is probably the best option.
upvoted 0 times
...
Monroe
2 months ago
I think the provider has to physically destroy the drives, but I'm not sure if it needs to be specified in the contract.
upvoted 0 times
...
Antonio
2 months ago
Okay, let me think this through. The customer wants the drives destroyed, so I don't think cryptographic erasure is enough. I'm leaning towards C, since the contract would need to specify dedicated hardware disposal.
upvoted 0 times
...
Alton
2 months ago
The provider must physically destroy the drives if requested.
upvoted 0 times
...
Alpha
3 months ago
Hmm, I'm a bit confused. Does the question mean the provider has to physically destroy the drives, or just securely remove the data? I'm not sure if B or D is the right answer.
upvoted 0 times
...
Leonardo
3 months ago
I'm pretty sure the answer is B. The customer wants the provider to physically destroy the drives, so cryptographic erasure seems like the best way to securely remove the personal data.
upvoted 0 times
Rusty
3 months ago
I wonder if they have to specify that in the contract.
upvoted 0 times
...
Beckie
3 months ago
But isn't physical destruction more effective?
upvoted 0 times
...
...

Save Cancel