Secure Disposal & Records Governance
- Media is sanitized or destroyed before disposal or reuse, following NIST SP 800-88 guidance.
- Data retention and deletion are governed by policy, and legal-hold and eDiscovery capabilities support litigation readiness.
- Audit logs are retained in line with regulatory requirements.
Framework Alignment: NIST CSF PR.DS; CIS Control 3; CMMC Level 1 (MP); GDPR Art. 5(1)(e), 17; ISO 27001:2022 A.8.10, A.7.14, A.5.33