What is secure hardware disposal?
Hardware disposal is the secure retirement of devices and storage media so that data on them cannot be recovered. NIST SP 800-88 describes three levels: clear, purge, and destroy. Disposal vendors often issue certificates of destruction as proof.
What the buyer is really asking
When a laptop or drive is retired, how is the data destroyed? Name the method (cryptographic erase, secure wipe, or physical destruction) and whether you keep certificates of destruction. For cloud storage, point to your provider's media sanitization process.
Other ways buyers ask it
Every one of these wants the same answer:
- “Describe your hardware disposal and destruction process.”
- “How do you securely wipe devices before reuse or disposal?”
- “Do you receive certificates of destruction?”
Evidence to have ready
- A disposal procedure
- Certificates of destruction from your disposal vendor
- Your cloud provider's media sanitization documentation
How Tyrvar answers this
Tyrvar treats every wording above as one question. You write the answer once, attach the evidence, and revisit it when your setup changes. Each buyer gets that approved answer no matter how their questionnaire words it. If you have not answered it yet, Tyrvar flags the question for you and does not make something up. Try it on your own questionnaire.
Related asset and endpoint management questions
- What is your process for decommissioning systems?
- How do you inventory and track hardware and software assets?
- How are company endpoints (laptops and workstations) managed, inventoried, and secured?
- What protections are enforced on managed endpoints (anti-malware, firewalls, disk encryption, screen lock, remote wipe, DLP)?