Media Sanitization Guideline

Media is the material carrying data, such as paper or electronic storage devices. Media sanitization is a process of removing data from media so that it cannot be retrieved or reconstructed. It is a key step in assuring data confidentiality.

When data is no longer needed it should be sanitized from the media that it was on. Some examples of when media sanitization should be employed may include:

  • A device is transferring ownership,
  • A device is at the end of its useful life and will be retired or surplused, or
  • Data retention is no longer allowed by contract or regulation and must be destroyed.

There are multiple ways that media can be sanitized. The method used should be based on the sensitivity of the data; however, available methods can vary depending on the media type and its manufacturer. The most restrictive method available should be used when possible. This guidance document can be used to help the Vanderbilt community practice appropriate measures for keeping VU data safe.

Once you have determined that media needs to be sanitized, use the decision flow to help guide which method to use.

decision flow
See Vanderbilt’s Data Classification Policy for more information on data sensitivity levels. Full details can be found in NIST SP800-88: Guidelines for Media Sanitization. Additional guidance can be found at Educause Guidelines for Information Media Sanitization.

General FAQs

  • What is Cryptographic Erase?

    A purging method in which the Media Encryption Key (MEK) for the encrypted target data (or the Key Encryption Key – KEK) is sanitized, making recovery of the decrypted target data infeasible.

  • What does it mean to degauss?

    A purging method that reduces the magnetic flux to virtual zero by applying a reverse magnetizing field. Degaussing any current generation hard disk will typically render the drive permanently unusable since these drives store track location information on the hard drive. Also called demagnetizing.

  • What is a full manufacturer's reset?

    A clearing method that deletes the file pointers but does not directly rewrite storage contents.

  • In the decision flow, what does it mean to verify?

    The process of testing the media to ensure the data cannot be read.

  • In the decision flow, what does it mean to document?

    The process of recording sanitization completion details such as Media type/manufacturer/model/serial #, Media owner/data owner/data classification; Sanitization method used/tool used/person performing method/verification.

question icon

Not sure how to start?

Get in touch if you don’t know where to begin, you can’t find the guidance needed on the website, or if you just want to learn more. The Office of Cybersecurity has subject matter expertise and is here for Vanderbilt community to discuss security questions or concerns.

Get Security Help