Back to Domains
🔐Domain 2

Asset Security

10%Exam Weight
6Subdomains
2.1

Identify and classify information and assets

Key Concepts

Data classificationAsset classification
2.2

Establish information and asset handling requirements

Key Concepts

Handling requirements
2.3

Provision information and assets securely

Key Concepts

Information ownershipAsset ownershipAsset inventoryAsset management
2.4

Manage data lifecycle

Key Concepts

Data rolesData collectionData locationData maintenanceData retentionData remanenceData destruction
2.5

Ensure appropriate asset retention

Key Concepts

End of Life (EOL)End of Support
2.6

Determine data security controls and compliance requirements

Key Concepts

Data statesIn useIn transitAt restScopingTailoringDRMDLPCASB