Under active development Content is continuously updated and improved · Last updated Feb 18, 2026, 2:55 AM UTC

MP-6(3)Media Sanitization

PBMM (P2)
Secret (P2)
Operational

>Control Description

MEDIA SANITIZATION | NONDESTRUCTIVE TECHNIQUES The organization applies non-destructive sanitization techniques to portable storage devices prior to connecting such devices to the information system under the following circumstances: organization-defined circumstances requiring sanitization of portable storage devices.

>Supplemental Guidance

This control enhancement applies to digital media containing classified information and Protected Information. Portable storage devices can be the source of malicious code insertions into organizational information systems. Many of these devices are obtained from unknown and potentially untrustworthy sources and may contain malicious code that can be readily transferred to information systems through USB ports or other entry portals.

While scanning such storage devices is always recommended, sanitization provides additional assurance that the devices are free of malicious code to include code capable of initiating zero-day attacks. Organizations consider non-destructive sanitization of portable storage devices when such devices are first purchased from the manufacturer or vendor prior to initial use or when organizations lose a positive chain of custody for the devices. Related control: SI-3.

Ask AI

Configure your API key to use AI features.