a) What should backup creation policies specify?
b) Why are restoration tests needed?
c) Where should backup media be stored for the long term?
d) What should be done about backup media until they are moved?
e) Why is the encryption of backup media critical?
f) What three dangers require control over access to backup material?
g) If Person A wishes to check out backup media, who should approve this?
h) Why are checkouts of backup media suspicious?
i) Why should business units and the legal department be involved in creating retention policies?
j) What should backup audits include?

