exam questions

Exam CGEIT All Questions

View all questions & answers for the CGEIT exam

Exam CGEIT topic 1 question 452 discussion

Actual exam question from Isaca's CGEIT
Question #: 452
Topic #: 1
[All CGEIT Questions]

Which of the following roles is accountable for the confidentiality, integrity, and availability of information within an enterprise?

  • A. Data custodian
  • B. Risk manager
  • C. Data owner
  • D. Lead legal counsel
Show Suggested Answer Hide Answer
Suggested Answer: A 🗳️

Comments

Chosen Answer:
This is a voting comment (?). It is better to Upvote an existing comment if you don't have anything to add.
Switch to a voting comment New
SuperMax
10 months, 3 weeks ago
Selected Answer: C
C. Data owner The data owner is responsible for ensuring that the information assets of the organization are adequately protected in terms of confidentiality, integrity, and availability. This responsibility includes defining access controls, setting policies regarding data usage, and ensuring that appropriate security measures are in place to safeguard the information. A data custodian (Option A) typically implements the controls and safeguards defined by the data owner. The risk manager (Option B) identifies, assesses, and mitigates risks across the organization but may not directly oversee the confidentiality, integrity, and availability of information assets. Lead legal counsel (Option D) provides legal advice and ensures compliance with relevant laws and regulations but may not have the primary responsibility for information security within the enterprise.
upvoted 2 times
...
yihwen
1 year, 7 months ago
The role that is accountable for the confidentiality, integrity, and availability of information within an enterprise is: C. Data owner. The data owner is responsible for the accountability and protection of information within an enterprise. This role typically holds the ultimate responsibility for the confidentiality, integrity, and availability of the data they own. The data owner determines the access rights, establishes security controls, and ensures that appropriate measures are in place to safeguard the information under their purview. They work closely with other stakeholders, such as data custodians (option A)
upvoted 3 times
...
WongY
3 years, 5 months ago
Why not data owner be accountable?
upvoted 3 times
GLin
3 years, 4 months ago
Data custodian Implement appropriate physical and technical safeguards to protect the confidentiality, integrity, and availability of the information asset dataset.
upvoted 1 times
pc_addict
2 years, 2 months ago
Data custodian is not accountable
upvoted 1 times
...
...
...
Community vote distribution
A (35%)
C (25%)
B (20%)
Other
Most Voted
A voting comment increases the vote count for the chosen answer by one.

Upvoting a comment with a selected answer will also increase the vote count towards that answer by one. So if you see a comment that you already agree with, you can upvote it instead of posting a new comment.

SaveCancel
Loading ...