exam questions

Exam CISSP All Questions

View all questions & answers for the CISSP exam

Exam CISSP topic 1 question 403 discussion

Actual exam question from ISC's CISSP
Question #: 403
Topic #: 1
[All CISSP Questions]

To ensure proper governance of information throughout the lifecycle, which of the following should be assigned FIRST?

  • A. Owner
  • B. Classification
  • C. Custodian
  • D. Retention
Show Suggested Answer Hide Answer
Suggested Answer: A 🗳️

Comments

Chosen Answer:
This is a voting comment (?). It is better to Upvote an existing comment if you don't have anything to add.
Switch to a voting comment New
klarak
Highly Voted 8 months, 2 weeks ago
Selected Answer: A
Data owner determines classification
upvoted 6 times
...
BigITGuy
Most Recent 4 months ago
Selected Answer: A
The first step in ensuring proper governance of information throughout its lifecycle is always to assign an Owner. Classification comes after ownership is established, since the owner determines the appropriate classification.
upvoted 1 times
...
Cyberjerry
8 months, 2 weeks ago
Selected Answer: A
A data owner has the major repsonsibility of setting policies and guidelines for data set usage. Polices = governance.
upvoted 2 times
...
sbloyola
10 months, 1 week ago
Owner decides/determines classification.
upvoted 4 times
...
pete79
11 months, 3 weeks ago
Selected Answer: A
It has to start with owner
upvoted 2 times
...
gjimenezf
1 year ago
Selected Answer: A
The owner, he is the responsible for classifying the data
upvoted 3 times
...
629f731
1 year ago
Selected Answer: A
In establishing proper governance of information throughout its lifecycle, the FIRST assignment is typically the Owner. The owner is responsible for making decisions regarding the data, including its classification, assigning custodianship, determining retention requirements, and overseeing its overall management.
upvoted 3 times
...
YesPlease
1 year, 1 month ago
Selected Answer: A
Answer A) Owner https://ieeexplore.ieee.org/document/9822707#:~:text=The%20data%20owner%20will%20be%20identified%20in%20the%20Create%20phase
upvoted 1 times
...
Soleandheel
1 year, 1 month ago
A. Owner ..........You have to assign a data owner first before you classify the data. Data classification is essential but can only happen after a data owner has been assigned. This is because the Data Owner plays a decisive role in the data classification process.
upvoted 1 times
...
HughJassole
1 year, 7 months ago
Fist you must have a data owner, and that person classifies the data as appropriate.
upvoted 3 times
...
babaseun
1 year, 9 months ago
Selected Answer: B
The data owner sometimes refer to as the organizational owner or senior manager is the person who has the ultimate organizational responsibility for data, the owner is typically the chief executive officer (CEO), president or a department head (DH). Data owners identify the classification of data and ensure that it is labeled properly.. in that case the first thing to assign is classification. my point is you dont assign the organizational owner.
upvoted 2 times
jackdryan
1 year, 8 months ago
B is correct
upvoted 1 times
...
...
Delab202
1 year, 10 months ago
Selected Answer: A
Assigning ownership of information is critical to ensuring that the information is properly managed, protected, and governed. When someone is designated as the owner of the information, they are responsible for defining and implementing the policies, procedures, and controls necessary to ensure the confidentiality, integrity, and availability of the information.
upvoted 2 times
...
Goseu
1 year, 10 months ago
Selected Answer: B
B seems the correct anwer
upvoted 1 times
...
Alex71
1 year, 11 months ago
Selected Answer: B
B. Classification Assigning a classification is the first step to ensure proper governance of information throughout the lifecycle. Classification helps to determine the appropriate level of protection that information requires based on its sensitivity and criticality. This then informs the appropriate owner, custodian, retention, and disposal requirements. Therefore, classification is the foundation for effective information governance.
upvoted 3 times
629f731
1 year ago
the Owner is who assigning a classification, so FIRT we should define a Owner-> classification
upvoted 1 times
...
...
Rollingalx
1 year, 11 months ago
I go with B it may be difficult to identify the appropriate owner without first classifying the information. In some organizations is not the owner who classifies the information, it can be information security team, a data governance team or a records management team.
upvoted 2 times
...
Bankydo
1 year, 11 months ago
Chicken and Egg question. Oh my. I would say the owner does the classification. But is an owner assigned? and then by who, Custodian? Then who assigns the custodian? I really dislike questions like this.
upvoted 2 times
...
iwannapass
1 year, 11 months ago
I can't make up my mind between Owner or Classification. I want to say Owner, because Owners assign the classification. Maybe I'm thinking too technically.
upvoted 2 times
...
Community vote distribution
A (35%)
C (25%)
B (20%)
Other
Most Voted
A voting comment increases the vote count for the chosen answer by one.

Upvoting a comment with a selected answer will also increase the vote count towards that answer by one. So if you see a comment that you already agree with, you can upvote it instead of posting a new comment.

SaveCancel
Loading ...