ExamGecko
Question list
Search
Search

Question 329 - CISM discussion

Report
Export

Which of the following roles is MOST appropriate to determine access rights for specific users of an application?

A.
Data owner
Answers
A.
Data owner
B.
Data custodian
Answers
B.
Data custodian
C.
System administrator
Answers
C.
System administrator
D.
Senior management
Answers
D.
Senior management
Suggested answer: A

Explanation:

The data owner is the most appropriate role to determine access rights for specific users of an application because they have legal rights and complete control over data elements4.They are also responsible for approving data glossaries and definitions, ensuring the accuracy of information, and supervising operations related to data quality5.The data custodian is responsible for the safe custody, transport, and storage of the data and implementation of business rules, but not for determining access rights4.The system administrator is responsible for managing the security and storage infrastructure of data sets according to the organization's data governance policies, but not for determining access rights5.Senior management is responsible for setting the strategic direction and priorities for data governance, but not for determining access rights5.

Reference:5https://www.cpomagazine.com/cyber-security/data-owners-vs-data-stewards-vs-data-custodians-the-3-types-of-data-masters-and-why-you-should-employ-them/4https://cloudgal42.com/data-privacy-difference-between-data-owner-controller-and-data-custodian-processor/

asked 01/10/2024
Christos Katopis
33 questions
User
Your answer:
0 comments
Sorted by

Leave a comment first