ExamGecko
Question list
Search
Search

Question 435 - CISM discussion

Report
Export

Which of the following will BEST enable an effective information asset classification process?

A.
Including security requirements in the classification process
Answers
A.
Including security requirements in the classification process
B.
Analyzing audit findings
Answers
B.
Analyzing audit findings
C.
Reviewing the recovery time objective (RTO) requirements of the asset
Answers
C.
Reviewing the recovery time objective (RTO) requirements of the asset
D.
Assigning ownership
Answers
D.
Assigning ownership
Suggested answer: D

Explanation:

Assigning ownership is the best way to enable an effective information asset classification process, as it establishes the authority and responsibility for the information asset and its protection. The owner of the information asset should be involved in the classification process, as they have the best knowledge of the value, sensitivity, and criticality of the asset, as well as the impact of its loss or compromise. The owner should also ensure that the asset is properly labeled, handled, and secured according to its classification level. (From CISM Review Manual 15th Edition)

asked 01/10/2024
Sujit Singh
34 questions
User
Your answer:
0 comments
Sorted by

Leave a comment first