Certified Chief Information Security Officer (CCISO) — Question 178
XYZ is a publicly-traded software development company.
Who is ultimately accountable to the shareholders in the event of a cybersecurity breach?
Answer options
- A. Chief Financial Officer (CFO)
- B. Chief Software Architect (CIO)
- C. CISO
- D. Chief Executive Officer (CEO)
Correct answer: D
Explanation
The Chief Executive Officer (CEO) is ultimately accountable to the shareholders for the overall performance and risk management of the company, including cybersecurity incidents. The CFO and CIO handle financial and software-related aspects respectively, while the CISO focuses on cybersecurity measures, but the CEO has the highest level of responsibility to the shareholders.