Certified Information Security Manager (CISM) — Question 212
Which of the following is MOST important to ensuring information stored by an organization is protected appropriately?
Answer options
- A. Defining security asset categorization
- B. Assigning information asset ownership
- C. Developing a records retention schedule
- D. Defining information stewardship roles
Correct answer: B
Explanation
The correct answer, B, is essential because assigning ownership for information assets ensures accountability and proper management of the data's security. The other options, while important for overall security and data management, do not directly address the need for clear ownership, which is critical for effective protection.