COBIT 2019 Design and Implementation — Question 12
Which function within the IT corporate structure is responsible for classifying information using an agreed-upon classification scheme for a new data collection system?
Answer options
- A. Information security
- B. Information privacy
- C. IT governance
- D. Enterprise architecture
Correct answer: A
Explanation
The correct answer is A, Information security, as this function is primarily responsible for ensuring that data is classified properly to protect sensitive information. Options B and D, while related to data, focus on privacy and overall architecture respectively, which do not include the specific task of information classification. Option C, IT governance, deals with overall management and policies rather than the classification of data.