CISSP – Information Systems Security Management Professional (ISSMP) — Question 71

Which of the following are the common roles with regard to data in an information classification program? Each correct answer represents a complete solution.
Choose all that apply.

Answer options

Correct answer: B, C, D, E

Explanation

The correct answers B, C, D, and E represent roles that are critical to managing and protecting data. The Custodian is responsible for maintaining data, the Owner has ultimate authority, the Security Auditor assesses compliance, and the User interacts with the data. The Editor, however, does not represent a standard role in data classification programs.