CISSP – Information Systems Security Management Professional (ISSMP) — Question 71
Which of the following are the common roles with regard to data in an information classification program? Each correct answer represents a complete solution.
Choose all that apply.
Answer options
- A. Editor
- B. Custodian
- C. Owner
- D. Security auditor
- E. User
Correct answer: B, C, D, E
Explanation
The correct answers B, C, D, and E represent roles that are critical to managing and protecting data. The Custodian is responsible for maintaining data, the Owner has ultimate authority, the Security Auditor assesses compliance, and the User interacts with the data. The Editor, however, does not represent a standard role in data classification programs.