Isaca Certified in Risk and Information Systems Control CRISC Question # 331 Topic 34 Discussion
CRISC Exam Topic 34 Question 331 Discussion:
Question #: 331
Topic #: 34
Which of the following should be accountable for ensuring that media containing financial information are adequately destroyed per an organization's data disposal policy?
The data owner should be accountable for ensuring that media containing financial information are adequately destroyed per an organization’s data disposal policy, as they have the authority and responsibility to define the classification, retention, and disposal requirements for the data they own. The compliance manager, the data architect, and the chief information officer (CIO) are not the best choices, as they have different roles and responsibilities related to data governance, design, and strategy, respectively, but they do not own the data. References = CRISC Review Manual, 7th Edition, page 154.
Contribute your Thoughts:
Chosen Answer:
This is a voting comment (?). You can switch to a simple comment. It is better to Upvote an existing comment if you don't have anything to add.
Submit