CGEIT · Question #498
The accountability for a business continuity program for business-critical systems is BEST assigned to the:
The correct answer is D. chief information officer (CIO).. Accountability for a business continuity program specifically for business-critical systems is best assigned to the CIO due to their direct oversight of IT infrastructure and applications.
Question
The accountability for a business continuity program for business-critical systems is BEST assigned to the:
Options
- Aenterprise risk manager.
- Bchief executive officer (CEO).
- Cdirector of internal audit.
- Dchief information officer (CIO).
How the community answered
(30 responses)- A10% (3)
- B13% (4)
- C3% (1)
- D73% (22)
Why each option
Accountability for a business continuity program specifically for business-critical systems is best assigned to the CIO due to their direct oversight of IT infrastructure and applications.
An enterprise risk manager focuses on identifying, assessing, and mitigating risks across the enterprise but typically does not hold direct operational accountability for specific system continuity.
The CEO has ultimate responsibility for the entire enterprise, including business continuity, but delegates specific operational accountability for IT systems to the CIO.
The director of internal audit provides independent assurance on the effectiveness of controls, including business continuity, but is not operationally accountable for its implementation.
The Chief Information Officer (CIO) is ultimately responsible for the availability, integrity, and security of all information systems and technology within an organization. Therefore, the accountability for ensuring the business continuity of business-critical systems logically falls under the CIO's purview, as it directly relates to IT infrastructure resilience and recovery.
Concept tested: Accountability for IT business continuity
Topics
Community Discussion
No community discussion yet for this question.