nerdexam
(ISC)2

CGRC · Question #366

Who is the organizational official responsible for the development, implementation, assessment, and monitoring of security controls in an information system? Response:

Sign in or unlock CGRC to reveal the answer and full explanation for question #366. The question stem and answer options stay visible for context.

Security and Privacy Governance, Risk Management, and Compliance Program

Question

Who is the organizational official responsible for the development, implementation, assessment, and monitoring of security controls in an information system? Response:

Options

  • AInformation System Owner (ISO)
  • BInformation System Security Engineer (ISSE)
  • CInformation System Security Officer (ISSO)
  • DCommon Control Provider (CCP)

Unlock CGRC to see the answer

You've previewed enough free CGRC questions. Unlock CGRC for full answers, explanations, the timed quiz mode, progress tracking, and the master PDF. Question stem and options stay visible so you can still see what's on the exam.

Topics

#Organizational Roles#System Owner#Security Controls#NIST RMF
Full CGRC Practice