nerdexam
(ISC)2(ISC)2

CISSP · Question #821

CISSP Question #821: Real Exam Question with Answer & Explanation

The correct answer is D: Data/Information/Business Owners. The individuals who are ultimately responsible to ensure that information assets are categorized and adequate measures are taken to protect them are the data/information/business owners. Data/information/business owners are the individuals who have the authority or accountability

Submitted by brentm· Mar 5, 2026Security and Risk Management

Question

Who is ultimately responsible to ensure that information assets are categorized and adequate measures are taken to protect them?

Options

  • AData Custodian
  • BExecutive Management
  • CChief Information Security Officer
  • DData/Information/Business Owners

Explanation

The individuals who are ultimately responsible to ensure that information assets are categorized and adequate measures are taken to protect them are the data/information/business owners. Data/information/business owners are the individuals who have the authority or accountability for the information assets of an organization, such as data, systems, or processes. Data/information/business owners are ultimately responsible to ensure that information assets are categorized and adequate measures are taken to protect them, which means that they have to define and implement the rules and guidelines for classifying and securing the information assets according to their sensitivity, value, or criticality. Data/information/business owners also have to assign and oversee the roles and responsibilities of the data custodians and users, who are the individuals who have the duty or privilege to maintain or access the information assets of the

Topics

#data ownership#information asset classification#roles and responsibilities

Community Discussion

No community discussion yet for this question.

Full CISSP PracticeBrowse All CISSP Questions