GSLC · Question #281
Which of the following roles is used to ensure that the confidentiality, integrity, and availability of the services are maintained to the levels approved on the Service Level Agreement (SLA)?
The correct answer is B. The IT Security Manager. The IT Security Manager is the role responsible for maintaining CIA (Confidentiality, Integrity, Availability) of IT services at the levels defined in the SLA.
Question
Which of the following roles is used to ensure that the confidentiality, integrity, and availability of the services are maintained to the levels approved on the Service Level Agreement (SLA)?
Options
- AThe Change Manager
- BThe IT Security Manager
- CThe Configuration Manager
- DThe Service Level Manager
How the community answered
(25 responses)- A8% (2)
- B88% (22)
- C4% (1)
Why each option
The IT Security Manager is the role responsible for maintaining CIA (Confidentiality, Integrity, Availability) of IT services at the levels defined in the SLA.
The Change Manager controls the lifecycle of changes to IT infrastructure and services, not security posture or CIA guarantees.
The IT Security Manager in the ITIL framework is specifically tasked with ensuring that information security policies are implemented and that CIA of services are maintained at agreed-upon SLA levels. This role owns security risk management and ensures protective controls meet contractual obligations. The other roles do not carry this CIA responsibility.
The Configuration Manager maintains the Configuration Management Database (CMDB) and tracks configuration items, which is unrelated to enforcing CIA at SLA levels.
The Service Level Manager negotiates, documents, and monitors SLAs, but does not directly ensure the CIA of services - that enforcement belongs to the IT Security Manager.
Concept tested: ITIL IT Security Manager role and CIA responsibilities
Source: https://wiki.en.it-processmaps.com/index.php/IT_Security_Management
Topics
Community Discussion
No community discussion yet for this question.