Welcome to ExamTopics
ExamTopics Logo
- Expert Verified, Online, Free.
exam questions

Exam CISM All Questions

View all questions & answers for the CISM exam

Exam CISM topic 1 question 782 discussion

Actual exam question from Isaca's CISM
Question #: 782
Topic #: 1
[All CISM Questions]

While classifying information assets, an information security manager notices that several production databases do not have owners assigned to them. What the information security manager address this situation?

  • A. Assign the highest classification level to those databases.
  • B. Assign responsibility to the database administrator (DBA).
  • C. Prepare a report of the databases for senior management.
  • D. Review the databases for sensitive content.
Show Suggested Answer Hide Answer
Suggested Answer: C 🗳️

Comments

Chosen Answer:
This is a voting comment (?) , you can switch to a simple comment.
Switch to a voting comment New
Booict
3 months, 1 week ago
Selected Answer: C
I chose C but in the context of ISACA, the ISACA says B - Reason given is - this is a practical interim measure to ensure the db is secured and managed properly until permanent solution is found.
upvoted 1 times
...
shootnot
6 months, 1 week ago
C- The ISM does not assign any responsibilities to DBA. The best person is DB owner/senior mgmt.
upvoted 1 times
...
SilverFox
12 months ago
Selected Answer: C
Agree with Bruh_Moment . C
upvoted 1 times
...
Marcovic00
12 months ago
Selected Answer: C
i go with c
upvoted 1 times
...
Bruh_Moment
1 year, 1 month ago
Selected Answer: C
DBA is data custodian, not data owner. Senior management needs to assign the ownership to a new data owner from the business side.
upvoted 3 times
...
AaronS1990
1 year, 2 months ago
Selected Answer: B
B From ISACA’s online glossary (not a useless AI tool) Database administrator (DBA) An individual or department responsible for the security and information classification of the shared data stored on a database system. This responsibility includes the design, definition and maintenance of the database. This is ISACA’s exact definition of what they’re responsible for
upvoted 2 times
...
oluchecpoint
1 year, 2 months ago
Selected Answer: C
Option C
upvoted 1 times
...
richck102
1 year, 4 months ago
C. Prepare a report of the databases for senior management.
upvoted 1 times
...
zero46
1 year, 4 months ago
Selected Answer: C
Info sec manager is not in the position to assign responsibilities/ownership of database. This is management’s responsibility
upvoted 3 times
...
Dopy
1 year, 5 months ago
Selected Answer: C
Business owners need to be found it cannot and is not the DBAs responsibility to own the data their role is to administer is.
upvoted 1 times
...
wello
1 year, 5 months ago
Selected Answer: C
C. Prepare a report of the databases for senior management. DBA would not be an appropriate owner as he/she would not be capable to classify the data in the DB.
upvoted 2 times
...
Souvik124
1 year, 9 months ago
The most appropriate way for the information security manager to address this situation is to assign responsibility to the database administrator (DBA).
upvoted 1 times
...
Broesweelies
1 year, 9 months ago
Selected Answer: B
Based on ISACA's guidelines, the correct answer would be B, assigning responsibility to the database administrator (DBA). The information security manager should ensure that information assets are properly assigned to owners who are responsible for managing, protecting and overseeing them. By assigning ownership, accountability is established and risks can be effectively managed.
upvoted 3 times
...
Community vote distribution
A (35%)
C (25%)
B (20%)
Other
Most Voted
A voting comment increases the vote count for the chosen answer by one.

Upvoting a comment with a selected answer will also increase the vote count towards that answer by one. So if you see a comment that you already agree with, you can upvote it instead of posting a new comment.

SaveCancel
Loading ...