From the course: Certified Information Security Manager (CISM) Cert Prep (2022): 1 Information Security Governance

Unlock the full course today

Join today to access over 24,000 courses taught by industry experts.

Data security roles

Data security roles

- [Instructor] Data security is a complex problem, and many different people throughout the organization play a role in protecting information. Let's take a look at some of the concepts surrounding data ownership and stewardship. Data governance in many organizations follows a four-tier model of roles. At the highest level, the data owner for particular data sets is a senior-level official who bears overall responsibility for that data. The data owner sets policies and guidelines around data use and data security and has the authority to make final decisions regarding a data set. Data owners are usually the business leaders who have responsibility for the mission area most closely related to the data set. For example, an organization's vice president for human resources might be the data owner for employment information. The European Union's General Data Protection Regulation, GDPR, uses the term data controller to refer…

Contents