Please enable JavaScript.
Coggle requires JavaScript to display documents.
Info Mgmt Roles and Responsibilities (Owner (Privacy (Data Processor (Any…
Info Mgmt Roles and Responsibilities
Senior Management
Ultimately Responsible
Appoints Info Sec Officer
Info Sec Officer
Functionally Responsible
(ISSO)
Owner
Applies Classification
Responsible for Lifecycle
Usually the ISSO
Privacy
Clarification of public vs private
Data Processor
Any system used to process data
EU -> "A natural or legal person which processes personal data soley on behalf of the data controller"
Data Controller
Data remenance
HDD Controls
Clearing
Used when data will be used in same domain
Purging/Sanitizing
Used when going to less strict domain
Destruction
Need to ensure never used again
Data Sanitizing
Overwriting
Degaussing
Destruction
Custodian
Not Business Related (IT guy)
Responsible for CIA
User/Operator
Controlled w/ AUP
Auditor
ID's gap b/t policy/reality