From the course: CSSLP Cert Prep: 2 Secure Software Requirements

Unlock the full course today

Join today to access over 22,600 courses taught by industry experts or purchase this course individually.

Data ownership

Data ownership

From the course: CSSLP Cert Prep: 2 Secure Software Requirements

Start my 1-month free trial

Data ownership

- [Instructor] Each time you add a new user to your app, you're opening the door for all the data that user will create over time. This includes everything from usernames and passwords to the business data that the app was built to process in the first place. Throughout the lifecycle of data, someone is on the hook to make decisions about what happens with that data. How is created? How is stored? When should it be deleted? As a CSSLP, is it not your job to make those decisions. It's your job to make sure the right decision makers have been identified and that they know what's expected of them. It's your job to help establish data ownership. It's common for organizations to confuse data owners with data custodians when they start down this path. So let's take a minute to clear up those two terms. Data owners are responsible for data classification. They have the ultimate say regarding which labels are applied to the…

Contents