CISSP Exam QuestionsBrowse all questions from this exam

CISSP Exam - Question 377


Which of the following is a key responsibility for a data steward assigned to manage an enterprise data lake?

Show Answer
Correct Answer: A

A key responsibility for a data steward assigned to manage an enterprise data lake is to ensure proper business definition, value, and usage of data collected and stored within the enterprise data lake. Data stewards are responsible for overseeing the quality, relevance, and business value of the data, ensuring that the data serves a valid business purpose and is used effectively across the organization.

Discussion

17 comments
Sign in to comment
rdy4uOption: A
Apr 29, 2023

Simply put, Data Stewards are responsible for what is stored in a data field, while data custodians are responsible for the technical environment and database structure. Common job titles for data custodians are database administrator (DBA), data modeler and ETL developer. https://en.wikipedia.org/wiki/Data_custodian

Nickname53796Option: B
Apr 13, 2023

The custodian role is assigned to the user who is responsible for the tasks of implementing the prescribed protection defined by the security policy and senior management

jackdryan
Nov 14, 2023

A is correct

ikidreamz
Jun 23, 2023

i think its A = DATA steward (business) DATA owner = accountable for data (legal rights) Data steward = business responsible for data (metadata, governance etc) Data custodian = technical responsibility (backup, security etc)

franbarproOption: A
Apr 27, 2023

"A" is correct. A quick Google Search on "DATA" steward will prove that: A data steward is responsible for carrying out data usage and security policies as determined through enterprise data governance initiatives, acting as a liaison between the IT department and the business side of an organization.

HughJassole
Dec 9, 2023

A. Usage of data "A data steward is responsible for carrying out data usage and security policies as determined through enterprise data governance initiatives, acting as a liaison between the IT department and the business side of an organization." https://www.techtarget.com/searchdatamanagement/definition/data-stewardship#:~:text=A%20data%20steward%20is%20responsible,business%20side%20of%20an%20organization.

Soleandheel
Jun 16, 2024

Data Steward = A. Ensure proper business definition, value, and usage of data collected and stored within the enterprise data lake. Data Custodian = B. Ensure adequate security controls applied to the enterprise data lake.

gjimenezfOption: A
Jul 31, 2024

A: Data Steaward. Responsible for data quality (contents) B: Data custodian. Responsible for technical tasks to protect the data

eboehmOption: D
Oct 10, 2024

sooo many people mixing up steward and custodian. a data steward is responsible for compliance and regulations soo therefore D

ikidreamz
Jun 24, 2023

oops ! looks like answer is B data owner = controls CBK 9th edition pg 117 "NOTE Data owner has synonymous terms used in various guidelines and regulations. Con- sider information owner or steward as interchangeable terms, for instance.

oudmaster
Jun 30, 2023

You are right, that is in the CISSP CBK. ! But in CISSP Official Guide, this is mentioned: A data custodian or steward is a subject who has been assigned or delegated the day- to- day responsibility for proper storage and transport as well as protecting data, assets, and other organizational objects. ! I don't know why ISC2 do not have clear definition for Data Steward.

RVoigtOption: B
Jul 10, 2023

As cited in the ISC2 CISSP Official Study Guide, 'A data custodian or steward is a subject who has been assigned or delegated the day- to- day responsibility for proper storage and transport as well as protecting data, assets, and other organizational objects.' The proper storage and transport as well as protecting data is all done with the controls applied.

Soleandheel
Jun 16, 2024

A data custodian is not the same as a data steward. Answer B. is a good answer if the question was asking for Data custodian as opposed to data steward. A. is the best answer with regard to the role and responsiblity of a Data steward within an organization.

omarin25Option: B
Jul 26, 2023

Data Owner is accountable for Data Governance outcomes, whereas a Data Steward is responsible for the Data Governance tasks required to achieve those outcomes.

Soleandheel
Jun 16, 2024

A. Ensure proper business definition, value, and usage of data collected and stored within the enterprise data lake. While security controls are important for data lakes, the primary responsibility of a data steward is to manage and oversee the quality, relevance, and business value of the data stored in the data lake. This includes ensuring that the data collected is properly defined, serves a valid business purpose, and is used effectively across the organization. If the question was refering to Data Custodian then B. could have been the correct answer.

GPrepOption: B
Jul 7, 2024

I'm going with B...proper business definition, value and usage is in the realm of the data owner, not data steward/custodian.

JBAnalystOption: A
Aug 8, 2024

Cissp “ A data custodian or steward is a subject who has been assigned or delegated the day-to-day responsibility for proper storage and transport as well as protecting data, assets, and other organizational objects”

GuardianAngel
Aug 8, 2024

pg 50 CISSP study guide glossary: data custodian, data steward The subject who is assigned or delegated the task of implementing the prescribed protection defined by the security policy and upper management. The data custodian performs any and all activities necessary to provide adequate protection for data and to fulfill the requirements and responsibilities delegated to them by upper management. pg 52 glossary: data steward See data custodian. GOTTA LOVE THE OFFICIAL CISSP GUIDE! The answer is A because it's about the protection of data according to the definition above, they don't mention the database or datalake in the definition.

ayadmawlaOption: D
Jan 26, 2025

D. Ensure data compliance with rules and regulations Explanation: In CISSP Domain 2 (Asset Security) and Domain 7 (Security Operations): Data Steward Role: Focuses on operational governance, ensuring data is used per policies, laws, and regulations (e.g., GDPR, HIPAA). Compliance Priority: CISSP stresses adherence to legal/regulatory requirements as a core governance responsibility. Distinction from Other Roles: Data Owners (C): Define policies and classify data (accountability). Security Teams (B): Implement technical controls. Business Definitions (A): Enable governance but are secondary to enforcement. Why Not A (Business Definitions)? While defining business value is part of stewardship, compliance (D) directly addresses CISSP’s emphasis on mitigating legal and reputational risks.

BigITGuyOption: A
Mar 31, 2025

A data steward typically focuses on ensuring that data within an organization is accurately defined, understood, valued, and used correctly by the business. This involves maintaining clear and consistent definitions, understanding data lineage, ensuring data quality, and facilitating the correct usage and interpretation of data assets.