What is data governance?
A comprehensive approach to collecting, managing, securing, and storing data.
What does the DIKW pyramid represent?
How is data a strategic asset?
Used for:
What is DAMA International?
Data Management Association
Created DAMA-DMBOK with 10 data management areas.
What are the 3 levels of data governance roles?
Who holds managerial data governance roles and what do they do?
Who holds operational data governance roles and what do they do?
What is a data inventory?
A catalog that identifies data, categories, risks, mitigations, flow, location, sharing, and quality.
What are key benefits of a data inventory?
What is needed to build a data inventory?
What details must be included in a RoPA?
What recipient details are part of RoPA?
What safeguards must be noted in RoPA?
Who is exempt from maintaining a RoPA?
What are the 4 types of privacy risk?
What does legal risk include?
What does operational risk include?
What does reputational risk refer to?
Impact on public trust and company image after a breach.
What does strategic risk focus on?
Return on investment and cost-benefit analysis of tools/services.
What is the Three Lines Model?
Framework defining roles in risk management.
Who is in the first line of the Three Lines Model?
Operational management and staff
(day-to-day risk management)
Who is in the second line of the Three Lines Model?
Compliance/privacy function
(support and oversight)
Who is in the third line of the Three Lines Model?
Internal audit function
(independent review)
What is a privacy assessment?
An evaluation to: