What is the purpose of the Roles, Responsibilities, and Authorities category (GV.RR) in the Govern function?
- A.To establish and communicate cybersecurity roles, responsibilities, and authorities to foster accountability and enable informed decision-making
- B.To assign IT helpdesk tickets
- C.To define the organization's physical security guard schedules
- D.To create the organization chart for the marketing department
Why A is correct
Roles, Responsibilities, and Authorities (GV.RR) establishes and communicates clear cybersecurity roles, responsibilities, and authorities throughout the organization to foster accountability and informed decision-making.
Know someone studying for NIST CSF? Send them this one.