A smart home technology platform is updating its data governance framework to comply with international privacy regulations regarding customer telemetry and voice interaction logs stored in cloud repositories. Which of the following actions correctly align with standard data governance roles and privacy control implementations? (Select TWO.)
- The business unit leader functioning as the data owner defines data classification levels and determines access requirements based on organizational risk.Answer
- BThe database administrator functioning as the data custodian determines data sensitivity labels and grants final access authorization for users.
- CImplementing pseudonymization to replace direct identifiers with artificial tokens, allowing data to be re-identified when combined with a separately secured mapping key.
- DApplying data masking to guarantee permanent anonymization so that individual subjects can never be re-identified under any circumstances.
Answer
The correct statements are that the business unit leader functioning as the data owner defines classification levels and determines access requirements, and that pseudonymization replaces direct identifiers with tokens while preserving the capability to re-identify data using a separate secure key.
Data owners are business executives responsible for defining data sensitivity classifications and determining who receives access to data assets under their purview. Additionally, pseudonymization is a privacy technique that substitutes identity fields with pseudonyms or tokens while storing mapping keys separately, allowing legitimate re-identification under controlled privacy conditions.
Step-by-Step Solution
Key Concept
Data Governance Roles and Privacy-Enhancing Technologies