SlideShare ist ein Scribd-Unternehmen logo
1 von 19
Strategic IT Governance
Mahetab khan
What is Strategic IT Governance?
IT governance is the formal process of defining the
strategy of the IT organization and overseeing its
execution to achieve the goals of the enterprise.
Aligned/synchronized with the
enterprise strategy, including
other key asset strategies
Decision
rights
framework &
mechanisms
Vision,
goals/priorities, measures; value
prop & service portfolio;
resource approaches &
commitments;
change management
plans
Translation into
aligned, tactical, operational
plans; closed-loop monitoring & control;
accountability;
regulatory compliance
Why is IT Governance
important?
Compliance with regulations
Competitive advantage
Support of enterprise goals
Growth and innovation
Increase in intangible assets
Reduction of risk
 IT Strategic Alignment, such as formalized business objectives, up
to date IT strategy, linkage between business objectives and IT
initiatives;
 Value Delivery: IT tactical plans, clear benefits for each level of
the organization: infra-structure (systems uptime), applications
(degree of automation), operational (productivity), financial
(income);
 Risk Management: defined responsibilities for risk management,
risk analysis methodology, defined strategies for addressing risks,
continuous monitoring of threats, occurrence and impact;
 Resource Management: sourcing strategies, human management
practices, user manuals, segregation of duties, time reporting,
infra-structure life cycle management, acceptable usage policies.
 Performance Measurement: relevant and measurable metrics,
continuous monitoring and reporting, follow-up policies, root
cause analysis and problem management, benchmarking against
industry practices and proven standards or frameworks.
Elements of IT Governance
Core Competencies for Effective IT Governance
Enterprise
Architecture
Mgmt
Relationship
Mgmt
IT Strategy
Mgmt
Financial
Mgmt
Supply /
Demand
Mgmt
Portfolio
Mgmt
IT Operating
Model
• Align operational and
strategic IT investments to
business strategies &
objectives.
• Establish
policies,
standards,
models and
processes
for
managing IT
as an
enterprise
asset
• Lifecycle management of
infrastructure, applications
and services
• Understand
the drivers of
IT costs to
allocate
appropriate
costs to the
consumers of
IT services.
• Establish effective,
collaborative relationships
with business stakeholders
and suppliers.
• Balance the demand for IT
services with available resources
to meet immediate and strategic
goals.
Benefits of IT Governance
 Strengthens the relationship between the organization and IT;
Helps ensure limited IT resources are focused on the right strategic
and tactical activities at the right time
 Synergies with Enterprise Risk Management (ERM) and other risk
management activities; Helps ensure the appropriate IT risk
management processes and activities are in place and operating
effectively
 Enhanced visibility into the IT Function’s ability to achieve its both
tactical and strategic objectives; Key Performance Indicators
(KPIs) for day-to-day activities and longer-term/strategic initiatives
 Improved adaptability of the IT Function to organizational and IT
environment changes; Formality of Governance structure,
processes and activities enables more efficient and effective
response to change
Strategic IT Governance Framework
 Capability Maturity Modeling
Integration (CMMI)- For Process
Improvement
 Information Technology
Infrastructure Library (ITIL)- For
IT Service Management.
 Six Sigma- For Process
Improvement especially security
processes.
 Control Objectives for
Information and Related
Technology (COBIT) - For
information technology (IT)
management and IT governance
 The Balanced Scorecard (BSC) -
method to assess an
organization’s performance in
different areas.
Frameworks for IT Governance
Who is involved?
Team leaders
Managers
Executives
Board of Directors
Stakeholders
Challenges and Concerns
Relative to It governance
Needs, Issues & Challenges
Procedure, Audits, Metrics
Control
Strategic
Tactical
Operations
Demand
IT and
Business
Resources
Supply
Capital, Capacity, Priorities
Planning
Alignment Flexibility
EfficiencyQuality
Lack of Business aligned strategyLack of Business aligned strategy
Reduce costs across businessReduce costs across businessIneffective project ManagementIneffective project Management
Deployment Complexity through
lack of standard & legacy
Deployment Complexity through
lack of standard & legacy
No Audit TrailsNo Audit Trails
Management of Service ChangesManagement of Service Changes
Must reduce IT costs by 30%Must reduce IT costs by 30%
Lack of IT resource transparencyLack of IT resource transparency
Missed targets due to lack of steering controlMissed targets due to lack of steering control
Deployment Complexity in number
of project
Deployment Complexity in number
of project
Cannot aggregate need and
distribute ROI
Cannot aggregate need and
distribute ROI
No means of governing outsourced contractsNo means of governing outsourced contracts
No means of capturing demandsNo means of capturing demands
No means of prioritization of
business need
No means of prioritization of
business need
No means of reporting SLANo means of reporting SLA
Making new outsourcing
decisions
Making new outsourcing
decisions
Aligning IT and Business Strategy
Corporate Mission – Business Goals – IT Strategy
Requires involvement from many levels and activities
within the enterprise.
Lack of alignment leads to adverse business issues.
Strong IT Governance contributes toward proper
alignment.
Ensuring Value and Effectiveness
IT issues are the least understood, despite increasing
reliance placed on IT.
Initiate IT governance structures with the right level of
executive involvement.
Board of Director’s require essential IT related skills
IT Governance
Consists of leadership, organizational structures and
processes that safeguard information.
Security over information assets.
Benefits of IT Governance.
IT is a top-down process.
Measuring IT Governance
Performance
Measuring IT performance is a key concern as it
demonstrates the effectiveness and added business
value of IT.
Commonly seen as the IT “Black Hole” – costs
continually rise without clear evidence of value derived
from the IT function.
Traditional performance measurement methods require
monetary values which are hard to apply to IT systems.
IT Governance Performance
Management Approaches
IT Balanced Scorecard
One of the most effective means to aid an
organization in achieving IT and business
alignment.
Provides a systematic translation of the IT strategy
into tangible success factors and metrics.
Gives a balanced view of the value added by IT to
the business.
Calculating the value of IT investments is a
business issue for which business managers are
ultimately responsible for.
Thank you

Weitere ähnliche Inhalte

Was ist angesagt?

COBIT 2019 webinar Use Cases: Tailoring Governance of Your Enterprise IT
COBIT 2019 webinar Use Cases: Tailoring Governance of Your Enterprise ITCOBIT 2019 webinar Use Cases: Tailoring Governance of Your Enterprise IT
COBIT 2019 webinar Use Cases: Tailoring Governance of Your Enterprise IT
Mark Constable
 
Gartner's IT Score Wallchart
Gartner's IT Score WallchartGartner's IT Score Wallchart
Gartner's IT Score Wallchart
Paul Sullivan
 

Was ist angesagt? (20)

IT Governance – The missing compass in a technology changing world
 IT Governance – The missing compass in a technology changing world IT Governance – The missing compass in a technology changing world
IT Governance – The missing compass in a technology changing world
 
IT Strategy & Planning
IT Strategy & PlanningIT Strategy & Planning
IT Strategy & Planning
 
It governance & cobit 5
It governance & cobit 5It governance & cobit 5
It governance & cobit 5
 
An Introduction to IT Management with COBIT 2019
An Introduction to IT Management with COBIT 2019An Introduction to IT Management with COBIT 2019
An Introduction to IT Management with COBIT 2019
 
IT Governance Made Easy
IT Governance Made EasyIT Governance Made Easy
IT Governance Made Easy
 
cobit 2019 presentation.pdf
cobit 2019 presentation.pdfcobit 2019 presentation.pdf
cobit 2019 presentation.pdf
 
COBIT 2019 webinar Use Cases: Tailoring Governance of Your Enterprise IT
COBIT 2019 webinar Use Cases: Tailoring Governance of Your Enterprise ITCOBIT 2019 webinar Use Cases: Tailoring Governance of Your Enterprise IT
COBIT 2019 webinar Use Cases: Tailoring Governance of Your Enterprise IT
 
IT Governance - COBIT Perspective
IT Governance - COBIT PerspectiveIT Governance - COBIT Perspective
IT Governance - COBIT Perspective
 
Gartner's IT Score Wallchart
Gartner's IT Score WallchartGartner's IT Score Wallchart
Gartner's IT Score Wallchart
 
Define an IT Strategy and Roadmap
Define an IT Strategy and RoadmapDefine an IT Strategy and Roadmap
Define an IT Strategy and Roadmap
 
Introduction to COBIT 2019 and IT management
Introduction to COBIT 2019 and IT managementIntroduction to COBIT 2019 and IT management
Introduction to COBIT 2019 and IT management
 
IT Strategy
IT StrategyIT Strategy
IT Strategy
 
IT Strategy
IT StrategyIT Strategy
IT Strategy
 
Cobit as IT Management Best Practice Framework
Cobit as IT Management Best Practice FrameworkCobit as IT Management Best Practice Framework
Cobit as IT Management Best Practice Framework
 
Governance and Management of Enterprise IT with COBIT 5 Framework
Governance and Management of Enterprise IT with COBIT 5 FrameworkGovernance and Management of Enterprise IT with COBIT 5 Framework
Governance and Management of Enterprise IT with COBIT 5 Framework
 
IT Operating Model - Fundamental
IT Operating Model - FundamentalIT Operating Model - Fundamental
IT Operating Model - Fundamental
 
A tailored enterprise architecture maturity model
A tailored enterprise architecture maturity modelA tailored enterprise architecture maturity model
A tailored enterprise architecture maturity model
 
COBIT 2019 Overview_v1.1.pdf
COBIT 2019 Overview_v1.1.pdfCOBIT 2019 Overview_v1.1.pdf
COBIT 2019 Overview_v1.1.pdf
 
IT Governance - Governing IT: Do or Die?
IT Governance - Governing IT: Do or Die?IT Governance - Governing IT: Do or Die?
IT Governance - Governing IT: Do or Die?
 
What is Enterprise Architecture?
What is Enterprise Architecture?What is Enterprise Architecture?
What is Enterprise Architecture?
 

Ähnlich wie It governance

Chap2 2007 Cisa Review Course
Chap2 2007 Cisa Review CourseChap2 2007 Cisa Review Course
Chap2 2007 Cisa Review Course
Desmond Devendran
 
Ict Vision And Strategy Development
Ict Vision And Strategy DevelopmentIct Vision And Strategy Development
Ict Vision And Strategy Development
Alan McSweeney
 
It governance in_higher_education_by_james_yung
It governance in_higher_education_by_james_yungIt governance in_higher_education_by_james_yung
It governance in_higher_education_by_james_yung
norsaidatul_akmar
 
2 -governanca_de_tic_-_uma_visao_do_mercado_gartner_-_claudio_chauke
2  -governanca_de_tic_-_uma_visao_do_mercado_gartner_-_claudio_chauke2  -governanca_de_tic_-_uma_visao_do_mercado_gartner_-_claudio_chauke
2 -governanca_de_tic_-_uma_visao_do_mercado_gartner_-_claudio_chauke
Mayk Campelo
 
Pm And It Governance
Pm And It GovernancePm And It Governance
Pm And It Governance
sundong
 

Ähnlich wie It governance (20)

Chap2 2007 Cisa Review Course
Chap2 2007 Cisa Review CourseChap2 2007 Cisa Review Course
Chap2 2007 Cisa Review Course
 
MAKING SENSE OF IT GOVERNANCE
MAKING SENSE OF IT GOVERNANCEMAKING SENSE OF IT GOVERNANCE
MAKING SENSE OF IT GOVERNANCE
 
Ict Vision And Strategy Development
Ict Vision And Strategy DevelopmentIct Vision And Strategy Development
Ict Vision And Strategy Development
 
COBIT 4.0
COBIT 4.0COBIT 4.0
COBIT 4.0
 
Understanding co bit 4.1
Understanding co bit 4.1Understanding co bit 4.1
Understanding co bit 4.1
 
It governance in_higher_education_by_james_yung
It governance in_higher_education_by_james_yungIt governance in_higher_education_by_james_yung
It governance in_higher_education_by_james_yung
 
Critical Success Factors (CSFs) for Effective IT Governance Implementations
Critical Success Factors (CSFs) for Effective IT Governance ImplementationsCritical Success Factors (CSFs) for Effective IT Governance Implementations
Critical Success Factors (CSFs) for Effective IT Governance Implementations
 
IT Govenence.pptx
IT Govenence.pptxIT Govenence.pptx
IT Govenence.pptx
 
IT Governance.pptx
IT Governance.pptxIT Governance.pptx
IT Governance.pptx
 
It Governance Methodology Cox
It Governance Methodology CoxIt Governance Methodology Cox
It Governance Methodology Cox
 
What Every Executive Needs To Know About IT Governance
What Every Executive Needs To Know About IT GovernanceWhat Every Executive Needs To Know About IT Governance
What Every Executive Needs To Know About IT Governance
 
2 -governanca_de_tic_-_uma_visao_do_mercado_gartner_-_claudio_chauke
2  -governanca_de_tic_-_uma_visao_do_mercado_gartner_-_claudio_chauke2  -governanca_de_tic_-_uma_visao_do_mercado_gartner_-_claudio_chauke
2 -governanca_de_tic_-_uma_visao_do_mercado_gartner_-_claudio_chauke
 
IT Governance in Banks, May, 2014
IT Governance in Banks, May, 2014IT Governance in Banks, May, 2014
IT Governance in Banks, May, 2014
 
Research Paper on "Project Management and IT Governance"
Research Paper on "Project Management and IT Governance"Research Paper on "Project Management and IT Governance"
Research Paper on "Project Management and IT Governance"
 
Research Paper on Project Management and IT Governance
Research Paper on Project Management and IT GovernanceResearch Paper on Project Management and IT Governance
Research Paper on Project Management and IT Governance
 
Pm And It Governance
Pm And It GovernancePm And It Governance
Pm And It Governance
 
CISA DOMAIN 2 Governance & Management of IT
CISA DOMAIN 2 Governance & Management of ITCISA DOMAIN 2 Governance & Management of IT
CISA DOMAIN 2 Governance & Management of IT
 
Cobit Training course
Cobit Training courseCobit Training course
Cobit Training course
 
IT Governance
IT GovernanceIT Governance
IT Governance
 
Cobit 41 framework
Cobit 41 frameworkCobit 41 framework
Cobit 41 framework
 

Mehr von Mahetab Khan (11)

Csr activity of indian films industry
Csr activity of indian films industryCsr activity of indian films industry
Csr activity of indian films industry
 
11 understanding samsungs diversification strategy the case of samsung motors...
11 understanding samsungs diversification strategy the case of samsung motors...11 understanding samsungs diversification strategy the case of samsung motors...
11 understanding samsungs diversification strategy the case of samsung motors...
 
Entrepreneurshipsoln
EntrepreneurshipsolnEntrepreneurshipsoln
Entrepreneurshipsoln
 
Million dollars ideas
Million dollars ideasMillion dollars ideas
Million dollars ideas
 
Sustainable development
Sustainable developmentSustainable development
Sustainable development
 
Trusteeship management of itc
Trusteeship management of itcTrusteeship management of itc
Trusteeship management of itc
 
Trusteeship management of hdfc
Trusteeship management of hdfcTrusteeship management of hdfc
Trusteeship management of hdfc
 
Trusteeship management by tata group
Trusteeship management  by tata groupTrusteeship management  by tata group
Trusteeship management by tata group
 
Various sources of financing
Various sources of  financingVarious sources of  financing
Various sources of financing
 
Tata motors
Tata motorsTata motors
Tata motors
 
Reaserch report on micro credit and women empowerment
Reaserch report on micro credit and women empowerment Reaserch report on micro credit and women empowerment
Reaserch report on micro credit and women empowerment
 

Kürzlich hochgeladen

The Abortion pills for sale in Qatar@Doha [+27737758557] []Deira Dubai Kuwait
The Abortion pills for sale in Qatar@Doha [+27737758557] []Deira Dubai KuwaitThe Abortion pills for sale in Qatar@Doha [+27737758557] []Deira Dubai Kuwait
The Abortion pills for sale in Qatar@Doha [+27737758557] []Deira Dubai Kuwait
daisycvs
 
Quick Doctor In Kuwait +2773`7758`557 Kuwait Doha Qatar Dubai Abu Dhabi Sharj...
Quick Doctor In Kuwait +2773`7758`557 Kuwait Doha Qatar Dubai Abu Dhabi Sharj...Quick Doctor In Kuwait +2773`7758`557 Kuwait Doha Qatar Dubai Abu Dhabi Sharj...
Quick Doctor In Kuwait +2773`7758`557 Kuwait Doha Qatar Dubai Abu Dhabi Sharj...
daisycvs
 
Jual Obat Aborsi ( Asli No.1 ) 085657271886 Obat Penggugur Kandungan Cytotec
Jual Obat Aborsi ( Asli No.1 ) 085657271886 Obat Penggugur Kandungan CytotecJual Obat Aborsi ( Asli No.1 ) 085657271886 Obat Penggugur Kandungan Cytotec
Jual Obat Aborsi ( Asli No.1 ) 085657271886 Obat Penggugur Kandungan Cytotec
ZurliaSoop
 

Kürzlich hochgeladen (20)

Berhampur 70918*19311 CALL GIRLS IN ESCORT SERVICE WE ARE PROVIDING
Berhampur 70918*19311 CALL GIRLS IN ESCORT SERVICE WE ARE PROVIDINGBerhampur 70918*19311 CALL GIRLS IN ESCORT SERVICE WE ARE PROVIDING
Berhampur 70918*19311 CALL GIRLS IN ESCORT SERVICE WE ARE PROVIDING
 
Phases of Negotiation .pptx
 Phases of Negotiation .pptx Phases of Negotiation .pptx
Phases of Negotiation .pptx
 
UAE Bur Dubai Call Girls ☏ 0564401582 Call Girl in Bur Dubai
UAE Bur Dubai Call Girls ☏ 0564401582 Call Girl in Bur DubaiUAE Bur Dubai Call Girls ☏ 0564401582 Call Girl in Bur Dubai
UAE Bur Dubai Call Girls ☏ 0564401582 Call Girl in Bur Dubai
 
The Abortion pills for sale in Qatar@Doha [+27737758557] []Deira Dubai Kuwait
The Abortion pills for sale in Qatar@Doha [+27737758557] []Deira Dubai KuwaitThe Abortion pills for sale in Qatar@Doha [+27737758557] []Deira Dubai Kuwait
The Abortion pills for sale in Qatar@Doha [+27737758557] []Deira Dubai Kuwait
 
Falcon Invoice Discounting: Unlock Your Business Potential
Falcon Invoice Discounting: Unlock Your Business PotentialFalcon Invoice Discounting: Unlock Your Business Potential
Falcon Invoice Discounting: Unlock Your Business Potential
 
Unveiling Falcon Invoice Discounting: Leading the Way as India's Premier Bill...
Unveiling Falcon Invoice Discounting: Leading the Way as India's Premier Bill...Unveiling Falcon Invoice Discounting: Leading the Way as India's Premier Bill...
Unveiling Falcon Invoice Discounting: Leading the Way as India's Premier Bill...
 
Quick Doctor In Kuwait +2773`7758`557 Kuwait Doha Qatar Dubai Abu Dhabi Sharj...
Quick Doctor In Kuwait +2773`7758`557 Kuwait Doha Qatar Dubai Abu Dhabi Sharj...Quick Doctor In Kuwait +2773`7758`557 Kuwait Doha Qatar Dubai Abu Dhabi Sharj...
Quick Doctor In Kuwait +2773`7758`557 Kuwait Doha Qatar Dubai Abu Dhabi Sharj...
 
Jual Obat Aborsi ( Asli No.1 ) 085657271886 Obat Penggugur Kandungan Cytotec
Jual Obat Aborsi ( Asli No.1 ) 085657271886 Obat Penggugur Kandungan CytotecJual Obat Aborsi ( Asli No.1 ) 085657271886 Obat Penggugur Kandungan Cytotec
Jual Obat Aborsi ( Asli No.1 ) 085657271886 Obat Penggugur Kandungan Cytotec
 
Call 7737669865 Vadodara Call Girls Service at your Door Step Available All Time
Call 7737669865 Vadodara Call Girls Service at your Door Step Available All TimeCall 7737669865 Vadodara Call Girls Service at your Door Step Available All Time
Call 7737669865 Vadodara Call Girls Service at your Door Step Available All Time
 
Only Cash On Delivery Call Girls In Sikandarpur Gurgaon ❤️8448577510 ⊹Escorts...
Only Cash On Delivery Call Girls In Sikandarpur Gurgaon ❤️8448577510 ⊹Escorts...Only Cash On Delivery Call Girls In Sikandarpur Gurgaon ❤️8448577510 ⊹Escorts...
Only Cash On Delivery Call Girls In Sikandarpur Gurgaon ❤️8448577510 ⊹Escorts...
 
Katrina Personal Brand Project and portfolio 1
Katrina Personal Brand Project and portfolio 1Katrina Personal Brand Project and portfolio 1
Katrina Personal Brand Project and portfolio 1
 
PHX May 2024 Corporate Presentation Final
PHX May 2024 Corporate Presentation FinalPHX May 2024 Corporate Presentation Final
PHX May 2024 Corporate Presentation Final
 
KALYANI 💋 Call Girl 9827461493 Call Girls in Escort service book now
KALYANI 💋 Call Girl 9827461493 Call Girls in  Escort service book nowKALYANI 💋 Call Girl 9827461493 Call Girls in  Escort service book now
KALYANI 💋 Call Girl 9827461493 Call Girls in Escort service book now
 
Berhampur CALL GIRL❤7091819311❤CALL GIRLS IN ESCORT SERVICE WE ARE PROVIDING
Berhampur CALL GIRL❤7091819311❤CALL GIRLS IN ESCORT SERVICE WE ARE PROVIDINGBerhampur CALL GIRL❤7091819311❤CALL GIRLS IN ESCORT SERVICE WE ARE PROVIDING
Berhampur CALL GIRL❤7091819311❤CALL GIRLS IN ESCORT SERVICE WE ARE PROVIDING
 
QSM Chap 10 Service Culture in Tourism and Hospitality Industry.pptx
QSM Chap 10 Service Culture in Tourism and Hospitality Industry.pptxQSM Chap 10 Service Culture in Tourism and Hospitality Industry.pptx
QSM Chap 10 Service Culture in Tourism and Hospitality Industry.pptx
 
Berhampur 70918*19311 CALL GIRLS IN ESCORT SERVICE WE ARE PROVIDING
Berhampur 70918*19311 CALL GIRLS IN ESCORT SERVICE WE ARE PROVIDINGBerhampur 70918*19311 CALL GIRLS IN ESCORT SERVICE WE ARE PROVIDING
Berhampur 70918*19311 CALL GIRLS IN ESCORT SERVICE WE ARE PROVIDING
 
Marel Q1 2024 Investor Presentation from May 8, 2024
Marel Q1 2024 Investor Presentation from May 8, 2024Marel Q1 2024 Investor Presentation from May 8, 2024
Marel Q1 2024 Investor Presentation from May 8, 2024
 
Lundin Gold - Q1 2024 Conference Call Presentation (Revised)
Lundin Gold - Q1 2024 Conference Call Presentation (Revised)Lundin Gold - Q1 2024 Conference Call Presentation (Revised)
Lundin Gold - Q1 2024 Conference Call Presentation (Revised)
 
Puri CALL GIRL ❤️8084732287❤️ CALL GIRLS IN ESCORT SERVICE WE ARW PROVIDING
Puri CALL GIRL ❤️8084732287❤️ CALL GIRLS IN ESCORT SERVICE WE ARW PROVIDINGPuri CALL GIRL ❤️8084732287❤️ CALL GIRLS IN ESCORT SERVICE WE ARW PROVIDING
Puri CALL GIRL ❤️8084732287❤️ CALL GIRLS IN ESCORT SERVICE WE ARW PROVIDING
 
KOTA 💋 Call Girl 9827461493 Call Girls in Escort service book now
KOTA 💋 Call Girl 9827461493 Call Girls in  Escort service book nowKOTA 💋 Call Girl 9827461493 Call Girls in  Escort service book now
KOTA 💋 Call Girl 9827461493 Call Girls in Escort service book now
 

It governance

  • 2. What is Strategic IT Governance? IT governance is the formal process of defining the strategy of the IT organization and overseeing its execution to achieve the goals of the enterprise. Aligned/synchronized with the enterprise strategy, including other key asset strategies Decision rights framework & mechanisms Vision, goals/priorities, measures; value prop & service portfolio; resource approaches & commitments; change management plans Translation into aligned, tactical, operational plans; closed-loop monitoring & control; accountability; regulatory compliance
  • 3. Why is IT Governance important? Compliance with regulations Competitive advantage Support of enterprise goals Growth and innovation Increase in intangible assets Reduction of risk
  • 4.  IT Strategic Alignment, such as formalized business objectives, up to date IT strategy, linkage between business objectives and IT initiatives;  Value Delivery: IT tactical plans, clear benefits for each level of the organization: infra-structure (systems uptime), applications (degree of automation), operational (productivity), financial (income);  Risk Management: defined responsibilities for risk management, risk analysis methodology, defined strategies for addressing risks, continuous monitoring of threats, occurrence and impact;  Resource Management: sourcing strategies, human management practices, user manuals, segregation of duties, time reporting, infra-structure life cycle management, acceptable usage policies.  Performance Measurement: relevant and measurable metrics, continuous monitoring and reporting, follow-up policies, root cause analysis and problem management, benchmarking against industry practices and proven standards or frameworks. Elements of IT Governance
  • 5. Core Competencies for Effective IT Governance Enterprise Architecture Mgmt Relationship Mgmt IT Strategy Mgmt Financial Mgmt Supply / Demand Mgmt Portfolio Mgmt IT Operating Model • Align operational and strategic IT investments to business strategies & objectives. • Establish policies, standards, models and processes for managing IT as an enterprise asset • Lifecycle management of infrastructure, applications and services • Understand the drivers of IT costs to allocate appropriate costs to the consumers of IT services. • Establish effective, collaborative relationships with business stakeholders and suppliers. • Balance the demand for IT services with available resources to meet immediate and strategic goals.
  • 6. Benefits of IT Governance  Strengthens the relationship between the organization and IT; Helps ensure limited IT resources are focused on the right strategic and tactical activities at the right time  Synergies with Enterprise Risk Management (ERM) and other risk management activities; Helps ensure the appropriate IT risk management processes and activities are in place and operating effectively  Enhanced visibility into the IT Function’s ability to achieve its both tactical and strategic objectives; Key Performance Indicators (KPIs) for day-to-day activities and longer-term/strategic initiatives  Improved adaptability of the IT Function to organizational and IT environment changes; Formality of Governance structure, processes and activities enables more efficient and effective response to change
  • 8.  Capability Maturity Modeling Integration (CMMI)- For Process Improvement  Information Technology Infrastructure Library (ITIL)- For IT Service Management.  Six Sigma- For Process Improvement especially security processes.  Control Objectives for Information and Related Technology (COBIT) - For information technology (IT) management and IT governance  The Balanced Scorecard (BSC) - method to assess an organization’s performance in different areas. Frameworks for IT Governance
  • 9. Who is involved? Team leaders Managers Executives Board of Directors Stakeholders
  • 11. Needs, Issues & Challenges Procedure, Audits, Metrics Control Strategic Tactical Operations Demand IT and Business Resources Supply Capital, Capacity, Priorities Planning Alignment Flexibility EfficiencyQuality Lack of Business aligned strategyLack of Business aligned strategy Reduce costs across businessReduce costs across businessIneffective project ManagementIneffective project Management Deployment Complexity through lack of standard & legacy Deployment Complexity through lack of standard & legacy No Audit TrailsNo Audit Trails Management of Service ChangesManagement of Service Changes Must reduce IT costs by 30%Must reduce IT costs by 30% Lack of IT resource transparencyLack of IT resource transparency Missed targets due to lack of steering controlMissed targets due to lack of steering control Deployment Complexity in number of project Deployment Complexity in number of project Cannot aggregate need and distribute ROI Cannot aggregate need and distribute ROI No means of governing outsourced contractsNo means of governing outsourced contracts No means of capturing demandsNo means of capturing demands No means of prioritization of business need No means of prioritization of business need No means of reporting SLANo means of reporting SLA Making new outsourcing decisions Making new outsourcing decisions
  • 12. Aligning IT and Business Strategy Corporate Mission – Business Goals – IT Strategy Requires involvement from many levels and activities within the enterprise. Lack of alignment leads to adverse business issues. Strong IT Governance contributes toward proper alignment.
  • 13.
  • 14. Ensuring Value and Effectiveness IT issues are the least understood, despite increasing reliance placed on IT. Initiate IT governance structures with the right level of executive involvement. Board of Director’s require essential IT related skills
  • 15. IT Governance Consists of leadership, organizational structures and processes that safeguard information. Security over information assets. Benefits of IT Governance. IT is a top-down process.
  • 16. Measuring IT Governance Performance Measuring IT performance is a key concern as it demonstrates the effectiveness and added business value of IT. Commonly seen as the IT “Black Hole” – costs continually rise without clear evidence of value derived from the IT function. Traditional performance measurement methods require monetary values which are hard to apply to IT systems.
  • 18. IT Balanced Scorecard One of the most effective means to aid an organization in achieving IT and business alignment. Provides a systematic translation of the IT strategy into tangible success factors and metrics. Gives a balanced view of the value added by IT to the business. Calculating the value of IT investments is a business issue for which business managers are ultimately responsible for.

Hinweis der Redaktion

  1. External Auditors are using COBIT COBIT is a good framework talking about the “what” and also including control objectives Build Slide: <Click> When you look at the myriad of regulations out that, as well as what it means to have “good IT Governance”, a common set of IT Controls will boil up to the top. Whether it’s SOX 404, Basel II Operational Risk, FDA 21 CFR Part 11—requirement such has effective Change Mgmt, Security, Availability, Transaction Integrity ALL need to be considered and proven in order to be considered compliant. <Click> COSO, or the Committee of Sponsoring Organizations, built a Risk Management Framework several years ago to give organizations a guideline or model as to what they should do in order to put risk management processes in place and ensure it on an ongoing basis. It is very high level framework and doesn’t get too specific as to what IT needs to do. <Click> COBIT, or Control Objectives for Information (and related) Technology, was published jointly by the IT Governance Institute and ISACA (Information Systems Audit and Control Association). In conjunction with COSO, it provides specific direction to IT departments as to what they need to do to satisfy regulations such as SOX 404. Examples include ensuring change management processes are in place and being follows, or ensuring that access to applications is restricted and monitored, systems are kept up to date with the latest patches and configurations, etc, etc. In essences….it is “WHAT” you need to do to become compliant. <Click> ITIL is the “HOW” you should do it. ITIL provides a recognized set of best practices for managing IT processes. Many customers (like HP) are using, and Analysts are prescribing the use of ITIL in conjunction with COSO and COBIT to achieve compliance with regulations and ensure good IT Governance. Additionally, some of the large security standards such as ISO 17799 and new standards such as ISO20000 are becoming even more prescriptive. <Click> HP and HP OpenView has long been a proponent of ITIL, building in and automating ITIL processes in the product suite. (Service Desk, SDO, Config, etc all support ITIL, and additionally, IdM support ISO 17799.) The release of OV Compliance Manager reinforces the linkage of the models such as COBIT and ITIL by reporting out-of-the-box on those key process areas such as change, config, release, incidents, availability, and security. OpenView helps by automating these controls, monitoring and reporting on this data.
  2. These goals are the result or “output” of combining two business functions together Doing the right things: Planning & Demand = Alignment: make prioritised financial and resource decisions (investment portfolio) with respect to demand from business Planning & Supply = Flexibility: define and adjust project plans to deliver on a chosen (and often changing) investment portfolio Doing things right: Control & Supply = Efficiency: execute programs and projects in the most cost effective and efficient way Control & Demand = Quality: deliver on agreed expectations set at time of demand intake This provides a business framework for PPM. To put it into use requires input from the customer. Gather the needs, issues and challenges from the organization to reveal the pain points and identify where the likely starting point is.