SlideShare a Scribd company logo
1 of 30
USAID Finance for Economic Development 
(FED) Program 
Workshop: “IT Governance in Banks” 
May 27, 2014
IT Governance: 
Why, How, When… 
Komitas Stepanyan, PhD, CRISC, CMRM 
CobIT Foundation Certificate 
YEREVAN - 2014
Agenda 
Introduction 
 The problem 
 Management Expectations of IT 
 IT management challenges 
 Key risk 
Framework 
Implementation Guidance
Is IT Works as needed??? Statistics… 
Over 80% of IT project are delivered late and over budget. (Standish 
Group – Oct 2006) 
Nearly 60% of all IT projects are delivered with less functionality that 
originally promised. (Standish Group – Mar 2007) 
More than 25% of the IT projects usually fail (Gartner Group – May 2006) 
Less than 5% of project fail due to technical reasons – Nearly all 
obstacles are related to poorly defined requirements, poor 
sponsorship, weak management controls or all of the above. (Gartner 
Group – May 2006) 
The IT aspects of CG are one of things that CEO’s think they don’t have to 
understand-until it bites them! (Piter Morriss - KPMG)
Facts… 
“ IT Governance is the responsibility of the Board of 
Directors and executive management. 
It is an integral part of enterprise governance and consists of the leadership and 
organizational structures and processes that ensure that the organization’s IT 
sustains and extends the organizations strategies and objectives.” 
IT Governance Institute Board Briefing, Second Edition, 2003
Strategic 
Alignment 
Value 
Creation 
Risk 
Management 
Resource 
Management 
Performance 
Measurement 
Plan 
& 
Organize 
Acquire 
& Implement 
Deliver 
& 
Support 
Monitor
Management/Business Expectations of IT 
- What does management expect from IT? 
? 
Information 
Technologies 
- What is an IT at all? 
- How to use it? 
- How to manage it? 
- How to be sure everything works as needed? 
- How to measure results? 
It’s the time to recognize and manage complexity 
It’s the time to open “Black Box” …
Information management challenges 
How the organization will operate 
How the information systems themselves will work. 
Information systems are only successful if they are used.
Key risk 
Misalignment between IT and Business 
 Time and budget overruns 
 Ineffective IT Investments 
 Useless IT systems 
 Anachronism IT systems 
Apply good IT(and not only) risk management to ensure success
Agenda 
Introduction 
 The problem 
 Management Expectations of IT 
 Information management challenges 
 Key risk 
Framework 
Implementation Guidance
The psychology/ sociology of Failed Systems 
Inconsistent 
materials 
Work 
overloads 
Lack of 
measures 
& defined 
processes 
Cascading 
rework 
Soloed 
functional 
processes 
Inconsistent 
procedures for 
identical tasks 
Unintegrated 
best practices
CobIT Framework 
Management’s IT 
Expectations 
Management’s IT 
Responsibilities
Management Needs COBIT 
To Evaluate IT Investment Decisions 
To Balance Risk and Control of Investment 
To Benchmark Existing and Future IT Environment 
76% of various CEOs and CIOs are aware of the 
benefits offered by IT governance frameworks, yet 
only 42% of them had any intention of implementing 
such a framework” (Loggerenberg 2006)
Business Requirements 
CobIT Cube 
IT Processes 
DS M PO AI Domains 
Processes 
Activities 
People 
Application 
Information 
Infrastructure
Who Benefits from More Effective and Sustainable IT Governance? 
 What Executives Get 
 – Business improvements that result from knowledgeable participation in IT decision-making from an enterprise 
perspective 
 – Ensures that key IT investments support the business and provide optimum returns to the business 
 – Ensures compliance with laws regulations 
 What Mid-Level Business Managers Get 
 – Convinces senior business managers that their combined business -IT resources are being managed effectively 
 – Helps to ensure that business services for which they are responsible will meet commitments 
 What Senior IT Managers Get 
 – Obtains sponsorship and support and a clear focus on important strategic and operational initiatives 
 – Improves customer relationships by delivering results in a more predictable and consistent manner, with the 
involvement of the customer 
 What Program/Project and Operations Managers Get 
 Helps in resolving issues, review progress and, enable faster decisions 
 What Everyone Gets 
 – Facilitates communications about how IT contributes to the business 
 – Improves coordination, cooperation, communications and synergy across the organization 
 – Less stress
Agenda 
Introduction 
 The problem 
 Management Expectations of IT 
 Information management challenges 
 Key risk 
Framework 
Implementation Guidance
How To Implement CobIT in an Organization 
Top Down Approach 
Audit Committee Approach 
Audit and IT Management Consensus Approach 
Regulation/Legislation
Getting Started – Board and Executive Questions for IT 
Does the IT strategy align with the business strategy? 
Is the IT investment justified based on its contributions to the business? 
How likely will IT meet or exceed its plans, objectives and initiatives? 
Is IT being managed prudent, effectively? How is that measured? 
How is IT delivering value? 
Is IT developing and maintaining constructive relationships with customers, vendors and 
others? 
Is IT delivering projects and services on time, within scope, within budget and with high 
quality? 
Is IT staffed adequately, wit the right skills and competencies? 
How does IT management and operations compare to other best practice organizations 
How is IT managing and planning for contingencies, disasters, security, and back- up? 
How is IT measuring its performance? What key performance measures? 
Does the Board review and possibly approve the IT strategy? 
Is a risk management policy, assessment and mitigation practice followed for IT?
To Adopt CobIT, Who Needs To Be Influenced? 
 Chief Executive (e.g., CEO) 
 Senior IT Executive (CIO or VP of IT) 
 IT Steering Committee 
 IT Management 
 Business managers
CobIT Maturity Model 
How do you know where you are? 
Nonexistent Initial Repeatable Defined Managed Optimised 
0 1 2 3 4 5
CB RA Case 
Before CobIT Implementation
CB RA Case 
After CobIT Implementation
CB RA Case 
After CobIT Implementation - 2011 
Process Maturity By CobIT 
IT Processes 
Maturity level 
AVRG IT 
AVRG IT & 
IT Audit 
IT Audit 
Benchmark
Summary 
• IT governance is a broad and complex topic with many parts 
• Clearly defined roles, ownership and accountability 
• IT governance is integral part of corporate governance 
• IT governance is a journey and not only destination
To be or NOT to be? 
D I s c u s s I o n 
IT Governance or NOT IT Governance?
Business and IT’s Perpetual Disconnect 
AT Kearney, from a survey conducted in December 2001, report 
that only 17% of businesses had IT strategies that were "fully 
aligned and developed simultaneously" with corporate strategy. 
Furthermore, 45% of participants did not feel that their IT 
strategies were developed to support or align with their 
corporate strategy. 
Fact: The Corporate Alignment Profile most often shows IT as the most unaligned group.
CEOs Seeking a Solution 
The IT Governance Global Status Report (2004) found that 80%+ 
of CEOs recognised that “IT Governance or some form thereof is 
required” to resolve “IT issues”. 
The Report also found that 57% of CEOs looked to IT Governance 
to align IT strategy (and 53% to manage IT risks). 
However the Report concluded that “solutions in this domain are 
not yet available”.
What CIOs Want ? 
The top benefits CIOs were hoping to achieve: 
Increased IT credibility with the business (81%); 
Closer alignment between IT and business objectives (69%); 
Improved teamwork between IT and internal business partners (68%); 
Improved ability for CIO to influence the business (46%). 
#CIO Research Reports. June 1, 2005. Turning IT Doubters into True Believers 
http://www2.cio.com/research/index.cfm
The Pieces of CobIT 
Executive Summary - Senior Executives (CEO, CIO) 
Framework - Senior Operational Management (Directors of IT) 
Control Objectives - Middle Management (Mid-Level IT Management) 
Audit Guidelines - Line Management (Applications or Operations 
Management) 
Management Guidelines - Operational Management, Director of IS, Mid- 
Level IT Management 
Implementation Tool Set - Director of IS, Mid-Level IS Management 
For additional information: 
www.isaca.org; www.itgi.org 
komitas.stepanyan@cba.am

More Related Content

What's hot

IT Governance Concept
IT Governance ConceptIT Governance Concept
IT Governance Concept
itgproduct
 
Governance matrix
Governance matrixGovernance matrix
Governance matrix
zeusi9iuto
 
IT Metrics Presentation
IT Metrics PresentationIT Metrics Presentation
IT Metrics Presentation
jmcarden
 
IT governance and bal
IT governance and balIT governance and bal
IT governance and bal
sourov_das
 

What's hot (20)

IT Governance Concept
IT Governance ConceptIT Governance Concept
IT Governance Concept
 
Understanding IT Governance and Risk Management
Understanding IT Governance and Risk ManagementUnderstanding IT Governance and Risk Management
Understanding IT Governance and Risk Management
 
Governance matrix
Governance matrixGovernance matrix
Governance matrix
 
IT Governance Made Easy
IT Governance Made EasyIT Governance Made Easy
IT Governance Made Easy
 
IT governance by Erik Guldentops
IT governance by Erik Guldentops  IT governance by Erik Guldentops
IT governance by Erik Guldentops
 
Comprehending Information Technology Governance
Comprehending Information Technology GovernanceComprehending Information Technology Governance
Comprehending Information Technology Governance
 
IT Governance – The missing compass in a technology changing world
 IT Governance – The missing compass in a technology changing world IT Governance – The missing compass in a technology changing world
IT Governance – The missing compass in a technology changing world
 
Governance Of Enterprise Information Technology V3
Governance Of Enterprise Information Technology V3Governance Of Enterprise Information Technology V3
Governance Of Enterprise Information Technology V3
 
IT Governance Presentation
IT Governance PresentationIT Governance Presentation
IT Governance Presentation
 
Stateofthecio2008 1210987739793979 8
Stateofthecio2008 1210987739793979 8Stateofthecio2008 1210987739793979 8
Stateofthecio2008 1210987739793979 8
 
IT investments
IT investmentsIT investments
IT investments
 
It governance
It governanceIt governance
It governance
 
Critical Success Factors (CSFs) for Effective IT Governance Implementations
Critical Success Factors (CSFs) for Effective IT Governance ImplementationsCritical Success Factors (CSFs) for Effective IT Governance Implementations
Critical Success Factors (CSFs) for Effective IT Governance Implementations
 
IT Metrics Presentation
IT Metrics PresentationIT Metrics Presentation
IT Metrics Presentation
 
Corporate governance of INFORMATION TECHNOLOGY (IT)
Corporate governance of INFORMATION TECHNOLOGY (IT)Corporate governance of INFORMATION TECHNOLOGY (IT)
Corporate governance of INFORMATION TECHNOLOGY (IT)
 
IT Governance
IT GovernanceIT Governance
IT Governance
 
It governance
It governanceIt governance
It governance
 
What Every Executive Needs To Know About IT Governance
What Every Executive Needs To Know About IT GovernanceWhat Every Executive Needs To Know About IT Governance
What Every Executive Needs To Know About IT Governance
 
establish an effective it steering committee
establish an effective it steering committeeestablish an effective it steering committee
establish an effective it steering committee
 
IT governance and bal
IT governance and balIT governance and bal
IT governance and bal
 

Viewers also liked

Banking Industry and Information Technology
Banking Industry and Information TechnologyBanking Industry and Information Technology
Banking Industry and Information Technology
Chandan Pahelwani
 
SYNOPSIS ON BANK MANAGEMENT SYSTEM
SYNOPSIS ON BANK MANAGEMENT SYSTEMSYNOPSIS ON BANK MANAGEMENT SYSTEM
SYNOPSIS ON BANK MANAGEMENT SYSTEM
Nitish Xavier Tirkey
 

Viewers also liked (20)

A Matrixed Approach to Designing IT Governance
A Matrixed Approach to Designing IT GovernanceA Matrixed Approach to Designing IT Governance
A Matrixed Approach to Designing IT Governance
 
Ing asia pacific case study
Ing asia pacific case studyIng asia pacific case study
Ing asia pacific case study
 
Trends In Interactive Banking by Michael Horne
Trends In Interactive Banking by Michael HorneTrends In Interactive Banking by Michael Horne
Trends In Interactive Banking by Michael Horne
 
Bank 2.0 & Backbase
Bank 2.0 & BackbaseBank 2.0 & Backbase
Bank 2.0 & Backbase
 
Future of Payments: Mobile & Customer Experience, by Jouk Pleiter
Future of Payments: Mobile & Customer Experience, by Jouk PleiterFuture of Payments: Mobile & Customer Experience, by Jouk Pleiter
Future of Payments: Mobile & Customer Experience, by Jouk Pleiter
 
Trends and technology in banking
Trends and technology in bankingTrends and technology in banking
Trends and technology in banking
 
Strategy Implementation - ING Asia Pacific
Strategy Implementation - ING Asia PacificStrategy Implementation - ING Asia Pacific
Strategy Implementation - ING Asia Pacific
 
SAP - Omni Channel Banking
SAP - Omni Channel BankingSAP - Omni Channel Banking
SAP - Omni Channel Banking
 
The Future of Omni-Channel Banking
The Future of Omni-Channel BankingThe Future of Omni-Channel Banking
The Future of Omni-Channel Banking
 
IT in banking
IT in bankingIT in banking
IT in banking
 
Banking on Digital: Innovation in Financial Services
Banking on Digital: Innovation in Financial ServicesBanking on Digital: Innovation in Financial Services
Banking on Digital: Innovation in Financial Services
 
Banking technology
Banking technologyBanking technology
Banking technology
 
Banking Industry and Information Technology
Banking Industry and Information TechnologyBanking Industry and Information Technology
Banking Industry and Information Technology
 
SYNOPSIS ON BANK MANAGEMENT SYSTEM
SYNOPSIS ON BANK MANAGEMENT SYSTEMSYNOPSIS ON BANK MANAGEMENT SYSTEM
SYNOPSIS ON BANK MANAGEMENT SYSTEM
 
Tech developments in banking sector
Tech developments in banking sectorTech developments in banking sector
Tech developments in banking sector
 
Beyond the CIO/CMO - The Rise of the Chief Digital Officer | CIO Perspectives...
Beyond the CIO/CMO - The Rise of the Chief Digital Officer | CIO Perspectives...Beyond the CIO/CMO - The Rise of the Chief Digital Officer | CIO Perspectives...
Beyond the CIO/CMO - The Rise of the Chief Digital Officer | CIO Perspectives...
 
FinTech Industry Report 2016
FinTech Industry Report 2016FinTech Industry Report 2016
FinTech Industry Report 2016
 
Banking ppt
Banking pptBanking ppt
Banking ppt
 
How Digital Has Changed These 7 Banking Roles
How Digital Has Changed These 7 Banking RolesHow Digital Has Changed These 7 Banking Roles
How Digital Has Changed These 7 Banking Roles
 
Rapport de stage sg
Rapport de stage sgRapport de stage sg
Rapport de stage sg
 

Similar to IT Governance in Banks, May, 2014

Establishing a framework for it governance by dave cunningham 2007
Establishing a framework for it governance by dave cunningham 2007Establishing a framework for it governance by dave cunningham 2007
Establishing a framework for it governance by dave cunningham 2007
David Cunningham
 
The CIOs Agenda In Turbulent Times By Tariq Elsadik
The CIOs Agenda In Turbulent Times   By Tariq ElsadikThe CIOs Agenda In Turbulent Times   By Tariq Elsadik
The CIOs Agenda In Turbulent Times By Tariq Elsadik
Tariq Elsadik
 
IT Governance for (smaller) Nonprofits
IT Governance for (smaller) NonprofitsIT Governance for (smaller) Nonprofits
IT Governance for (smaller) Nonprofits
NTEN
 
Journeys in it governance v2
Journeys in it governance v2Journeys in it governance v2
Journeys in it governance v2
Ben Perry
 

Similar to IT Governance in Banks, May, 2014 (20)

Getting it right
Getting it right Getting it right
Getting it right
 
MAKING SENSE OF IT GOVERNANCE
MAKING SENSE OF IT GOVERNANCEMAKING SENSE OF IT GOVERNANCE
MAKING SENSE OF IT GOVERNANCE
 
CIT 3122 IS Governance Lecture 3.pptx
CIT 3122 IS Governance Lecture 3.pptxCIT 3122 IS Governance Lecture 3.pptx
CIT 3122 IS Governance Lecture 3.pptx
 
Sharpening the Lens
Sharpening the LensSharpening the Lens
Sharpening the Lens
 
Establishing a framework for it governance by dave cunningham 2007
Establishing a framework for it governance by dave cunningham 2007Establishing a framework for it governance by dave cunningham 2007
Establishing a framework for it governance by dave cunningham 2007
 
Governance (Corporate And Technology)
Governance (Corporate And Technology)Governance (Corporate And Technology)
Governance (Corporate And Technology)
 
Business-IT Alignment
Business-IT AlignmentBusiness-IT Alignment
Business-IT Alignment
 
IT Governance - Core Concepts for Business Managers
IT Governance - Core Concepts for Business ManagersIT Governance - Core Concepts for Business Managers
IT Governance - Core Concepts for Business Managers
 
The Value of Portfolio Management
The Value of Portfolio ManagementThe Value of Portfolio Management
The Value of Portfolio Management
 
IT Governance - Governing IT: Do or Die?
IT Governance - Governing IT: Do or Die?IT Governance - Governing IT: Do or Die?
IT Governance - Governing IT: Do or Die?
 
The CIOs Agenda In Turbulent Times By Tariq Elsadik
The CIOs Agenda In Turbulent Times   By Tariq ElsadikThe CIOs Agenda In Turbulent Times   By Tariq Elsadik
The CIOs Agenda In Turbulent Times By Tariq Elsadik
 
Ten Ways to Bring IT to the Leadership Table
Ten Ways to Bring IT to the Leadership TableTen Ways to Bring IT to the Leadership Table
Ten Ways to Bring IT to the Leadership Table
 
Strategic Business IT alignment
Strategic Business IT alignmentStrategic Business IT alignment
Strategic Business IT alignment
 
IT Governance for (smaller) Nonprofits
IT Governance for (smaller) NonprofitsIT Governance for (smaller) Nonprofits
IT Governance for (smaller) Nonprofits
 
IT Governance for Nonprofits
IT Governance for NonprofitsIT Governance for Nonprofits
IT Governance for Nonprofits
 
Journeys in it governance v2
Journeys in it governance v2Journeys in it governance v2
Journeys in it governance v2
 
Define an IT Strategy and Roadmap
Define an IT Strategy and RoadmapDefine an IT Strategy and Roadmap
Define an IT Strategy and Roadmap
 
IT Infrastructure - Importance of IT to Business
IT Infrastructure - Importance of IT to BusinessIT Infrastructure - Importance of IT to Business
IT Infrastructure - Importance of IT to Business
 
CIO Strategies - A Fresh Perspective
CIO Strategies - A Fresh PerspectiveCIO Strategies - A Fresh Perspective
CIO Strategies - A Fresh Perspective
 
Bvit framework
Bvit frameworkBvit framework
Bvit framework
 

More from ArmeniaFED

Access to Finance
Access to Finance Access to Finance
Access to Finance
ArmeniaFED
 

More from ArmeniaFED (19)

THE IMPACT OF NEW SYSTEM OF SECURED TRANSACTIONS ON RESPECTIVE OPERATIONS OF ...
THE IMPACT OF NEW SYSTEM OF SECURED TRANSACTIONS ON RESPECTIVE OPERATIONS OF ...THE IMPACT OF NEW SYSTEM OF SECURED TRANSACTIONS ON RESPECTIVE OPERATIONS OF ...
THE IMPACT OF NEW SYSTEM OF SECURED TRANSACTIONS ON RESPECTIVE OPERATIONS OF ...
 
THE IMPORTANCE OF SECURED TRANSACTIONS FROM THE PERSPECTIVE OF INCREASING THE...
THE IMPORTANCE OF SECURED TRANSACTIONS FROM THE PERSPECTIVE OF INCREASING THE...THE IMPORTANCE OF SECURED TRANSACTIONS FROM THE PERSPECTIVE OF INCREASING THE...
THE IMPORTANCE OF SECURED TRANSACTIONS FROM THE PERSPECTIVE OF INCREASING THE...
 
Ապահովված գործարքների և գրավի ռեգիստրի հայեցակարգը
Ապահովված գործարքների և գրավի ռեգիստրի հայեցակարգըԱպահովված գործարքների և գրավի ռեգիստրի հայեցակարգը
Ապահովված գործարքների և գրավի ռեգիստրի հայեցակարգը
 
ԱՊԱՀՈՎՎԱԾ ԳՈՐԾԱՐՔՆԵՐԻ ՆՈՐ ՀԱՄԱԿԱՐԳԻ ԱԶԴԵՑՈՒԹՅՈՒՆԸ ՖԻՆԱՆՍԱԿԱՆ ՀԱՍՏԱՏՈՒԹՅՈՒՆՆ...
ԱՊԱՀՈՎՎԱԾ  ԳՈՐԾԱՐՔՆԵՐԻ  ՆՈՐ ՀԱՄԱԿԱՐԳԻ ԱԶԴԵՑՈՒԹՅՈՒՆԸ ՖԻՆԱՆՍԱԿԱՆ ՀԱՍՏԱՏՈՒԹՅՈՒՆՆ...ԱՊԱՀՈՎՎԱԾ  ԳՈՐԾԱՐՔՆԵՐԻ  ՆՈՐ ՀԱՄԱԿԱՐԳԻ ԱԶԴԵՑՈՒԹՅՈՒՆԸ ՖԻՆԱՆՍԱԿԱՆ ՀԱՍՏԱՏՈՒԹՅՈՒՆՆ...
ԱՊԱՀՈՎՎԱԾ ԳՈՐԾԱՐՔՆԵՐԻ ՆՈՐ ՀԱՄԱԿԱՐԳԻ ԱԶԴԵՑՈՒԹՅՈՒՆԸ ՖԻՆԱՆՍԱԿԱՆ ՀԱՍՏԱՏՈՒԹՅՈՒՆՆ...
 
ԱՊԱՀՈՎՎԱԾ ԳՈՐԾԱՐՔՆԵՐԻ ԿԱՐԵՎՈՐՈՒԹՅՈՒՆԸ ՖԻՆԱՆՍԱԿԱՆ ՄԻՋՈՑՆԵՐԻ ՀԱՍԱՆԵԼԻՈՒԹՅԱՆ ԲԱՐ...
ԱՊԱՀՈՎՎԱԾ ԳՈՐԾԱՐՔՆԵՐԻ ԿԱՐԵՎՈՐՈՒԹՅՈՒՆԸ ՖԻՆԱՆՍԱԿԱՆ ՄԻՋՈՑՆԵՐԻ ՀԱՍԱՆԵԼԻՈՒԹՅԱՆ ԲԱՐ...ԱՊԱՀՈՎՎԱԾ ԳՈՐԾԱՐՔՆԵՐԻ ԿԱՐԵՎՈՐՈՒԹՅՈՒՆԸ ՖԻՆԱՆՍԱԿԱՆ ՄԻՋՈՑՆԵՐԻ ՀԱՍԱՆԵԼԻՈՒԹՅԱՆ ԲԱՐ...
ԱՊԱՀՈՎՎԱԾ ԳՈՐԾԱՐՔՆԵՐԻ ԿԱՐԵՎՈՐՈՒԹՅՈՒՆԸ ՖԻՆԱՆՍԱԿԱՆ ՄԻՋՈՑՆԵՐԻ ՀԱՍԱՆԵԼԻՈՒԹՅԱՆ ԲԱՐ...
 
Secured Transactions and Collateral Registries Concepts
Secured Transactions and Collateral Registries ConceptsSecured Transactions and Collateral Registries Concepts
Secured Transactions and Collateral Registries Concepts
 
ԱՊԱՀՈՎՎԱԾ ԳՈՐԾԱՐՔՆԵՐԻ ՀԱՄԱԿԱՐԳԻ ԵՎ ՀԱՄԱՊԱՏԱՍԽԱՆ ՇԱՐԺԱԿԱՆ ԳՈՒՅՔԻ ԷԼԵԿՏՐՈՆԱՅԻՆ ...
ԱՊԱՀՈՎՎԱԾ ԳՈՐԾԱՐՔՆԵՐԻ ՀԱՄԱԿԱՐԳԻ ԵՎ ՀԱՄԱՊԱՏԱՍԽԱՆ ՇԱՐԺԱԿԱՆ ԳՈՒՅՔԻ ԷԼԵԿՏՐՈՆԱՅԻՆ ...ԱՊԱՀՈՎՎԱԾ ԳՈՐԾԱՐՔՆԵՐԻ ՀԱՄԱԿԱՐԳԻ ԵՎ ՀԱՄԱՊԱՏԱՍԽԱՆ ՇԱՐԺԱԿԱՆ ԳՈՒՅՔԻ ԷԼԵԿՏՐՈՆԱՅԻՆ ...
ԱՊԱՀՈՎՎԱԾ ԳՈՐԾԱՐՔՆԵՐԻ ՀԱՄԱԿԱՐԳԻ ԵՎ ՀԱՄԱՊԱՏԱՍԽԱՆ ՇԱՐԺԱԿԱՆ ԳՈՒՅՔԻ ԷԼԵԿՏՐՈՆԱՅԻՆ ...
 
Ապահովված գործարքների համակարգի և շարժական գույքի նկատմամբ ապահովված իրավու...
Ապահովված գործարքների համակարգի և շարժական գույքի  նկատմամբ  ապահովված իրավու...Ապահովված գործարքների համակարգի և շարժական գույքի  նկատմամբ  ապահովված իրավու...
Ապահովված գործարքների համակարգի և շարժական գույքի նկատմամբ ապահովված իրավու...
 
Կուտակային Կենսաթոշակային Համակարգ` Համառոտ տեղեկություններ արժեթղթերի շուկայ...
Կուտակային Կենսաթոշակային Համակարգ` Համառոտ տեղեկություններ արժեթղթերի շուկայ...Կուտակային Կենսաթոշակային Համակարգ` Համառոտ տեղեկություններ արժեթղթերի շուկայ...
Կուտակային Կենսաթոշակային Համակարգ` Համառոտ տեղեկություններ արժեթղթերի շուկայ...
 
Access to Finance
Access to Finance Access to Finance
Access to Finance
 
Access and Usage of Financial Services by MSMEs in Regions of Armenia
Access and Usage of Financial Services by MSMEs in Regions of ArmeniaAccess and Usage of Financial Services by MSMEs in Regions of Armenia
Access and Usage of Financial Services by MSMEs in Regions of Armenia
 
ՖԻՆԱՆՍԱԿԱՆ ԾԱՌԱՅՈՒԹՅՈՒՆՆԵՐԻ ՕԳՏԱԳՈՐԾՈՒՄԸ ԵՎ ՀԱՍԱՆԵԼԻՈՒԹՅՈՒՆԸ ՄՓՄՁ-ՆԵՐԻ ՀԱՄԱՐ ...
ՖԻՆԱՆՍԱԿԱՆ ԾԱՌԱՅՈՒԹՅՈՒՆՆԵՐԻ ՕԳՏԱԳՈՐԾՈՒՄԸ ԵՎ ՀԱՍԱՆԵԼԻՈՒԹՅՈՒՆԸ ՄՓՄՁ-ՆԵՐԻ ՀԱՄԱՐ ...ՖԻՆԱՆՍԱԿԱՆ ԾԱՌԱՅՈՒԹՅՈՒՆՆԵՐԻ ՕԳՏԱԳՈՐԾՈՒՄԸ ԵՎ ՀԱՍԱՆԵԼԻՈՒԹՅՈՒՆԸ ՄՓՄՁ-ՆԵՐԻ ՀԱՄԱՐ ...
ՖԻՆԱՆՍԱԿԱՆ ԾԱՌԱՅՈՒԹՅՈՒՆՆԵՐԻ ՕԳՏԱԳՈՐԾՈՒՄԸ ԵՎ ՀԱՍԱՆԵԼԻՈՒԹՅՈՒՆԸ ՄՓՄՁ-ՆԵՐԻ ՀԱՄԱՐ ...
 
Secured Transactions Reform in Armenia
Secured Transactions Reform in ArmeniaSecured Transactions Reform in Armenia
Secured Transactions Reform in Armenia
 
The Role of Internal Audit
The Role of Internal AuditThe Role of Internal Audit
The Role of Internal Audit
 
Temenos Architecture for Armenia
Temenos Architecture for ArmeniaTemenos Architecture for Armenia
Temenos Architecture for Armenia
 
Isms new
Isms   newIsms   new
Isms new
 
FED Launch Presentation 17 July 2013
FED Launch Presentation 17 July 2013FED Launch Presentation 17 July 2013
FED Launch Presentation 17 July 2013
 
FED Leasing training for ARARATBANK 20140401
 FED Leasing training for ARARATBANK 20140401 FED Leasing training for ARARATBANK 20140401
FED Leasing training for ARARATBANK 20140401
 
Leasing training for CARD 20140122
Leasing training for CARD 20140122Leasing training for CARD 20140122
Leasing training for CARD 20140122
 

Recently uploaded

EIS-Webinar-Prompt-Knowledge-Eng-2024-04-08.pptx
EIS-Webinar-Prompt-Knowledge-Eng-2024-04-08.pptxEIS-Webinar-Prompt-Knowledge-Eng-2024-04-08.pptx
EIS-Webinar-Prompt-Knowledge-Eng-2024-04-08.pptx
Earley Information Science
 
Histor y of HAM Radio presentation slide
Histor y of HAM Radio presentation slideHistor y of HAM Radio presentation slide
Histor y of HAM Radio presentation slide
vu2urc
 
Artificial Intelligence: Facts and Myths
Artificial Intelligence: Facts and MythsArtificial Intelligence: Facts and Myths
Artificial Intelligence: Facts and Myths
Joaquim Jorge
 

Recently uploaded (20)

Axa Assurance Maroc - Insurer Innovation Award 2024
Axa Assurance Maroc - Insurer Innovation Award 2024Axa Assurance Maroc - Insurer Innovation Award 2024
Axa Assurance Maroc - Insurer Innovation Award 2024
 
08448380779 Call Girls In Civil Lines Women Seeking Men
08448380779 Call Girls In Civil Lines Women Seeking Men08448380779 Call Girls In Civil Lines Women Seeking Men
08448380779 Call Girls In Civil Lines Women Seeking Men
 
Scaling API-first – The story of a global engineering organization
Scaling API-first – The story of a global engineering organizationScaling API-first – The story of a global engineering organization
Scaling API-first – The story of a global engineering organization
 
Understanding Discord NSFW Servers A Guide for Responsible Users.pdf
Understanding Discord NSFW Servers A Guide for Responsible Users.pdfUnderstanding Discord NSFW Servers A Guide for Responsible Users.pdf
Understanding Discord NSFW Servers A Guide for Responsible Users.pdf
 
How to Troubleshoot Apps for the Modern Connected Worker
How to Troubleshoot Apps for the Modern Connected WorkerHow to Troubleshoot Apps for the Modern Connected Worker
How to Troubleshoot Apps for the Modern Connected Worker
 
EIS-Webinar-Prompt-Knowledge-Eng-2024-04-08.pptx
EIS-Webinar-Prompt-Knowledge-Eng-2024-04-08.pptxEIS-Webinar-Prompt-Knowledge-Eng-2024-04-08.pptx
EIS-Webinar-Prompt-Knowledge-Eng-2024-04-08.pptx
 
presentation ICT roal in 21st century education
presentation ICT roal in 21st century educationpresentation ICT roal in 21st century education
presentation ICT roal in 21st century education
 
Apidays Singapore 2024 - Building Digital Trust in a Digital Economy by Veron...
Apidays Singapore 2024 - Building Digital Trust in a Digital Economy by Veron...Apidays Singapore 2024 - Building Digital Trust in a Digital Economy by Veron...
Apidays Singapore 2024 - Building Digital Trust in a Digital Economy by Veron...
 
Mastering MySQL Database Architecture: Deep Dive into MySQL Shell and MySQL R...
Mastering MySQL Database Architecture: Deep Dive into MySQL Shell and MySQL R...Mastering MySQL Database Architecture: Deep Dive into MySQL Shell and MySQL R...
Mastering MySQL Database Architecture: Deep Dive into MySQL Shell and MySQL R...
 
Boost Fertility New Invention Ups Success Rates.pdf
Boost Fertility New Invention Ups Success Rates.pdfBoost Fertility New Invention Ups Success Rates.pdf
Boost Fertility New Invention Ups Success Rates.pdf
 
[2024]Digital Global Overview Report 2024 Meltwater.pdf
[2024]Digital Global Overview Report 2024 Meltwater.pdf[2024]Digital Global Overview Report 2024 Meltwater.pdf
[2024]Digital Global Overview Report 2024 Meltwater.pdf
 
TrustArc Webinar - Stay Ahead of US State Data Privacy Law Developments
TrustArc Webinar - Stay Ahead of US State Data Privacy Law DevelopmentsTrustArc Webinar - Stay Ahead of US State Data Privacy Law Developments
TrustArc Webinar - Stay Ahead of US State Data Privacy Law Developments
 
08448380779 Call Girls In Diplomatic Enclave Women Seeking Men
08448380779 Call Girls In Diplomatic Enclave Women Seeking Men08448380779 Call Girls In Diplomatic Enclave Women Seeking Men
08448380779 Call Girls In Diplomatic Enclave Women Seeking Men
 
Strategies for Landing an Oracle DBA Job as a Fresher
Strategies for Landing an Oracle DBA Job as a FresherStrategies for Landing an Oracle DBA Job as a Fresher
Strategies for Landing an Oracle DBA Job as a Fresher
 
Workshop - Best of Both Worlds_ Combine KG and Vector search for enhanced R...
Workshop - Best of Both Worlds_ Combine  KG and Vector search for  enhanced R...Workshop - Best of Both Worlds_ Combine  KG and Vector search for  enhanced R...
Workshop - Best of Both Worlds_ Combine KG and Vector search for enhanced R...
 
Histor y of HAM Radio presentation slide
Histor y of HAM Radio presentation slideHistor y of HAM Radio presentation slide
Histor y of HAM Radio presentation slide
 
GenCyber Cyber Security Day Presentation
GenCyber Cyber Security Day PresentationGenCyber Cyber Security Day Presentation
GenCyber Cyber Security Day Presentation
 
Driving Behavioral Change for Information Management through Data-Driven Gree...
Driving Behavioral Change for Information Management through Data-Driven Gree...Driving Behavioral Change for Information Management through Data-Driven Gree...
Driving Behavioral Change for Information Management through Data-Driven Gree...
 
Artificial Intelligence: Facts and Myths
Artificial Intelligence: Facts and MythsArtificial Intelligence: Facts and Myths
Artificial Intelligence: Facts and Myths
 
From Event to Action: Accelerate Your Decision Making with Real-Time Automation
From Event to Action: Accelerate Your Decision Making with Real-Time AutomationFrom Event to Action: Accelerate Your Decision Making with Real-Time Automation
From Event to Action: Accelerate Your Decision Making with Real-Time Automation
 

IT Governance in Banks, May, 2014

  • 1. USAID Finance for Economic Development (FED) Program Workshop: “IT Governance in Banks” May 27, 2014
  • 2. IT Governance: Why, How, When… Komitas Stepanyan, PhD, CRISC, CMRM CobIT Foundation Certificate YEREVAN - 2014
  • 3. Agenda Introduction  The problem  Management Expectations of IT  IT management challenges  Key risk Framework Implementation Guidance
  • 4. Is IT Works as needed??? Statistics… Over 80% of IT project are delivered late and over budget. (Standish Group – Oct 2006) Nearly 60% of all IT projects are delivered with less functionality that originally promised. (Standish Group – Mar 2007) More than 25% of the IT projects usually fail (Gartner Group – May 2006) Less than 5% of project fail due to technical reasons – Nearly all obstacles are related to poorly defined requirements, poor sponsorship, weak management controls or all of the above. (Gartner Group – May 2006) The IT aspects of CG are one of things that CEO’s think they don’t have to understand-until it bites them! (Piter Morriss - KPMG)
  • 5. Facts… “ IT Governance is the responsibility of the Board of Directors and executive management. It is an integral part of enterprise governance and consists of the leadership and organizational structures and processes that ensure that the organization’s IT sustains and extends the organizations strategies and objectives.” IT Governance Institute Board Briefing, Second Edition, 2003
  • 6. Strategic Alignment Value Creation Risk Management Resource Management Performance Measurement Plan & Organize Acquire & Implement Deliver & Support Monitor
  • 7. Management/Business Expectations of IT - What does management expect from IT? ? Information Technologies - What is an IT at all? - How to use it? - How to manage it? - How to be sure everything works as needed? - How to measure results? It’s the time to recognize and manage complexity It’s the time to open “Black Box” …
  • 8. Information management challenges How the organization will operate How the information systems themselves will work. Information systems are only successful if they are used.
  • 9. Key risk Misalignment between IT and Business  Time and budget overruns  Ineffective IT Investments  Useless IT systems  Anachronism IT systems Apply good IT(and not only) risk management to ensure success
  • 10. Agenda Introduction  The problem  Management Expectations of IT  Information management challenges  Key risk Framework Implementation Guidance
  • 11. The psychology/ sociology of Failed Systems Inconsistent materials Work overloads Lack of measures & defined processes Cascading rework Soloed functional processes Inconsistent procedures for identical tasks Unintegrated best practices
  • 12. CobIT Framework Management’s IT Expectations Management’s IT Responsibilities
  • 13. Management Needs COBIT To Evaluate IT Investment Decisions To Balance Risk and Control of Investment To Benchmark Existing and Future IT Environment 76% of various CEOs and CIOs are aware of the benefits offered by IT governance frameworks, yet only 42% of them had any intention of implementing such a framework” (Loggerenberg 2006)
  • 14. Business Requirements CobIT Cube IT Processes DS M PO AI Domains Processes Activities People Application Information Infrastructure
  • 15. Who Benefits from More Effective and Sustainable IT Governance?  What Executives Get  – Business improvements that result from knowledgeable participation in IT decision-making from an enterprise perspective  – Ensures that key IT investments support the business and provide optimum returns to the business  – Ensures compliance with laws regulations  What Mid-Level Business Managers Get  – Convinces senior business managers that their combined business -IT resources are being managed effectively  – Helps to ensure that business services for which they are responsible will meet commitments  What Senior IT Managers Get  – Obtains sponsorship and support and a clear focus on important strategic and operational initiatives  – Improves customer relationships by delivering results in a more predictable and consistent manner, with the involvement of the customer  What Program/Project and Operations Managers Get  Helps in resolving issues, review progress and, enable faster decisions  What Everyone Gets  – Facilitates communications about how IT contributes to the business  – Improves coordination, cooperation, communications and synergy across the organization  – Less stress
  • 16. Agenda Introduction  The problem  Management Expectations of IT  Information management challenges  Key risk Framework Implementation Guidance
  • 17. How To Implement CobIT in an Organization Top Down Approach Audit Committee Approach Audit and IT Management Consensus Approach Regulation/Legislation
  • 18. Getting Started – Board and Executive Questions for IT Does the IT strategy align with the business strategy? Is the IT investment justified based on its contributions to the business? How likely will IT meet or exceed its plans, objectives and initiatives? Is IT being managed prudent, effectively? How is that measured? How is IT delivering value? Is IT developing and maintaining constructive relationships with customers, vendors and others? Is IT delivering projects and services on time, within scope, within budget and with high quality? Is IT staffed adequately, wit the right skills and competencies? How does IT management and operations compare to other best practice organizations How is IT managing and planning for contingencies, disasters, security, and back- up? How is IT measuring its performance? What key performance measures? Does the Board review and possibly approve the IT strategy? Is a risk management policy, assessment and mitigation practice followed for IT?
  • 19. To Adopt CobIT, Who Needs To Be Influenced?  Chief Executive (e.g., CEO)  Senior IT Executive (CIO or VP of IT)  IT Steering Committee  IT Management  Business managers
  • 20. CobIT Maturity Model How do you know where you are? Nonexistent Initial Repeatable Defined Managed Optimised 0 1 2 3 4 5
  • 21. CB RA Case Before CobIT Implementation
  • 22. CB RA Case After CobIT Implementation
  • 23. CB RA Case After CobIT Implementation - 2011 Process Maturity By CobIT IT Processes Maturity level AVRG IT AVRG IT & IT Audit IT Audit Benchmark
  • 24. Summary • IT governance is a broad and complex topic with many parts • Clearly defined roles, ownership and accountability • IT governance is integral part of corporate governance • IT governance is a journey and not only destination
  • 25. To be or NOT to be? D I s c u s s I o n IT Governance or NOT IT Governance?
  • 26.
  • 27. Business and IT’s Perpetual Disconnect AT Kearney, from a survey conducted in December 2001, report that only 17% of businesses had IT strategies that were "fully aligned and developed simultaneously" with corporate strategy. Furthermore, 45% of participants did not feel that their IT strategies were developed to support or align with their corporate strategy. Fact: The Corporate Alignment Profile most often shows IT as the most unaligned group.
  • 28. CEOs Seeking a Solution The IT Governance Global Status Report (2004) found that 80%+ of CEOs recognised that “IT Governance or some form thereof is required” to resolve “IT issues”. The Report also found that 57% of CEOs looked to IT Governance to align IT strategy (and 53% to manage IT risks). However the Report concluded that “solutions in this domain are not yet available”.
  • 29. What CIOs Want ? The top benefits CIOs were hoping to achieve: Increased IT credibility with the business (81%); Closer alignment between IT and business objectives (69%); Improved teamwork between IT and internal business partners (68%); Improved ability for CIO to influence the business (46%). #CIO Research Reports. June 1, 2005. Turning IT Doubters into True Believers http://www2.cio.com/research/index.cfm
  • 30. The Pieces of CobIT Executive Summary - Senior Executives (CEO, CIO) Framework - Senior Operational Management (Directors of IT) Control Objectives - Middle Management (Mid-Level IT Management) Audit Guidelines - Line Management (Applications or Operations Management) Management Guidelines - Operational Management, Director of IS, Mid- Level IT Management Implementation Tool Set - Director of IS, Mid-Level IS Management For additional information: www.isaca.org; www.itgi.org komitas.stepanyan@cba.am