190 likes | 204 Views
CobiT Executive Summary. MBA512 - Information Systems and Technology reference " CobiT, 3rd Edition Executive Summary ", July 2000. CobiT Mission.
E N D
CobiT Executive Summary MBA512 - Information Systems and Technology reference "CobiT, 3rd Edition Executive Summary", July 2000
CobiT Mission To research, develop, publicize and promote an authoritative, up-to-date, international set of generally accepted information technology control objectives for day-to-day use by business managers and auditors. The answer is "a sales pitch." What does this sound like?
Organizations Behind CobiT • Control Objectives for Information and related Technology • Started in 1996 - what are issues that might have spurred the creation of CobiT? AICPA SysTrust
Why is it critical to effectively manage information and related technologies? • Increasing dependence on information and the systems that deliver this information • Increasing vulnerabilities and a wide spectrum of threats, such as cyber threats and information warfare • Scale and cost of the current and future investments in information and information systems • Potential for technologies to dramatically change organizations and business practices, create new opportunities and reduce costs
Increasing dependence on information and the systems that deliver this information • Why is dependence increasing? • Is more information being captured/manipulated using information systems and technology? • Are the abilities of managers to understand and to directly use information systems/technology increasing, becoming stagnant, or decreasing? • What are the implications?
Increasing vulnerabilities and a wide spectrum of threats, such as cyber threats and information warfare • What can the company do and who must the company rely on to perform? (i.e., can the company outsource the risk?) • What are some cyber threats? • What is the company's responsibility in case of cyber warfare?
Scale and cost of the current and future investments in information and information systems • What costs are beyond the company's ability to pay? A consortium of companies? • What costs are so great that a government has to intervene? Implications for operations in other countries?
Potential for technologies to dramatically change organizations and business practices, create new opportunities and reduce costs • How far can organizations see in the future? • What are the risks to a company for looking forward? • What constitutes a "drastic" change in opportunities or costs?
"Many organisations recognise the potential benefits that technology can yield. Successful organisations, however, understand and manage the risks associated with implementing new technologies." What would Nicolas Carr say in the "IT Doesn't Matter" article about the quote?
What is meant by 'IT governance'? ? a) the governmental oversight of information systems/technology b) a structure of relationships and processes to direct and control the enterprise in order to achieve goals by adding value while balancing risk versus return c) setting overall control and strategy to a single person in the enterprise, such as the chief information officer ? ? ?
CobiT has a business orientation, the main direction is not information systems nor technology • CobiT treats information systems as an asset and then subjects the asset to managerial assessment
Information SystemsNo Longer The "Black Box" • Successful organizations must understand the risks and benefits of information systems and technology - or else they cannot be effectively managed • Management (not technical personnel) are charged to make managerial decisions about risk and return
What would Nicolas Carr say in the "IT Doesn't Matter" article about this quote? the article states "Emphasis on attaining competitive advantage and cost-efficiency implies an ever-increasing reliance on technology as a major component in the strategies of most organizations."
IT Governance Institutionalizes Optimal Solutions (Or At Least Satisficing Solutions) • How? • Does the institutionalization cause stagnation? • What happens to an organization that does not institutionalize solutions; i.e. they may have a champion for technology but not procedures?
Benefits of IT Governance • Increased automation - be effective • Decreased costs - be efficient Discuss the differences between "efficiency" and "effectiveness."