110 likes | 269 Views
C OBI T (Control Objectives for Information and related Technology). BA 370 Group #11: Grif Cadwell Curtis Monette. Agenda. History of CobiT/ISACA CobiT framework Who would benefit from CobiT? Sarbanes-Oxley Act Other control frameworks IT Infrastructure Library (ITIL)
E N D
COBIT(Control Objectives for Information and related Technology) BA 370 Group #11: Grif Cadwell Curtis Monette
Agenda • History of CobiT/ISACA • CobiT framework • Who would benefit from CobiT? • Sarbanes-Oxley Act • Other control frameworks • IT Infrastructure Library (ITIL) • Committee of Sponsoring Organizations of the Treadway Commission (COSO) • Conclusion
History of CobiT/ISACA • Information Systems Audit and Control Association • CobiT first released in 1996 • Mission: “to research, develop, publicize, and promote an authoritative, up-to-date, international set of generally accepted information technology control objectives for day-to-day use by business managers and auditors.”
CobiT framework • Framework consists of four major domains: • Planning and Organization • Acquisition and Implementation • Delivery and Support • Monitoring • 34 high-level control objectives within four domains • More than 300 detailed control objectives within 34 high-level
Who uses CobiT? • Boards of Directors • Audit Committees • CEOs • Heads of governmental organizations • CIOs • Security Managers • Information Systems (IS) Auditors • Colleges & Universities
CobiT (version 4.0) • complete CobiT package consists of six publications: • Executive Summary • Framework • Control Objectives • IT Assurance Guide (formerly Audit Guidelines) • Implementation Tool Set • Management Guidelines
Sarbanes-Oxley Act (July 30, 2002) • aka, Public Company Accounting Reform and Investor Protection Act of 2002 • Public Company Accounting Oversight Board (PCAOB)
Other control frameworks • IT Infrastructure Library (ITIL) • Committee of Sponsoring Organizations of the Treadway Commission (COSO)
Conclusion • CobiT video • Questions?
Works Cited • Information Systems Audit and Control Association. "Overview & History." ISACA. 2008. • Information Systems Audit and Control Association. "IS Standards, Guidelines, Procedures for Auditing and Control Professrionals." ISACA. 22 Jan 2008. • Information Systems Audit and Control Association. "COBIT Management Guidelines." Information Systems Control Journal, Volume 1, 2001. • Thibodeau, Patrick. "IT Auditors Turn to Cobit for Sarb-Ox Guidance." Computer World - Government. Orlando. 15 May 2006.