Newsflash

A number of free, online courses are now available. Register to gain access to Online Education and view one of these free courses now. But first complete the e-mail verification step and then sign-in.
 

Login Form






Lost Password?
No account yet? Register

Syndicate


Home
ISO 38500: A new standard for IT Governance Print E-mail
The release of ISO 38500 brings greater clarity to the topic of IT governance. Described as a standard for "corporate governance of IT" this standard is aligned with the 1992 definition of Corporate Governance published in the Cadbury Report in the United Kingdom. This standard provides a framework with six guiding principles for good corporate governance of IT and a model for directors to govern IT with three main tasks: evaluate, direct and control.  

ISO 38500 decribes governance as being distinct from management and defines governance as the system used by the most senior governing body (e.g. board of directors) of an organisation for directing and controlling the current and future use of IT. The objective is to support the organisation achieve its plans.

Managers looking to implement ISO 38500 will find CobiT  (www.isaca.org) a good reference for the policies, processes, structures and controls needed to implement the management system that supports governance as this standard only describes what should happen, but not how, by when or by whom.

The scope of this standard is the governance of all management processes relating to IT services. The six principles address:

  • Assigning reponsibilities to competent persons with decision-making authority, making use of appropriate governance mechanisms and make sure responsibilities are understood
  • Aligning IT activities with business objectives, focus on organisational benefits and ensure benefits are realised
  • Investing in IT so that proposals can be realised, balancing risk and value delivered
  • Provide the capability and capacity in IT to support the business, risks are to be managed, resources are to be protected (including intellectual property and the organisational memory), measure how IT supports the business
  • Provide adequate internal controls  to meet internal and external compliance requirements
  • Identify the human behaviour required and develop work practices for the appropriate use of IT.
Last Updated ( Tuesday, 29 July 2008 )
 
< Prev   Next >

Polls

What do you think about the free online certification now available?
 

Who's Online

We have 1 guest online

Online Store ...

Strategic IT Planning Job Description
Strategic IT Planning Job Description
$20.00
Add to Cart


Risk Management Job Description
Risk Management Job Description
$1.00
Add to Cart


Project Office Job Description
Project Office Job Description
$50.00
Add to Cart


Project Manager Job Description
Project Manager Job Description
$50.00
Add to Cart


© 2008 IT Governance Network (providers of CobiT and ISO 38500 training in the UK).