SlideShare a Scribd company logo
 
References COBIT Student Book www.isaca.org/cobit Cobit Transforming Enterprise IT by ISACA, 2009
Why does IT need an IT control  framework? What does Cobit do? How does Cobit support the governance of IT? Who needs an IT control framework? What are the benefits of implementing Cobit?
   2009 ISACA All Rights reserved.  Is my information technology organisation  doing the right things? Are we  doing them the right way? Are we  getting them done well? Are we  getting the benefits?  * * Based on the “Four Ares” as described by John Thorp in his book  The Information Paradox,  written jointly with Fujitsu, first published in 1998 and revised in 2003   COBIT answers Key Business Questions
Enterprises are sacrificing  money, productivity and  competitive advantage by not  implementing effective IT  governance Executives need a better way to: Direct IT for optimal advantage Measure the value provided by IT Manage IT-related risks    2009 ISACA All Rights reserved.  Why does IT need a control framework ? IT Governance Is the Key Issue
What does COBIT do? Improves IT efficiency and effectiveness Helps IT understand the needs of the business Puts practices in place to meet the business needs as efficiently as possible Ensure alignment of business an IT Helps executives understand and manage IT investments throughout their life cycle
How does COBIT support the governance of IT? COBIT support IT governance by providing a framework to ensure that: IT is aligned with the business IT enables the business and maximizes benefits IT resources are used responsibly IT risks are managed appropriately
The benefits of implementing COBIT include: A common language for executives, management and ITprofessionals A better understanding of how the business and IT can work together for successful delivery of IT initiatives Improved efficiency and optimization of cost Reduced operational risk Clear policy development More efficient and successful audits Clear ownership and responsibilites, based on process orientation What are the benefits of implementing COBIT?
Board and Executive To ensure management follows and implements the strategic direction for IT Management To make IT investment decisions To balance risk and control investment To benchmark existing and future IT environment Users To obtain assurance on security and control of products and services they acquire internally or externally Auditors To substantiate opinions to management on internal controls To advise on what minimum controls are necessary Who needs a control framework?
Accepted globally as a set of tools that ensures IT is working effectively Functions as an overarching framework  Provides common language to communicate goals, objectives and expected results to all stakeholders Based on, and integrates, industry standards and good practices in: Strategic alignment of IT with business goals Value delivery of services and new projects Risk management Resource management Performance measurement    2009 ISACA All Rights reserved.  COBIT  is a Road Map to Good IT Governance
The C OBI T Framework The C OBI T framework explained: Business focus Process orientation IT resources
Starts from the premise that IT needs to deliver the information that the enterprise needs to achieve its objectives Promotes process focus and process ownership Divides IT into 34 processes belonging to four domains and provides a high-level control objective for each Considers fiduciary, quality and security needs of enterprises, providing seven information criteria that can be used to generically define what the business requires from IT Is supported by a set of over 300 detailed control objectives Effectiveness Efficiency Availability Integrity Confidentiality Reliability Compliance Plan and Organise Acquire and Implement Deliver and Support Monitor and Evaluate C OBI T: Of what does it consist?
“ In order to provide the information that the organisation needs to achieve its objectives, IT resources need to be managed by a set of naturally grouped processes.” Relates to business requirements (expressed as information criteria) Links to business processes Empowers business owners Decomposes IT into four domains and 34 processes Domains: (plan-build-run) + monitor Control, audit, implementation and performance management knowledge structured by process Business Process Business Orientation and Process Focus

More Related Content

PPTX
rethinking marketing
PPTX
Principal 4 Enabling A Holistic Approach
PPTX
Global Artificial Intelligence (AI) Index
PPTX
Corporate governance of INFORMATION TECHNOLOGY (IT)
PPSX
COBIT 5.0 vs COBIT 2019
PPTX
Itil,cobit and ıso27001
PPTX
COBIT5 Introduction
PPTX
Cobit 2019 framework by ISACA
rethinking marketing
Principal 4 Enabling A Holistic Approach
Global Artificial Intelligence (AI) Index
Corporate governance of INFORMATION TECHNOLOGY (IT)
COBIT 5.0 vs COBIT 2019
Itil,cobit and ıso27001
COBIT5 Introduction
Cobit 2019 framework by ISACA

What's hot (17)

PPTX
COBIT5 Implementation Guidance
PPT
It governance
PPT
Governance Of Enterprise Information Technology V3
PPSX
IT Control Objectives Framework, A Relationship Between COSO Cobit and ITIL
PPTX
IT Governance Made Easy
PPTX
IT Governance Vs IT Management Presentation V0.1
PDF
Qap cobit2019-20181111
PDF
Mark thomas cobit-and-frameworks
PPTX
COBIT 5 - Principal 5 Separating Governance From Management
PPTX
CobiT Foundation Free Training
PPTX
ITIL vs. COBIT
PPTX
Introduction to ITIL 2011 and IT service management
PPTX
Introduction to COBIT 5 and IT management
PPT
IT Governances
PPT
Governance and Management of Enterprise IT with COBIT 5 Framework
PDF
DevOps, BA and COBIT don’t really align, or do they?
COBIT5 Implementation Guidance
It governance
Governance Of Enterprise Information Technology V3
IT Control Objectives Framework, A Relationship Between COSO Cobit and ITIL
IT Governance Made Easy
IT Governance Vs IT Management Presentation V0.1
Qap cobit2019-20181111
Mark thomas cobit-and-frameworks
COBIT 5 - Principal 5 Separating Governance From Management
CobiT Foundation Free Training
ITIL vs. COBIT
Introduction to ITIL 2011 and IT service management
Introduction to COBIT 5 and IT management
IT Governances
Governance and Management of Enterprise IT with COBIT 5 Framework
DevOps, BA and COBIT don’t really align, or do they?
Ad

Similar to 01 intro-cobit (20)

PDF
Cobi t 4.1-brochure
PPT
Accountability Corbit Overview 06262007
PPT
Cobit overview
PPT
COBIT® Presentation Package.ppt
PPTX
PDF
An Introduction to IT Management with COBIT 2019
PDF
COBIT 2019 Executive Summary -COBIT 2019
PDF
COBIT 2019 Executive Summary_v1.1 .pdf
PPTX
COBIT stands for (Control Objectives for Information and Related Technology
PPTX
COBIT-2019-Executive-Summary_v1.0.pptx
PPSX
IT Governance - COBIT Perspective
PPT
Use COBIT for IT SAVINGS
PPT
This one cobit_introduction cobit notes.ppt
PPTX
COBIT
PDF
cobit-2019 introduction overview for student
PPTX
Governance and Management of Enterprise IT with COBIT 5 Framework
PPTX
COBIT Approach to Maintain Healthy Cyber Security Status Using NIST - CSF
PPTX
information system and computers
PPT
Cobit5 introduction
PPT
Cobit5 introduction
Cobi t 4.1-brochure
Accountability Corbit Overview 06262007
Cobit overview
COBIT® Presentation Package.ppt
An Introduction to IT Management with COBIT 2019
COBIT 2019 Executive Summary -COBIT 2019
COBIT 2019 Executive Summary_v1.1 .pdf
COBIT stands for (Control Objectives for Information and Related Technology
COBIT-2019-Executive-Summary_v1.0.pptx
IT Governance - COBIT Perspective
Use COBIT for IT SAVINGS
This one cobit_introduction cobit notes.ppt
COBIT
cobit-2019 introduction overview for student
Governance and Management of Enterprise IT with COBIT 5 Framework
COBIT Approach to Maintain Healthy Cyber Security Status Using NIST - CSF
information system and computers
Cobit5 introduction
Cobit5 introduction
Ad

Recently uploaded (20)

PDF
Types of control:Qualitative vs Quantitative
PDF
WRN_Investor_Presentation_August 2025.pdf
PPTX
job Avenue by vinith.pptxvnbvnvnvbnvbnbmnbmbh
PDF
Chapter 5_Foreign Exchange Market in .pdf
PDF
A Brief Introduction About Julia Allison
PDF
Nidhal Samdaie CV - International Business Consultant
DOCX
unit 2 cost accounting- Tender and Quotation & Reconciliation Statement
PDF
kom-180-proposal-for-a-directive-amending-directive-2014-45-eu-and-directive-...
DOCX
Business Management - unit 1 and 2
DOCX
unit 1 COST ACCOUNTING AND COST SHEET
PPT
Data mining for business intelligence ch04 sharda
PDF
Dr. Enrique Segura Ense Group - A Self-Made Entrepreneur And Executive
PDF
MSPs in 10 Words - Created by US MSP Network
PPTX
Amazon (Business Studies) management studies
PPT
340036916-American-Literature-Literary-Period-Overview.ppt
PDF
SIMNET Inc – 2023’s Most Trusted IT Services & Solution Provider
PDF
How to Get Funding for Your Trucking Business
PPTX
Lecture (1)-Introduction.pptx business communication
PPTX
The Marketing Journey - Tracey Phillips - Marketing Matters 7-2025.pptx
PDF
20250805_A. Stotz All Weather Strategy - Performance review July 2025.pdf
Types of control:Qualitative vs Quantitative
WRN_Investor_Presentation_August 2025.pdf
job Avenue by vinith.pptxvnbvnvnvbnvbnbmnbmbh
Chapter 5_Foreign Exchange Market in .pdf
A Brief Introduction About Julia Allison
Nidhal Samdaie CV - International Business Consultant
unit 2 cost accounting- Tender and Quotation & Reconciliation Statement
kom-180-proposal-for-a-directive-amending-directive-2014-45-eu-and-directive-...
Business Management - unit 1 and 2
unit 1 COST ACCOUNTING AND COST SHEET
Data mining for business intelligence ch04 sharda
Dr. Enrique Segura Ense Group - A Self-Made Entrepreneur And Executive
MSPs in 10 Words - Created by US MSP Network
Amazon (Business Studies) management studies
340036916-American-Literature-Literary-Period-Overview.ppt
SIMNET Inc – 2023’s Most Trusted IT Services & Solution Provider
How to Get Funding for Your Trucking Business
Lecture (1)-Introduction.pptx business communication
The Marketing Journey - Tracey Phillips - Marketing Matters 7-2025.pptx
20250805_A. Stotz All Weather Strategy - Performance review July 2025.pdf

01 intro-cobit

  • 1.  
  • 2. References COBIT Student Book www.isaca.org/cobit Cobit Transforming Enterprise IT by ISACA, 2009
  • 3. Why does IT need an IT control framework? What does Cobit do? How does Cobit support the governance of IT? Who needs an IT control framework? What are the benefits of implementing Cobit?
  • 4. 2009 ISACA All Rights reserved. Is my information technology organisation doing the right things? Are we doing them the right way? Are we getting them done well? Are we getting the benefits? * * Based on the “Four Ares” as described by John Thorp in his book The Information Paradox, written jointly with Fujitsu, first published in 1998 and revised in 2003 COBIT answers Key Business Questions
  • 5. Enterprises are sacrificing money, productivity and competitive advantage by not implementing effective IT governance Executives need a better way to: Direct IT for optimal advantage Measure the value provided by IT Manage IT-related risks  2009 ISACA All Rights reserved. Why does IT need a control framework ? IT Governance Is the Key Issue
  • 6. What does COBIT do? Improves IT efficiency and effectiveness Helps IT understand the needs of the business Puts practices in place to meet the business needs as efficiently as possible Ensure alignment of business an IT Helps executives understand and manage IT investments throughout their life cycle
  • 7. How does COBIT support the governance of IT? COBIT support IT governance by providing a framework to ensure that: IT is aligned with the business IT enables the business and maximizes benefits IT resources are used responsibly IT risks are managed appropriately
  • 8. The benefits of implementing COBIT include: A common language for executives, management and ITprofessionals A better understanding of how the business and IT can work together for successful delivery of IT initiatives Improved efficiency and optimization of cost Reduced operational risk Clear policy development More efficient and successful audits Clear ownership and responsibilites, based on process orientation What are the benefits of implementing COBIT?
  • 9. Board and Executive To ensure management follows and implements the strategic direction for IT Management To make IT investment decisions To balance risk and control investment To benchmark existing and future IT environment Users To obtain assurance on security and control of products and services they acquire internally or externally Auditors To substantiate opinions to management on internal controls To advise on what minimum controls are necessary Who needs a control framework?
  • 10. Accepted globally as a set of tools that ensures IT is working effectively Functions as an overarching framework Provides common language to communicate goals, objectives and expected results to all stakeholders Based on, and integrates, industry standards and good practices in: Strategic alignment of IT with business goals Value delivery of services and new projects Risk management Resource management Performance measurement  2009 ISACA All Rights reserved. COBIT is a Road Map to Good IT Governance
  • 11. The C OBI T Framework The C OBI T framework explained: Business focus Process orientation IT resources
  • 12. Starts from the premise that IT needs to deliver the information that the enterprise needs to achieve its objectives Promotes process focus and process ownership Divides IT into 34 processes belonging to four domains and provides a high-level control objective for each Considers fiduciary, quality and security needs of enterprises, providing seven information criteria that can be used to generically define what the business requires from IT Is supported by a set of over 300 detailed control objectives Effectiveness Efficiency Availability Integrity Confidentiality Reliability Compliance Plan and Organise Acquire and Implement Deliver and Support Monitor and Evaluate C OBI T: Of what does it consist?
  • 13. “ In order to provide the information that the organisation needs to achieve its objectives, IT resources need to be managed by a set of naturally grouped processes.” Relates to business requirements (expressed as information criteria) Links to business processes Empowers business owners Decomposes IT into four domains and 34 processes Domains: (plan-build-run) + monitor Control, audit, implementation and performance management knowledge structured by process Business Process Business Orientation and Process Focus

Editor's Notes

  • #5: When we think about C OBI T and IT governance at the most fundamental level, there are four questions that every leader asks him or herself when it comes to IT initiatives: Is my IT organisation doing the right things? Are we doing them the right way? Are we getting them done well? Are we getting the benefits? Using the maturity models developed for each of C OBI T’s 34 IT processes, management can identify: • The actual performance of the enterprise—Where the enterprise is today • The current status of the industry—The comparison • The enterprise’s target for improvement—Where the enterprise wants to be • The required growth path between ‘as-is’ and ‘to-be’
  • #6: IT governance goes a long way towards bridging the gap between corporate expectations and perceptions of the IT function. The need for top management direction and oversight regarding the value of IT and the management of IT-related risks are now understood as key elements of governance. Value, risk and control constitute the core of IT governance. IT governance consists of the leadership, organisational structures and processes that ensure that the enterprise’s IT sustains and extends the enterprise’s strategies and objectives. Governance is not the sole responsibility of the CIO; it is the responsibility of an enterprise’s top executives and board of directors. Successful enterprises understand the risks and exploit the benefits of IT and find ways to deal with: • Aligning IT strategy with the business strategy • Ensuring investors and stakeholders that a ‘standard of due care’ around mitigating IT risks is being met by the enterprise • Providing organisational structures that facilitate the implementation of strategy and goals • Measuring IT’s performance These are the benefits of sound IT governance.
  • #11: The C OBI T mission is to research, continually update, publicise and promote an authoritative, internationally accepted IT governance control framework for adoption by enterprises and day-to-day use by business managers, IT professionals and assurance professionals. Now in its 4.1 release, the framework has been used successfully by IT organisations and business executives in many industries and of many sizes. C OBI T provides a common language to communicate goals, objectives and expected results. A common language benefits all levels of IT, including management and stakeholders.