Big Data Governance as a 
Corporate Governance Imperative 
A guide for Boards of Directors and the C-Suite 
Guy Pearce 
REData Performance Consulting guyp@redata.ca 
(SlideShare Version) 
National Privacy & Data Governance Congress 
Calgary, 16 October 2014 
© REData Performance Consulting 2014
Accountable to 
shareholders for 
performance, risk 
and sustainability 
Introduction: Organizational Scope 
Accountable to the 
board of directors for 
performance, risk 
and sustainability 
Accountable to the 
CEO for functional 
performance, risk 
and sustainability 
Board of 
Directors 
CEO 
C-Suite 
Operational 
Executives 
Organizational Governance 
© REData Performance Consulting 2014
Introduction: Big Data - a different class of data to operational data 
Sensor data 
(incl 
wearables) 
Customer 
Data 
“Small” 
structured 
ext data 
Data Lake 
(Hadoop) 
ODS / DW Operations 
(RDBMS) 
Conceptual, integrated data architecture 
Social 
media 
Reporting 
& 
Analytics 
Decisioning 
Big Data 
Analytics 
Business 
Organize Processes 
Analyze 
Operationalize Insights 
Organize 
Data fusion and/or integration 
between big data and regular 
operational data 
Basic 
corporate 
operational 
data cycle 
Unstructured 
int & ext data 
Big Data 
© REData Performance Consulting 2014
Corporate 
Business 
Model 
Corporate 
Operating 
Model 
Introduction: Selected operational data risk drivers 
5. Quality 
Data Governance Landscape (ex big data) 
© REData Performance Consulting 2014
Corporate 
Business 
Model 
Corporate 
Operating 
Model 
Introduction: Selected big data risk drivers 
Unstructured 
int & ext data 
Organize 
Data Lake 
(Hadoop) 
? 
Social 
media 
Sensor data 
(incl 
wearables) 
Operations 
Decisioning 
Big Data 
Analytics 
Data Governance Landscape (big data) 
© REData Performance Consulting 2014
Reputation risk concerns threats to the good name or standing of 
an entity. It is the number one risk on the board’s agenda. Deloitte 
Firms are vulnerable to reputation damage because: 
• Firms with good reputations are perceived as providing more 
value, which results in more loyal customers buying a broader 
ranges of products and services, often at a premium 
• The market believes they deliver sustained earnings & growth, 
resulting in higher PEs, market caps and lower costs of capital 
• 70% to 80% of market cap comes from intangible assets 
HBR 
It takes 20 years to build a reputation and 5 minutes to ruin it. If you think about 
that, you'll do things differently. 
Warren Buffett 
Let’s see how poor data governance 
affects reputation risk
3.1 trillion reasons 
Why Data Governance (Quality)? 
Annual dollar cost to the US economy of poor quality. Of this, 
$600 billion is the cost of poor data quality to companies
589 million reasons 
Why Data Governance (Breach)? 
The financial cost to date of the Target data breach (lost profit and corrective action)
Data-Stealing Malware 
Stolen Credentials 
Backdoor Malware 
RAM Scraping 
Phishing 
How do data breaches happen (Access)?
669 million reasons 
Why Data Governance (Privacy)? 
The number of private records compromised in data breaches in the US since 2005
Why Data Governance? 
Five key big data privacy and data protection challenges 
Dr Waël Hassan
• 97% of data breaches are avoidable 
Information Systems Audit and Control Association (ISACA) 
• 94% of breaches are detected by a 3rd party, 
an average of 416 days after the event 
How do most data breaches occur? 
HP
Who is accountable? 
BMO as but one example
Trends in Corporate Governance: 
Cybersecurity 
• Expect lawsuits targeting boards for data breach and 
investor loss 
• Expect greater risk regulation and spends for 
financial service companies and non-banks 
• Expect lawsuits and increasing regulation for risk 
management laggards 
Yes, the board is accountable 
Dr R Leblanc; Associate Professor; Law, Governance & Ethics; York University. 
Canadian Lawyer Magazine; Feb 3 2014
Quality 
Data 
Governance 
Security and 
Access 
Privacy 
Lifecycle 
Management 
Because of overlaps, good data governance 
means integrated data governance 
© REData Performance Consulting 2014
Governance (Corporate, IT, Data) 
IT 
Governance is 
an element of 
Corporate 
Governance 
Data 
Governance is 
an element of 
IT 
Governance 
Risk (IT, Data) 
Security is 
one type of 
risk. So is 
privacy and 
compliance 
Compliance (Data) 
A 
u 
d 
i 
t 
Privacy is one element of Compliance 
Data governance in a GRC context 
© REData Performance Consulting 2014
Poor data governance increases the likelihood of 
• a negative impact on brand equity 
• Specifically security, privacy and quality 
• a negative impact on market capitalization 
• Specifically security, compliance (regulatory fines & penalties) 
• a negative impact on credit rating, 
• All aspects of data governance as operating risk mitigation 
all of which are the outcomes of reputation risk, which is 
the top risk on the board’s agenda 
Data governance is a corporate governance 
imperative because it’s about reputation risk
• Lack of board or senior executive ERM leadership, 30% 
• Competing priorities, chosen by 51% of respondents 
• Perception ERM adds bureaucracy, 33% 
• Lack of perceived value, 41% 
• Insufficient resources, 43% 
Reward must be considered in a risk-return context. Poor 
alignment between strategy and risk is a reason for most 
perceived barriers to effective risk management 
Barriers to effective risk management 
CGMA survey 2014, n=446
• No control over the source and its sustainability 
• Slow-to-mature legislative context 
Impossible to mature given continued explosive growth? 
• Quality is an unknown 
• IoT (incl. wearables) 
• Data fusion 
• Cloud 
How does Data Governance change in 
the presence of Big Data? 
© REData Performance Consulting 2014
COBIT / ISO38500 Diagnostics 
How to identify data governance weaknesses: 
Step 1
REData IT Governance and Data Governance Diagnostics 
Perspective 
Scope 
Enterprise 
CObIT version 4.0 
© REData Performance Consulting 2014 
Governance diagnostics expose weaknesses 
Diagnostics hot spots often reinforce each other, for example, inconsistencies in 
sections 2, 5 and 8 dealing with Outsourcing, Security and Incidents
Business Process Analysis 
Diagnostics directs which processes to prioritize for 
BPR, and for integrated data governance 
How to identify data governance weaknesses: 
Step 2
How to identify data governance weaknesses: 
Step 2 
Processes improvements 
generate cost savings that 
can be used to improve 
lifecycle management, 
quality, security and privacy. 
Improved processes also 
reduce risk by minimizing 
the number of points where 
quality, security and privacy 
risks can manifest 
An example of risk 
reduction by BPR 
Example from www.gerke.com
• Data governance is risk management 
• Poor data governance incurs reputation risk, which means 
data governance has corporate governance implications 
• Full scope data governance = ƒ(security, privacy, quality, 
data lifecycle management) 
• It is unacceptable for the Board to be ignorant of its 
accountability for data risk, given its fiduciary duty of risk 
oversight 
• Diagnostic tools can help identify weak spots and improve 
end-to-end data governance, while BPR conducted with 
data governance in mind can significantly reduce risk 
Conclusion

More Related Content

PPTX
2. Getvisibility. Innovative data governance, control & oversight
PPTX
Most Common Data Governance Challenges in the Digital Economy
PDF
Building an Effective Data Management Strategy
PDF
How to Strengthen Enterprise Data Governance with Data Quality
PDF
Data-Ed Online Webinar: Data Governance Strategies
PDF
Why data governance is the new buzz?
PDF
RWDG Slides: Using Tools to Advance Your Data Governance Program
PDF
State of Data Governance in 2021
2. Getvisibility. Innovative data governance, control & oversight
Most Common Data Governance Challenges in the Digital Economy
Building an Effective Data Management Strategy
How to Strengthen Enterprise Data Governance with Data Quality
Data-Ed Online Webinar: Data Governance Strategies
Why data governance is the new buzz?
RWDG Slides: Using Tools to Advance Your Data Governance Program
State of Data Governance in 2021

What's hot (20)

PDF
What is Data Governance?
PDF
Slides: Bridging the Data Disconnect – Trends in Global Data Management
PPTX
Data Strategy for Telcos : Preparedness and Management
PDF
Change management success for data governance
PPT
Data Quality
PPTX
How to Structure the Data Organization
PDF
Slides: Taking an Active Approach to Data Governance
PPTX
Data governance
PDF
Enterprise Data World Webinar: A Strategic Approach to Data Quality
PPTX
Five steps to launch your data governance office
PPTX
Importance of Data Governance
PPT
Data governance
PDF
Data Governance Brochure
PPTX
Linking Data Governance to Business Goals
PPTX
Developing & Deploying Effective Data Governance Framework
PDF
Slides: Applying Artificial Intelligence (AI) in All the Right Places in the ...
PDF
How to Implement Data Governance Best Practice
PDF
Enterprise Data Management Framework Overview
PDF
Qlik wp 2021_q3_data_governance_in_the_modern_data_analytics_pipeline
PPTX
How to Build Data Governance Programs That Last: A Business-First Approach
What is Data Governance?
Slides: Bridging the Data Disconnect – Trends in Global Data Management
Data Strategy for Telcos : Preparedness and Management
Change management success for data governance
Data Quality
How to Structure the Data Organization
Slides: Taking an Active Approach to Data Governance
Data governance
Enterprise Data World Webinar: A Strategic Approach to Data Quality
Five steps to launch your data governance office
Importance of Data Governance
Data governance
Data Governance Brochure
Linking Data Governance to Business Goals
Developing & Deploying Effective Data Governance Framework
Slides: Applying Artificial Intelligence (AI) in All the Right Places in the ...
How to Implement Data Governance Best Practice
Enterprise Data Management Framework Overview
Qlik wp 2021_q3_data_governance_in_the_modern_data_analytics_pipeline
How to Build Data Governance Programs That Last: A Business-First Approach
Ad

Viewers also liked (20)

PPTX
Top Three Big Data Governance Issues and How Apache ATLAS resolves it for the...
PPT
Metadata quality in digital repositories
PDF
Cybersecurity: Whose job is it anyway?
PDF
Smarter Analytics: Big Data and Predictive Governance
PDF
Matinale du MDM 2011
PDF
DATA FORUM MICROPOLE 2015 - Information Builders
PPTX
Driving Enterprise Data Governance for Big Data Systems through Apache Falcon
PDF
Cloud data governance, risk management and compliance ny metro joint cyber...
PDF
Real-World Data Governance Webinar: Big Data Governance - What Is It and Why ...
PDF
Aaf oct2 governance and metadata v2
PDF
Why You Need to Govern Big Data
PDF
Data-Ed Webinar: Data Governance Strategies
PDF
BI & Big data use case for banking - by rully feranata
PDF
Big Data Governance in Hadoop Environments with Cloudera Navigatorfeb2017meetu
PPTX
The Data Driven University - Automating Data Governance and Stewardship in Au...
PPTX
3 Phases of Healthcare Data Governance in Analytics
PDF
Oracle Big Data Governance Webcast Charts
PPTX
7 Essential Practices for Data Governance in Healthcare
PPTX
Welcome to the Age of Big Data in Banking
PDF
Big Data Security and Governance
Top Three Big Data Governance Issues and How Apache ATLAS resolves it for the...
Metadata quality in digital repositories
Cybersecurity: Whose job is it anyway?
Smarter Analytics: Big Data and Predictive Governance
Matinale du MDM 2011
DATA FORUM MICROPOLE 2015 - Information Builders
Driving Enterprise Data Governance for Big Data Systems through Apache Falcon
Cloud data governance, risk management and compliance ny metro joint cyber...
Real-World Data Governance Webinar: Big Data Governance - What Is It and Why ...
Aaf oct2 governance and metadata v2
Why You Need to Govern Big Data
Data-Ed Webinar: Data Governance Strategies
BI & Big data use case for banking - by rully feranata
Big Data Governance in Hadoop Environments with Cloudera Navigatorfeb2017meetu
The Data Driven University - Automating Data Governance and Stewardship in Au...
3 Phases of Healthcare Data Governance in Analytics
Oracle Big Data Governance Webcast Charts
7 Essential Practices for Data Governance in Healthcare
Welcome to the Age of Big Data in Banking
Big Data Security and Governance
Ad

Similar to Big data governance as a corporate governance imperative (20)

PPTX
Data Governance Strategies for Public Sector
PPTX
Is Your Agency Data Challenged?
PPTX
Data Governance Course without AI_Week 1.pptx
PDF
Navigating the Complex Terrain of Data Governance in Data Analysis.pdf
PPTX
Data Governance in the age of Social Media
PDF
The best of data governance
DOCX
What is data governance and why is it important
PPTX
TOP_407070357-Data-Governance-Playbook.pptx
PDF
Getting Ahead Of The Game: Proactive Data Governance
PDF
The value of big data analytics
PDF
sas-data-governance-framework-107325
PDF
ASUG82318 - Data Governance Considerations With SAP S4HANA.pdf
PDF
Eiu collibra transforming data into action-the business outlook for data gove...
PDF
EPF-datagov-part1-1.pdf
PPTX
Securing big data (july 2012)
PDF
Data-Ed Webinar: Data Governance Strategies
PDF
DataEd Slides: Data Governance Strategies
DOCX
Article in Techsmart
PPTX
Fuel your Data-Driven Ambitions with Data Governance
PPTX
Data Governance That Drives the Bottom Line
Data Governance Strategies for Public Sector
Is Your Agency Data Challenged?
Data Governance Course without AI_Week 1.pptx
Navigating the Complex Terrain of Data Governance in Data Analysis.pdf
Data Governance in the age of Social Media
The best of data governance
What is data governance and why is it important
TOP_407070357-Data-Governance-Playbook.pptx
Getting Ahead Of The Game: Proactive Data Governance
The value of big data analytics
sas-data-governance-framework-107325
ASUG82318 - Data Governance Considerations With SAP S4HANA.pdf
Eiu collibra transforming data into action-the business outlook for data gove...
EPF-datagov-part1-1.pdf
Securing big data (july 2012)
Data-Ed Webinar: Data Governance Strategies
DataEd Slides: Data Governance Strategies
Article in Techsmart
Fuel your Data-Driven Ambitions with Data Governance
Data Governance That Drives the Bottom Line

More from Guy Pearce (11)

PPTX
Governance: The key to effecting successful Digital Transformation
PDF
Closing the gap between innovation intent and reality (corporate governance)
PDF
Boosting Cybersecurity with Data Governance (peer reviewed)
PPTX
Leading enterprise-scale big data business outcomes
PPTX
Creating $100 million from Big Data Analytics in Banking
PPTX
Branding In Banking And Finance 2011
PPTX
African Retail Banking Opportunities In The Brics And (1)
PPT
The relationship marketing advantage, ICSB Halifax, Canada, 2008
PPT
Marketing Science Conference on the SME use of banking products, Vancouver 2008
PPTX
Academy of Marketing International Conference On Brand Management, Birmingham...
PPSX
Emerging Market SME Turnaround in a Recession: Theory and Practice. Cincinnat...
Governance: The key to effecting successful Digital Transformation
Closing the gap between innovation intent and reality (corporate governance)
Boosting Cybersecurity with Data Governance (peer reviewed)
Leading enterprise-scale big data business outcomes
Creating $100 million from Big Data Analytics in Banking
Branding In Banking And Finance 2011
African Retail Banking Opportunities In The Brics And (1)
The relationship marketing advantage, ICSB Halifax, Canada, 2008
Marketing Science Conference on the SME use of banking products, Vancouver 2008
Academy of Marketing International Conference On Brand Management, Birmingham...
Emerging Market SME Turnaround in a Recession: Theory and Practice. Cincinnat...

Recently uploaded (20)

PPTX
DS-40-Pre-Engagement and Kickoff deck - v8.0.pptx
PDF
CS3352FOUNDATION OF DATA SCIENCE _1_MAterial.pdf
PPTX
CHAPTER-2-THE-ACCOUNTING-PROCESS-2-4.pptx
PPTX
indiraparyavaranbhavan-240418134200-31d840b3.pptx
PPT
expt-design-lecture-12 hghhgfggjhjd (1).ppt
PPT
statistic analysis for study - data collection
PPTX
Crypto_Trading_Beginners.pptxxxxxxxxxxxxxx
PPTX
Phase1_final PPTuwhefoegfohwfoiehfoegg.pptx
PPT
statistics analysis - topic 3 - describing data visually
PDF
Tetra Pak Index 2023 - The future of health and nutrition - Full report.pdf
PPTX
FMIS 108 and AISlaudon_mis17_ppt_ch11.pptx
PPT
PROJECT CYCLE MANAGEMENT FRAMEWORK (PCM).ppt
PPTX
Machine Learning and working of machine Learning
PDF
Systems Analysis and Design, 12th Edition by Scott Tilley Test Bank.pdf
PDF
Navigating the Thai Supplements Landscape.pdf
PPTX
865628565-Pertemuan-2-chapter-03-NUMERICAL-MEASURES.pptx
PPT
DU, AIS, Big Data and Data Analytics.ppt
PDF
Jean-Georges Perrin - Spark in Action, Second Edition (2020, Manning Publicat...
PPTX
DATA MODELING, data model concepts, types of data concepts
PPTX
1 hour to get there before the game is done so you don’t need a car seat for ...
DS-40-Pre-Engagement and Kickoff deck - v8.0.pptx
CS3352FOUNDATION OF DATA SCIENCE _1_MAterial.pdf
CHAPTER-2-THE-ACCOUNTING-PROCESS-2-4.pptx
indiraparyavaranbhavan-240418134200-31d840b3.pptx
expt-design-lecture-12 hghhgfggjhjd (1).ppt
statistic analysis for study - data collection
Crypto_Trading_Beginners.pptxxxxxxxxxxxxxx
Phase1_final PPTuwhefoegfohwfoiehfoegg.pptx
statistics analysis - topic 3 - describing data visually
Tetra Pak Index 2023 - The future of health and nutrition - Full report.pdf
FMIS 108 and AISlaudon_mis17_ppt_ch11.pptx
PROJECT CYCLE MANAGEMENT FRAMEWORK (PCM).ppt
Machine Learning and working of machine Learning
Systems Analysis and Design, 12th Edition by Scott Tilley Test Bank.pdf
Navigating the Thai Supplements Landscape.pdf
865628565-Pertemuan-2-chapter-03-NUMERICAL-MEASURES.pptx
DU, AIS, Big Data and Data Analytics.ppt
Jean-Georges Perrin - Spark in Action, Second Edition (2020, Manning Publicat...
DATA MODELING, data model concepts, types of data concepts
1 hour to get there before the game is done so you don’t need a car seat for ...

Big data governance as a corporate governance imperative

  • 1. Big Data Governance as a Corporate Governance Imperative A guide for Boards of Directors and the C-Suite Guy Pearce REData Performance Consulting guyp@redata.ca (SlideShare Version) National Privacy & Data Governance Congress Calgary, 16 October 2014 © REData Performance Consulting 2014
  • 2. Accountable to shareholders for performance, risk and sustainability Introduction: Organizational Scope Accountable to the board of directors for performance, risk and sustainability Accountable to the CEO for functional performance, risk and sustainability Board of Directors CEO C-Suite Operational Executives Organizational Governance © REData Performance Consulting 2014
  • 3. Introduction: Big Data - a different class of data to operational data Sensor data (incl wearables) Customer Data “Small” structured ext data Data Lake (Hadoop) ODS / DW Operations (RDBMS) Conceptual, integrated data architecture Social media Reporting & Analytics Decisioning Big Data Analytics Business Organize Processes Analyze Operationalize Insights Organize Data fusion and/or integration between big data and regular operational data Basic corporate operational data cycle Unstructured int & ext data Big Data © REData Performance Consulting 2014
  • 4. Corporate Business Model Corporate Operating Model Introduction: Selected operational data risk drivers 5. Quality Data Governance Landscape (ex big data) © REData Performance Consulting 2014
  • 5. Corporate Business Model Corporate Operating Model Introduction: Selected big data risk drivers Unstructured int & ext data Organize Data Lake (Hadoop) ? Social media Sensor data (incl wearables) Operations Decisioning Big Data Analytics Data Governance Landscape (big data) © REData Performance Consulting 2014
  • 6. Reputation risk concerns threats to the good name or standing of an entity. It is the number one risk on the board’s agenda. Deloitte Firms are vulnerable to reputation damage because: • Firms with good reputations are perceived as providing more value, which results in more loyal customers buying a broader ranges of products and services, often at a premium • The market believes they deliver sustained earnings & growth, resulting in higher PEs, market caps and lower costs of capital • 70% to 80% of market cap comes from intangible assets HBR It takes 20 years to build a reputation and 5 minutes to ruin it. If you think about that, you'll do things differently. Warren Buffett Let’s see how poor data governance affects reputation risk
  • 7. 3.1 trillion reasons Why Data Governance (Quality)? Annual dollar cost to the US economy of poor quality. Of this, $600 billion is the cost of poor data quality to companies
  • 8. 589 million reasons Why Data Governance (Breach)? The financial cost to date of the Target data breach (lost profit and corrective action)
  • 9. Data-Stealing Malware Stolen Credentials Backdoor Malware RAM Scraping Phishing How do data breaches happen (Access)?
  • 10. 669 million reasons Why Data Governance (Privacy)? The number of private records compromised in data breaches in the US since 2005
  • 11. Why Data Governance? Five key big data privacy and data protection challenges Dr Waël Hassan
  • 12. • 97% of data breaches are avoidable Information Systems Audit and Control Association (ISACA) • 94% of breaches are detected by a 3rd party, an average of 416 days after the event How do most data breaches occur? HP
  • 13. Who is accountable? BMO as but one example
  • 14. Trends in Corporate Governance: Cybersecurity • Expect lawsuits targeting boards for data breach and investor loss • Expect greater risk regulation and spends for financial service companies and non-banks • Expect lawsuits and increasing regulation for risk management laggards Yes, the board is accountable Dr R Leblanc; Associate Professor; Law, Governance & Ethics; York University. Canadian Lawyer Magazine; Feb 3 2014
  • 15. Quality Data Governance Security and Access Privacy Lifecycle Management Because of overlaps, good data governance means integrated data governance © REData Performance Consulting 2014
  • 16. Governance (Corporate, IT, Data) IT Governance is an element of Corporate Governance Data Governance is an element of IT Governance Risk (IT, Data) Security is one type of risk. So is privacy and compliance Compliance (Data) A u d i t Privacy is one element of Compliance Data governance in a GRC context © REData Performance Consulting 2014
  • 17. Poor data governance increases the likelihood of • a negative impact on brand equity • Specifically security, privacy and quality • a negative impact on market capitalization • Specifically security, compliance (regulatory fines & penalties) • a negative impact on credit rating, • All aspects of data governance as operating risk mitigation all of which are the outcomes of reputation risk, which is the top risk on the board’s agenda Data governance is a corporate governance imperative because it’s about reputation risk
  • 18. • Lack of board or senior executive ERM leadership, 30% • Competing priorities, chosen by 51% of respondents • Perception ERM adds bureaucracy, 33% • Lack of perceived value, 41% • Insufficient resources, 43% Reward must be considered in a risk-return context. Poor alignment between strategy and risk is a reason for most perceived barriers to effective risk management Barriers to effective risk management CGMA survey 2014, n=446
  • 19. • No control over the source and its sustainability • Slow-to-mature legislative context Impossible to mature given continued explosive growth? • Quality is an unknown • IoT (incl. wearables) • Data fusion • Cloud How does Data Governance change in the presence of Big Data? © REData Performance Consulting 2014
  • 20. COBIT / ISO38500 Diagnostics How to identify data governance weaknesses: Step 1
  • 21. REData IT Governance and Data Governance Diagnostics Perspective Scope Enterprise CObIT version 4.0 © REData Performance Consulting 2014 Governance diagnostics expose weaknesses Diagnostics hot spots often reinforce each other, for example, inconsistencies in sections 2, 5 and 8 dealing with Outsourcing, Security and Incidents
  • 22. Business Process Analysis Diagnostics directs which processes to prioritize for BPR, and for integrated data governance How to identify data governance weaknesses: Step 2
  • 23. How to identify data governance weaknesses: Step 2 Processes improvements generate cost savings that can be used to improve lifecycle management, quality, security and privacy. Improved processes also reduce risk by minimizing the number of points where quality, security and privacy risks can manifest An example of risk reduction by BPR Example from www.gerke.com
  • 24. • Data governance is risk management • Poor data governance incurs reputation risk, which means data governance has corporate governance implications • Full scope data governance = ƒ(security, privacy, quality, data lifecycle management) • It is unacceptable for the Board to be ignorant of its accountability for data risk, given its fiduciary duty of risk oversight • Diagnostic tools can help identify weak spots and improve end-to-end data governance, while BPR conducted with data governance in mind can significantly reduce risk Conclusion