scholarly journals The Interrelation of Information Technology Governance and Enterprise Risk Management to The Organization’s Performance: A Review of Empirical Literature

Author(s):  
Kevin Bastian Sirait

Given that the role of information technology (IT) governance and enterprise risk management (ERM) within the organization are imperative due to the ever-increasing complexity in the corporate environment, this study aims to uncover the relationship between IT governance and ERM along with the impact of the two frameworks’ interconnectedness on the organization’s performance through empirical literature review. Furthermore, the findings obtained from the empirical review are also used to create a checklist that every organization can apply. The purpose of the created checklist is to help organizations examine the interconnectedness of their IT governance and ERM with respect to their needs and objectives. The findings from the empirical review show that both IT governance and ERM emphasize the importance of strategic and process alignment regarding its implementation, and it is positively significant to the organization’s performance. Hence, the level of effectiveness of one’s IT- and risk-oriented approaches are dictated by how well an organization appropriately aligns its IT governance and ERM structure, mechanism, and process with its objectives, needs, and business operations.

2020 ◽  
Vol 2 (4) ◽  
pp. 446-466
Author(s):  
Mochamad Muslih ◽  
Iis Sugianti ◽  
Daulat Freddy Simanjuntak ◽  
Dedi Rianto Rahadi

The use of information technology is a necessity and a challenge in this 4th-millennium era. Companies that do not want to use technology that suits their needs will be left behind. The Indonesian government has also required the use of appropriate information technology. The purpose of this study is to evaluate the implementation of the Ministry of SOE Regulation No.  Per 02 / MBU / 2013 concerning guidelines for the preparation of information technology management of State-Owned Enterprises (SOE) in the field of non-public finance and the implementation of risk management to SOEs that are moderated by corporate governance. The population in this study is State-Owned Enterprises (SOE) in the financial sector. The research sample of 17 SOEs was sampled with the purposive sampling method. The analysis technique used is multiple linear regression. The results showed that IT Governance does not affect firm performance. ERM significantly influences firm performance. Corporate governance that is proxied by the number of audit committee meetings does not moderate IT governance's influence on firm performance and does not mild ERM's effect on firm performance.


Author(s):  
Sherrena Buckby ◽  
Peter Best ◽  
Jenny Stewart

This chapter introduces current and prior IT governance literature across five key focus areas being strategic alignment of business and IT systems, delivery of value from IT systems, risk management of IT systems, management of IT resources and measurement of the performance of IT systems. The chapter focuses on synthesising the current literature on ITG to achieve three primary objectives. First, the review presents a detailed overview of research across the key focus areas of ITG. Second, the synthesis of the literature identifies important gaps in ITG research. Third, the review aims to guide future thinking and research on ITG in each of the focus areas. This chapter will provide a comprehensive understanding of the current state of IT governance literature.


2019 ◽  
Vol 63 ◽  
pp. 67-82 ◽  
Author(s):  
Parvaneh Saeidi ◽  
Sayyedeh Parisa Saeidi ◽  
Saudah Sofian ◽  
Sayedeh Parastoo Saeidi ◽  
Mehrbakhsh Nilashi ◽  
...  

2010 ◽  
pp. 1657-1705 ◽  
Author(s):  
Sherrena Buckby ◽  
Peter Best ◽  
Jenny Stewart

This chapter introduces current and prior IT governance literature across five key focus areas being strategic alignment of business and IT systems, delivery of value from IT systems, risk management of IT systems, management of IT resources and measurement of the performance of IT systems. The chapter focuses on synthesising the current literature on ITG to achieve three primary objectives. First, the review presents a detailed overview of research across the key focus areas of ITG. Second, the synthesis of the literature identifies important gaps in ITG research. Third, the review aims to guide future thinking and research on ITG in each of the focus areas. This chapter will provide a comprehensive understanding of the current state of IT governance literature.


2017 ◽  
Vol 25 (3) ◽  
pp. 274-295 ◽  
Author(s):  
Erastus Karanja

Purpose There are two main industry-sanctioned enterprise risk management (ERM) models, that is, COSO 2004 and ISO 31000:2009, that firms refer to when implementing ERM programs. Taken together, the two ERM models specify that firms should implement ERM programs to meet a strategic need, improve operations and reporting or to comply with government regulations or industry best practices. In addition, the focus of ERM implementation should be either the subsidiary, business unit, division, firm/entity or global level. The purpose of this study is to investigate whether firms are aligning their ERM implementations with these tenets: strategy, operations, reporting, compliance and the level of implementation. Design/methodology/approach The proxy for ERM implementation is the hiring of a Chief Risk Officer (CRO). The research data come from a sample of 122 US firms that issued a press release following the hiring of a CRO between 2010 and 2014. The press releases were retrieved and aggregated through content analysis in LexisNexis Academic. Findings The results reveal that many ERM implementations are occurring at the firm/entity level, and with the exception of reporting, firms consider ERM to be a strategic firm resource capable of improving business operations and compliance initiatives. Originality/value There is a dearth of research studies specifically investigating whether ERM programs adopted by firms are aligned with the specification of COSO 2004 and ISO 31000:2009 frameworks. The apparent lack of a clear understanding of the alignment between the firm ERM programs and the industry’s ERM frameworks may limit the development and implementation of ERM and the eventual realization of the benefits associated with a successful ERM implementation.


2021 ◽  
Vol ahead-of-print (ahead-of-print) ◽  
Author(s):  
Babajide Oyewo

PurposeThis study investigates firm attributes (namely level of capitalisation, scope of operation, organisational structure, organisational lifecycle, systemic importance and size) affecting the robustness of enterprise risk management (ERM) practice, the extent to which ERM affects the performance of banks and the impact of ERM on the long-term sustainability of banks in Nigeria. This was against the backdrop that the 2012 banking reform was a major regulatory intervention that mainstreamed ERM in the Nigerian banking sector.Design/methodology/approachThe study employed a mixed methodology of content, trend and quantitative analyses. Ex post facto research design was deployed to analyse performance differential of banks, with respect to the implementation of ERM, over a 10-year period (2008–2017). A disclosure checklist developed from the COSO ERM integrated framework was used to assess the robustness of ERM by content-analysing divulgence on risk management in published annual reports. The banking reform periods were dichotomised into pre- (2008–2012) and post- (2013–2017) reform periods. Jonckheere–Terpstra test, independent sample t-test and Mann–Whitney test were applied to analyse a total of 1,036 firm-year observations over the period 2008–2017.FindingsResult shows that bank attributes significantly affecting the robustness of risk management practice are level of capitalisation, scope of operation, systemic importance and size. Performance of banks improved slightly during the post-2012 banking reform period. This suggests that as banks consolidate on the gains of ERM, benefits of the regulatory policy on risk management may be realised in the long run. Result also shows that ERM enhances long-term performance, connoting that effective risk management could serve as a competitive strategy for surviving turbulence that typically characterises the banking sector.Practical implicationsThe emergence of level of capitalisation, scope of operation, systemic importance and size as determinants of ERM provides empirical evidence to support the practice of reviewing the capital requirements for banking business from time to time by regulatory authorities (i.e. recapitalisation policy) as a strategy for managing systemic risk. Top management of banks may consider instituting mechanisms that will ensure risk management is given prominence. A proactive approach must be taken to convert risks to opportunities by banks and other financial institutions, going forward, to cope with the vicissitudes of financial intermediation.Originality/valueThe originality of the study stems from the consideration that it provides some new insights into the impact of ERM on banks long-term sustainability in a developing country. The study also contributes to knowledge by exposing the factors determining the robustness of risk management practice. The study developed a checklist for assessing ERM practice from annual reports and other risk management disclosure documents. The paper also adds to the scarce literature on risk governance and risk management.


2015 ◽  
Vol 11 (4) ◽  
pp. 89-101 ◽  
Author(s):  
Khalifa Al-Farsi ◽  
Ramzi EL Haddadeh

Information technology governance is considered one of the innovative practices that can provide support for decision-makers. Interestingly, it has become increasingly a de facto for organizations in seeking to optimise their performance. In principle, information technology governance has emerged to support organizations in the integration of information technology (IT) infrastructures and the delivery of high-quality services. On the other hand, decision-making processes in public sector organisations can be multi-faceted and complex, and decision makers play an important role in implementing technology in the public sector. The aim of this paper is to shed some light on current opportunities and challenges that IT governance is experiencing in the context of public sector services. In this respect, this paper examines the factors influencing the decision-making process to fully appreciate IT governance. Furthermore, this study focuses on combining institutional and individual perspectives to explain how individuals can take decisions in response to institutional influences.


2013 ◽  
Vol 5 (1) ◽  
pp. 52
Author(s):  
Sisilia Thya Safitri

Information Technology Governance (IT Governance) merupakan faktor penting bagi organisasi atau perusahaan dalam memanfaatkan teknologi informasi. Adanya IT Governance akan memberikan jaminan bahwa pemanfaatan teknologi informasi dapat sejalan dengan tujuan organisasi. PT. Pertamina (Persero) sebagai perusahaan minyak berskala nasional yang telah berkomitmen untuk memberikan kontribusi yang terbaik bagi perekonomian Indonesia telah melakukan transformasi perusahaan menjadi dua tema besar, yaitu fundamental dan bisnis. Untuk mendukung komitmen tersebut, maka diperlukan peran IT yang besar. Pada Code of Corporate Governance PT.Pertamina, dicantumkan mengenai pentingnya penerapan IT Governance dalam mendukung proses bisnis yang dilakukan PT. Pertamina.


Sign in / Sign up

Export Citation Format

Share Document