IT-Assurance with CobiT

Author(s):  
Martin Fröhlich ◽  
Wolfgang Johannsen ◽  
Karsten Wilop

Strategic IT management is increasingly concerned with requirements from regulatory bodies. This conformance part of IT management complements the classic performance side. Ideally both are integrated into IT Governance of an enterprise or organization. With the need to prove compliance with a wide diversity of laws and rules for IT systems (technology, processes, rules) the demand for proven support methods grows. Specifically best practice models are beginning to gain awareness and acceptance for IT Audits and for the less formal IT Assurance projects. The Control Objectives for Information and Related Technology (CobiT) reference model is increasingly being discussed as a framework of choice for IT Audits and IT Assurance. This chapter introduces requirements for IT Audits and IT Assurance projects and discuss the boundaries of applying the CobiT IT Assurance Guide in such environments.

2020 ◽  
Vol 19 (1) ◽  
pp. 102-122
Author(s):  
Thomas Blobel ◽  
Martin Lames

AbstractIn professional sports clubs, the growing number of individual IT-systems increases the need for central information systems. Various solutions from different suppliers lead to a fragmented situation in sports. Therefore, a standardized and independent general concept for a club information systems (CIS) is necessary. Due to the different areas involved, an interdisciplinary approach is required, which can be provided by sports informatics. The purpose of this paper is the development of a general and sports informatics driven concept for a CIS, using methods and models of existing areas, especially business intelligence (BI). Software engineering provides general methods and models. Business intelligence addresses similar problems in industry. Therefore, existing best practice models are examined and adapted for sport. From sports science, especially training systems and information systems in sports are considered. Practical relevance is illustrated by an example of Liverpool FC. Based on these areas, the requirements for a CIS are derived, and an architectural concept with its different components is designed and explained. To better understand the practical challenges, a participatory observation was conducted during years of working in sports clubs. This paper provides a new sports informatics approach to the general design and architecture of a CIS using best practice models from BI. It illustrates the complexity of this interdisciplinary topic and the relevance of a sports informatics approach. This paper is meant as a conceptional starting point and shows the need for further work in this field.


Author(s):  
Azmi Yunda Chairani ◽  
Royana Afwani ◽  
Sri Endang Anjawarni

The West Nusa Tenggara Department of Manpower and Transmigration (DISNAKERTRANS NTB) is one of the government organizations that assists the Governor of West Nusa Tenggara on labor and transmigration issues. IT governance in a company or organization is very necessary to harmonize organizational goals and strategies. With the problems found regarding to the resources both human resources and IT resources at DISNAKERTRANS NTB. Therefore, the purpose of this study is to determine the capability level of IT governance at DISNAKERTRANS NTB using the COBIT 5 framework by focusing on APO01 subdomains: Manage IT management frameworks, and APO07: Manage human resources. From the research results, the average capability level for the current conditions shows that APO01 and APO07 are at level 2. While the average capability level of the expected condition, shows that APO01 and APO07 are at level 4.to increase the current level, some recommendations are given to be considered by DISNAKERTRANS NTB in drafting the  policies relating to the APO01 and APO07 processes. Keywords: IT governance, capability level, COBIT 5.0, APO01, APO07.


2017 ◽  
Author(s):  
Andi Palalloi Irfan

Optimized of management Information Technology related aspects of both internal and external software such as networking, it can not be done sporadically personalized level management or policy makers. IT management issues has been experiencing a transition from technology issues into problems of management and governance. It was triggered by the increasing dependence and the need for the field of Information Technology. In today's modern era of information technology should be managed as well as manage other assets as a strategy for continuity of service of an agency / company.However along with the requirement also escalate issues of how to ensure that information technology is applied in accordance with the needs and functions. As well important how to control the transparency of the procurement of Information Technology is not abused and that the application is not appropriate. For it was imperative for government agencies to have a reference model suitable of IT Governance as required and expected. This study successfully identified the presence of 3 (three) CobIT 5 process to be used as the IT Governance models that can be applied, they are; EDM02, EDM03, and EDM05.


2016 ◽  
Vol 2 (3) ◽  
pp. 157-166
Author(s):  
Guido Waluyan ◽  
Augie David Manuputty

Abstract— Information Technology (IT) Governance used for building a system to help companies in the decision-making process which involve stakeholders and all the company elements. PT. Telekomunikasi Indonesia, Tbk. engaged in Telecommunication, Information, Media, Edutainment and Services (“TIMES”) and aim of giving a competitive price with high quality TIMES that becoming the best corporation-management model in Indonesia. Starclick is one of the Information System, which support business objectives in sales process using a map. To ensure the quality of IT governance on that application, framework as reference model is required. Control Objective for Information and related Technology (COBIT) providing a best-practice reference that covers the entire business organization and explained it in a structured-logical activity that effectively can be manage and control. The result of this study is the measurement of capability level only reach manage process level. Keyword—  COBIT 5, Information System, IT Governance, Telkom Semarang, Qualitative.  Intisari— Tata kelola Teknologi Informasi (TI) digunakan untuk membangun suatu sistem yang membantu perusahaan dalam proses pengambilan keputasan dimana melibatkan para pemangku kepentingan dan elemen-elemen terkait dalam perusahaan. PT. Telekomunikasi Indonesia, Tbk. adalah perusahaan yang bergerak dibidang layanan Telecommunication, Information, Media, Edutainment dan Services (“TIMES”) dengan tujuan memberikan layanan TIMES yang berkualitas tinggi dengan harga yang kompetitif dan menjadi model pengelolaan korporasi terbaik di Indonesia. Usaha dalam menunjang tujuan bisnis telah didukung oleh beberapa Sistem Informasi (SI) antara lain Starclick yang mendukung proses penjualan menggunakan peta. Diperlukan suatu kerangka kerja sebagai reference model, untuk memastikan kualitas tata kelola TI pada penerapan aplikasi “Starclick” tersebut. Control Objective for Information and related Technology (COBIT) menyediakan referensi best practice yang mencakup keseluruhan proses bisnis organisasi dan memaparkannya dalam struktur aktivitas-aktivitas logis yang dapat dikelola dan dikendalikan secara efektif. Hasil dari penelitian pengukuran tingkat kapabilitas baru mencapai level manage process.   Kata Kunci— COBIT 5, Sistem Informasi, Tata Kelola TI, Telkom Semarang, Kualitatif.


Author(s):  
S. Looso ◽  
M. Goeken ◽  
W. Johannsen

Recent years have seen an unprecedented consolidation of best practice know-how in various areas of IT management. With it came a certain popularity of standards and reference models (COBIT, ITIL, CMMI, ISO/IEC 27000 family etc.) commonly classified as frameworks for IT governance. Each of these frameworks aims to support certain parts of IT management with best practice knowledge and enhances the quality of the delivered IT Services. But now we are facing a situation characterised by an abundance of these IT governance frameworks. In particular their combined or parallel usage increasingly creates redundancies and issues of complexity. To organise an efficient interaction between frameworks and to cope with their heterogeneity; e.g. in process semantics and description techniques; the application of these frameworks has become a lively issue of research. In this contribution the authors will reflect on the state of the art in comparing and integrating IT governance frameworks, analyse pros and cons of various approaches, and present their own approach based on metamodelling. The authors consider metamodelling a promising approach to close the gap between high-level comparison and detailed mapping as it allows an identification of redundancies and incoherent semantics on a framework-independent level. Promising an increasing return on investment, harmonisation is an important topic within IT departments (Siviy et al., 2007). This approach is a first step toward an integrated and harmonised handling of the meanwhile mandatory frameworks for IT management.


2020 ◽  
Author(s):  
deni setiawan

COBIT merupakan a set of best practice (framework) bagi pengelolaan teknologi informasi (IT management) yang secara lengkap terdiri dari: executive summary, framework, control objectives, audit guidelines, implementation tool set serta management guidelines yang sangat berguna untuk proses sistem informasi strategis.COBIT berguna bagi IT users dalam memperoleh keyakinan atas kehandalan sistem aplikasi yang dipergunakan. Sedangkan para manajer memperoleh manfaat dalam keputusan saat menyusun strategic IT plan, menentukan information architecture,dan keputusan atas procurement (pengadaan/pembelian) inventaris organisasi.IT governance memastikan adanya pengukuran yang efisien dan efektif terhadap peningkatan proses bisnis perusahaan melalui struktur yang menggunakan proses-proses TI, sumberdaya TI dan informasi ke arah dan tujuan strategis perusahaan dengan menggunakan metode penilaian (scoring) sehingga suatu organisasi dapat menilai proses-proses TI yang dimilikinya dari skala non-existent sampai dengan optimised (dari 0 sampai 5).Dari studi literatur ini terlihat bahwa COBIT mempunyai spektrum proses TI yang luas dan lebih mendetail serta lebih mendalam dalam mendefinisikan proses-proses TI yang bersifat teknis dan operasional bila dibandingkan dengan COSO atau ITIL.Kata kunci : COBIT, IT Governance, IT Governance


Respati ◽  
2017 ◽  
Vol 7 (19) ◽  
Author(s):  
Herison Surbakti

COBIT merupakan a set of best practice (framework) bagi pengelolaan teknologi informasi (IT management) yang secara lengkap terdiri dari: executive summary, framework, control objectives, audit guidelines, implementation tool set serta management guidelines yang sangat berguna untuk proses sistem informasi strategis.COBIT berguna bagi IT users dalam memperoleh keyakinan atas kehandalan sistem aplikasi yang dipergunakan. Sedangkan para manajer memperoleh manfaat dalam keputusan saat  menyusun strategic IT plan, menentukan information architecture,dan keputusan atas procurement (pengadaan/pembelian) inventaris organisasi.IT governance memastikan adanya pengukuran yang efisien dan efektif terhadap peningkatan proses bisnis perusahaan melalui struktur yang menggunakan proses-proses TI, sumberdaya TI dan informasi ke arah dan tujuan strategis perusahaan dengan menggunakan metode penilaian (scoring) sehingga suatu organisasi dapat menilai proses-proses TI yang dimilikinya dari skala non-existent sampai dengan optimised (dari 0 sampai 5).Dari studi literatur ini terlihat bahwa COBIT mempunyai spektrum proses TI yang luas dan lebih mendetail serta lebih mendalam dalam mendefinisikan proses-proses TI yang bersifat teknis dan operasional bila dibandingkan dengan COSO atau ITIL. Kata kunci : COBIT, IT Governance, IT Governance


Author(s):  
Sophie Loidolt

AbstractThe paper investigates phenomenology’s possibilities to describe, reflect and critically analyse political and legal orders. It presents a “toolbox” of methodological reflections, tools and topics, by relating to the classics of the tradition and to the emerging movement of “critical phenomenology,” as well as by touching upon current issues such as experiences of rightlessness, experiences in the digital lifeworld, and experiences of the public sphere. It is argued that phenomenology provides us with a dynamic methodological framework that emphasizes correlational, co-constitutional, and interrelational structures, and thus pays attention to modes of givenness, the making and unmaking of “world,” and, thereby, the inter/subjective, affective, and bodily constitution of meaning. In the case of political and legal orders, questions of power, exclusion, and normativity are central issues. By looking at “best practice” models such as Hannah Arendt’s analyses, the paper points out an analytical tool and flexible framework of “spaces of meaning” that phenomenologists can use and modify as they go along. In the current debates on political and legal issues, the author sees the main task of phenomenology to reclaim experience as world-building and world-opening, also in a normative sense, and to demonstrate how structures and orders are lived while they condition and form spaces of meaning. If we want to understand, criticize, act, or change something, this subjective and intersubjective perspective will remain indispensable.


Author(s):  
Sabine Vogler ◽  
Nina Zimmermann ◽  
Zaheer-Ud-Din Babar ◽  
Reinhard Busse ◽  
Jaime Espin ◽  
...  

AbstractThe 4th PPRI Conference, held in Vienna in October 2019, addressed issues related to equitable and affordable access to medicines. A multi-stakeholder audience from around the globe discussed solutions and best practice models for current challenges such as high-priced medicines, limitations of current pricing and reimbursement policies and tight budgets for health technologies. A multi-faceted approach (so-called balance, evidence, collaboration and transparency/BECT strategy) was also discussed. This includes an improved balance of different interests and policy areas, generation of relevant evidence, collaboration between countries and stakeholders, and transparency, and was considered as the most promising pathway for the future.


Author(s):  
Vicki L. Kristman ◽  
Cécile R. L. Boot ◽  
Kathy Sanderson ◽  
Kathryn E. Sinden ◽  
Kelly Williams-Whitt

Sign in / Sign up

Export Citation Format

Share Document