SlideShare une entreprise Scribd logo
1  sur  40
COBIT® 5.0
A Business Framework for Governance and
Management of Enterprise IT

Presented By
Balasubramanian.C, B.E, ITIL®V3,PRINCE2®,COBIT®5.0
I.T.Project Manager – Supply Chain & EAM

COBIT® is a Registered Trademark of ISACA® registered in
United States of America and other countries. www.isaca.org
Reference:
This presentation is excerpted and modified from ISACA’s COBIT and all related
10/23/2013
documents.

2
1) Appreciate Background of COBIT ®5
2) COBIT 5 Product Family
3) Information & Enterprise Benefits

4) Stakeholder Value
5) COBIT® 5 Framework
6) COBIT® 5 [5 Priniciples]

7) COBIT® 5 [7 Enablers]
8) Governance & Management Process Domains
9) Goals Cascade using Balanced Score Card
10) Implementation Guidance

10/23/2013

3
10/23/2013

4
10/23/2013

5
10/23/2013

6
10/23/2013

7
10/23/2013

8
10/23/2013

9
IT is Complicated .
IT Governance doesn’t
have to be.

10/23/2013

10
10/23/2013

11
1) Appreciate Background of COBIT®5
COBIT®5: One Complete Business Framework for

A Business Framework for Governance and Management of Enterprise 12
IT
10/23/2013
2) COBIT®5 Product Family

Source:COBIT®5 Implementation, figure 1. © 2012
ISACA®All rights reserved
10/23/2013

13
COBIT®5 Product Family
- includes Implementation Guidance Documents have been Officially released
COBIT®5
Framework

COBIT®5
Enabling Process

COBIT®5
Implementation

10/23/2013

14
COBIT®5 Product Family
-A Set of Resources to help U Implement COBIT®5 effectively
in your enterprise Documents have been Officially released
COBIT®5
Information Security
COBIT®5
for Risk

COBIT®5 Process
Assessment Programme
COBIT®5 for
Assurance

10/23/2013

15
COBIT®5 Product Family

Documents under Development

COBIT®5
Enabling
Information

COBIT 5
Translation

COBIT 5 Online

COBIT 5 Toolkit and materials
Readily available for download
10/23/2013

16
3) Information & Enterprise Benefits
• Information is a key resource for all enterprises.
• Information is created, used, retained, disclosed and
destroyed.
• Technology plays a key role in these actions.
• Technology is becoming pervasive in all aspects of
business and personal life.
So what benefits do information and technology bring to
enterprises?

Enterprise and their executives strive to:
1. Maintain Quality Information to support Business decisions
2. Generate Business Value from IT-enabled investments, i.e., to
achieve strategic goals and realise business benefits through
effective and innovative use of IT.
3. Achieve operational excellence through reliable and efficient
application of technology.
4. Maintain and Optimize IT related risk and Cost at acceptable
level
10/23/2013
17
4) Stakeholder Value
How can above benefits be realised to create enterprise
Stakeholder Value?

A. Delivering enterprise stakeholder value requires good governance and
management of information and technology (IT) assets.
B. Enterprise boards, executives and management have to embrace IT like any
other significant part of the business.
C. External legal, regulatory and contractual compliance requirements related to
enterprise use of information and technology are increasing, threatening value
if breached.
COBIT 5 provides a comprehensive framework that
assists enterprises to achieve their goals and deliver
value through effective GOVERNANCE and
MANAGEMENT of ENTERPRISE IT

10/23/2013

18
5) COBIT 5 Framework
Simply Stated, COBIT 5 helps Enterprises create optimal
value from IT by maintaining balance between realising
benefits and optimizing risk levels and resource usage.

COBIT 5 enables Information and Technology to be
governed and managed in a holistic manner for the entire
enterprise, taking in the full end-to end business and
functional areas of responsibility, considering IT – related
interests of Internal and External Stakeholders.
COBIT 5 PRINCIPLES and ENABLERS are generic and
useful for enterprises of all sizes, whether commercial, notfor-profit or in the public sector.

10/23/2013

19
6) COBIT 5 [5 Priniciples]

Source: COBIT® 5, figure 2. © 2012 ISACA® All rights reserved.
10/23/2013

20
7) COBIT 5 [7 Enablers]

Source: COBIT® 5, figure 12. © 2012 ISACA® All rights reserved.
10/23/2013

21
8) Governance & Management Process Domains
Governance Ensures that enterprise objectives achieved
by EVALUATING stakeholder needs, conditions and
options; setting DIRECTION through priortisation and
decision making; and MONITORING performance,
compliance and progress against agreed-on direction and
objectives (EDM).

Management PLANS, BIULDS, RUN, and MONITOR’s
activities in alignment with the direction set by the
governance body to achieve the enterprise objectives
(PBRM).

Exercising governance and management effectively in practice
requires appropriately using all enablers. The COBIT process
reference model allows us to focus easily on the relevant enterprise
22
activities. 10/23/2013
COBIT 5 is not prescriptive, but it advocates that enterprises
implement governance and management processes such that
key areas are covered as shown in above figure 15.
Source: COBIT® 5, figure 15. © 2012 ISACA® All rights reserved.
10/23/2013

23
10/23/2013
Source: COBIT® 5, © 2012 ISACA® All rights reserved.

24
Governance Domain (EDM) = 5 Processes
Ensure, Direct and Monitor (EDM)
Management Domain (PBRM) = 32 Processes
Align, Plan and Organise (APO)
Build, Acquire and Implement (BAI)
Deliver, Service and Support (DSS)
Monitor, Evaluate and Assess (MEA)

10/23/2013

25
9) Goals Cascade using Balanced Score Card

The COBIT5 goals cascade
translates stakeholder
needs into specific,
practical and customized
goals within the context of
Enterprise, IT-related goals
and Enabler Goals.

Source: COBIT® 5, © 2012 ISACA® All rights reserved.

10/23/2013

26
17 Generic Enterprise
Goals mapped to 17
Generic IT Related
Goals using BSC
approach

10/23/2013

27
17 Generic IT Related
Goals mapped to IT
Generic IT Related
Process using BSC
approach

10/23/2013

28
Stakeholder Needs – Internal Stakeholders & External
Stakeholders

10/23/2013

29
Internal Stakeholders
Board,CEO,
chieffinancialofficer(CFO),
chiefinformationofficer(CIO),
businessexecutives,
businessprocessowners,
businessmanagers,
riskmanagers,security managers,
servicemanagers,HRmanagers,
internalaudit,privacyofficers,
ITusers,ITmanagers,
etc.

External Stakeholders
Businesspartners,
suppliers,
shareholders,
regulators/government
externalusers,
customers,
standardisation
organisations,
externalauditors,
consultants,
etc.

10/23/2013

30
Internal Stakeholder Needs
•How do I get value from IT?
•How do I manage performance of IT?
•How can I best exploit new technology for new strategic
•opportunities?
•How do I know whether I’m compliant with all applicable
•regulations?
•How do I best build and structure my IT department?
•What are(control) requirements for Information?
•Did I address all IT‐related risks?
•Am I running an efficient and resilient IT operation?
•How do I control cost of IT?

10/23/2013

31
External Stakeholder Needs
•How do I know my business partner’s operations are secure
and reliable?
•How do I know the organisation is compliant with applicable
rules and regulations?
•How do I know the enterprise is maintaining an effective
system of internal control?

10/23/2013

32
Enterprise Goals Mapped to Governance objectives using
Balanced Scorecard approach

10/23/2013

33
IT Related Goals Mapped using Balanced Scorecard approach

10/23/2013

34
Stakeholder Need’s Mapped to Enterprise Goals Mapped using
Balanced Scorecard approach

10/23/2013

35
COBIT 5 Implementation
•The improvement of the governance of enterprise IT (GEIT) is widely
recognised by top management as an essential part of enterprise governance.
•Information and the pervasiveness of information technology are increasingly
part of every aspect of business and public life.
•The need to drive more value from IT investments and manage an increasing
array of IT-related risk has never been greater.
•Increasing regulation and legislation over business use of information is also
driving heightened awareness of the importance of a well-governed and
managed IT environment.
•ISACA has developed the COBIT 5 framework to help enterprises implement
sound governance enablers. Indeed, implementing good GEIT is almost
impossible without engaging an effective governance framework. Best practices
and standards are also available to underpin COBIT 5.

10/23/2013

36
COBIT 5 Implementation - Contd.
•

•
•

Frameworks, best practices and standards are useful only if they are
adopted and adapted effectively. There are challenges that need to be
overcome and issues that need to be addressed if GEIT is to be
implemented successfully.
COBIT 5: Implementation provides guidance on how to do this.
COBIT 5: Implementation covers the following subjects:
• Positioning GEIT within an enterprise
• Taking the first steps towards improving GEIT
• Implementation challenges and success factors
• Enabling GEIT-related organisational and behavioural change
• Implementing continual improvement that includes change
enablement and programme management
• Using COBIT 5 and its components

10/23/2013

37
COBIT 5 Implementation - Contd.

10/23/2013
Source: COBIT® 5, © 2012 ISACA® All rights reserved.

38
Questions

10/23/2013

39
Thank You
Balasubramanian.C, B.E, ITIL®V3,PRINCE2®,COBIT®5

10/23/2013

40

Contenu connexe

Tendances

Cobit Foundation Training
Cobit Foundation TrainingCobit Foundation Training
Cobit Foundation Trainingvyomlabs
 
Cobit5 owerwiev and implementation proposal
Cobit5 owerwiev and implementation proposalCobit5 owerwiev and implementation proposal
Cobit5 owerwiev and implementation proposalEmilio Gratton
 
Cobit5 introduction
Cobit5 introductionCobit5 introduction
Cobit5 introductionMarkus Yaldu
 
COBIT 5 as an IT Management Best Practices Framework - by Goh Boon Nam
COBIT 5 as an IT Management Best Practices Framework - by Goh Boon NamCOBIT 5 as an IT Management Best Practices Framework - by Goh Boon Nam
COBIT 5 as an IT Management Best Practices Framework - by Goh Boon NamNUS-ISS
 
Business and ITSM on the same page at last! ITIL, TOGAF and COBIT working to...
Business and ITSM on the same page at last!  ITIL, TOGAF and COBIT working to...Business and ITSM on the same page at last!  ITIL, TOGAF and COBIT working to...
Business and ITSM on the same page at last! ITIL, TOGAF and COBIT working to...CTE Solutions Inc.
 
COBIT 5 - Principal 5 Separating Governance From Management
COBIT 5 - Principal 5 Separating Governance From ManagementCOBIT 5 - Principal 5 Separating Governance From Management
COBIT 5 - Principal 5 Separating Governance From ManagementMohammad Reda Katby
 
Business IT Management - Intro to CobiT & ITIL
Business IT Management - Intro to CobiT & ITILBusiness IT Management - Intro to CobiT & ITIL
Business IT Management - Intro to CobiT & ITILAhmad Hafeezi
 
COBIT 5 as a standard in the Jordanian banking system
COBIT 5 as a standard in the Jordanian banking systemCOBIT 5 as a standard in the Jordanian banking system
COBIT 5 as a standard in the Jordanian banking systemMark Constable
 
Introduction to COBIT 5 and IT management
Introduction to COBIT 5 and IT managementIntroduction to COBIT 5 and IT management
Introduction to COBIT 5 and IT managementChristian F. Nissen
 
Comparación de CobiT 5 con CobiT 4.1
Comparación de CobiT 5 con  CobiT 4.1Comparación de CobiT 5 con  CobiT 4.1
Comparación de CobiT 5 con CobiT 4.1Slime Argentina
 
Qap cobit2019-20181111
Qap cobit2019-20181111Qap cobit2019-20181111
Qap cobit2019-20181111Patrick Soenen
 
Implement cobit in your organization
Implement cobit in your organizationImplement cobit in your organization
Implement cobit in your organizationCheikh Hamallah DJIBA
 
COBIT 5 - Principal 3 Applying A Single Integrated Framework
COBIT 5 - Principal 3 Applying A Single Integrated FrameworkCOBIT 5 - Principal 3 Applying A Single Integrated Framework
COBIT 5 - Principal 3 Applying A Single Integrated FrameworkMohammad Reda Katby
 
IT frameworks
IT frameworksIT frameworks
IT frameworkscyouss
 
COBIT 5 Basic Concepts
COBIT 5 Basic ConceptsCOBIT 5 Basic Concepts
COBIT 5 Basic ConceptsSpyros Ktenas
 
From Value Governance To Benefits Realization In A Controlled Environment
From Value Governance To Benefits Realization In A Controlled EnvironmentFrom Value Governance To Benefits Realization In A Controlled Environment
From Value Governance To Benefits Realization In A Controlled EnvironmentGeorge Papoulias
 

Tendances (20)

Cobit 5 introduction plgr
Cobit 5 introduction plgrCobit 5 introduction plgr
Cobit 5 introduction plgr
 
COBIT5 Introduction
COBIT5 IntroductionCOBIT5 Introduction
COBIT5 Introduction
 
Cobit Foundation Training
Cobit Foundation TrainingCobit Foundation Training
Cobit Foundation Training
 
Cobit5 owerwiev and implementation proposal
Cobit5 owerwiev and implementation proposalCobit5 owerwiev and implementation proposal
Cobit5 owerwiev and implementation proposal
 
Cobit5 introduction
Cobit5 introductionCobit5 introduction
Cobit5 introduction
 
COBIT 5 as an IT Management Best Practices Framework - by Goh Boon Nam
COBIT 5 as an IT Management Best Practices Framework - by Goh Boon NamCOBIT 5 as an IT Management Best Practices Framework - by Goh Boon Nam
COBIT 5 as an IT Management Best Practices Framework - by Goh Boon Nam
 
COBIT 5.0 vs COBIT 2019
COBIT 5.0 vs COBIT 2019COBIT 5.0 vs COBIT 2019
COBIT 5.0 vs COBIT 2019
 
Business and ITSM on the same page at last! ITIL, TOGAF and COBIT working to...
Business and ITSM on the same page at last!  ITIL, TOGAF and COBIT working to...Business and ITSM on the same page at last!  ITIL, TOGAF and COBIT working to...
Business and ITSM on the same page at last! ITIL, TOGAF and COBIT working to...
 
COBIT 5 - Principal 5 Separating Governance From Management
COBIT 5 - Principal 5 Separating Governance From ManagementCOBIT 5 - Principal 5 Separating Governance From Management
COBIT 5 - Principal 5 Separating Governance From Management
 
Cobit 5 principle 1
Cobit 5 principle 1Cobit 5 principle 1
Cobit 5 principle 1
 
Business IT Management - Intro to CobiT & ITIL
Business IT Management - Intro to CobiT & ITILBusiness IT Management - Intro to CobiT & ITIL
Business IT Management - Intro to CobiT & ITIL
 
COBIT 5 as a standard in the Jordanian banking system
COBIT 5 as a standard in the Jordanian banking systemCOBIT 5 as a standard in the Jordanian banking system
COBIT 5 as a standard in the Jordanian banking system
 
Introduction to COBIT 5 and IT management
Introduction to COBIT 5 and IT managementIntroduction to COBIT 5 and IT management
Introduction to COBIT 5 and IT management
 
Comparación de CobiT 5 con CobiT 4.1
Comparación de CobiT 5 con  CobiT 4.1Comparación de CobiT 5 con  CobiT 4.1
Comparación de CobiT 5 con CobiT 4.1
 
Qap cobit2019-20181111
Qap cobit2019-20181111Qap cobit2019-20181111
Qap cobit2019-20181111
 
Implement cobit in your organization
Implement cobit in your organizationImplement cobit in your organization
Implement cobit in your organization
 
COBIT 5 - Principal 3 Applying A Single Integrated Framework
COBIT 5 - Principal 3 Applying A Single Integrated FrameworkCOBIT 5 - Principal 3 Applying A Single Integrated Framework
COBIT 5 - Principal 3 Applying A Single Integrated Framework
 
IT frameworks
IT frameworksIT frameworks
IT frameworks
 
COBIT 5 Basic Concepts
COBIT 5 Basic ConceptsCOBIT 5 Basic Concepts
COBIT 5 Basic Concepts
 
From Value Governance To Benefits Realization In A Controlled Environment
From Value Governance To Benefits Realization In A Controlled EnvironmentFrom Value Governance To Benefits Realization In A Controlled Environment
From Value Governance To Benefits Realization In A Controlled Environment
 

Similaire à Cobit 5 Business Framework -Governance and Management of Enterprise IT

Cobit5 introduction
Cobit5 introductionCobit5 introduction
Cobit5 introductionsuhaskokate
 
02-cobit5-introduction.ppt
02-cobit5-introduction.ppt02-cobit5-introduction.ppt
02-cobit5-introduction.pptElonMotta
 
PPT-UEU-Topik-dalam-IT-Resources-Management-13.pptx
PPT-UEU-Topik-dalam-IT-Resources-Management-13.pptxPPT-UEU-Topik-dalam-IT-Resources-Management-13.pptx
PPT-UEU-Topik-dalam-IT-Resources-Management-13.pptxssuserd1791e
 
Introduction to COBIT 2019 and IT management
Introduction to COBIT 2019 and IT managementIntroduction to COBIT 2019 and IT management
Introduction to COBIT 2019 and IT managementChristian F. Nissen
 
Governance and Management of Enterprise IT with COBIT 5 Framework
Governance and Management of Enterprise IT with COBIT 5 FrameworkGovernance and Management of Enterprise IT with COBIT 5 Framework
Governance and Management of Enterprise IT with COBIT 5 FrameworkGoutama Bachtiar
 
information system and computers
information system and computersinformation system and computers
information system and computers9535814851
 
IT Governance – The missing compass in a technology changing world
 IT Governance – The missing compass in a technology changing world IT Governance – The missing compass in a technology changing world
IT Governance – The missing compass in a technology changing worldPECB
 
IT Performance Measurement using IT Governance Metric
IT Performance Measurement using IT Governance MetricIT Performance Measurement using IT Governance Metric
IT Performance Measurement using IT Governance MetricPECB
 
Cobit 2019 framework by ISACA
Cobit 2019 framework by ISACACobit 2019 framework by ISACA
Cobit 2019 framework by ISACAMDFazlaRabbiAbir
 
Cobit5 Principal 1 Meeting Stakeholder Needs
Cobit5 Principal 1 Meeting Stakeholder NeedsCobit5 Principal 1 Meeting Stakeholder Needs
Cobit5 Principal 1 Meeting Stakeholder NeedsMohammad Reda Katby
 
COBIT® Presentation Package.ppt
COBIT® Presentation Package.pptCOBIT® Presentation Package.ppt
COBIT® Presentation Package.pptEmmacuet
 
An Introduction to IT Management with COBIT 2019
An Introduction to IT Management with COBIT 2019An Introduction to IT Management with COBIT 2019
An Introduction to IT Management with COBIT 2019Gregor Polančič
 

Similaire à Cobit 5 Business Framework -Governance and Management of Enterprise IT (20)

Cobit5 introduction
Cobit5 introductionCobit5 introduction
Cobit5 introduction
 
02-cobit5-introduction.ppt
02-cobit5-introduction.ppt02-cobit5-introduction.ppt
02-cobit5-introduction.ppt
 
COBIT 5 FAQ
COBIT 5 FAQCOBIT 5 FAQ
COBIT 5 FAQ
 
Cobit5 introduction
Cobit5 introductionCobit5 introduction
Cobit5 introduction
 
COBIT5-IntroductionS
COBIT5-IntroductionSCOBIT5-IntroductionS
COBIT5-IntroductionS
 
PPT-UEU-Topik-dalam-IT-Resources-Management-13.pptx
PPT-UEU-Topik-dalam-IT-Resources-Management-13.pptxPPT-UEU-Topik-dalam-IT-Resources-Management-13.pptx
PPT-UEU-Topik-dalam-IT-Resources-Management-13.pptx
 
Introduction to COBIT 2019 and IT management
Introduction to COBIT 2019 and IT managementIntroduction to COBIT 2019 and IT management
Introduction to COBIT 2019 and IT management
 
COBIT Intor.pptx
COBIT Intor.pptxCOBIT Intor.pptx
COBIT Intor.pptx
 
01-COBIT5-ExecSummary
01-COBIT5-ExecSummary01-COBIT5-ExecSummary
01-COBIT5-ExecSummary
 
Cobit5 and-grc
Cobit5 and-grcCobit5 and-grc
Cobit5 and-grc
 
Governance and Management of Enterprise IT with COBIT 5 Framework
Governance and Management of Enterprise IT with COBIT 5 FrameworkGovernance and Management of Enterprise IT with COBIT 5 Framework
Governance and Management of Enterprise IT with COBIT 5 Framework
 
information system and computers
information system and computersinformation system and computers
information system and computers
 
IT Governance – The missing compass in a technology changing world
 IT Governance – The missing compass in a technology changing world IT Governance – The missing compass in a technology changing world
IT Governance – The missing compass in a technology changing world
 
IT Performance Measurement using IT Governance Metric
IT Performance Measurement using IT Governance MetricIT Performance Measurement using IT Governance Metric
IT Performance Measurement using IT Governance Metric
 
Cobit 2019 framework by ISACA
Cobit 2019 framework by ISACACobit 2019 framework by ISACA
Cobit 2019 framework by ISACA
 
Cobit5 Principal 1 Meeting Stakeholder Needs
Cobit5 Principal 1 Meeting Stakeholder NeedsCobit5 Principal 1 Meeting Stakeholder Needs
Cobit5 Principal 1 Meeting Stakeholder Needs
 
COBIT 2019 - DIGITAL TRUST FRAMEWORK
COBIT 2019 - DIGITAL TRUST FRAMEWORKCOBIT 2019 - DIGITAL TRUST FRAMEWORK
COBIT 2019 - DIGITAL TRUST FRAMEWORK
 
01 intro-cobit
01 intro-cobit01 intro-cobit
01 intro-cobit
 
COBIT® Presentation Package.ppt
COBIT® Presentation Package.pptCOBIT® Presentation Package.ppt
COBIT® Presentation Package.ppt
 
An Introduction to IT Management with COBIT 2019
An Introduction to IT Management with COBIT 2019An Introduction to IT Management with COBIT 2019
An Introduction to IT Management with COBIT 2019
 

Dernier

The State of Passkeys with FIDO Alliance.pptx
The State of Passkeys with FIDO Alliance.pptxThe State of Passkeys with FIDO Alliance.pptx
The State of Passkeys with FIDO Alliance.pptxLoriGlavin3
 
Hyperautomation and AI/ML: A Strategy for Digital Transformation Success.pdf
Hyperautomation and AI/ML: A Strategy for Digital Transformation Success.pdfHyperautomation and AI/ML: A Strategy for Digital Transformation Success.pdf
Hyperautomation and AI/ML: A Strategy for Digital Transformation Success.pdfPrecisely
 
The Fit for Passkeys for Employee and Consumer Sign-ins: FIDO Paris Seminar.pptx
The Fit for Passkeys for Employee and Consumer Sign-ins: FIDO Paris Seminar.pptxThe Fit for Passkeys for Employee and Consumer Sign-ins: FIDO Paris Seminar.pptx
The Fit for Passkeys for Employee and Consumer Sign-ins: FIDO Paris Seminar.pptxLoriGlavin3
 
From Family Reminiscence to Scholarly Archive .
From Family Reminiscence to Scholarly Archive .From Family Reminiscence to Scholarly Archive .
From Family Reminiscence to Scholarly Archive .Alan Dix
 
Developer Data Modeling Mistakes: From Postgres to NoSQL
Developer Data Modeling Mistakes: From Postgres to NoSQLDeveloper Data Modeling Mistakes: From Postgres to NoSQL
Developer Data Modeling Mistakes: From Postgres to NoSQLScyllaDB
 
DevoxxFR 2024 Reproducible Builds with Apache Maven
DevoxxFR 2024 Reproducible Builds with Apache MavenDevoxxFR 2024 Reproducible Builds with Apache Maven
DevoxxFR 2024 Reproducible Builds with Apache MavenHervé Boutemy
 
Ensuring Technical Readiness For Copilot in Microsoft 365
Ensuring Technical Readiness For Copilot in Microsoft 365Ensuring Technical Readiness For Copilot in Microsoft 365
Ensuring Technical Readiness For Copilot in Microsoft 3652toLead Limited
 
Are Multi-Cloud and Serverless Good or Bad?
Are Multi-Cloud and Serverless Good or Bad?Are Multi-Cloud and Serverless Good or Bad?
Are Multi-Cloud and Serverless Good or Bad?Mattias Andersson
 
Scanning the Internet for External Cloud Exposures via SSL Certs
Scanning the Internet for External Cloud Exposures via SSL CertsScanning the Internet for External Cloud Exposures via SSL Certs
Scanning the Internet for External Cloud Exposures via SSL CertsRizwan Syed
 
Passkey Providers and Enabling Portability: FIDO Paris Seminar.pptx
Passkey Providers and Enabling Portability: FIDO Paris Seminar.pptxPasskey Providers and Enabling Portability: FIDO Paris Seminar.pptx
Passkey Providers and Enabling Portability: FIDO Paris Seminar.pptxLoriGlavin3
 
Transcript: New from BookNet Canada for 2024: BNC CataList - Tech Forum 2024
Transcript: New from BookNet Canada for 2024: BNC CataList - Tech Forum 2024Transcript: New from BookNet Canada for 2024: BNC CataList - Tech Forum 2024
Transcript: New from BookNet Canada for 2024: BNC CataList - Tech Forum 2024BookNet Canada
 
Connect Wave/ connectwave Pitch Deck Presentation
Connect Wave/ connectwave Pitch Deck PresentationConnect Wave/ connectwave Pitch Deck Presentation
Connect Wave/ connectwave Pitch Deck PresentationSlibray Presentation
 
SALESFORCE EDUCATION CLOUD | FEXLE SERVICES
SALESFORCE EDUCATION CLOUD | FEXLE SERVICESSALESFORCE EDUCATION CLOUD | FEXLE SERVICES
SALESFORCE EDUCATION CLOUD | FEXLE SERVICESmohitsingh558521
 
Gen AI in Business - Global Trends Report 2024.pdf
Gen AI in Business - Global Trends Report 2024.pdfGen AI in Business - Global Trends Report 2024.pdf
Gen AI in Business - Global Trends Report 2024.pdfAddepto
 
Unleash Your Potential - Namagunga Girls Coding Club
Unleash Your Potential - Namagunga Girls Coding ClubUnleash Your Potential - Namagunga Girls Coding Club
Unleash Your Potential - Namagunga Girls Coding ClubKalema Edgar
 
SAP Build Work Zone - Overview L2-L3.pptx
SAP Build Work Zone - Overview L2-L3.pptxSAP Build Work Zone - Overview L2-L3.pptx
SAP Build Work Zone - Overview L2-L3.pptxNavinnSomaal
 
What is DBT - The Ultimate Data Build Tool.pdf
What is DBT - The Ultimate Data Build Tool.pdfWhat is DBT - The Ultimate Data Build Tool.pdf
What is DBT - The Ultimate Data Build Tool.pdfMounikaPolabathina
 
Nell’iperspazio con Rocket: il Framework Web di Rust!
Nell’iperspazio con Rocket: il Framework Web di Rust!Nell’iperspazio con Rocket: il Framework Web di Rust!
Nell’iperspazio con Rocket: il Framework Web di Rust!Commit University
 
What's New in Teams Calling, Meetings and Devices March 2024
What's New in Teams Calling, Meetings and Devices March 2024What's New in Teams Calling, Meetings and Devices March 2024
What's New in Teams Calling, Meetings and Devices March 2024Stephanie Beckett
 
DevEX - reference for building teams, processes, and platforms
DevEX - reference for building teams, processes, and platformsDevEX - reference for building teams, processes, and platforms
DevEX - reference for building teams, processes, and platformsSergiu Bodiu
 

Dernier (20)

The State of Passkeys with FIDO Alliance.pptx
The State of Passkeys with FIDO Alliance.pptxThe State of Passkeys with FIDO Alliance.pptx
The State of Passkeys with FIDO Alliance.pptx
 
Hyperautomation and AI/ML: A Strategy for Digital Transformation Success.pdf
Hyperautomation and AI/ML: A Strategy for Digital Transformation Success.pdfHyperautomation and AI/ML: A Strategy for Digital Transformation Success.pdf
Hyperautomation and AI/ML: A Strategy for Digital Transformation Success.pdf
 
The Fit for Passkeys for Employee and Consumer Sign-ins: FIDO Paris Seminar.pptx
The Fit for Passkeys for Employee and Consumer Sign-ins: FIDO Paris Seminar.pptxThe Fit for Passkeys for Employee and Consumer Sign-ins: FIDO Paris Seminar.pptx
The Fit for Passkeys for Employee and Consumer Sign-ins: FIDO Paris Seminar.pptx
 
From Family Reminiscence to Scholarly Archive .
From Family Reminiscence to Scholarly Archive .From Family Reminiscence to Scholarly Archive .
From Family Reminiscence to Scholarly Archive .
 
Developer Data Modeling Mistakes: From Postgres to NoSQL
Developer Data Modeling Mistakes: From Postgres to NoSQLDeveloper Data Modeling Mistakes: From Postgres to NoSQL
Developer Data Modeling Mistakes: From Postgres to NoSQL
 
DevoxxFR 2024 Reproducible Builds with Apache Maven
DevoxxFR 2024 Reproducible Builds with Apache MavenDevoxxFR 2024 Reproducible Builds with Apache Maven
DevoxxFR 2024 Reproducible Builds with Apache Maven
 
Ensuring Technical Readiness For Copilot in Microsoft 365
Ensuring Technical Readiness For Copilot in Microsoft 365Ensuring Technical Readiness For Copilot in Microsoft 365
Ensuring Technical Readiness For Copilot in Microsoft 365
 
Are Multi-Cloud and Serverless Good or Bad?
Are Multi-Cloud and Serverless Good or Bad?Are Multi-Cloud and Serverless Good or Bad?
Are Multi-Cloud and Serverless Good or Bad?
 
Scanning the Internet for External Cloud Exposures via SSL Certs
Scanning the Internet for External Cloud Exposures via SSL CertsScanning the Internet for External Cloud Exposures via SSL Certs
Scanning the Internet for External Cloud Exposures via SSL Certs
 
Passkey Providers and Enabling Portability: FIDO Paris Seminar.pptx
Passkey Providers and Enabling Portability: FIDO Paris Seminar.pptxPasskey Providers and Enabling Portability: FIDO Paris Seminar.pptx
Passkey Providers and Enabling Portability: FIDO Paris Seminar.pptx
 
Transcript: New from BookNet Canada for 2024: BNC CataList - Tech Forum 2024
Transcript: New from BookNet Canada for 2024: BNC CataList - Tech Forum 2024Transcript: New from BookNet Canada for 2024: BNC CataList - Tech Forum 2024
Transcript: New from BookNet Canada for 2024: BNC CataList - Tech Forum 2024
 
Connect Wave/ connectwave Pitch Deck Presentation
Connect Wave/ connectwave Pitch Deck PresentationConnect Wave/ connectwave Pitch Deck Presentation
Connect Wave/ connectwave Pitch Deck Presentation
 
SALESFORCE EDUCATION CLOUD | FEXLE SERVICES
SALESFORCE EDUCATION CLOUD | FEXLE SERVICESSALESFORCE EDUCATION CLOUD | FEXLE SERVICES
SALESFORCE EDUCATION CLOUD | FEXLE SERVICES
 
Gen AI in Business - Global Trends Report 2024.pdf
Gen AI in Business - Global Trends Report 2024.pdfGen AI in Business - Global Trends Report 2024.pdf
Gen AI in Business - Global Trends Report 2024.pdf
 
Unleash Your Potential - Namagunga Girls Coding Club
Unleash Your Potential - Namagunga Girls Coding ClubUnleash Your Potential - Namagunga Girls Coding Club
Unleash Your Potential - Namagunga Girls Coding Club
 
SAP Build Work Zone - Overview L2-L3.pptx
SAP Build Work Zone - Overview L2-L3.pptxSAP Build Work Zone - Overview L2-L3.pptx
SAP Build Work Zone - Overview L2-L3.pptx
 
What is DBT - The Ultimate Data Build Tool.pdf
What is DBT - The Ultimate Data Build Tool.pdfWhat is DBT - The Ultimate Data Build Tool.pdf
What is DBT - The Ultimate Data Build Tool.pdf
 
Nell’iperspazio con Rocket: il Framework Web di Rust!
Nell’iperspazio con Rocket: il Framework Web di Rust!Nell’iperspazio con Rocket: il Framework Web di Rust!
Nell’iperspazio con Rocket: il Framework Web di Rust!
 
What's New in Teams Calling, Meetings and Devices March 2024
What's New in Teams Calling, Meetings and Devices March 2024What's New in Teams Calling, Meetings and Devices March 2024
What's New in Teams Calling, Meetings and Devices March 2024
 
DevEX - reference for building teams, processes, and platforms
DevEX - reference for building teams, processes, and platformsDevEX - reference for building teams, processes, and platforms
DevEX - reference for building teams, processes, and platforms
 

Cobit 5 Business Framework -Governance and Management of Enterprise IT

  • 1. COBIT® 5.0 A Business Framework for Governance and Management of Enterprise IT Presented By Balasubramanian.C, B.E, ITIL®V3,PRINCE2®,COBIT®5.0 I.T.Project Manager – Supply Chain & EAM COBIT® is a Registered Trademark of ISACA® registered in United States of America and other countries. www.isaca.org
  • 2. Reference: This presentation is excerpted and modified from ISACA’s COBIT and all related 10/23/2013 documents. 2
  • 3. 1) Appreciate Background of COBIT ®5 2) COBIT 5 Product Family 3) Information & Enterprise Benefits 4) Stakeholder Value 5) COBIT® 5 Framework 6) COBIT® 5 [5 Priniciples] 7) COBIT® 5 [7 Enablers] 8) Governance & Management Process Domains 9) Goals Cascade using Balanced Score Card 10) Implementation Guidance 10/23/2013 3
  • 10. IT is Complicated . IT Governance doesn’t have to be. 10/23/2013 10
  • 12. 1) Appreciate Background of COBIT®5 COBIT®5: One Complete Business Framework for A Business Framework for Governance and Management of Enterprise 12 IT 10/23/2013
  • 13. 2) COBIT®5 Product Family Source:COBIT®5 Implementation, figure 1. © 2012 ISACA®All rights reserved 10/23/2013 13
  • 14. COBIT®5 Product Family - includes Implementation Guidance Documents have been Officially released COBIT®5 Framework COBIT®5 Enabling Process COBIT®5 Implementation 10/23/2013 14
  • 15. COBIT®5 Product Family -A Set of Resources to help U Implement COBIT®5 effectively in your enterprise Documents have been Officially released COBIT®5 Information Security COBIT®5 for Risk COBIT®5 Process Assessment Programme COBIT®5 for Assurance 10/23/2013 15
  • 16. COBIT®5 Product Family Documents under Development COBIT®5 Enabling Information COBIT 5 Translation COBIT 5 Online COBIT 5 Toolkit and materials Readily available for download 10/23/2013 16
  • 17. 3) Information & Enterprise Benefits • Information is a key resource for all enterprises. • Information is created, used, retained, disclosed and destroyed. • Technology plays a key role in these actions. • Technology is becoming pervasive in all aspects of business and personal life. So what benefits do information and technology bring to enterprises? Enterprise and their executives strive to: 1. Maintain Quality Information to support Business decisions 2. Generate Business Value from IT-enabled investments, i.e., to achieve strategic goals and realise business benefits through effective and innovative use of IT. 3. Achieve operational excellence through reliable and efficient application of technology. 4. Maintain and Optimize IT related risk and Cost at acceptable level 10/23/2013 17
  • 18. 4) Stakeholder Value How can above benefits be realised to create enterprise Stakeholder Value? A. Delivering enterprise stakeholder value requires good governance and management of information and technology (IT) assets. B. Enterprise boards, executives and management have to embrace IT like any other significant part of the business. C. External legal, regulatory and contractual compliance requirements related to enterprise use of information and technology are increasing, threatening value if breached. COBIT 5 provides a comprehensive framework that assists enterprises to achieve their goals and deliver value through effective GOVERNANCE and MANAGEMENT of ENTERPRISE IT 10/23/2013 18
  • 19. 5) COBIT 5 Framework Simply Stated, COBIT 5 helps Enterprises create optimal value from IT by maintaining balance between realising benefits and optimizing risk levels and resource usage. COBIT 5 enables Information and Technology to be governed and managed in a holistic manner for the entire enterprise, taking in the full end-to end business and functional areas of responsibility, considering IT – related interests of Internal and External Stakeholders. COBIT 5 PRINCIPLES and ENABLERS are generic and useful for enterprises of all sizes, whether commercial, notfor-profit or in the public sector. 10/23/2013 19
  • 20. 6) COBIT 5 [5 Priniciples] Source: COBIT® 5, figure 2. © 2012 ISACA® All rights reserved. 10/23/2013 20
  • 21. 7) COBIT 5 [7 Enablers] Source: COBIT® 5, figure 12. © 2012 ISACA® All rights reserved. 10/23/2013 21
  • 22. 8) Governance & Management Process Domains Governance Ensures that enterprise objectives achieved by EVALUATING stakeholder needs, conditions and options; setting DIRECTION through priortisation and decision making; and MONITORING performance, compliance and progress against agreed-on direction and objectives (EDM). Management PLANS, BIULDS, RUN, and MONITOR’s activities in alignment with the direction set by the governance body to achieve the enterprise objectives (PBRM). Exercising governance and management effectively in practice requires appropriately using all enablers. The COBIT process reference model allows us to focus easily on the relevant enterprise 22 activities. 10/23/2013
  • 23. COBIT 5 is not prescriptive, but it advocates that enterprises implement governance and management processes such that key areas are covered as shown in above figure 15. Source: COBIT® 5, figure 15. © 2012 ISACA® All rights reserved. 10/23/2013 23
  • 24. 10/23/2013 Source: COBIT® 5, © 2012 ISACA® All rights reserved. 24
  • 25. Governance Domain (EDM) = 5 Processes Ensure, Direct and Monitor (EDM) Management Domain (PBRM) = 32 Processes Align, Plan and Organise (APO) Build, Acquire and Implement (BAI) Deliver, Service and Support (DSS) Monitor, Evaluate and Assess (MEA) 10/23/2013 25
  • 26. 9) Goals Cascade using Balanced Score Card The COBIT5 goals cascade translates stakeholder needs into specific, practical and customized goals within the context of Enterprise, IT-related goals and Enabler Goals. Source: COBIT® 5, © 2012 ISACA® All rights reserved. 10/23/2013 26
  • 27. 17 Generic Enterprise Goals mapped to 17 Generic IT Related Goals using BSC approach 10/23/2013 27
  • 28. 17 Generic IT Related Goals mapped to IT Generic IT Related Process using BSC approach 10/23/2013 28
  • 29. Stakeholder Needs – Internal Stakeholders & External Stakeholders 10/23/2013 29
  • 30. Internal Stakeholders Board,CEO, chieffinancialofficer(CFO), chiefinformationofficer(CIO), businessexecutives, businessprocessowners, businessmanagers, riskmanagers,security managers, servicemanagers,HRmanagers, internalaudit,privacyofficers, ITusers,ITmanagers, etc. External Stakeholders Businesspartners, suppliers, shareholders, regulators/government externalusers, customers, standardisation organisations, externalauditors, consultants, etc. 10/23/2013 30
  • 31. Internal Stakeholder Needs •How do I get value from IT? •How do I manage performance of IT? •How can I best exploit new technology for new strategic •opportunities? •How do I know whether I’m compliant with all applicable •regulations? •How do I best build and structure my IT department? •What are(control) requirements for Information? •Did I address all IT‐related risks? •Am I running an efficient and resilient IT operation? •How do I control cost of IT? 10/23/2013 31
  • 32. External Stakeholder Needs •How do I know my business partner’s operations are secure and reliable? •How do I know the organisation is compliant with applicable rules and regulations? •How do I know the enterprise is maintaining an effective system of internal control? 10/23/2013 32
  • 33. Enterprise Goals Mapped to Governance objectives using Balanced Scorecard approach 10/23/2013 33
  • 34. IT Related Goals Mapped using Balanced Scorecard approach 10/23/2013 34
  • 35. Stakeholder Need’s Mapped to Enterprise Goals Mapped using Balanced Scorecard approach 10/23/2013 35
  • 36. COBIT 5 Implementation •The improvement of the governance of enterprise IT (GEIT) is widely recognised by top management as an essential part of enterprise governance. •Information and the pervasiveness of information technology are increasingly part of every aspect of business and public life. •The need to drive more value from IT investments and manage an increasing array of IT-related risk has never been greater. •Increasing regulation and legislation over business use of information is also driving heightened awareness of the importance of a well-governed and managed IT environment. •ISACA has developed the COBIT 5 framework to help enterprises implement sound governance enablers. Indeed, implementing good GEIT is almost impossible without engaging an effective governance framework. Best practices and standards are also available to underpin COBIT 5. 10/23/2013 36
  • 37. COBIT 5 Implementation - Contd. • • • Frameworks, best practices and standards are useful only if they are adopted and adapted effectively. There are challenges that need to be overcome and issues that need to be addressed if GEIT is to be implemented successfully. COBIT 5: Implementation provides guidance on how to do this. COBIT 5: Implementation covers the following subjects: • Positioning GEIT within an enterprise • Taking the first steps towards improving GEIT • Implementation challenges and success factors • Enabling GEIT-related organisational and behavioural change • Implementing continual improvement that includes change enablement and programme management • Using COBIT 5 and its components 10/23/2013 37
  • 38. COBIT 5 Implementation - Contd. 10/23/2013 Source: COBIT® 5, © 2012 ISACA® All rights reserved. 38
  • 40. Thank You Balasubramanian.C, B.E, ITIL®V3,PRINCE2®,COBIT®5 10/23/2013 40