SlideShare une entreprise Scribd logo
1  sur  33
Télécharger pour lire hors ligne
Rachid Meziani, PhD, CGEIT, PMP
GRC Kuwait Forum: 6-7 March 2018
CriticalSuccessFactors(CSFs)
forEffectiveITGovernance
Implementations
Agenda
• Background
• Positioning IT Governance
• IT Governance Drivers
• Success Factors
• Summary
2
We’ve always done it this way!
3
IT Governance Defined
4
gov·er·nance noun(ˈgə-vər-nən(t)s)
: the way that a city, company, etc., is
controlled by the people who run it
What is IT Governance?
5
It is …
The responsibility of the Board and Executive
It consists of …
The Leadership, Organizational Structures, and Processes
To ensure that the enterprise’s IT …
Sustain and extend organizational strategies and objectives
Why IT Governance?
6
GEIT Objectives
IT Value Delivery
to the Business
Mitigation of
IT-related risks
▪ Strategic alignment
▪ Resources availability & Mgmt.
▪ Monitoring
7
Enterprise governance is about:
Conformance
Adhering to legislation, internal policies,
audit requirements, etc.
Performance
Improving profitability, efficiency,
effectiveness, growth, etc.
Positioning IT Governance
8
IT Governance supports both Corporate and
Business Governance inside Enterprise
Governance
IT Governance focus areas
9
IT Governance should focus on these
key areas:
▪ Strategic alignment with business
▪ Value delivery
▪ Risk management
▪ Resource management
▪ Performance measurement
Context - IT Governance
10
What is
the
purpose
of IT?
How is IT
managed?
11
IT Governance
"Which skills should be
developed and kept
internal and which
activities should be
outsourced?"
"How should the IT service
portfolio be managed and
controlled from a corporate
perspective?"
"How should BUILD, TRANSFORM,
and RUN be managed? How should
the development process look like?
What are appropriate standards for
delivery (SLAs, availability ...)?
"How are corporate-wide architecture
standards developed and implemented
for the entire organization?"
How is
IT managed?
"How should the IT
organization be structured to
account for local and global
needs?"
"How well are the overall business
strategy and IT strategy aligned?"
What is the
purpose of IT for
the company?
Overall: "How much value
does IT contribute to the
organization?"
Business
and IT
strategy
alignment
IT
architecture
IT planning
and
controlling
IT leader-
ship and
organization Skills
and
sourcing
IT develop-
ment and
delivery
Context - IT Governance
IT governance is an integral part of corporate governance and analogously
combines leadership, organizational structures, and processes that ensure
that IT sustains and extends the organization’s strategies and objectives
IT governance provides guidelines, establishes criteria and standards for
decision making, monitoring, measuring, and improving the performance
of IT
IT governance is the responsibility of the executive board and the
executive management (incl. IT) and supports the interaction of all the
organization's parties involved with IT
What?
How?
Who?
12
What are the Drivers?
13
 Need for new or improved IT governance organization
is usually recognized by:
Pain points / trigger events
 Board and executive management should:
▪ Analyze pain points to identify root cause
▪ Look for opportunities during trigger events
Typical Pain Points
14
• Failed IT initiatives
• Rising costs
• Perception of low business value
for IT investments
• Significant incidents related to IT
risk (data loss)
• Service delivery problems
• Failure to meet regulatory or
contractual requirements (GDPR)
• Audit findings for poor IT
performance or low service level
IT GovernanceTrigger Events
15
▪ Merger, acquisition or divestiture
▪ Shift in the market, economy or competitive position
▪ Change in business operating model or sourcing
arrangements
▪ New regulatory or compliance requirements
▪ Significant technology change or paradigm shift
16
External IT service
providers
Internal IT service providers
(IT organization,
shared services center)
Transparency needed: roles, influence and mandate of each involved party
Board of directors
Central functions
(Corporate strategy,
Accounting,
Controlling, HR ...)
Business units,
subsidiaries,
affiliated companies
Employees,
workers' council Cooperation Regulatory authorities(1)
17
Each framework can be deployed in different situations accordingly
ITIL
Business/IT alignmentIT focus
Focus on
operations
Focus on
strategy
BCG
Gartner
Giga Group
COBIT
ISO
27001
ITIL
Company
individual
De facto
standard
IT process
performance controls
and metrics
IT security
management
IT services
management
Structure of
global IT
organizations
KPMG
IBM
IT decision
structures and
processes
Business and
IT strategy
integrated
Business and
IT strategy
alignment
Implementation of
IT governance
using CobiT, ITIL
Content
Primary
objective
18
Critical Success Factors (CSF)
19
Limited number (usually between 3 to 8) of characteristics,
conditions, or variables that have a direct and serious impact
on the effectiveness, efficiency, and viability of an
organization, program, or project.
Activities associated with CSF must be performed at the
highest possible level of excellence to achieve the intended
overall objectives. Also called key success factors (KSF) or key
result areas (KRA).
20
IT Governance Critical Success Factors (CSFs)
1
2
3
4 5
6
7
1. Get Executive Sponsorship
21
▪ The higher in the organization
the better. If IT governance is
seen as “optional,” it won’t work.
▪ On the business side, it would
be ideal to have a C-level
executive.
2. Put Resources on the Team
22
▪ Success depends on strong teamwork
and alliances across IT and the
business side.
▪ By exposing both key business-side
and IT users to the system early, you
create champions who carry the story
across the company
Marshmallow Challenge
23
2. Put Resources on the Team
3. Understand the Problem
24
▪ Aim before you fire. Take the time
to determine where you’re starting
from in the Capability Maturity
Model.
▪ Pick an attainable target to start
with, ideally a particular pain point
that is costing you time and
money.
25
where you’re starting from in the Capability
Maturity Model?
4. Envision the Solution
26
▪ Think hard about what you want to
accomplish initially. Set goals high, but
don’t make them unattainable—it
demoralizes people.
▪ Make sure your requirements are
clearly defined and universally
understood among all the
stakeholders.
▪ Stick to the original plan once you’ve
adopted it
▪ Focus on process improvement areas.
5. Pick the Right Software for the Right Reasons
27
▪ Recognize that successful IT
governance requires clear,
enforceable processes and
standards.
▪ Think beyond your initial
implementation.
▪ Leverages, best practice frameworks
such as ITIL and CMMi, and
supports such quality issues as Six
Sigma.
6. Take Small Steps
28
▪ Don’t “swing for the fences.”
▪ Training is extremely important.
▪ Take the time to win recalcitrant
users over through
collaborative engagement.
▪ You have to keep moving
forward once you’ve started.
Small steps will get you there,
7. Include Post-Implementation Activities
29
▪ This is one of the most overlooked
parts of the process, though it is
potentially the most important.
▪ Make sure you have developed clear
plans for the transition.
▪ This is a critical time to assess the
effectiveness of your training.
▪ This is also the time to promote the
system on the business side.
▪ Actively ask for feedback.
Summary
30
▪ IT Governance is more than just a process-
and-organization recipe
▪ IT Governance is first of all a management
challenge taking into account the enterprise’s
culture.
▪ Recognizing that CSFs are essential for
successful IT Governance
▪ It is a long Journey …
31
Where there is poor
organizational governance
practice in place, it will be
difficult to implement good IT
and information practice that
delivers consistent quality
deliverables.
Alison Holt
Rachid Meziani, PhD, CGEIT, PMP
@rmeziani
http://www.linkedin.com/in/rachidmeziani
33

Contenu connexe

Tendances

CobiT, Val IT & Balanced Scorecards
CobiT, Val IT & Balanced ScorecardsCobiT, Val IT & Balanced Scorecards
CobiT, Val IT & Balanced Scorecards
Michael Sim
 
IT Strategic Planning - Methodology and Approach
IT Strategic Planning - Methodology and ApproachIT Strategic Planning - Methodology and Approach
IT Strategic Planning - Methodology and Approach
Dave Shiple
 

Tendances (20)

IT Performance Measurement using IT Governance Metric
IT Performance Measurement using IT Governance MetricIT Performance Measurement using IT Governance Metric
IT Performance Measurement using IT Governance Metric
 
CobiT, Val IT & Balanced Scorecards
CobiT, Val IT & Balanced ScorecardsCobiT, Val IT & Balanced Scorecards
CobiT, Val IT & Balanced Scorecards
 
Understanding IT Governance and Risk Management
Understanding IT Governance and Risk ManagementUnderstanding IT Governance and Risk Management
Understanding IT Governance and Risk Management
 
IT Governance - Governing IT: Do or Die?
IT Governance - Governing IT: Do or Die?IT Governance - Governing IT: Do or Die?
IT Governance - Governing IT: Do or Die?
 
NQA - ISO 27001 Implementation Guide
NQA - ISO 27001 Implementation GuideNQA - ISO 27001 Implementation Guide
NQA - ISO 27001 Implementation Guide
 
IT Strategic Planning - Methodology and Approach
IT Strategic Planning - Methodology and ApproachIT Strategic Planning - Methodology and Approach
IT Strategic Planning - Methodology and Approach
 
IT Governance Framework
IT Governance FrameworkIT Governance Framework
IT Governance Framework
 
IT Governance
IT GovernanceIT Governance
IT Governance
 
Cobit_5_Checklist.pdf
Cobit_5_Checklist.pdfCobit_5_Checklist.pdf
Cobit_5_Checklist.pdf
 
Cobit 2019 framework by ISACA
Cobit 2019 framework by ISACACobit 2019 framework by ISACA
Cobit 2019 framework by ISACA
 
ISO 27001 ISMS MEASUREMENT
ISO 27001 ISMS MEASUREMENTISO 27001 ISMS MEASUREMENT
ISO 27001 ISMS MEASUREMENT
 
Itil,cobit and ıso27001
Itil,cobit and ıso27001Itil,cobit and ıso27001
Itil,cobit and ıso27001
 
Governance and Management of Enterprise IT with COBIT 5 Framework
Governance and Management of Enterprise IT with COBIT 5 FrameworkGovernance and Management of Enterprise IT with COBIT 5 Framework
Governance and Management of Enterprise IT with COBIT 5 Framework
 
IT Strategy Tools
IT Strategy ToolsIT Strategy Tools
IT Strategy Tools
 
cobit 2019 presentation.pdf
cobit 2019 presentation.pdfcobit 2019 presentation.pdf
cobit 2019 presentation.pdf
 
Best Practices in Auditing ISO/IEC 27001
Best Practices in Auditing ISO/IEC 27001Best Practices in Auditing ISO/IEC 27001
Best Practices in Auditing ISO/IEC 27001
 
Control and audit of information System (hendri eka saputra)
Control and audit of information System (hendri eka saputra)Control and audit of information System (hendri eka saputra)
Control and audit of information System (hendri eka saputra)
 
Introduction to COBIT 5 and IT management
Introduction to COBIT 5 and IT managementIntroduction to COBIT 5 and IT management
Introduction to COBIT 5 and IT management
 
ISO 27001 Awareness/TRansition.pptx
ISO 27001 Awareness/TRansition.pptxISO 27001 Awareness/TRansition.pptx
ISO 27001 Awareness/TRansition.pptx
 
Basic introduction to iso27001
Basic introduction to iso27001Basic introduction to iso27001
Basic introduction to iso27001
 

Similaire à Critical Success Factors (CSFs) for Effective IT Governance Implementations

IT Governance Presentation by omaha 2008
IT Governance Presentation by  omaha 2008IT Governance Presentation by  omaha 2008
IT Governance Presentation by omaha 2008
ssusera19f45
 
Understanding IT Strategy, Sourcing and Vendor Relationships
Understanding IT Strategy, Sourcing and Vendor RelationshipsUnderstanding IT Strategy, Sourcing and Vendor Relationships
Understanding IT Strategy, Sourcing and Vendor Relationships
Goutama Bachtiar
 
It Governance OC CIO Nov,2013
It Governance OC CIO Nov,2013It Governance OC CIO Nov,2013
It Governance OC CIO Nov,2013
James Sutter
 
It Governance OC CIO Nov,2013
It Governance OC CIO Nov,2013It Governance OC CIO Nov,2013
It Governance OC CIO Nov,2013
Jim Sutter
 
It governance 13 may20102
It governance 13 may20102It governance 13 may20102
It governance 13 may20102
James Sutter
 
2 -governanca_de_tic_-_uma_visao_do_mercado_gartner_-_claudio_chauke
2  -governanca_de_tic_-_uma_visao_do_mercado_gartner_-_claudio_chauke2  -governanca_de_tic_-_uma_visao_do_mercado_gartner_-_claudio_chauke
2 -governanca_de_tic_-_uma_visao_do_mercado_gartner_-_claudio_chauke
Mayk Campelo
 

Similaire à Critical Success Factors (CSFs) for Effective IT Governance Implementations (20)

IT Governance Presentation by omaha 2008
IT Governance Presentation by  omaha 2008IT Governance Presentation by  omaha 2008
IT Governance Presentation by omaha 2008
 
Sharpening the Lens
Sharpening the LensSharpening the Lens
Sharpening the Lens
 
Understanding IT Strategy, Sourcing and Vendor Relationships
Understanding IT Strategy, Sourcing and Vendor RelationshipsUnderstanding IT Strategy, Sourcing and Vendor Relationships
Understanding IT Strategy, Sourcing and Vendor Relationships
 
It Governance OC CIO Nov,2013
It Governance OC CIO Nov,2013It Governance OC CIO Nov,2013
It Governance OC CIO Nov,2013
 
It Governance OC CIO Nov,2013
It Governance OC CIO Nov,2013It Governance OC CIO Nov,2013
It Governance OC CIO Nov,2013
 
Gaining and Maintaining IT & Business Alignment.pptx
Gaining and Maintaining IT & Business Alignment.pptxGaining and Maintaining IT & Business Alignment.pptx
Gaining and Maintaining IT & Business Alignment.pptx
 
MAKING SENSE OF IT GOVERNANCE
MAKING SENSE OF IT GOVERNANCEMAKING SENSE OF IT GOVERNANCE
MAKING SENSE OF IT GOVERNANCE
 
Information Technology for Management Chapter 12
Information Technology for Management Chapter 12Information Technology for Management Chapter 12
Information Technology for Management Chapter 12
 
IT Governance - Core Concepts for Business Managers
IT Governance - Core Concepts for Business ManagersIT Governance - Core Concepts for Business Managers
IT Governance - Core Concepts for Business Managers
 
IT Governance in Banks, May, 2014
IT Governance in Banks, May, 2014IT Governance in Banks, May, 2014
IT Governance in Banks, May, 2014
 
It governance 13 may20102
It governance 13 may20102It governance 13 may20102
It governance 13 may20102
 
CIT 3122 IS Governance Lecture 3.pptx
CIT 3122 IS Governance Lecture 3.pptxCIT 3122 IS Governance Lecture 3.pptx
CIT 3122 IS Governance Lecture 3.pptx
 
How to pass cobit exam
How to pass cobit exam   How to pass cobit exam
How to pass cobit exam
 
CobiT And ITIL Breakfast Seminar
CobiT And ITIL Breakfast SeminarCobiT And ITIL Breakfast Seminar
CobiT And ITIL Breakfast Seminar
 
Agile Program Management: Moving from Principles to Practice
Agile Program Management: Moving from Principles to PracticeAgile Program Management: Moving from Principles to Practice
Agile Program Management: Moving from Principles to Practice
 
IT Govenence.pptx
IT Govenence.pptxIT Govenence.pptx
IT Govenence.pptx
 
CoBIT 5 (A brief Description)
CoBIT 5 (A brief Description)CoBIT 5 (A brief Description)
CoBIT 5 (A brief Description)
 
IT Governance.ppt
IT Governance.pptIT Governance.ppt
IT Governance.ppt
 
2 -governanca_de_tic_-_uma_visao_do_mercado_gartner_-_claudio_chauke
2  -governanca_de_tic_-_uma_visao_do_mercado_gartner_-_claudio_chauke2  -governanca_de_tic_-_uma_visao_do_mercado_gartner_-_claudio_chauke
2 -governanca_de_tic_-_uma_visao_do_mercado_gartner_-_claudio_chauke
 
Business-IT Alignment
Business-IT AlignmentBusiness-IT Alignment
Business-IT Alignment
 

Dernier

+971581248768>> SAFE AND ORIGINAL ABORTION PILLS FOR SALE IN DUBAI AND ABUDHA...
+971581248768>> SAFE AND ORIGINAL ABORTION PILLS FOR SALE IN DUBAI AND ABUDHA...+971581248768>> SAFE AND ORIGINAL ABORTION PILLS FOR SALE IN DUBAI AND ABUDHA...
+971581248768>> SAFE AND ORIGINAL ABORTION PILLS FOR SALE IN DUBAI AND ABUDHA...
?#DUbAI#??##{{(☎️+971_581248768%)**%*]'#abortion pills for sale in dubai@
 
Histor y of HAM Radio presentation slide
Histor y of HAM Radio presentation slideHistor y of HAM Radio presentation slide
Histor y of HAM Radio presentation slide
vu2urc
 

Dernier (20)

Scaling API-first – The story of a global engineering organization
Scaling API-first – The story of a global engineering organizationScaling API-first – The story of a global engineering organization
Scaling API-first – The story of a global engineering organization
 
Apidays Singapore 2024 - Building Digital Trust in a Digital Economy by Veron...
Apidays Singapore 2024 - Building Digital Trust in a Digital Economy by Veron...Apidays Singapore 2024 - Building Digital Trust in a Digital Economy by Veron...
Apidays Singapore 2024 - Building Digital Trust in a Digital Economy by Veron...
 
TrustArc Webinar - Stay Ahead of US State Data Privacy Law Developments
TrustArc Webinar - Stay Ahead of US State Data Privacy Law DevelopmentsTrustArc Webinar - Stay Ahead of US State Data Privacy Law Developments
TrustArc Webinar - Stay Ahead of US State Data Privacy Law Developments
 
Apidays New York 2024 - Scaling API-first by Ian Reasor and Radu Cotescu, Adobe
Apidays New York 2024 - Scaling API-first by Ian Reasor and Radu Cotescu, AdobeApidays New York 2024 - Scaling API-first by Ian Reasor and Radu Cotescu, Adobe
Apidays New York 2024 - Scaling API-first by Ian Reasor and Radu Cotescu, Adobe
 
Powerful Google developer tools for immediate impact! (2023-24 C)
Powerful Google developer tools for immediate impact! (2023-24 C)Powerful Google developer tools for immediate impact! (2023-24 C)
Powerful Google developer tools for immediate impact! (2023-24 C)
 
ProductAnonymous-April2024-WinProductDiscovery-MelissaKlemke
ProductAnonymous-April2024-WinProductDiscovery-MelissaKlemkeProductAnonymous-April2024-WinProductDiscovery-MelissaKlemke
ProductAnonymous-April2024-WinProductDiscovery-MelissaKlemke
 
🐬 The future of MySQL is Postgres 🐘
🐬  The future of MySQL is Postgres   🐘🐬  The future of MySQL is Postgres   🐘
🐬 The future of MySQL is Postgres 🐘
 
Finology Group – Insurtech Innovation Award 2024
Finology Group – Insurtech Innovation Award 2024Finology Group – Insurtech Innovation Award 2024
Finology Group – Insurtech Innovation Award 2024
 
+971581248768>> SAFE AND ORIGINAL ABORTION PILLS FOR SALE IN DUBAI AND ABUDHA...
+971581248768>> SAFE AND ORIGINAL ABORTION PILLS FOR SALE IN DUBAI AND ABUDHA...+971581248768>> SAFE AND ORIGINAL ABORTION PILLS FOR SALE IN DUBAI AND ABUDHA...
+971581248768>> SAFE AND ORIGINAL ABORTION PILLS FOR SALE IN DUBAI AND ABUDHA...
 
2024: Domino Containers - The Next Step. News from the Domino Container commu...
2024: Domino Containers - The Next Step. News from the Domino Container commu...2024: Domino Containers - The Next Step. News from the Domino Container commu...
2024: Domino Containers - The Next Step. News from the Domino Container commu...
 
Real Time Object Detection Using Open CV
Real Time Object Detection Using Open CVReal Time Object Detection Using Open CV
Real Time Object Detection Using Open CV
 
Data Cloud, More than a CDP by Matt Robison
Data Cloud, More than a CDP by Matt RobisonData Cloud, More than a CDP by Matt Robison
Data Cloud, More than a CDP by Matt Robison
 
Developing An App To Navigate The Roads of Brazil
Developing An App To Navigate The Roads of BrazilDeveloping An App To Navigate The Roads of Brazil
Developing An App To Navigate The Roads of Brazil
 
GenAI Risks & Security Meetup 01052024.pdf
GenAI Risks & Security Meetup 01052024.pdfGenAI Risks & Security Meetup 01052024.pdf
GenAI Risks & Security Meetup 01052024.pdf
 
Strategies for Unlocking Knowledge Management in Microsoft 365 in the Copilot...
Strategies for Unlocking Knowledge Management in Microsoft 365 in the Copilot...Strategies for Unlocking Knowledge Management in Microsoft 365 in the Copilot...
Strategies for Unlocking Knowledge Management in Microsoft 365 in the Copilot...
 
How to Troubleshoot Apps for the Modern Connected Worker
How to Troubleshoot Apps for the Modern Connected WorkerHow to Troubleshoot Apps for the Modern Connected Worker
How to Troubleshoot Apps for the Modern Connected Worker
 
TrustArc Webinar - Unlock the Power of AI-Driven Data Discovery
TrustArc Webinar - Unlock the Power of AI-Driven Data DiscoveryTrustArc Webinar - Unlock the Power of AI-Driven Data Discovery
TrustArc Webinar - Unlock the Power of AI-Driven Data Discovery
 
A Domino Admins Adventures (Engage 2024)
A Domino Admins Adventures (Engage 2024)A Domino Admins Adventures (Engage 2024)
A Domino Admins Adventures (Engage 2024)
 
Tata AIG General Insurance Company - Insurer Innovation Award 2024
Tata AIG General Insurance Company - Insurer Innovation Award 2024Tata AIG General Insurance Company - Insurer Innovation Award 2024
Tata AIG General Insurance Company - Insurer Innovation Award 2024
 
Histor y of HAM Radio presentation slide
Histor y of HAM Radio presentation slideHistor y of HAM Radio presentation slide
Histor y of HAM Radio presentation slide
 

Critical Success Factors (CSFs) for Effective IT Governance Implementations

  • 1. Rachid Meziani, PhD, CGEIT, PMP GRC Kuwait Forum: 6-7 March 2018 CriticalSuccessFactors(CSFs) forEffectiveITGovernance Implementations
  • 2. Agenda • Background • Positioning IT Governance • IT Governance Drivers • Success Factors • Summary 2
  • 3. We’ve always done it this way! 3
  • 4. IT Governance Defined 4 gov·er·nance noun(ˈgə-vər-nən(t)s) : the way that a city, company, etc., is controlled by the people who run it
  • 5. What is IT Governance? 5 It is … The responsibility of the Board and Executive It consists of … The Leadership, Organizational Structures, and Processes To ensure that the enterprise’s IT … Sustain and extend organizational strategies and objectives
  • 6. Why IT Governance? 6 GEIT Objectives IT Value Delivery to the Business Mitigation of IT-related risks ▪ Strategic alignment ▪ Resources availability & Mgmt. ▪ Monitoring
  • 7. 7 Enterprise governance is about: Conformance Adhering to legislation, internal policies, audit requirements, etc. Performance Improving profitability, efficiency, effectiveness, growth, etc.
  • 8. Positioning IT Governance 8 IT Governance supports both Corporate and Business Governance inside Enterprise Governance
  • 9. IT Governance focus areas 9 IT Governance should focus on these key areas: ▪ Strategic alignment with business ▪ Value delivery ▪ Risk management ▪ Resource management ▪ Performance measurement
  • 10. Context - IT Governance 10 What is the purpose of IT? How is IT managed?
  • 11. 11 IT Governance "Which skills should be developed and kept internal and which activities should be outsourced?" "How should the IT service portfolio be managed and controlled from a corporate perspective?" "How should BUILD, TRANSFORM, and RUN be managed? How should the development process look like? What are appropriate standards for delivery (SLAs, availability ...)? "How are corporate-wide architecture standards developed and implemented for the entire organization?" How is IT managed? "How should the IT organization be structured to account for local and global needs?" "How well are the overall business strategy and IT strategy aligned?" What is the purpose of IT for the company? Overall: "How much value does IT contribute to the organization?" Business and IT strategy alignment IT architecture IT planning and controlling IT leader- ship and organization Skills and sourcing IT develop- ment and delivery Context - IT Governance
  • 12. IT governance is an integral part of corporate governance and analogously combines leadership, organizational structures, and processes that ensure that IT sustains and extends the organization’s strategies and objectives IT governance provides guidelines, establishes criteria and standards for decision making, monitoring, measuring, and improving the performance of IT IT governance is the responsibility of the executive board and the executive management (incl. IT) and supports the interaction of all the organization's parties involved with IT What? How? Who? 12
  • 13. What are the Drivers? 13  Need for new or improved IT governance organization is usually recognized by: Pain points / trigger events  Board and executive management should: ▪ Analyze pain points to identify root cause ▪ Look for opportunities during trigger events
  • 14. Typical Pain Points 14 • Failed IT initiatives • Rising costs • Perception of low business value for IT investments • Significant incidents related to IT risk (data loss) • Service delivery problems • Failure to meet regulatory or contractual requirements (GDPR) • Audit findings for poor IT performance or low service level
  • 15. IT GovernanceTrigger Events 15 ▪ Merger, acquisition or divestiture ▪ Shift in the market, economy or competitive position ▪ Change in business operating model or sourcing arrangements ▪ New regulatory or compliance requirements ▪ Significant technology change or paradigm shift
  • 16. 16
  • 17. External IT service providers Internal IT service providers (IT organization, shared services center) Transparency needed: roles, influence and mandate of each involved party Board of directors Central functions (Corporate strategy, Accounting, Controlling, HR ...) Business units, subsidiaries, affiliated companies Employees, workers' council Cooperation Regulatory authorities(1) 17
  • 18. Each framework can be deployed in different situations accordingly ITIL Business/IT alignmentIT focus Focus on operations Focus on strategy BCG Gartner Giga Group COBIT ISO 27001 ITIL Company individual De facto standard IT process performance controls and metrics IT security management IT services management Structure of global IT organizations KPMG IBM IT decision structures and processes Business and IT strategy integrated Business and IT strategy alignment Implementation of IT governance using CobiT, ITIL Content Primary objective 18
  • 19. Critical Success Factors (CSF) 19 Limited number (usually between 3 to 8) of characteristics, conditions, or variables that have a direct and serious impact on the effectiveness, efficiency, and viability of an organization, program, or project. Activities associated with CSF must be performed at the highest possible level of excellence to achieve the intended overall objectives. Also called key success factors (KSF) or key result areas (KRA).
  • 20. 20 IT Governance Critical Success Factors (CSFs) 1 2 3 4 5 6 7
  • 21. 1. Get Executive Sponsorship 21 ▪ The higher in the organization the better. If IT governance is seen as “optional,” it won’t work. ▪ On the business side, it would be ideal to have a C-level executive.
  • 22. 2. Put Resources on the Team 22 ▪ Success depends on strong teamwork and alliances across IT and the business side. ▪ By exposing both key business-side and IT users to the system early, you create champions who carry the story across the company Marshmallow Challenge
  • 23. 23 2. Put Resources on the Team
  • 24. 3. Understand the Problem 24 ▪ Aim before you fire. Take the time to determine where you’re starting from in the Capability Maturity Model. ▪ Pick an attainable target to start with, ideally a particular pain point that is costing you time and money.
  • 25. 25 where you’re starting from in the Capability Maturity Model?
  • 26. 4. Envision the Solution 26 ▪ Think hard about what you want to accomplish initially. Set goals high, but don’t make them unattainable—it demoralizes people. ▪ Make sure your requirements are clearly defined and universally understood among all the stakeholders. ▪ Stick to the original plan once you’ve adopted it ▪ Focus on process improvement areas.
  • 27. 5. Pick the Right Software for the Right Reasons 27 ▪ Recognize that successful IT governance requires clear, enforceable processes and standards. ▪ Think beyond your initial implementation. ▪ Leverages, best practice frameworks such as ITIL and CMMi, and supports such quality issues as Six Sigma.
  • 28. 6. Take Small Steps 28 ▪ Don’t “swing for the fences.” ▪ Training is extremely important. ▪ Take the time to win recalcitrant users over through collaborative engagement. ▪ You have to keep moving forward once you’ve started. Small steps will get you there,
  • 29. 7. Include Post-Implementation Activities 29 ▪ This is one of the most overlooked parts of the process, though it is potentially the most important. ▪ Make sure you have developed clear plans for the transition. ▪ This is a critical time to assess the effectiveness of your training. ▪ This is also the time to promote the system on the business side. ▪ Actively ask for feedback.
  • 30. Summary 30 ▪ IT Governance is more than just a process- and-organization recipe ▪ IT Governance is first of all a management challenge taking into account the enterprise’s culture. ▪ Recognizing that CSFs are essential for successful IT Governance ▪ It is a long Journey …
  • 31. 31 Where there is poor organizational governance practice in place, it will be difficult to implement good IT and information practice that delivers consistent quality deliverables. Alison Holt
  • 32. Rachid Meziani, PhD, CGEIT, PMP @rmeziani http://www.linkedin.com/in/rachidmeziani
  • 33. 33