Top Banner
LOGO CISA Review Course Iyad Mourtada, CIA, CMA, CFE, CPLP Introduction to IT Governance
13
Welcome message from author
This document is posted to help you gain knowledge. Please leave a comment to let me know what you think about it! Share it to your friends and learn new things together.
Transcript
Page 1: CISA Review Course Slides - Part1

LOGO

CISA Review Course

Iyad Mourtada, CIA, CMA, CFE, CPLP

Introduction to IT Governance

Page 2: CISA Review Course Slides - Part1

Information is Key element not the Technology

Page 3: CISA Review Course Slides - Part1

wps.cn/moban

Governance Definition

IT Governance Definition

Page 4: CISA Review Course Slides - Part1

CORPORATE GOVERNANCE

Corporate Governance is defined by ISACA as “ethical behavior of corporate executives toward shareholders and stakeholder to maximize the return of a financial investment”

Company Logo

Page 5: CISA Review Course Slides - Part1

Governance

Company Logo

- Code of Ethics- Code of Conduct - Policy Standards Procedures Guidelines

Page 6: CISA Review Course Slides - Part1

CORPORATE GOVERNANCE - Strategic alignment between IT and enterprise objectives. - Technology Plans have to fulfill a business objectives. - IT Steering Committee communicate the business requirements from business executives to the IT executives. - The charter of the IT Steering Committee will define their responsibilities and authorities.

Company Logo

Page 7: CISA Review Course Slides - Part1

Balanced Scorecard

Company Logo

Page 8: CISA Review Course Slides - Part1

3 Layers of IT Scoring

Company Logo

- Mission - Strategy- Metrics (Based on the Critical Success Factors)

- Defining the IT Strategy - Project Life Cycle Initiating Planning Executing Closing

Monitoring and controlling

Page 9: CISA Review Course Slides - Part1

Implementing Planning of the IT Strategy

Company Logo

- Data Plan (Use of data)

- Application management Plan (App used)

- Technology Plan (Type of Hardware & Software)

- Organizational Plan (IT Organizational Structure)

- Facilities Plan (IT Facilities)

Page 10: CISA Review Course Slides - Part1

COBIT 5

Company Logo

Control Objectives for Information and Related Technology (COBIT 5) provides a comprehensive framework that assists enterprises to achieve their goals and deliver value through effective governance and management of enterprise IT.

Page 11: CISA Review Course Slides - Part1

wps.cn/moban

Company Logo

COBIT 5 Principles

Source:  COBIT® 5, figure 2. © 2012 ISACA® All rights reserved.

Page 12: CISA Review Course Slides - Part1

COBIT 5 Enablers

wps.cn/moban

Company Logo

Source:  COBIT® 5, figure 12. © 2012 ISACA® All rights reserved.

Page 13: CISA Review Course Slides - Part1

Performance Review: Capability Maturity Model

Company Logo