Find Resources & Connect with members on topics that interest you.

AI - Acquire and Implement

PO - Plan and Organize

DS - Deliver and Support

Please sign in to see your topics.

You must be logged in to join this group.

PO4.3 - IT Steering Committee

This topic is intended to enable collaboration and sharing of information to facilitate a better understanding and approach to implementing this COBIT control objective based on the risk, value and guidance provided by its corresponding control practices.

COBIT Control Objective PO4.3 - IT Steering Committee is contained within Process Popup Define the IT Processes, Organisation and Relationships

Learn more about COBIT and related publications.

Click “Join This Community” to be able to actively participate in discussions and contribute content. You must be an ISACA member to join this topic. Join ISACA now.

 
This Topic Has:
99 Members
0 Online
4732 Visits

 Recent Discussions

Community Leader

Knowledge Center Manager

Knowledge Center Manager

Title: Become a Topic Leader!

Badge: Energizer


IT Steering Committee

Establish an IT steering committee (or equivalent) composed of executive, business and IT management to:
  • Determine prioritisation of IT-enabled investment programmes in line with the enterprise’s business strategy and priorities
  • Track status of projects and resolve resource conflict
  • Monitor service levels and service improvements

View value and Risk Drivers  help

Hide value and Risk Drivers help


Value Drivers

  • IT strategy in line with the organisation’s strategy
  • IT-enabled investment programmes in line with the organisation’s strategy
  • Business and IT involvement in the prioritisation process
  • Business and IT involvement in conflict resolution
  • Business and IT involvement in monitoring performance
  Risk Drivers
  • IT strategy not in line with the organisation’s strategy
  • IT-enabled investment programmes not in support of the organisational goals and objectives
  • Insufficient support and involvement of IT and senior organisational management in key decision-making processes

View Control Practices  help

Hide Control Practices  help

  1. Ensure that an IT steering committee exists that reports to an appropriate level of senior management and includes representation from the executive level, key business operations areas, IT and key business support areas such as finance, risk management, compliance, human resources, legal and internal audit.
  2. Ensure that the IT steering committee includes a key sponsor at the executive level.
  3. Ensure that the role and authority of the IT steering committee are agreed upon and formally documented.
  4. Ensure that the IT steering committee meets regularly, with an appropriate and monitored frequency.
  5. Determine that the responsibilities for the committee include at least:
    • Determination of prioritisation of IT-enabled investment programmes in line with the enterprise’s business strategy and priorities
    • Tracking of status of projects and resolution of resource conflict
    • Monitoring of service levels and service improvements
  6. Ensure that the IT steering committee approves the high-level control requirements, such as consideration of key performance indicators and balanced scorecards in relation to IT, and monitors controls compliance.

Discussions: 0 total

Must be a Topic member to contribute

No Results Found

Documents & Publications: 57 total

Must be a Topic member to contribute
View All »
Downloads
Posted by FarmService 1416 days ago
Downloads
Posted by FarmService 2501 days ago
Books
Posted by ISACA 506 days ago
Books
Posted by ISACA 835 days ago

Events & Online Learning: 1 total

Journal Articles: 78 total

Volume 1, 2018
by Steven J. Ross, CISA, CISSP, MBCP
Managing availability in a multi-modal environment requires a great deal of attention to details, which are being defined by the multi-modal pioneers of our day.
Volume 4, 2017
by Mathew Nicho, Ph.D., CEH, CIS, ITIL Foundation, RWSP, SAP, Shafaq Khan, Ph.D., CIS, PMBOK, PMP, SAP, and Ram Mohan, CRISC, CISM, CGEIT, ISO 27001, ITIL Foundation
A key issue often cited by information systems (IS) executives in the last three decades is aligning IT with business, which assists in realizing value from IT investments.
Volume 4, 2017
by Steven De Haes, Ph.D., Anant Joshi, Ph.D., Tim Huygh and Salvi Jansen
IT governance, also referred to as governance of enterprise IT (GEIT) or corporate governance of IT, is a subset of corporate governance that is concerned with enterprise IT assets.
Volume 4, 2017
by Mathew Nicho, Ph.D., CEH, CIS, ITIL Foundation, RWSP, SAP, Shafaq Khan, Ph.D., CIS, PMBOK, PMP, SAP and Ram Mohan, CRISC, CISM, CGEIT, ISO 27001
The Emirates National Oil Company embarked on an initiative to realize value out of IT assets through Information Technology Infrastructure Library (ITIL) process implementation.
Volume 3, 2017
by Vasant Raval, DBA, CISA, ACMA, and Rajesh Sharma, Ph.D., ITIL-F, Six Sigma Black Belt
Success does not teach much, if anything; it is the failure that provides lessons to do better in the future.
Volume 1, 2017
by Cheryl Ritts, MSIS
Many enterprises are quick to leap into cloud relationships. Very often, they do so without any analysis—formal or informal—of the value they expect to get in return.

Wikis: 2 total

Blog Posts: 70 total

21 Feb 2018
We are happy to announce that  on Feb//2018  the ISACA awareness session  was held in Baghdad.This the first time to speak about ISACA Value in Iraq.Professional from government and private sector were excited to hear about ISACA value and they started to...
Posted By : Ali099 | 1 comments
Have you experienced ransomware attack so far and, if yes, what did you do to resolve? I set up Twitter poll here: https://twitter.com/DPleskonjic/status/953608717399941120 It lasts for seven days. Thank you for taking part in the poll.
Posted By : Dragan Pleskonjic | 2 comments
Bitcoin Trade a Bubble! Block Chain Technology Useful .ISACA Members whats your Take on Bitcoin Trade, Is its a bubble that wont last long.Block chain Technology is useful and its continuously growing to as form of secure record  management and secured us...
Posted By : MUGAMBI865 | 1 comments
I predict that on 1 July 2018, I will be calmly eating a barbecue sandwich, talking with friends and possibly, I will burn a copy of the RFC2246: TLS version 1.0 standard for entertainment value.  Those will less effective Vendor, Network, Systems, Applic...
Posted By : Don Turnblade | 0 comments
There is need to for ISACA through our local; chapter to allow fees to be paid in installments or split invoices given the fact that in our country - one has to find currency first and then deposit into a VISA card account. Thus i can raise my exam and ma...
Posted By : Hamadzashe | 1 comments
Globally, many organizations are spending millions of dollars protecting their businesses and its enabling infrastructure, but are they really secure? We shall discuss answer to this question in a little while. We need to understand core basics before we ...
Posted By : SudireddyRamreddy | 2 comments