Find Resources & Connect with members on topics that interest you.

AI - Acquire and Implement

PO - Plan and Organize

DS - Deliver and Support

Please sign in to see your topics.

You must be logged in to join this group.

PO6.4 - Policy, Standard and Procedures Rollout

This topic is intended to enable collaboration and sharing of information to facilitate a better understanding and approach to implementing this COBIT control objective based on the risk, value and guidance provided by its corresponding control practices.

COBIT Control Objective PO6.4 - Policy, Standard and Procedures Rollout is contained within Process Popup Communicate Management Aims and Direction

Learn more about COBIT and related publications.

Click “Join This Community” to be able to actively participate in discussions and contribute content. You must be an ISACA member to join this topic. Join ISACA now.

This Topic Has:
25 Members
0 Online
4260 Visits

 Recent Discussions

Community Leader

Knowledge Center Manager

Knowledge Center Manager

Title: Become a Topic Leader!

Badge: Energizer

Policy, Standard and Procedures Rollout

Roll out and enforce IT policies to all relevant staff, so they are built into and are an integral part of enterprise operations.

View value and Risk Drivers  help

Hide value and Risk Drivers help

Value Drivers

  • Appropriate protection of the organisation’s assets
  • Decisions aligned with the organisation’s business objectives
  • Efficient management of the organisation’s assets
  • Proper use of IT resources and IT services
  Risk Drivers
  • Organisation’s policies, standards and procedures unknown or not accepted
  • Lack of communication of management’s aims and directions
  • Control culture not aligned with management’s aims
  • Policies misunderstood or not accepted
  • Business risk of policies and procedures not followed

View Control Practices  help

Hide Control Practices  help

  1. Ensure that policies are effectively translated into operational standards.
  2. Ensure that employment contracts are aligned with policies.
  3. Capture explicit acknowledgement from users as to their receipt and understanding of the policies, procedures and standards.
  4. Ensure that sufficient and skilled resources are available to support the rollout process. Rollout methods should address resource and awareness needs and implications.

Discussions: 1 total

Must be a Topic member to contribute
Is there any platform or forum or website where I can see all international security standards or laws which are due to be released or which have already released?
MSingh USA | 3/11/2018 7:31:49 PM | COMMENTS(1)

Documents & Publications: 45 total

Must be a Topic member to contribute
View All »
Posted by FarmService 1436 days ago
Posted by FarmService 2522 days ago
Posted by ISACA 526 days ago
Posted by ISACA 855 days ago
Posted by ISACA 1138 days ago

Events & Online Learning: 1 total

13 Aug 2018
ISACA International Event
Nashville, Tennessee, US
2018 GRC Conference - 13-15 August , Nashville, TN. Explore the future of Governance Risk and Control through expert-led workshops and sessions developed by the IIA and ISACA. Register early for our GRC learning tracks.

Journal Articles: 81 total

Volume 2, 2018
by Robert E. Davis, DBA, CISA, CICA
Innovation is the process of transforming an idea or concept into a functional and marketable value proposition reflecting creative opportunity.
Volume 2, 2018
Until a few years ago, many organizations did not adopt new technologies unless they were proven, stabilized and in use.
Volume 2, 2018
by Jennifer Bayuk, CISA, CISM, CGEIT
The ERM framework is designed to provide reasonable expectation that an entity that adopts it understands and manages all kinds of risk associated with business strategy and performance objectives.
Volume 6, 2017
by Ability Takuva, CISA
In enterprise risk management, three lines of defense have been defined with separate responsibilities that enable effective risk management against any threat.
Volume 4, 2017
by Mathew Nicho, Ph.D., CEH, CIS, ITIL Foundation, RWSP, SAP, Shafaq Khan, Ph.D., CIS, PMBOK, PMP, SAP, and Ram Mohan, CRISC, CISM, CGEIT, ISO 27001, ITIL Foundation
A key issue often cited by information systems (IS) executives in the last three decades is aligning IT with business, which assists in realizing value from IT investments.
Volume 4, 2017
by Steven De Haes, Ph.D., Anant Joshi, Ph.D., Tim Huygh and Salvi Jansen
IT governance, also referred to as governance of enterprise IT (GEIT) or corporate governance of IT, is a subset of corporate governance that is concerned with enterprise IT assets.

Wikis: 2 total

Blog Posts: 69 total

Have you experienced ransomware attack so far and, if yes, what did you do to resolve? I set up Twitter poll here: It lasts for seven days. Thank you for taking part in the poll.
Posted By : Dragan Pleskonjic | 5 comments
21 Feb 2018
We are happy to announce that  on Feb//2018  the ISACA awareness session  was held in Baghdad.This the first time to speak about ISACA Value in Iraq.Professional from government and private sector were excited to hear about ISACA value and they started to...
Posted By : Ali099 | 1 comments
Bitcoin Trade a Bubble! Block Chain Technology Useful .ISACA Members whats your Take on Bitcoin Trade, Is its a bubble that wont last long.Block chain Technology is useful and its continuously growing to as form of secure record  management and secured us...
Posted By : MUGAMBI865 | 1 comments
I predict that on 1 July 2018, I will be calmly eating a barbecue sandwich, talking with friends and possibly, I will burn a copy of the RFC2246: TLS version 1.0 standard for entertainment value.  Those will less effective Vendor, Network, Systems, Applic...
Posted By : Don Turnblade | 0 comments
There is need to for ISACA through our local; chapter to allow fees to be paid in installments or split invoices given the fact that in our country - one has to find currency first and then deposit into a VISA card account. Thus i can raise my exam and ma...
Posted By : Hamadzashe | 1 comments
Globally, many organizations are spending millions of dollars protecting their businesses and its enabling infrastructure, but are they really secure? We shall discuss answer to this question in a little while. We need to understand core basics before we ...
Posted By : SudireddyRamreddy | 2 comments