Find Resources & Connect with members on topics that interest you.

AI - Acquire and Implement

PO - Plan and Organize

DS - Deliver and Support

Please sign in to see your topics.

You must be logged in to join this group.

PO7.7 - Employee Job Performance Evaluation

This topic is intended to enable collaboration and sharing of information to facilitate a better understanding and approach to implementing this COBIT control objective based on the risk, value and guidance provided by its corresponding control practices.

COBIT Control Objective PO7.7 - Employee Job Performance Evaluation is contained within Process Popup Manage IT Human Resources.

Learn more about COBIT and related publications.

Click “Join This Community” to be able to actively participate in discussions and contribute content. You must be an ISACA member to join this topic. Join ISACA now.

This Topic Has:
6 Members
0 Online
4041 Visits

Community Leader

Knowledge Center Manager

Knowledge Center Manager

Title: Become a Topic Leader!

Badge: Energizer

Employee Job Performance Evaluation

Require a timely evaluation to be performed on a regular basis against individual objectives derived from the organisation’s goals, established standards and specific job responsibilities. Employees should receive coaching on performance and conduct whenever appropriate.

View value and Risk Drivers  help

Hide value and Risk Drivers help

Value Drivers

  • Improved individual and collective performance and contribution to organisational goals
  • Improved staff satisfaction
  • Improved management performance from staff feedback and review processes
  • Effective use of IT staff
  Risk Drivers
  • Inability to identify inefficient operations
  • Ineffective training programme
  • Dissatisfied and disgruntled staff, leading to retention problems and possible incidents
  • Loss of competent staff members and related corporate knowledge

View Control Practices  help

Hide Control Practices  help

  1. Set individual goals based on SMARRT objectives that reflect core competencies, company values and skills required for the role(s).
  2. Provide specific instructions for the use and storage of personal information in the evaluation process, in compliance with applicable personal data and employment legislation.
  3. Compile performance evaluation results from across the IT organisation for use in the review of current competencies and training requirements.
  4. Provide appropriate feedback regarding performance against the individual’s goals.
  5. Implement a remuneration/recognition process that rewards successful attainment of performance goals and is applied consistently and in line with organisational policies.
  6. Develop performance improvement plans based on the results of the evaluation process and identified training and skills development requirements.

Discussions: 1 total

Must be a Topic member to contribute
Hi, We've recently developed and implemented a Development and Performance Management System for the IT department at the university where I work. The system was developed by a committee of an equal number of "management" and elected staff members. S...
Janice | 9/7/2012 7:08:40 AM | COMMENTS(0)

Documents & Publications: 72 total

Must be a Topic member to contribute
View All »
Posted by ISACA 1453 days ago
Posted by ISACA 746 days ago
Posted by ISACA 851 days ago
Posted by ISACA 861 days ago

Events & Online Learning: 12 total

Journal Articles: 239 total

Volume 3, 2107
by Jayakumar Sundaram, CISA, ISO 27001 LA
The SoA is a continuously updated and controlled document that provides an overview of information security implementation.
Volume 6, 2106
by Venkatasubramanian Ramakrishnan, CISM, CRISC, CHFI
Bayesian networks can capture the complex interdependencies among risk factors and can effectively combine data with expert judgment.
Volume 2, 2018
by Ofir Eitan, CISM, CCSK, CTI
In the wake of the Target breach, the threat of cyberattacks using an enterprise’s supply chain as a delivery vector has become a common concern within the information security community.
Volume 2, 2018
by Robert E. Davis, DBA, CISA, CICA
Innovation is the process of transforming an idea or concept into a functional and marketable value proposition reflecting creative opportunity.
Volume 2, 2018
Until a few years ago, many organizations did not adopt new technologies unless they were proven, stabilized and in use.
Volume 2, 2018
by Indrajit Atluri, CRISC, CISM, CISSP, HCISPP, ITILv3
Cyber insurance, along with cyberrisk, has become a very common agenda item on the boardroom discussion list in recent times.

Wikis: 2 total

Blog Posts: 146 total

La Tecnología de la Información (TI), en todas sus áreas (base de datos, seguridad de la información, desarrollo de software, redes, etc.), debe tener como objetivo primario el apoyo a los Procesos del Negocio (PN) de la organización. Sin embargo, es comú...
Posted By : emorro | 0 comments
Have you experienced ransomware attack so far and, if yes, what did you do to resolve? I set up Twitter poll here: It lasts for seven days. Thank you for taking part in the poll.
Posted By : Dragan Pleskonjic | 5 comments
Bitcoin Trade a Bubble! Block Chain Technology Useful .ISACA Members whats your Take on Bitcoin Trade, Is its a bubble that wont last long.Block chain Technology is useful and its continuously growing to as form of secure record  management and secured us...
Posted By : MUGAMBI865 | 1 comments
There is no doubt with our current business environment, we will be experiencing more cyber breaches in the next few months.  The latest threat is an architectural design flaw in newer CPU's.  These design vulnerabilities could allow attackers to intercep...
Posted By : Fred586 | 1 comments
There are some math models for business that MBAs are taught. Just like assembling burgers for fast food or call wait queue management in a call center, vulnerability patching is a time based business opportunity. Leadership can be expected to use this ...
Posted By : Don Turnblade | 1 comments
My personal thoughts after listening to C-level executives at the CxO Roundtable Series sponsored by Intel, IBM, HyTrust & ReedSmith. For an invite, please reach out to me. Data Protection under the GDPR For past few months, I’ve been helping to org...
Posted By : Thomas152 | 1 comments