22. COBIT 5 Flashcards

1
Q

COBIT 5

Principle 1:
Meeting Stakeholder Needs

A

Ensure buy in from board of directors and Senior Leadership

  • Enterprises have multiple stakeholders
  • “creating value” means different, often conflicting, things to each stakeholder
  • Governance - should consider all stakeholders when making benefit, resource and risk assessment decisions
  • Decisions should ask;
  • Who receives the benefits
  • Who bears the risk
  • What resources are required
  • Needs have to be transformed into practical strategy

COBIT 5 PRINCIPLES

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
2
Q

COBIT 5

Principle 2:
Covering Enterprise End-to-end

A

Governance and management of information and related technology

  • Integrate governance of enterprise IT into enterprise governance
  • All functions and processes within the enterprise
  • COBIT 5 does not focus on “IT Function”
  • COBIT 5 treats information and related techology as assets

COBIT 5 PRINCIPLES

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
3
Q

COBIT 5

Principle 3:
Applying Single Integrated Framework

A

COBIT 5 aligns with latest relevant standards
Use COBIT 5 as overarching governance

  • Enterprise: COSO, COSO ERM, ISO/IEC 9000, ISO/IEC 31000
  • IT Related: ISO/IEC 38500, ITIL, ISO/IEC 27000 series, TOGAF, PMBOK/PRINCE2, CMMI

COBIT 5 PRINCIPLES

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
4
Q

COBIT 5

Principle 4:
Enabling Holsitic Approach

A

COBIT 5 enablers;
7 categories

  • Factors that influence wheather something will work
  • Goals cascade i.e. higher level IT related goals define what different enablers should achieve
  • Holistic approach has 7 categories

COBIT 5 PRINCIPLES

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
5
Q

COBIT 5

Principle 5:
Separating Governance from Management

A
  1. Governance
  2. Management

  • Governance - typically responsibility of the board
  • Management - Reponsibility of the executive management under CEO leadership
  • Both serve different purposes

COBIT 5 PRINCIPLES

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
6
Q

COBIT 5

Enabling holistic approach
7 categories

A
  1. Principles, policies and frameworks
  2. Processes
  3. Org structures
  4. Culture, ethics, behaviour
  5. Information
  6. Services, infrastructure and applications
  7. People, skills, compentencies
How well did you know this?
1
Not at all
2
3
4
5
Perfectly
7
Q

COBIT 5

Principles, Policies, and Frameworks

COBIT 5 - Principle 4: Enabling holistic approach - 7 categories

A

Translate desired behaviour into practical guidance for day to day management

  • everything else builds on top of this

7 CATEGORIES

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
8
Q

COBIT 5

Processes

COBIT 5 - Principle 4: Enabling holistic approach - 7 categories

A

Organised set of practices and activities
Used to achieve certain objectives (IT related goals)

  • Map out your work flow
  • Do this, and do that

7 CATEGORIES

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
9
Q

COBIT 5

Organisational Structures

COBIT 5 - Principle 4: Enabling holistic approach - 7 categories

A

Key decision making entities in the organisation

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
10
Q

COBIT 5

Culture, Ethics and Behaviour

COBIT 5 - Principle 4: Enabling holistic approach - 7 categories

A

Of individuals and of the organisation

  • Taylor a solution that works in our environment

7 CATEGORIES

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
11
Q

COBIT 5

Information

COBIT 5 - Principle 4: Enabling holistic approach - 7 categories

A

All information produced and used by the enterprise

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
12
Q

COBIT 5

Services, infrastructure and applications

COBIT 5 - Principle 4: Enabling holistic approach - 7 categories

A

Infrastructure, Technology, and Applications

  • Infrastructure, technology and applications that provide the enterprise with information technology processing and services
  • Enables the business to do what it needs i.e. routers, switches, firewalls, computers

7 CATEGORIES

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
13
Q

COBIT 5

People, Skills and Competencies

COBIT 5 - Principle 4: Enabling holistic approach - 7 categories

A

People required for successful completion of all activities
Correct decision making

  • people need the right skills and capabilities

7 CATEGORIES

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
14
Q

COBIT 5

Governance

Principle 5: Separating Governance from Management

A

Stakeholder needs, conditions and options are evaluated

  • Set direction through prioritisation and decision making
  • Monitoring performance and coimpliance against agreed on direction and objectives
How well did you know this?
1
Not at all
2
3
4
5
Perfectly
15
Q

COBIT 5

Management

Principle 5: Separating Governance from Management

A

Plans, builds, runs and monitors

  • All activities in alignment with the direction set by the governance body
  • Goal to achieve enterprise objectives
How well did you know this?
1
Not at all
2
3
4
5
Perfectly