AG: 4-Performing A Process Assessment Flashcards
What are the core activities of the (Initiation) step in COBIT 5 assessment?
- confirming the sponsor
- ensuring agreement on the purpose and scope of the assessment
- identifying any constraints
- doing the initial planning of the assessment (including any additional information that needs to be gathered)
- choosing the assessment participants and the full assessment team
- defining the roles of the team members
What are the basic 7 steps in COBIT 5 assessment process?
- Initiation
- Planning
- Briefing
- Data collection (evidence-based for each process)
- Data validation (evidence-based for each process)
- Process attribute rating (evidence-based for each process)
- Assessment reporting
What are the core activities of the (Planning) step in COBIT 5 assessment?
- development of the detailed assessment plan that describes (all activities performed in gathering evidence and conducting the assessment)
What are the core activities of the (Briefing) step in COBIT 5 assessment?
- Assessment Team: ensure that the assessment team understands the assessment input, process and output
- Assessment Participants: people in the enterprise who should be consulted in the assessment should also be briefed on how the assessment will be performed
What are the core activities of the (Data Collection) step in COBIT 5 assessment?
- obtaining objective evidence to support the evaluation
- data collection (strategy) should be developed and approved during the planning step
- data collection (period) should be considered because it may affect the assessment results
What are the core activities of the (Data Validation) step in COBIT 5 assessment?
- Validation can commence during data collection
- The assessor, while gathering information, should ensure that the information obtained from various sources is consistent
What are the core activities of the (Process Attributes Rating) step in COBIT 5 assessment?
- A rating is assigned for each process attribute up to and including the highest capability level defined in the assessment scope
- The rating is based on data validated in the previous activity
- Traceability must be maintained between the objective evidence collected and the process attribute ratings assigned
- The relationship between the indicators and the objective evidence needs to be recorded
What are the core activities of the (Assessment Reporting) step in COBIT 5 assessment?
- The results of the assessment are analysed and presented to the sponsor/stakeholders as appropriate
- important to highlight in the report that it is: An assessment report, based on a PAM, performed by a certified/competent assessor and not an attestation or assurance report on the effectiveness of the internal control, risk management or other aspects of enterprise performance & Meant as an internal report for management’s use ONLY
What are the key issues associated with of the (Initiation) step in COBIT 5 assessment?
T
What are the key issues associated with of the (Planning) step in COBIT 5 assessment?
T
What are the key issues associated with of the (Briefing) step in COBIT 5 assessment?
T
What are the key issues associated with of the (Data Collection) step in COBIT 5 assessment?
T
What are the key issues associated with of the (Data Validation) step in COBIT 5 assessment?
T
What are the key issues associated with of the (Process Attributes Rating) step in COBIT 5 assessment?
T
What are the key issues associated with of the (Assessment Reporting) step in COBIT 5 assessment?
T
What are the (Major Concerns) that the lead assessor should take care of, which are associated with the key issue (Sponsor) in the (Initiation) step in COBIT 5 assessment?
- have the authority to engage an assessment team
- make sure adequate resources and competencies are made available to perform a conformant assessment