Domain 3 Task Statements Flashcards
Domain 3—Information Systems Acquisition, Development and Implementation (18%)
Provide assurance that the practices for the acquisition, development, testing and implementation of information systems meet the organization’s strategies and objectives.
T3.1
Evaluate the business case for the proposed investments in information systems acquisition, development, maintenance and subsequent retirement to determine whether it meets business objectives.
T3.2
Evaluate IT supplier selection and contract management processes to ensure that the organization’s service levels and requisite controls are met.
T3.3
Evaluate the project management framework and controls to determine whether business requirements are achieved in a cost‐effective manner while managing risks to the organization.
T3.4
Conduct reviews to determine whether a project is progressing in accordance with project plans, is adequately supported by documentation, and has timely and accurate status reporting.
T3.5
Evaluate controls for information systems during the requirements, acquisition, development and testing phases for compliance with the organization’s policies, standards, procedures and applicable external requirements.
T3.6
Evaluate the readiness of information systems for implementation and migration into production to determine whether project deliverables, controls and organization’s requirements are met.
T3.7
Conduct post-implementation reviews of systems to determine whether project deliverables, controls and organization’s requirements are met.