IT governance Flashcards

1
Q

Corporate Governance

A

the collection of mechanisms, processes and
relations used by various parties to control and to
operate a corporation”

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
2
Q

the goals of corporate governance

A

– regulate risk
– reduce opportunity for corruption
– maintain legal and ethical standards

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
3
Q

complication of Corporate Governance

A

principal agent problem: conflicting interests between
shareholders (principal) and management (agent)

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
4
Q

Sarbanes-Oxley Act (2002)

A

protect shareholders and public from accounting errors
and fraud
improve accuracy of corporate disclosure

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
5
Q

Section 404 Sarbanes-Oxley Act (2002)

A

Assessment of internal control
management responsible forestablishing and maintaining an adequate internal control
structure and procedures for financial reporting
* document, test and maintain those controls

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
6
Q

components of coso

A

control environment
risk assessment
control activities
information and communication
monitoring activities

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
7
Q

IS Governance

A

organizational capacity exercised by board of directors,
executive management and IT management to control
formulation and implementation of IT strategy and
ensure alignment of business and IT

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
8
Q

IS Governance mechanisms

A

– structures
– processes (e.g. portfolio management, SLA)
– relational mechanisms (e.g., job rotation, co-location,
cross-training)

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
9
Q

what is COBIT

A

Business Framework for Governance and Management of
Enterprise IT

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
10
Q

Top 4 benefits of COBIT according to ISACA

A

– IT integrations
– improved risk management
– discovery of gaps in security
– creating a framework that provides more visibility to
the board of directors

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
11
Q

Governance Principles OF COBIT

A
  • PROVIDE STAKEHOLDER VALUE
    -HOLISTIC APPROACH
    -DYNAMIC GOVERNANCE SYSTEMS
    -GOVERNANCE DISTINCT FROM MANAGEMENT
  • TAILORED TO ENTERPRISE NEEDS
    -END TO END GOVERNANCE SYSTEM
How well did you know this?
1
Not at all
2
3
4
5
Perfectly
12
Q

GOVERNANCE PART OF COBIT

A

EDM
EVALUATE DIRECT AND MONITOR

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
13
Q

MANAGEMENT PART OF COBIT

A
  • APO (align plan organize)
  • BAI (build acquire implement)
  • DSS (deliver , service , support)
  • MEA (monitor evaluate assess)
How well did you know this?
1
Not at all
2
3
4
5
Perfectly