Module 2: Principles Flashcards
Which two sets of principles are COBIT2019 based on?
- Governance System Principles: Principles describing the core requirements of a governance system for Enterprise Information and Technology
- Governance Framework Principles: Principles of a Governance Framework that can be used to build a governance system for the enterprise.
Name the 6 Governance System Principles
- Provide Stakeholder Value
- Holistic Approach
- Dynamic Governance System
- Governance Distinct from Management
- Tailored to Enterprise Needs
- End-to-End Governance System
Name the 3 Governance Framework Principles
- Based on a Conceptual Model
- Open and Flexible
- Aligned to Major Standards
Describe Governance System Principle: Provide Stakeholder Value
Each enterprise needs a governance system to satisfy stakeholder needs and to generate value from the use of IandT. Value reflects a balance between Benefits / Risks / Resources. Enterprises needs an actionable strategy and governance system to realize this value
Describe Governance System Principle: Holistic Approach
Governance system for IandT is build from different components and different types that works together in a holistic way
Describe Governance System Principle: Dynamic Governance System
Governance system must be dynamic. When any of the design factors change, e.g., change in strategy or technology, the impact on the EGIT should be considered. A dynamic view of EGIT will ensure viable and future proof EGIT
Describe Governance System Principle: Governance Distinct from Management
A governance system should clearly distinguish between governance and management activities and structures.
Describe Governance System Principle: Tailored to Enterprise Needs
The governance system should be customized to the enterprise’s needs, using design factors as parameters to customize and prioritize the governance components
Describe Governance System Principle: End-to-End Governance System
Governance system should cover the Enterprise end-to-end, not only the IT function but all technology and information processing within the Enterprise, regardless of where such processing happens.
Describe Governance Framework Principle: Based on Conceptual Model
A governance framework should be based on a conceptual model, identifying the key components, and relationships among them to allow consistency and automation
Describe Governance Framework Principle: Open and Flexible
A governance framework should be open and flexible, it should allow addition of new content and ability to address new issues in the most flexible way whilst maintaining integrity and consistency.
Describe Governance Framework Principle: Aligned to Major Standards
A governance framework should be aligned to the relevant major standards, frameworks and regulations
Name the 4 areas where COBIT2019 improves on prior versions
- Flexibility and openness: Design Factors enables COBIT2019 to be tailored. The architecture enables adding focus areas or modifying existing ones
- Currency and Relevance: The model supports referencing the latest IT standards and compliance regulations
- Prescriptive application: The model and tailoring allows for COBIT to be prescriptive governance system
- Performance management of IT: The structure of COBIT’s performance management model is integrated into the conceptual model. Maturity and Capability concepts are introduced for better alignment with CMMI (Capability Maturity Model Integration)