ForrTel: IT Governance Frameworks

Slides:



Advertisements
Similar presentations
Connecting Phoenix to Information IT Governance in a Decentralized Organization Charles T. Thompson Chief Information Officer City of Phoenix.
Advertisements

IT Governance & Quality Management
IT Governance Framework
BENEFITS OF SUCCESSFUL IT MODERNIZATION
Chapter © 2012 Pearson Education, Inc. Publishing as Prentice Hall.
EIM Framework EIM Vision & Strategy EIM Governance EIM Core Processes
AUDIT COMMITTEE FORUM TM ACF Roundtable IT Governance – what does it mean to you as an audit committee member July 2010 The AUDIT COMMITTEE FORUM TM is.
Oncor’s EIM Program.
Centralized vs. Decentralized: Pros, Cons & Best Practices
Contractor Assurance Discussion Forrestal Building Washington, D.C. December 14, 2011.
IT Governance and Management
Chapter 10 Information Systems Management. Agenda Information Systems Department Plan the Use of IT Manage Computing Infrastructure Manage Enterprise.
IT Governance: Simultaneously Empowers and Controls Source: IT Governance, Chapter 1.
Chapter 10 Managing the Delivery of Information Services.
project management office(PMO)
Project Portfolio Management and IT Governance Marcy Paterson Clarity Division, CA Welcome.
IT Governance 2 nd. Part Fernando Edgar Díaz-Prado L Universidad Regiomontana Otoño-2012.
Defining Services for Your IT Service Catalog
Roy Sharples The art of hustling and gun slinging within the customer-oriented culture.
BPM Governance Identifying methods for prioritizing, standardizing, measuring and controlling BPM efforts.
Information Security Governance 25 th June 2007 Gordon Micallef Vice President – ISACA MALTA CHAPTER.
Organizing Information Technology Resources
Continual Service Improvement Process
Supporting tools in an IT Project & Portfolio Management environment Ann Van Belle -
IT Risk Management, Planning and Mitigation TCOM 5253 / MSIS 4253
Strategic Management of IS/IT: Organization and Resources
IT Governance
The Challenge of IT-Business Alignment
Roles and Responsibilities
Challenges in Infosecurity Practices at IT Organizations
CSI - Introduction General Understanding. What is ITSM and what is its Value? ITSM is a set of specialized organizational capabilities for providing value.
Overview of COBIT5 and Impact on Local Content for IT By Mrs Tokunbo Martins Director Banking Supervision (Central Bank of Nigeria)
Structures, Processes and Relational Mechanisms for IT Governance Minder Chen, Ph.D. Associate Professor Decision Sciences and MIS Area Coordinator School.
December 14, 2011/Office of the NIH CIO Operational Analysis – What Does It Mean To The Project Manager? NIH Project Management Community of Excellence.
Roadmap to Maturity FISMA and ISO 2700x. Technical Controls Data IntegritySDLC & Change Management Operations Management Authentication, Authorization.
An Integrated Control Framework & Control Objectives for Information Technology – An IT Governance Framework COSO and COBIT 4.0.
Committee of Sponsoring Organizations of The Treadway Commission Formed in 1985 to sponsor the National Commission on Fraudulent Financial Reporting “Internal.
DRAFT – For Discussion Only HHSC IT Governance Executive Briefing Materials DRAFT April 2013.
Holistic Approach to Security
IT Governance: COBIT, ISO17799 & ITIL. Introduction COBIT ITIL ISO17799Others.
Funding Information Systems
IT GOVERNANCE  Objective : The objective of this area is to ensure that the Certified Information Systems Auditor ( CISA ) candidate understands and can.
Chapter 3 Strategic Information Systems Planning.
Proventures reconnect session on Project Portfolio Management (PPM)
IT GOVERNANCE GSI 615 Carmen R. Cintrón Ferrer ©
Matakuliah : Pengantar IT Governance
12-CRS-0106 REVISED 8 FEB 2013 APO (Align, Plan and Organise)
All Contents © 2007 Burton Group. All rights reserved. Measuring Enterprise Architecture Success Information Technology Conference 2009 April 15-16, 2009.
Chapter © 2015 Pearson Education, Inc. Publishing as Prentice Hall.
2/20/2016 Leveraging IT Governance and COBIT Chip Council, PhD, CGEIT, CISM, CISA Matt Schmidt, MS, CISSP, CISA Adjunct Professors, University of Minnesota.
11 May 2005 The Benefits & Challenges of Enterprise Portfolio Management Michael S. Belk, MEM, CEI, CEM, MCP Manager IT Projects International Paper Company.
ITIL ♥ PM ITIL and Project Management: Friends Throughout the Lifecycle.
Select Phase Pertemuan Matakuliah: A0774/Information Technology Capital Budgeting Tahun: 2009.
Leadership Guide for Strategic Information Management Leadership Guide for Strategic Information Management for State DOTs NCHRP Project Information.
Driving Value from IT Services using ITIL and COBIT 5 July 24, 2013 Gary Hardy ITWinners.
Shared Services and Third Party Assurance: Panel May 19, 2016.
Development of Concepts for R&D Management R&D in an Individual Enterprise.
EECS David C. Chan1 Computer Security Management Session 1 How IT Affects Risks and Assurance.
Webinar Agile Governance To Support Sustainable Business Agility Henry Peyret, Principal Analyst November 9, Please call in at 10:55 a.m. Eastern.
Asset Management Accountability Framework
Introduction Outline: Importance IT Governance
Section 1 Delivering Value with IT
BIL 424 NETWORK ARCHITECTURE AND SERVICE PROVIDING.
Managing the Delivery of Information Services
IIASA Governance Review
IT Professional Perspective IT Strategy, Policy and Governance
PEFA 2016 Slides selected from the training materials of the PEFA secretariat.
IT Governance CIS 9002 Kannan Mohan Department of CIS
PEFA 2016 Slides selected from the training materials of the PEFA secretariat.
Presentation transcript:

ForrTel: IT Governance Frameworks Craig Symons Principal Analyst Forrester Research June 21, 2005. Call in at 12:55 p.m. Eastern Time

IT alignment and value are derived from good IT governance Theme IT alignment and value are derived from good IT governance

Agenda IT governance defined An IT governance maturity model Structural issues to consider The four dimensions of IT governance Existing frameworks The three pillars of IT governance Recommendations

Definition IT governance is the process by which decisions are made around IT investments. How these decisions are made, who makes the decisions, who is held accountable, and how the results of the decisions are measured and monitored are all parts of IT governance.

IT governance vs. enterprise governance Governing for constraints Governing for success Accountability fiduciary responsibility Wealth/value creation sustainability Conformance/compliance Performance/results

The five decision types IT governance IT principles IT architecture IT infrastructure strategies Business application needs IT investment These are high- level statements about how IT is used in the business Defining integration and standardization requirements Determining shared and enabling services Specifying the business need for purchased or internally developed IT applications Choosing which initiatives to fund and how much to spend Source: Forrester Research, Inc.

IT governance maturity model Best practices At the fourth level of maturity, IT governance processes are fully evolved and optimized across the enterprise. A strong IT portfolio management process is in place to ensure that all IT investment decisions are optimized; the CEO and executive team are active participants in the governance process; and IT strategy is part of the enterprise strategy. IV Consistent At the third level of maturity, IT governance processes have been consistently applied across the enterprise. All business units/entities conform to the same set of IT governance processes. IT investment decisions are based on the enterprise view. III Fragmented There is an attempt to formalize IT governance processes but on a fragmented basis. These formalized processes may exist in one or more business units and IT decisions within those business units may be optimized, but there is no enterprise-wide effort to coordinate investment decisions or examine tradeoffs between business units or enterprise-wide investments versus BU investments. II Ad hoc There are no formal IT governance processes, and it's not recognized by management as being a necessity. IT investments are made on a completely ad hoc basis. This scenario is almost always found in highly decentralized organizations, but it is not limited to them. I Source: Forrester Research, Inc.

Structural issues to consider Project based All IT resources are centralized under a single reporting structure with centralized resource allocation (staffing). The organizational structure is built around resource pools. Line managers are replaced by resource managers. Federated IT takes on a hybrid structure. A centralized IT organization supports all infrastructure and enterprise-wide applications, usually in a shared services environment. Individual business units maintain their own applications development organizations and budgets for business unit specific systems. Decentralized IT is decentralized by business unit, operating group, subsidiary, or geography. Each of these entities has its own CIO, IT organization, and IT budget. There is little or no attempt to coordinate across units or with corporate. Corporate IT supports the corporate HQ staff and perhaps some enterprise-wide applications. Centralized IT is centralized under a single Enterprise CIO. All IT systems and budgets reside at the corporate level. Source: Forrester Research, Inc.

The four dimensions of IT governance IT value and alignment Accountability IT governance Performance management Risk management Source: Forrester Research, Inc.

Existing frameworks COBIT ITIL ISO 17799

Source: Forrester Research, Inc. COBIT Source: Forrester Research, Inc.

Planning to implement service management ITIL T h e B u s i n T h e c n o l g y Planning to implement service management The business perspective Service mgmt ICT infrastructure management Service support Service delivery Security management Application management Source: ITIL

ISO 17799 Business continuity planning System access control System development and maintenance Physical and environmental security Compliance Personal security Security organization Computer and operations management Asset classification and control Security policy

The three pillars of IT governance structures Governance processes Governance communications

Governance structures Reporting relationships CIO reports to CEO Governance specific positions IT governance officer IT relationship managers Committees IT steering committees IT architecture and standards committees

Governance processes IT portfolio management Service level agreements (SLAs) Chargeback mechanisms Demand management

Governance communication IT balanced scorecard IT portal Annual report

Recommendations Perform a governance maturity assessment Understand the structural/cultural issues Obtain executive buy-in Develop the governance structures first Develop processes next Don’t start from scratch Communicate, communicate, communicate

Thank you Craig Symons csymons@forrester.com www.forrester.com Entire contents © 2005 Forrester Research, Inc. All rights reserved.