Applying the CobiT Control Framework to Spreadsheet Developments

نویسنده

  • Raymond J. Butler
چکیده

One of the problems reported by researchers and auditors in the field of spreadsheet risks is that of getting and keeping management’s attention to the problem. Since 1996, the Information Systems Audit & Control Foundation and the IT Governance Institute have published CobiT ® which brings mainstream IT control issues into the corporate governance arena. This paper illustrates how spreadsheet risk and control issues can be mapped onto the CobiT framework and thus brought to managers’ attention in a familiar format. 1. A BRIEF INTRODUCTION TO COBIT 1.1. What is CobiT ? CobiT ® , Control Objectives for Information & related Technology is a tool set which helps business managers to understand and manage the risks associated with implementing new technologies, and demonstrate to regulators, shareholders and other stakeholders how, and how well they have done this. It is based on international best practice in IT management and control. The tool set facilitates IT governance, defined as “a structure of relationships and processes to direct and control the enterprise in order to achieve the enterprise’s goals by adding value while balancing risk versus return over IT and its processes” [ISACF 2000(1)] In an age where business is almost entirely dependent on technology, IT Governance is an essential element of wider corporate governance. 1.2. CobiT’s

برای دانلود متن کامل این مقاله و بیش از 32 میلیون مقاله دیگر ابتدا ثبت نام کنید

ثبت نام

اگر عضو سایت هستید لطفا وارد حساب کاربری خود شوید

منابع مشابه

Development of a framework to evaluate service-oriented architecture governance using COBIT approach

Nowadays organizations require an effective governance framework for their service-oriented architecture (SOA) in order to enable them to use a framework to evaluate their current state governance and determine the governance requirements, and then to offer a suitable model for their governance. Various frameworks have been developed to evaluate the SOA governance. In this paper, a brief introd...

متن کامل

An empirical examination of CobiT as an internal control framework for information technology

One commonly used framework for developing and evaluating technology intensive information systems is CobiT. This framework was originally a benchmark of best control practices developed and maintained by the Information Technology Governance Institute, the umbrella organization to the Information Systems Audit and Control Association. We empirically examine the conceptual model that underlies ...

متن کامل

IT Governance Frameworks and COBIT - A Literature Review

IT governance is one of the central areas of IS research. This study examines research on Control Objectives for Information and Related Technology (COBIT), a popular governance framework. COBIT is a comprehensive IT governance framework that provides guidelines to IT managers in managing and governing enterprise IT. This paper compiles and analyses extant research on COBIT. Our findings sugges...

متن کامل

A Design Science Approach to Develop a New Comprehensive Soa Governance Framework

SOA governance has a critical role in achieving success and realizing the benefits of SOA. Without effective SOA governance, organizations will experience some significant challenges including difficulties in designing effective decision structures and managing services. To address SOA challenges, organizations require a comprehensive SOA governance framework to implement management and control...

متن کامل

Development of a framework to evaluate service-oriented architecture governance using COBIT approach

Nowadays organizations require an effective governance framework for their service-oriented architecture (SOA) in order to enable them to use a framework to evaluate their current state governance and determine the governance requirements, and then to offer a suitable model for their governance. Various frameworks have been developed to evaluate the SOA governance. In this paper, a brief introd...

متن کامل

ذخیره در منابع من


  با ذخیره ی این منبع در منابع من، دسترسی به آن را برای استفاده های بعدی آسان تر کنید

برای دانلود متن کامل این مقاله و بیش از 32 میلیون مقاله دیگر ابتدا ثبت نام کنید

ثبت نام

اگر عضو سایت هستید لطفا وارد حساب کاربری خود شوید

عنوان ژورنال:
  • CoRR

دوره abs/0801.0609  شماره 

صفحات  -

تاریخ انتشار 2004