 




<?xml version="1.0" encoding="UTF-8"?>
<rss version="2.0"
	xmlns:content="http://purl.org/rss/1.0/modules/content/"
	xmlns:wfw="http://wellformedweb.org/CommentAPI/"
	xmlns:dc="http://purl.org/dc/elements/1.1/"
	xmlns:atom="http://www.w3.org/2005/Atom"
	xmlns:sy="http://purl.org/rss/1.0/modules/syndication/"
	xmlns:slash="http://purl.org/rss/1.0/modules/slash/"
	>

<channel>
	<title>IT Governance, Risk, and Compliance &#187; ISACA</title>
	<atom:link href="http://itknowledgeexchange.techtarget.com/it-governance/tag/isaca/feed/" rel="self" type="application/rss+xml" />
	<link>http://itknowledgeexchange.techtarget.com/it-governance</link>
	<description></description>
	<lastBuildDate>Sat, 25 May 2013 23:43:42 +0000</lastBuildDate>
	<language>en-US</language>
	<sy:updatePeriod>hourly</sy:updatePeriod>
	<sy:updateFrequency>1</sy:updateFrequency>
	
		<item>
		<title>What Every IT Manager Should Know About Service Delivery and Support &#8211; Part XII</title>
		<link>http://itknowledgeexchange.techtarget.com/it-governance/what-every-it-manager-should-know-about-service-delivery-and-support-part-xii/</link>
		<comments>http://itknowledgeexchange.techtarget.com/it-governance/what-every-it-manager-should-know-about-service-delivery-and-support-part-xii/#comments</comments>
		<pubDate>Tue, 12 Jun 2012 21:46:21 +0000</pubDate>
		<dc:creator>Robert Davis</dc:creator>
				<category><![CDATA[Audit]]></category>
		<category><![CDATA[COBIT]]></category>
		<category><![CDATA[Control Environment]]></category>
		<category><![CDATA[Control Methods]]></category>
		<category><![CDATA[Ethics]]></category>
		<category><![CDATA[Human Resources]]></category>
		<category><![CDATA[Infrastructure]]></category>
		<category><![CDATA[Integrity]]></category>
		<category><![CDATA[ISACA]]></category>
		<category><![CDATA[ISO]]></category>
		<category><![CDATA[IT Audit]]></category>
		<category><![CDATA[ITSM]]></category>
		<category><![CDATA[Organizational Structure]]></category>
		<category><![CDATA[Service Delivery]]></category>
		<category><![CDATA[Systems]]></category>

		<guid isPermaLink="false">http://itknowledgeexchange.techtarget.com/it-governance/?p=1261</guid>
		<description><![CDATA[Audit professionals have a significant role in supporting an adequate control environment when providing contributions to strategic, tactical, and operational value through governance improvement recommendations.]]></description>
				<content:encoded><![CDATA[<p>Audit professionals have a significant role in supporting an adequate control environment when providing contributions to strategic, tactical, and operational value through governance improvement recommendations.  Consistent with entity oversight responsibilities, board of directors should insist on utilizing perceptive IT auditors to permit control environment enrichment.  In particular, an entity’s audit committee should proactively ensure IT service delivery and support are subject to periodic audits, reviews, as well as agreed-upon procedures by highly qualified auditors so individuals responsible for governance can advance entity oversight goals with IT enhancement triggers.  Furthermore, a robust IT audit function can usually render superior performance when requested to assist management with operational control issues that may arise.</p>
<p>Lastly, external factors often influence an entity’s environment.  Specific external influencers affecting an entity’s ability to achieve objectives include: economics, communities, governments, <em>technologies</em>, competitors, suppliers, and customers.  Therefore, it is crucial that the external environment be accurately assessed prior to proceeding with a course of action impacting the entity’s system of controls.</p>
<p>&#8220;<em>View Part I of the <a href="http://www.pleier.com/sysinfraweb.htm">What Every IT Manager Should Know About Service Delivery and Support</a> series <a href="http://itknowledgeexchange.techtarget.com/it-governance/what-every-it-manager-should-know-about-service-delivery-and-support-part-i/">here</a>&#8220;</em></p>
<!-- wpms-network-global-inserts -->]]></content:encoded>
			<wfw:commentRss>http://itknowledgeexchange.techtarget.com/it-governance/what-every-it-manager-should-know-about-service-delivery-and-support-part-xii/feed/</wfw:commentRss>
		<slash:comments>0</slash:comments>
		</item>
		<item>
		<title>What Every IT Manager Should Know About Service Delivery and Support &#8211; Part XI</title>
		<link>http://itknowledgeexchange.techtarget.com/it-governance/what-every-it-manager-should-know-about-service-delivery-and-support-part-xi/</link>
		<comments>http://itknowledgeexchange.techtarget.com/it-governance/what-every-it-manager-should-know-about-service-delivery-and-support-part-xi/#comments</comments>
		<pubDate>Fri, 08 Jun 2012 22:32:17 +0000</pubDate>
		<dc:creator>Robert Davis</dc:creator>
				<category><![CDATA[COBIT]]></category>
		<category><![CDATA[Control Environment]]></category>
		<category><![CDATA[Control Methods]]></category>
		<category><![CDATA[Ethics]]></category>
		<category><![CDATA[Human Resources]]></category>
		<category><![CDATA[Infrastructure]]></category>
		<category><![CDATA[Integrity]]></category>
		<category><![CDATA[ISACA]]></category>
		<category><![CDATA[ISO]]></category>
		<category><![CDATA[ITSM]]></category>
		<category><![CDATA[Organizational Structure]]></category>
		<category><![CDATA[Service Delivery]]></category>
		<category><![CDATA[Systems]]></category>

		<guid isPermaLink="false">http://itknowledgeexchange.techtarget.com/it-governance/?p=1258</guid>
		<description><![CDATA[Foundationally, the IT control environment should assist in enabling the governing body, management and all other staff in providing reasonable assurance regarding achievement of the following general objectives...]]></description>
				<content:encoded><![CDATA[<p>Foundationally, the IT control environment should assist in enabling the governing body, management and all other staff in providing reasonable assurance regarding achievement of the following general objectives:</p>
<p> Operational Efficiency<br />
 Operational Effectiveness<br />
 Operational Economy<br />
 Management Reliability<br />
 Laws and Regulations Compliance<br />
 Internal Policies Compliance  </p>
<p>General entity objectives increase in significance when they are collectively considered in relation to operations, management and compliance fiduciary responsibilities.  Categorically, these distinct general objectives can be achieved through various criteria establishment that frame aligned focus on meeting entity-centric needs.  For instance, IT related information criteria (i.e. effectiveness, efficency, confidentiality, integrity, availability, compliance and availability) can be utilized to satisfy entity-level objectives that have specific fiduciary responsibilities.</p>
<p>&#8220;<em>View Part I of the <a href="http://www.pleier.com/sysinfraweb.htm">What Every IT Manager Should Know About Service Delivery and Support</a> series <a href="http://itknowledgeexchange.techtarget.com/it-governance/what-every-it-manager-should-know-about-service-delivery-and-support-part-i/">here</a>&#8220;</em></p>
<!-- wpms-network-global-inserts -->]]></content:encoded>
			<wfw:commentRss>http://itknowledgeexchange.techtarget.com/it-governance/what-every-it-manager-should-know-about-service-delivery-and-support-part-xi/feed/</wfw:commentRss>
		<slash:comments>0</slash:comments>
		</item>
		<item>
		<title>What Every IT Manager Should Know About Service Delivery and Support &#8211; Part X</title>
		<link>http://itknowledgeexchange.techtarget.com/it-governance/what-every-it-manager-should-know-about-service-delivery-and-support-part-x/</link>
		<comments>http://itknowledgeexchange.techtarget.com/it-governance/what-every-it-manager-should-know-about-service-delivery-and-support-part-x/#comments</comments>
		<pubDate>Tue, 05 Jun 2012 21:55:12 +0000</pubDate>
		<dc:creator>Robert Davis</dc:creator>
				<category><![CDATA[COBIT]]></category>
		<category><![CDATA[Control Environment]]></category>
		<category><![CDATA[Control Methods]]></category>
		<category><![CDATA[Ethics]]></category>
		<category><![CDATA[Human Resources]]></category>
		<category><![CDATA[Infrastructure]]></category>
		<category><![CDATA[Integrity]]></category>
		<category><![CDATA[ISACA]]></category>
		<category><![CDATA[ISO]]></category>
		<category><![CDATA[ITSM]]></category>
		<category><![CDATA[Organizational Structure]]></category>
		<category><![CDATA[Service Delivery]]></category>
		<category><![CDATA[Systems]]></category>

		<guid isPermaLink="false">http://itknowledgeexchange.techtarget.com/it-governance/?p=1256</guid>
		<description><![CDATA[Management’s control methods over compliance with laws and regulations should ensure appropriate measures are deployed to ascertain whether entity personnel understand implemented governance practices,... ]]></description>
				<content:encoded><![CDATA[<p>Management’s <a href="http://www.smashwords.com/books/view/41524">control methods over compliance with laws and regulations</a> should ensure appropriate measures are deployed to ascertain whether entity personnel understand implemented governance practices, and governance processes are being followed as intended.  Legal compliance procedures for ethical control standards should be set by top management and promoted through exemplary behavior.</p>
<p>The importance of responsibilities of those charged with governance is recognized in codes of practice and other regulations or guidance produced for the benefit of oversight committee members.  Documented primary responsibilities of those charged with governance include oversight of the design and effective operation of procedures and the process for reviewing the effectiveness of the entity’s control system.  Consequently, the entity’s oversight committee should direct IT management to achieve measurable <em>service and support value</em>. </p>
<p>&#8220;<em>View Part I of the <a href="http://www.pleier.com/sysinfraweb.htm">What Every IT Manager Should Know About Service Delivery and Support</a> series <a href="http://itknowledgeexchange.techtarget.com/it-governance/what-every-it-manager-should-know-about-service-delivery-and-support-part-i/">here</a>&#8220;</em></p>
<!-- wpms-network-global-inserts -->]]></content:encoded>
			<wfw:commentRss>http://itknowledgeexchange.techtarget.com/it-governance/what-every-it-manager-should-know-about-service-delivery-and-support-part-x/feed/</wfw:commentRss>
		<slash:comments>0</slash:comments>
		</item>
		<item>
		<title>What Every IT Manager Should Know About Service Delivery and Support &#8211; Part IX</title>
		<link>http://itknowledgeexchange.techtarget.com/it-governance/what-every-it-manager-should-know-about-service-delivery-and-support-part-ix/</link>
		<comments>http://itknowledgeexchange.techtarget.com/it-governance/what-every-it-manager-should-know-about-service-delivery-and-support-part-ix/#comments</comments>
		<pubDate>Fri, 01 Jun 2012 21:54:00 +0000</pubDate>
		<dc:creator>Robert Davis</dc:creator>
				<category><![CDATA[COBIT]]></category>
		<category><![CDATA[Control Environment]]></category>
		<category><![CDATA[Ethics]]></category>
		<category><![CDATA[Human Resources]]></category>
		<category><![CDATA[Infrastructure]]></category>
		<category><![CDATA[Integrity]]></category>
		<category><![CDATA[ISACA]]></category>
		<category><![CDATA[ISO]]></category>
		<category><![CDATA[ITSM]]></category>
		<category><![CDATA[Organizational Structure]]></category>
		<category><![CDATA[Service Delivery]]></category>
		<category><![CDATA[Systems]]></category>

		<guid isPermaLink="false">http://itknowledgeexchange.techtarget.com/it-governance/?p=1254</guid>
		<description><![CDATA[Human resources policies are definite courses or methods of action selected by management from alternatives, considering the environment, that guide as well as determine present and future employment decisions.]]></description>
				<content:encoded><![CDATA[<p><strong>Human resources policies</strong> are definite courses or methods of action selected by management from alternatives, considering the environment, that guide as well as determine present and future employment decisions.  For example, training policies that communicate prospective roles and responsibilities with prerequisite educational attainment illustrate expected performance and behavior levels. </p>
<p><strong>Human resources practices</strong> relate to recruiting, orientating, training, evaluating, counseling, promoting, compensating, and remediating entity personnel.  For example, a standard for recruiting the most qualified individual reflecting <em>morally acceptable traits</em> from a candidate pool conveys an entity’s commitment to competent and trustworthy personnel.  Furthermore, promotions driven by objective periodic performance appraisals support the entity’s dedication to advancing qualified individuals to higher responsibility levels. </p>
<p>&#8220;<em>View Part I of the <a href="http://www.pleier.com/sysinfraweb.htm">What Every IT Manager Should Know About Service Delivery and Support</a> series <a href="http://itknowledgeexchange.techtarget.com/it-governance/what-every-it-manager-should-know-about-service-delivery-and-support-part-i/">here</a>&#8220;</em></p>
<!-- wpms-network-global-inserts -->]]></content:encoded>
			<wfw:commentRss>http://itknowledgeexchange.techtarget.com/it-governance/what-every-it-manager-should-know-about-service-delivery-and-support-part-ix/feed/</wfw:commentRss>
		<slash:comments>0</slash:comments>
		</item>
		<item>
		<title>What Every IT Manager Should Know About Service Delivery and Support &#8211; Part VIII</title>
		<link>http://itknowledgeexchange.techtarget.com/it-governance/what-every-it-manager-should-know-about-service-delivery-and-support-part-viii/</link>
		<comments>http://itknowledgeexchange.techtarget.com/it-governance/what-every-it-manager-should-know-about-service-delivery-and-support-part-viii/#comments</comments>
		<pubDate>Tue, 29 May 2012 22:55:22 +0000</pubDate>
		<dc:creator>Robert Davis</dc:creator>
				<category><![CDATA[COBIT]]></category>
		<category><![CDATA[Control Environment]]></category>
		<category><![CDATA[Ethics]]></category>
		<category><![CDATA[Infrastructure]]></category>
		<category><![CDATA[Integrity]]></category>
		<category><![CDATA[ISACA]]></category>
		<category><![CDATA[ISO]]></category>
		<category><![CDATA[ITSM]]></category>
		<category><![CDATA[Organizational Structure]]></category>
		<category><![CDATA[Service Delivery]]></category>
		<category><![CDATA[Systems]]></category>

		<guid isPermaLink="false">http://itknowledgeexchange.techtarget.com/it-governance/?p=1252</guid>
		<description><![CDATA[Knowledge management activities and initiatives enable competence.  Commitment to competence is required to ensure adequate leadership and workmanship when engaged in entity endeavors.  Therefore,...]]></description>
				<content:encoded><![CDATA[<p><a href="http://en.wikipedia.org/wiki/Knowledge_management">Knowledge management</a> activities and initiatives enable competence.  <strong>Commitment to competence</strong> is required to ensure adequate leadership and workmanship when engaged in entity endeavors.  Therefore, well qualified, capable and fit individuals should be employed to ensure sufficient means to meet an entity’s needs.  Conversely, compromising commitment to employee competence for financial burden relief can lead to the demise of an entity.  Minimally, within the entity, commitment to employee competence requires fostering strategic, tactical and operational recruiting, hiring, knowledge reviews, skills reviews, training, team development, document management, collaborative communication systems as well as ‘knowledge-base’ development systems. </p>
<p>&#8220;<em>View Part I of the <a href="http://www.pleier.com/sysinfraweb.htm">What Every IT Manager Should Know About Service Delivery and Support</a> series <a href="http://itknowledgeexchange.techtarget.com/it-governance/what-every-it-manager-should-know-about-service-delivery-and-support-part-i/">here</a>&#8220;</em></p>
<!-- wpms-network-global-inserts -->]]></content:encoded>
			<wfw:commentRss>http://itknowledgeexchange.techtarget.com/it-governance/what-every-it-manager-should-know-about-service-delivery-and-support-part-viii/feed/</wfw:commentRss>
		<slash:comments>0</slash:comments>
		</item>
		<item>
		<title>What Every IT Manager Should Know About Service Delivery and Support &#8211; Part VII</title>
		<link>http://itknowledgeexchange.techtarget.com/it-governance/what-every-it-manager-should-know-about-service-delivery-and-support-part-vii/</link>
		<comments>http://itknowledgeexchange.techtarget.com/it-governance/what-every-it-manager-should-know-about-service-delivery-and-support-part-vii/#comments</comments>
		<pubDate>Fri, 25 May 2012 21:20:04 +0000</pubDate>
		<dc:creator>Robert Davis</dc:creator>
				<category><![CDATA[COBIT]]></category>
		<category><![CDATA[Control Environment]]></category>
		<category><![CDATA[Ethics]]></category>
		<category><![CDATA[Infrastructure]]></category>
		<category><![CDATA[Integrity]]></category>
		<category><![CDATA[ISACA]]></category>
		<category><![CDATA[ISO]]></category>
		<category><![CDATA[ITSM]]></category>
		<category><![CDATA[Organizational Structure]]></category>
		<category><![CDATA[Service Delivery]]></category>
		<category><![CDATA[Systems]]></category>

		<guid isPermaLink="false">http://itknowledgeexchange.techtarget.com/it-governance/?p=1250</guid>
		<description><![CDATA[Considering the preceding discussions, accountability is the obligation to answer for a responsibility conferred or implied.]]></description>
				<content:encoded><![CDATA[<p><strong>Authority</strong> is the power or right to give commands, enforce obedience, take action, or make final decisions.  How operating activities are assigned as well as how reporting relationships and authorization hierarchies are established reflect authority status.  Managerial authority invokes leadership responsibilities for activities within the assigned authority domain.  An entity’s policies and/or procedures for assigning authority for activities affect the understanding of established reporting relationships and designated authorization authority.  </p>
<p><strong>Responsibility</strong> is an obligation to account or answer for something or someone and is generally considered a delegated authority corollary.  A sufficient responsibility assignment milieu includes policies and communications directed at ensuring that all employees understand the entity’s objectives, knowledge regarding how their individual actions interrelate and contribute to adopted objectives, and recognition of how and for what they will be held accountable.  In addition, policies relating to appropriate business practices, knowledge and experience of key personnel, and resources provided for carrying out duties are key components of assigning responsibility. </p>
<p>Considering the preceding discussions, <strong>accountability</strong> is the obligation to answer for a responsibility conferred or implied.  Accountability is required to ensure authority is administered appropriately within the context of assigned responsibilities.  Employee accountability affects responsibility for meeting standards.  Standards become ineffective measurement tools when accountability is lacking.  Lastly, authority without accountability can promote corrupt practices.</p>
<p>&#8220;<em>View Part I of the <a href="http://www.pleier.com/sysinfraweb.htm">What Every IT Manager Should Know About Service Delivery and Support</a> series <a href="http://itknowledgeexchange.techtarget.com/it-governance/what-every-it-manager-should-know-about-service-delivery-and-support-part-i/">here</a>&#8220;</em></p>
<!-- wpms-network-global-inserts -->]]></content:encoded>
			<wfw:commentRss>http://itknowledgeexchange.techtarget.com/it-governance/what-every-it-manager-should-know-about-service-delivery-and-support-part-vii/feed/</wfw:commentRss>
		<slash:comments>0</slash:comments>
		</item>
		<item>
		<title>What Every IT Manager Should Know About Service Delivery and Support &#8211; Part VI</title>
		<link>http://itknowledgeexchange.techtarget.com/it-governance/what-every-it-manager-should-know-about-service-delivery-and-support-part-vi/</link>
		<comments>http://itknowledgeexchange.techtarget.com/it-governance/what-every-it-manager-should-know-about-service-delivery-and-support-part-vi/#comments</comments>
		<pubDate>Tue, 22 May 2012 21:46:38 +0000</pubDate>
		<dc:creator>Robert Davis</dc:creator>
				<category><![CDATA[COBIT]]></category>
		<category><![CDATA[Control Environment]]></category>
		<category><![CDATA[Ethics]]></category>
		<category><![CDATA[Infrastructure]]></category>
		<category><![CDATA[Integrity]]></category>
		<category><![CDATA[ISACA]]></category>
		<category><![CDATA[ISO]]></category>
		<category><![CDATA[ITSM]]></category>
		<category><![CDATA[Organizational Structure]]></category>
		<category><![CDATA[Service Delivery]]></category>
		<category><![CDATA[Systems]]></category>

		<guid isPermaLink="false">http://itknowledgeexchange.techtarget.com/it-governance/?p=1245</guid>
		<description><![CDATA[An entity’s organizational structure provides the framework within which its activities for achieving entity-wide objectives are planned, executed, controlled, and reviewed.]]></description>
				<content:encoded><![CDATA[<p>An entity’s <strong>organizational structure</strong> provides the framework within which its activities for achieving entity-wide objectives are planned, executed, controlled, and reviewed.  An entity should develop an <a href="http://www.ehow.com/info_10048313_type-organizational-structure-business-chooses-affect-business.html">organizational structure</a> suited to perceived needs.  Entity-centric organizational structure appropriateness is dependent, in part, on size and the nature of activities.  Furthermore, effective organizational structure establishment includes deploying suitable <em>authority</em> and <em>responsibility</em> with adequate <em>accountability</em> for activities.  As regulators, internal control systems are designed and operated in order to achieve the goals set in adopted governance rules or to comply with adopted governance rules.</p>
<p>&#8220;<em>View Part I of the <a href="http://www.pleier.com/sysinfraweb.htm">What Every IT Manager Should Know About Service Delivery and Support</a> series <a href="http://itknowledgeexchange.techtarget.com/it-governance/what-every-it-manager-should-know-about-service-delivery-and-support-part-i/">here</a>&#8220;</em></p>
<!-- wpms-network-global-inserts -->]]></content:encoded>
			<wfw:commentRss>http://itknowledgeexchange.techtarget.com/it-governance/what-every-it-manager-should-know-about-service-delivery-and-support-part-vi/feed/</wfw:commentRss>
		<slash:comments>0</slash:comments>
		</item>
		<item>
		<title>What Every IT Manager Should Know About Service Delivery and Support &#8211; Part V</title>
		<link>http://itknowledgeexchange.techtarget.com/it-governance/what-every-it-manager-should-know-about-service-delivery-and-support-part-v/</link>
		<comments>http://itknowledgeexchange.techtarget.com/it-governance/what-every-it-manager-should-know-about-service-delivery-and-support-part-v/#comments</comments>
		<pubDate>Fri, 18 May 2012 23:06:10 +0000</pubDate>
		<dc:creator>Robert Davis</dc:creator>
				<category><![CDATA[COBIT]]></category>
		<category><![CDATA[Control Environment]]></category>
		<category><![CDATA[Ethics]]></category>
		<category><![CDATA[Infrastructure]]></category>
		<category><![CDATA[Integrity]]></category>
		<category><![CDATA[ISACA]]></category>
		<category><![CDATA[ISO]]></category>
		<category><![CDATA[ITSM]]></category>
		<category><![CDATA[Operating Style]]></category>
		<category><![CDATA[Service Delivery]]></category>
		<category><![CDATA[Systems]]></category>

		<guid isPermaLink="false">http://itknowledgeexchange.techtarget.com/it-governance/?p=1241</guid>
		<description><![CDATA[Management’s operating style is usually derived from devotion to tasks, symbolic behavior, and engrained cultural norms.]]></description>
				<content:encoded><![CDATA[<p>Management’s <strong>operating style</strong> is usually derived from devotion to tasks, symbolic behavior, and engrained cultural norms.  Operating style will typically be reflected, directly or indirectly, in entity-centric imperatives presented in items such as the mission statement, management principles, management plans, ethic codes, and conduct codes.  Within this context, the manner of communicating management’s operating style also affects employee behavior.  Regarding IT, as stated in <a href="http://www.isaca.org/Knowledge-Center/cobit/Pages/Downloads.aspx">ISACA COBIT 4.1</a>, the “control environment should be based on a culture that supports value delivery whilst managing significant risks, encourages cross-divisional co-operation and teamwork, promotes compliance and continuous process improvement, and handles process deviations (including failure) well.”</p>
<p>&#8220;<em>View Part I of the <a href="http://www.pleier.com/sysinfraweb.htm">What Every IT Manager Should Know About Service Delivery and Support</a> series <a href="http://itknowledgeexchange.techtarget.com/it-governance/what-every-it-manager-should-know-about-service-delivery-and-support-part-i/">here</a>&#8220;</em></p>
<!-- wpms-network-global-inserts -->]]></content:encoded>
			<wfw:commentRss>http://itknowledgeexchange.techtarget.com/it-governance/what-every-it-manager-should-know-about-service-delivery-and-support-part-v/feed/</wfw:commentRss>
		<slash:comments>0</slash:comments>
		</item>
		<item>
		<title>Achieving Not-for-profit Organizational Objectives through IT Governance Deployment &#8211; Part VI</title>
		<link>http://itknowledgeexchange.techtarget.com/it-governance/achieving-not-for-profit-organizational-objectives-through-it-governance-deployment-part-vi/</link>
		<comments>http://itknowledgeexchange.techtarget.com/it-governance/achieving-not-for-profit-organizational-objectives-through-it-governance-deployment-part-vi/#comments</comments>
		<pubDate>Mon, 26 Apr 2010 17:51:28 +0000</pubDate>
		<dc:creator>Robert Davis</dc:creator>
				<category><![CDATA[COBIT]]></category>
		<category><![CDATA[Control Objectives for Information and related Technology]]></category>
		<category><![CDATA[E-Governance]]></category>
		<category><![CDATA[E-Government]]></category>
		<category><![CDATA[Educational Institutions]]></category>
		<category><![CDATA[Enterprise Governance]]></category>
		<category><![CDATA[Entity Governance]]></category>
		<category><![CDATA[Governance Tree]]></category>
		<category><![CDATA[Government Agencies]]></category>
		<category><![CDATA[ICT]]></category>
		<category><![CDATA[Information and Communication Technology]]></category>
		<category><![CDATA[Information Systems Audit and Control Association]]></category>
		<category><![CDATA[ISACA]]></category>
		<category><![CDATA[IT Governance Institute]]></category>
		<category><![CDATA[IT Infrastructure Library]]></category>
		<category><![CDATA[IT Service Management]]></category>
		<category><![CDATA[ITG]]></category>
		<category><![CDATA[ITGI]]></category>
		<category><![CDATA[ITSM]]></category>
		<category><![CDATA[Non-profit]]></category>
		<category><![CDATA[Not-for-profit]]></category>
		<category><![CDATA[Organizational Formation]]></category>
		<category><![CDATA[Risk Assessment]]></category>
		<category><![CDATA[Risk Management]]></category>
		<category><![CDATA[Service Delivery]]></category>

		<guid isPermaLink="false">http://itknowledgeexchange.techtarget.com/it-governance/?p=470</guid>
		<description><![CDATA[Governing an entity mandates management accurately conceptualize information criticality and communication paths.]]></description>
				<content:encoded><![CDATA[<p>Governing an entity mandates management accurately conceptualize information criticality and communication paths. Reflective of the <strong>Australian/New Zealand Standard on Risk Management</strong> (<a href="http://www.rmia.org.au/Standards/IndustryStandards/tabid/85/Default.aspx">AS/NZS ISO 31000:2009</a>), risk management is an iterative process consisting of steps, which when taken in sequence, enable continual improvement in decision-making. It is also the logical and systematic method of identifying, analyzing, evaluating, treating, monitoring and conveying risks associated with any system, process, activity, or task in a way that will enable an entity to minimize losses and maximize opportunities. Consequently, <a href="http://www.amazon.com/Assuring-Compliance-Assurance-Services-ebook/dp/B001T0I7GO">management of risk</a> represents the means by which an entity elects to administrate cataloged possibilities. As alternative responses, risks may be addressed by reducing, avoiding, transferring, or accepting <a href="http://www.pleier.com/Merchant2/merchant.mvc?Screen=CTGY&amp;Category_Code=AISMGMT">potential threats</a>. Specific to not-for-profit entities, these risks typically encompass: objective achievement, organizational credibility, equitable provision of services, and appropriate behavior of officials.</p>
<p>&#8220;<em>View Part I of the Achieving Not-for-profit Organizational Objectives through <a href="http://www.theiia.org/bookstore/product/it-auditing-it-governance-1273.cfm">IT Governance Deployment</a> series </em><a><em><a href="http://itknowledgeexchange.techtarget.com/it-governance/achieving-not-for-profit-organizational-objectives-through-it-governance-deployment/">here</a></em></a>&#8220;</p>
<!-- wpms-network-global-inserts -->]]></content:encoded>
			<wfw:commentRss>http://itknowledgeexchange.techtarget.com/it-governance/achieving-not-for-profit-organizational-objectives-through-it-governance-deployment-part-vi/feed/</wfw:commentRss>
		<slash:comments>0</slash:comments>
		</item>
		<item>
		<title>Achieving Not-for-profit Organizational Objectives through IT Governance Deployment &#8211; Part V</title>
		<link>http://itknowledgeexchange.techtarget.com/it-governance/achieving-not-for-profit-organizational-objectives-through-it-governance-deployment-part-v/</link>
		<comments>http://itknowledgeexchange.techtarget.com/it-governance/achieving-not-for-profit-organizational-objectives-through-it-governance-deployment-part-v/#comments</comments>
		<pubDate>Thu, 22 Apr 2010 18:34:47 +0000</pubDate>
		<dc:creator>Robert Davis</dc:creator>
				<category><![CDATA[COBIT]]></category>
		<category><![CDATA[Control Objectives]]></category>
		<category><![CDATA[Control Objectives for Information and related Technology]]></category>
		<category><![CDATA[E-Governance]]></category>
		<category><![CDATA[Educational Institutions]]></category>
		<category><![CDATA[Enterprise Governance]]></category>
		<category><![CDATA[Entity Governance]]></category>
		<category><![CDATA[Governance Tree]]></category>
		<category><![CDATA[Government Agencies]]></category>
		<category><![CDATA[ICT]]></category>
		<category><![CDATA[Information and Communication Technology]]></category>
		<category><![CDATA[Information Systems Audit and Control Association]]></category>
		<category><![CDATA[ISACA]]></category>
		<category><![CDATA[IT Governance Institute]]></category>
		<category><![CDATA[IT Infrastructure Library]]></category>
		<category><![CDATA[IT Service Management]]></category>
		<category><![CDATA[ITG]]></category>
		<category><![CDATA[ITGI]]></category>
		<category><![CDATA[ITSM]]></category>
		<category><![CDATA[Non-profit]]></category>
		<category><![CDATA[Not-for-profit]]></category>
		<category><![CDATA[Organizational Formation]]></category>
		<category><![CDATA[Service Delivery]]></category>
		<category><![CDATA[Value Delivery]]></category>
		<category><![CDATA[Value Realization]]></category>

		<guid isPermaLink="false">http://itknowledgeexchange.techtarget.com/it-governance/?p=464</guid>
		<description><![CDATA[...the Davis’ ‘Governance Tree’ offers a conceptual frame of reference for defining IT governance practices from an information and communication perspective...]]></description>
				<content:encoded><![CDATA[<p>Regarding supplemental <strong>value delivery</strong> design and development assistance, the Davis’ ‘<strong>Governance Tree</strong>’ offers a conceptual frame of reference for defining IT governance practices from an information and communication perspective; therefore enabling comprehensive process integration for value realization. Through the Davis’ Governance Tree, details demonstrating <a href="http://itknowledgeexchange.techtarget.com/it-governance/first-tier-governance-development-part-i/">governance sub-domain influences</a> can be documented utilizing specific processes and applicable controls. In addition, governance development discussions are enabled to convey evolutionary baselines necessary for measuring managerial progress. Once abstraction elements are understood, management’s role in providing strategic alignment impacting not-for-profit service delivery can be defined and enabled to address <a href="http://www.pleier.com/cisareview.htm">control objective deployment</a> subscribing to IT governance mandates. Lastly, the Governance Tree can provide a comparative assessment of best practices for monitoring and evaluating IT governance <a href="http://wiki.answers.com/Q/What_is_value_delivery_system">strategic alignment</a>.</p>
<p>&#8220;<em>View Part I of the Achieving Not-for-profit Organizational Objectives through <a href="http://www.theiia.org/bookstore/product/it-auditing-it-governance-1273.cfm">IT Governance Deployment</a> series </em><a><em><a href="http://itknowledgeexchange.techtarget.com/it-governance/achieving-not-for-profit-organizational-objectives-through-it-governance-deployment/">here</a></em></a>&#8220;</p>
<!-- wpms-network-global-inserts -->]]></content:encoded>
			<wfw:commentRss>http://itknowledgeexchange.techtarget.com/it-governance/achieving-not-for-profit-organizational-objectives-through-it-governance-deployment-part-v/feed/</wfw:commentRss>
		<slash:comments>0</slash:comments>
		</item>
	</channel>
</rss>
