Established components of IT-G strengthen IT business processes
What is Root Cause
Practices and activities which support achievement of overall IT-related goals
What are Processes
The IT strategy is aligned with the organizational objectives
What is TRUE
Accountable to the public, stakeholders, employees
What is Governance
Because IT systems are complex, expensive, resource intensive, and done poorly can hurt the organization's mission
Why have IT Governance
Unreliable data,
weak oversight,
broken processes,
non-compliance with statute
What is Condition
Key decision-making individuals, committees, and formalized teams with adequate authority
What are Organizational Structures
The director of IT operations is responsible for IT-G
What is FALSE
(CEO, Business executive, the strategy committee, the CIO)
Evaluates the strategic options to address IT security risks
What is Governance
Assessing this factor is the responsibility of the senior executive team
What is Risk
Establish and implement a strategic plan, risk assessments, roles & responsibilities, policies & procedures, monitor the performance/outcomes
What are Recommendations
This component is a factor of good security governance. It starts at the top of the org.
What is Culture, Ethics and Behavior
The Project Management Office is accountable to direct IT systems governance
What is FALSE
(PMO should be Informed)
Monitors performance and compliance
What is Management
(oversight - management function)
IT investments and services are not coordinated across divisions or departments resulting in higher costs and duplication of services
What are SILOS
Lawsuits,
investigations,
fines,
and loss of public trust
What is Effect
IT applications to manage service requests
An online security awareness training platform
Online collaboration platforms
OneDrive, Teams, SharePoint, Word
What is Services, Infrastructure and Applications
Evaluating an IT system investment for risk is the responsibility of the business process owner
What is FALSE
(BP owner is one process within an IT business system - Business system executive is responsible)
Assess the organization's current technology maturity and develop a road map to close the gaps
What is Governance
On the RACI chart, this role provides input
What is Consulted
GAO, NIST, ASET, COBIT, IIA, CMMI
What is Criteria
Communication required for effective functioning of IT-G
What is Information Flows and Items
Leadership establishes the direction for IT across the organization
What is True
Ensure IT business continuity
What is Management
From the Capability Maturity Model,
Project performance may not be stable and may not meet specific objectives such as quality, cost, and schedule, but useful work can be done.
What is Level 1