Discussion

profilesri169025
ITS833-Chapter2.pptx

ITS 833 – INFORMATION GOVERNANCE

Chapter 2 – Information Governance, IT Governance, Data Governance: What’s the Difference?

Dr. Omar Mohamed

Copyright Omar Mohamed 2019

1

1

CHAPTER GOALS AND OBJECTIVES

Distinguish between Data Governance, Information Governance and Information Technology Governance and be able to define or explain each

How to increase the likelihood of success of a data governance program

Identify IT Governance Frameworks

Identify the impact of a successful IG program

Copyright Omar Mohamed 2019

2

What is “Data Governance”?

Includes processes and controls to ensure that information at the data level – raw data- is true, accurate and unique.

Involves data cleansing and de-duplication

Focus is on information quality

Hybrid quality control discipline

Data quality

Data management

IG policy development

Business process improvement

Compliance

Risk Management

Copyright Omar Mohamed 2019

3

3

How can you improve data governance success ?

Identify a measurable impact

Assign accountability for data quality to a business unit

Recognize the uniqueness of data as an asset

Forget the past-use a forward going strategy

Management the Change

Copyright Omar Mohamed 2019

4

WHAT IS INFORMATION TECHNOLOGY GOVERNANCE?

Primary way that stakeholders can ensure that investments in IT create business value and contribute to business objectives

Function to improve IT performance and deliver optimum business value and ensure regulatory compliance

Focus is on making IT efficient and effective

Copyright Omar Mohamed 2019

5

5

IT Governance Framework(s)

CobiT® - Control Objective for Information and Related Technology

ValIT®

ITIL

ISO/IEC38500:2008

Copyright Omar Mohamed 2019

6

6

CobIT®

Three Basic Organizational Levels/Responsibilities

Board of Directors and Executive Management

IT and Business Management

Line-Level Governance

Divided into four (4) IT Domains

Plan and Organize

Acquire and Implement

Deliver and Support

Monitor and Evaluate

Includes 34 processes and 210 Control Objectives

ISO 17799

Compatible with IT Infrastructure Library (ITIL)

Process oriented IT governance framework

Codeveloped by IT Governance Institute and ISACA

Focus on:

Business Risks

Control Requirements

Compliance

Technical Issues

Under continuous refinement

Copyright Omar Mohamed 2019

7

ValIT®

Value Oriented Framework

Compatible and complimentary with CobiT®

Focus is on leveraging IT investments for maximum value

40 Essential Management Practices (same as CobiT® control objectives)

Supports three processes:

Value Governance

Portfolio Management

Investment Management

Copyright Omar Mohamed 2019

8

8

ITIL – Information Technology Infrastructure Library

Process Oriented

Developed in United Kingdom

Applicable to both public and private sector

Most widely accepted approach to IT service management in the world

Focus is on providing guidance to organizations on how to use IT as a tool to facilitate business change, transformation and growth

Foundation for ISO/IEC 20000

Five Volumes that map IT service cycle as follows:

ITIL Service Strategy

ITIL Service Design

ITIL Service Transition

ITIL Service Operation

ITIL Continual Service Improvement

Copyright Omar Mohamed 2019

9

9

ISO/IEC 38500:2008

International Standard

Focus is on high-level principles for senior executives, directors and advisors of IT

Applies to the governance of management processes that are performed at the IT service level

Three main sections:

Scope, Application and Objectives

Framework for Good Corporate Governance of IT

Guidance for Corporate Governance of IT

Copyright Omar Mohamed 2019

10

10

INFORMATION GOVERNANCE

A part of “Corporate Governance” which is the highest level of governance of an organization

Processes which are at a higher level than data governance or IT governance

Contains and includes both data governance and IT governance

Approach focuses on controlling the information that is generated by IT systems, rather than the detailed IT o data capture and quality control processes

Goal is to manage and control information assets to lower risk, ensure compliance with regulations and improve information quality and accessibility while implementing security measure to protect and preserve information that has business value

Copyright Omar Mohamed 2019

11

IMPACT OF SUCCESSFUL INFORMATION GOVERNANCE

Enable the use of common terms across the enterprise

Development of standard definitions and terms

Map Information creation and usage

Who

Which

When

Where

Information Confidentiality

Integrity

Validity

Accuracy

Quality

Harvest and Leverage Information

Copyright Omar Mohamed 2019

12

DIFFERENCES BETWEEN IG, ITG AND DG

Information Governance

Overarching policies and processes to optimize and leverage information while keeping it secure and meeting legal and privacy obligations that are consistent with organizational objectives.

Higher level approach, incorporating IT Governance and Data Governance

IT Governance

Following established frameworks and best practices to gain the most leverage and benefit from IT investments and support accomplishment of business objectives

Data Governance

Consists of processes methods and techniques to ensure that data is of high quality, reliable and unique so that its results are trusted and accurate

Copyright Omar Mohamed 2019

13

RELATIONSHIP BETWEEN COROPRATE GOVERNANCE, INFORMATION GOVERNANCE, IT GOVERNANCE AND DATA GOVERNANCE

Copyright Omar Mohamed 2019

14

Information Governance

IT Governance

Data Governance

Corporate Governance

Thank You

Copyright Omar Mohamed 2019

15

15