|
Introduction > What is COBiT? |
COBiT is a framework that suggests an approach to Information Technology management with the objective of ensuring that the technology delivers the information that meet the business needs of the entity. CobiT intends to provide management with answers to the following traditional questions:
| What is the issue/problem? | |
| What is the solution? | |
| What does it consist of? | |
| Will it work? | |
| How do I do it? |
COBiT is a business orientated framework that identifies 34 information technology processes, grouped in 4 domains, and is supported by 318 detailed control objectives. Each one of the 34 processes references IT resources, and the quality, fiduciary and security requirements for information.
CobiT provides a generally applicable and accepted standard for good IT security and control practices to support management's needs in determining and monitoring the appropriate level of IT security and control for their organisations.
Further, the COBiT Management Guidelines are generic and action orientated for the purpose of addressing the following types of management concerns:
| 1 | Performance measurement - What are indicators of good performance? |
| 2 | IT control profiling - What's important? What are critical success factors for control? |
| 3 | Awareness - What are the risks of not achieving our objectives? |
| 4 | Benchmarking - What do others do? How do we measure and compare? |

CobiT's third edition consists of:
| Executive Overview | |
| Framework | |
| Management Guidelines | |
| Implementation Tool Set | |
| Audit Guidelines |