Overview
The scope of this assignment is to identify the control and operating environment required to be effective in managing services across IT while mitigating the associated risks inherent in these services. The output is a set of recommendations and a high level roadmap of activities/initiatives required to implement a specific control environment and underlying processes required to implement and manage the controls.
The following Best Practice frameworks are used in this assessment.
- CobiT (Control Objectives for IT and related Technology)
- ITIL (IT Infrastructure Library)
Approach
The proposed approach consists of:
|
Initial Kickoff |
Half day session with key sponsor Agenda includes:
|
|
Prioritization Workshop |
One day workshop with key stakeholders Agenda to include:
|
|
Survey/Interviews |
|
|
Validation Workshop |
|
|
Report and Roadmap Development |
The report will cover:
|
Deliverables
Consolidated Assessment Report
- Current Status of Controls & Processes
- Risks/Issues and areas to be addressed
Roadmap - recommend Next Steps
- People Perspective
- Control Perspective
- Process Perspective
- Metrics aligned to governance and enabling behavioral change
Consolidated Presentation & Next Steps
