3. Driving Service Management Outcomes
• Reduce downtime, lower time to
• Improve reliability
Datacenter
• Simplify the management of co
risk
SERVICE •
•
Provide choice and flexibility
Deliver efficient support,
NAGEME End User anywhere, anytime
• Increase responsiveness and
GOALS satisfaction
• Realize value of the IT investme
• Ensure IT governance, risk, and
Business • Adapt to ever-changing needs
of the organization
4. “Make sure that we comply so that we can focus on the business
…without an obscene cost” Board of
Audit Committee Dir./CEO
A
Regulatory Requirements “Based on a bewildering collection of reports, I must certify if we Regulatory Certification
“It’s too hard to interpret new regulations and sort out overlaps to
are compliant. It’s my butt on the line”
set policy across functions “
Business Objectives
& Policies “Every quarter I learn how non-compliant we have been last month Auditor
Reports
“Each business change brings new IT compliance requirements. – it’s like ‘whack a mole’, how do I get ahead of these issues and
80% are duplicative, but we review it all, delaying response and risk”
increasing cost.
Requirement Definition
Audit
Requirements
“System changes require regulation specific procedures slowing & Design
“These periodic audits kill me. What detail will the auditor want to
our response … Do we need more software to manage IT
check up on this time?”
System Management compliance?”
Review Log Files, Confirm
settings
System “Configuring and monitoring local and distributed servers and “Checking log files, re-confirming settings, documenting processes
Operations PCs for compliance is so time consuming” is a waste of time when I have truly critical things to do”
How do we interpret and test IT compliance across a vast
enterprise?
IT Pro
4
5. Compliance Requirements
SOX PCI EUDPP
Audit Committee Internal
Board of Au
COBIT ISO Policies Dir./CEO
Business Objectives
& Policies Microsoft Control library
O
Control Objectives
Control Activities
Control Testing Procedures
System Management
CMDB Comply/
Incident/
Authority Residual Risk
Issue Reports
Active Directory Reports
DW
Microsoft
(Partner)
System
Non-
Operations