SlideShare a Scribd company logo
Di Susun Oleh :
Ivo Oktavianti
11353202788
SIF VII H
Control & Audit Sistem Informasi
Dosen Pembimbing : Muhammad jazzman, S. Kom.,
M.InfoSys
COBIT 4.1
DEFINITION CONTROL
 Control is one the managerial functions like
planning, organizing, staffing and directing
 Management is required by law to establish and
maintain an adequate system of internal controls.
DEFINITIONS AUDIT
Audit is an objective examination and evaluation of the
financial statements of an organization to make sure that
the records are a fair and axxurate representation of the
transactions they claim to represent.
Audit information technology or IT (information
technology) is also known as the audit or audit
information system (information system audit) is the
testing of the control activities of the infrastructure unit
groups of a system / information technology.
Internal Auditing is an indepent, objective, assurance
and consulting activity design to add value and improve
an organization’s operations.
COBIT
Cobit is a frameword for developing, implementing,
monitoring and improving information technologi (IT)
governance and management practices.
The cobit frameword is published by the IT Governance
institute and the information System Audit and Control
Association (ISACA).
Cobit is a good –practice framework created by
international professional association ISACA for IT
Management and IT Governance.
What Is Cobit?
 Authoritative, Up-Date, International set of
generally accepted IT control objectives and
control practices for day-to-day use by business
managers and auditor
 Struktured and organized to provide a powerful
control model
TRANSITION MESSAGE
 COBIT 4.1, Val IT and Risk IT users who are already
engaged in governance of enterprise IT (GEIT)
implementation activities can transition to COBIT 5 and
benefit from the latest and improved guidance that it
provides during the next iterations of their enterprise’s
improvement life cycle.
 COBIT 5 builds on previous versions of COBIT (and Val
IT and Risk IT) and so enterprises can also build on what
they have developed using earlier versions
COBIT 4.1 – IT Governance Framework
 Internationally accepted good practices
 Managemen-oriented
 Supported by tools and training
 Freely available
 Sharing knowladge and leveraging expert volunteers
 Continually Evoloving
 Maintained by reputable not-for-profit organisations
 Maps 100 percent to COSO
 Maps Strongly to all major related standards
COBIT SOURCES
 Professional Standars for Internal control and auditing
(COSO, IFAC, AICPA, IIA,etc)
 Technical Standards (ISO, EDIFACT,etc)
 Codes of Conduct
 Qualification Criteria for IT system and processes
(ISO9000,ITSEC. TCSEC.etc)
 Industry practices and requirements from
 Industry forums (ESF,14)
COBIT FRAMEWORK
 Documents relationships among information
criteria, IT resources, and IT Processes
Link control objectives and control practices to
business processes and business objectives
 Assists in confirming that appropriate IT processes
are in places
 Facilitates evaluation and assurance methods.
STAKEHOLDER VALUE AND BUSINESS
OBJECTIVES
 Enterprises exist to create value for their stakeholders.
Consequently, any enterprise— commercial or not—will
have value creation as a governance objective.
 Value creation means: Realising benefits at an optimal
resource cost while optimising risk.
Continue
Principle 1. Meeting Stakeholder Needs:
 Stakeholder needs have to be transformed into an enterprise’s
actionable strategy.
 The COBIT 5 goals cascade translates stakeholder needs into
specific, practical and customised goals within the context of the
enterprise, IT-related goals and enabler goals.
Cont...
 Stakeholder needs can be related to a set of generic
enterprise goals.
 These enterprise goals have been developed using the Balanced
Scorecard (BSC) dimensions. (Kaplan, Robert S.; Norton,
David P.; The Balanced Scorecard: Translating Strategy into
Action, Harvard University Press, USA, 1996)
 The enterprise goals are a list of commonly used goals that an
enterprise has defined for itself.
 Although this list is not exhaustive, most enterprise-specific
goals can be easily mapped onto one or more of the generic
enterprise goals.
Cont...
 The goals cascade is not ‘new’ to COBIT.
 It was introduced in COBIT 4.0 in 2005.
 Those COBIT users who have applied the thinking to their
enterprises have found value.
 BUT not everyone has recognized this value.
 The goals cascade supports the COBIT 5 stakeholder needs
principle that is fundamental to COBIT and has therefore been
made prominent early in the COBIT 5 guidance.
 The goals cascade has been revisited and updated for the COBIT 5
release.
Governance and Management Defined
 Governance ensures that stakeholder needs, conditions
and options are evaluated to determine balanced, agreed-
on enterprise objectives to be achieved; setting direction
through prioritisation and decision making; and
monitoring performance and compliance against agreed-
on direction and objectives (EDM).
 Management plans, builds, runs and monitors
activities in alignment with the direction set by the
governance body to achieve the enterprise objectives
(PBRM).
AREAS OF CHANGE
 The following slides summarise the major changes in COBIT 5
content and how they may impact GEIT
implementation/improvement:
 New GEIT Principles
 Increased Focus on Enablers
 New Process Reference Model
 New and Modified Processes
 Practices and Activities
 Goals and Metrics
 Inputs and Outputs
 RACI Charts
 Process Capability Maturity Models and Assessments
New GEIT Principles
 Val IT and Risk IT frameworks are principles-based.
 Feedback indicated that principles are easy to understand
and put into an enterprise context, allowing value to be
derived from the supporting guidance more effectively.
 ISO/IEC 38500 also incorporates principles to underpin
its messages to achieve the same market benefit delivery,
although the principles in this standard and COBIT 5 are
not the same
INCREASED FOCUS ON ENABLERS
COBIT 4.1 did not have enablers! Yes it did—they were
not called enablers but they were there, explicitly or
implicitly.
Cont...
 Information, infrastructure, applications (services) and people
(people, skills and competencies) were COBIT 4.1 resources.
 Principles, policies and frameworks were mentioned in a few
COBIT 4.1 processes.
 Processes were central to COBIT 4.1 use.
 Organisational structure was implied through the responsible,
accountable, consulted or informed (RACI) roles and their
definitions.
 Culture, ethics and behaviour were mentioned in a few COBIT 4.1
processes.
New Process Reference Model
 COBIT 5 is based on a revised process reference model with a new
governance domain and several new and modified processes that
now cover enterprise activities end-to-end, i.e., business and IT
function areas.
 COBIT 5 consolidates COBIT 4.1, Val IT and Risk IT into one
framework, and has been updated to align with current best
practices, e.g., ITIL V3 2011, TOGAF.
 The new model can be used as a guide for adjusting as necessary
the enterprise’s own process model (just like COBIT 4.1).
Cont...
 COBIT 5 introduces five new governance processes that have
leveraged and improved COBIT 4.1, Val IT and Risk IT
governance approaches.
 This guidance:
 Helps enterprises to further refine and strengthen executive
management-level GEIT practices and activities
 Supports GEIT integration with existing enterprise governance
practices and is aligned with
ISO/IEC 38500
NEW AND MODIFIED PROCESSES
COBIT 5 has clarified management level processes and integrated
COBIT 4.1, Val IT and Risk IT content into one process reference
model
NEW AND MODIFIED PROCESSES
 COBIT 5 processes now cover end-to-end business and
IT activities, i.e., a full enterprise-level view.
 This provides for a more holistic and complete coverage
of practices reflecting the pervasive enterprisewide nature
of IT use.
 It makes the involvement, responsibilities and
accountabilities of business stakeholders in the use of IT
more explicit and transparent
INPUTS AND OUTPUTS
 COBIT 5 provides inputs and outputs for every
management practice, whereas COBIT 4.1 only provided
these at the process level.
 This provides additional detailed guidance for designing
processes to include essential work products and to assist
with interprocess integration.
Process Capability Models and Assessments
 COBIT 5 discontinues the COBIT 4.1, Val IT and Risk IT CMM-
based capability maturity modelling approach.
 COBIT 5 will be supported by a new process capability assessment
approach based on ISO/IEC 15504, and the COBIT Assessment
Programme has already been established for COBIT 4.1 as an
alternative to the CMM approach.
 The COBIT 4.1, Val IT and Risk IT CMM-based approaches are
not considered compatible with the ISO/IEC 15504 approach
because the methods use different attributes and measurement
scales.
PROCESS CAPABILITY MODELS AND
ASSESSMENTS
 COBIT 4.1, Val IT and Risk IT users wishing to move to the new
COBIT Assessment Programme approach will need to realign their
previous ratings, adopt and learn the new method, and initiate a
new set of assessments in order to gain the benefits of the new
approach.
 Although some of the information gathered from previous
assessments may be reusable, care will be needed in migrating this
information forward because there are significant differences in
requireme
Cont...
 COBIT 4.1, Val IT and Risk IT users wishing to
continue with the CMM-based approach, either as
an interim or ongoing approach, can use the
COBIT 5 guidance, but must use the COBIT 4.1
generic attribute table without the high-level
maturity models.
TERIMAKASIH

More Related Content

What's hot

Cobit
CobitCobit
COBIT 5 - Principal 3 Applying A Single Integrated Framework
COBIT 5 - Principal 3 Applying A Single Integrated FrameworkCOBIT 5 - Principal 3 Applying A Single Integrated Framework
COBIT 5 - Principal 3 Applying A Single Integrated Framework
Mohammad Reda Katby
 
COBIT 5 Basic Concepts
COBIT 5 Basic ConceptsCOBIT 5 Basic Concepts
COBIT 5 Basic Concepts
Spyros Ktenas
 
Cobit 4.1 Highlights
Cobit 4.1 HighlightsCobit 4.1 Highlights
Cobit 4.1 Highlights
geoffharmer
 
I Forum GSTI - David Bathiely
I Forum GSTI - David BathielyI Forum GSTI - David Bathiely
I Forum GSTI - David Bathiely
Marcos Andre
 
Itil,cobit and ıso27001
Itil,cobit and ıso27001Itil,cobit and ıso27001
Itil,cobit and ıso27001
Burcu Pelin TELLİ
 
COBIT 5 FAQ
COBIT 5 FAQCOBIT 5 FAQ
COBIT 5 FAQ
Mas'ud Adhi Saputra
 
Cobit5 introduction
Cobit5 introductionCobit5 introduction
Cobit5 introduction
Markus Yaldu
 
Cobit Foundation Training
Cobit Foundation TrainingCobit Foundation Training
Cobit Foundation Training
vyomlabs
 
Audit rizkie hafizzah
Audit rizkie hafizzahAudit rizkie hafizzah
Audit rizkie hafizzah
Rizkie Hafizzah
 
DevOps, BA and COBIT don’t really align, or do they?
DevOps, BA and COBIT don’t really align, or do they?DevOps, BA and COBIT don’t really align, or do they?
DevOps, BA and COBIT don’t really align, or do they?
IIBA-Canberra
 
Business and ITSM on the same page at last! ITIL, TOGAF and COBIT working to...
Business and ITSM on the same page at last!  ITIL, TOGAF and COBIT working to...Business and ITSM on the same page at last!  ITIL, TOGAF and COBIT working to...
Business and ITSM on the same page at last! ITIL, TOGAF and COBIT working to...
CTE Solutions Inc.
 
Cobit5 owerwiev and implementation proposal
Cobit5 owerwiev and implementation proposalCobit5 owerwiev and implementation proposal
Cobit5 owerwiev and implementation proposal
Emilio Gratton
 
COBIT 5 & 4.1 Comparison
COBIT 5 & 4.1 ComparisonCOBIT 5 & 4.1 Comparison
COBIT 5 & 4.1 Comparison
Anthony Dehnashi
 
Qap cobit2019-20181111
Qap cobit2019-20181111Qap cobit2019-20181111
Qap cobit2019-20181111
Patrick Soenen
 
Multi Model Performance Improvement
Multi Model Performance ImprovementMulti Model Performance Improvement
Multi Model Performance ImprovementGeorge Brotbeck
 
COBIT5 Introduction
COBIT5 IntroductionCOBIT5 Introduction
COBIT5 Introduction
Mohammad Reda Katby
 
Cobit 5 introduction plgr
Cobit 5 introduction plgrCobit 5 introduction plgr
Cobit 5 introduction plgr
Pedro Garcia Repetto
 
COBIT 5 - Principal 5 Separating Governance From Management
COBIT 5 - Principal 5 Separating Governance From ManagementCOBIT 5 - Principal 5 Separating Governance From Management
COBIT 5 - Principal 5 Separating Governance From Management
Mohammad Reda Katby
 

What's hot (19)

Cobit
CobitCobit
Cobit
 
COBIT 5 - Principal 3 Applying A Single Integrated Framework
COBIT 5 - Principal 3 Applying A Single Integrated FrameworkCOBIT 5 - Principal 3 Applying A Single Integrated Framework
COBIT 5 - Principal 3 Applying A Single Integrated Framework
 
COBIT 5 Basic Concepts
COBIT 5 Basic ConceptsCOBIT 5 Basic Concepts
COBIT 5 Basic Concepts
 
Cobit 4.1 Highlights
Cobit 4.1 HighlightsCobit 4.1 Highlights
Cobit 4.1 Highlights
 
I Forum GSTI - David Bathiely
I Forum GSTI - David BathielyI Forum GSTI - David Bathiely
I Forum GSTI - David Bathiely
 
Itil,cobit and ıso27001
Itil,cobit and ıso27001Itil,cobit and ıso27001
Itil,cobit and ıso27001
 
COBIT 5 FAQ
COBIT 5 FAQCOBIT 5 FAQ
COBIT 5 FAQ
 
Cobit5 introduction
Cobit5 introductionCobit5 introduction
Cobit5 introduction
 
Cobit Foundation Training
Cobit Foundation TrainingCobit Foundation Training
Cobit Foundation Training
 
Audit rizkie hafizzah
Audit rizkie hafizzahAudit rizkie hafizzah
Audit rizkie hafizzah
 
DevOps, BA and COBIT don’t really align, or do they?
DevOps, BA and COBIT don’t really align, or do they?DevOps, BA and COBIT don’t really align, or do they?
DevOps, BA and COBIT don’t really align, or do they?
 
Business and ITSM on the same page at last! ITIL, TOGAF and COBIT working to...
Business and ITSM on the same page at last!  ITIL, TOGAF and COBIT working to...Business and ITSM on the same page at last!  ITIL, TOGAF and COBIT working to...
Business and ITSM on the same page at last! ITIL, TOGAF and COBIT working to...
 
Cobit5 owerwiev and implementation proposal
Cobit5 owerwiev and implementation proposalCobit5 owerwiev and implementation proposal
Cobit5 owerwiev and implementation proposal
 
COBIT 5 & 4.1 Comparison
COBIT 5 & 4.1 ComparisonCOBIT 5 & 4.1 Comparison
COBIT 5 & 4.1 Comparison
 
Qap cobit2019-20181111
Qap cobit2019-20181111Qap cobit2019-20181111
Qap cobit2019-20181111
 
Multi Model Performance Improvement
Multi Model Performance ImprovementMulti Model Performance Improvement
Multi Model Performance Improvement
 
COBIT5 Introduction
COBIT5 IntroductionCOBIT5 Introduction
COBIT5 Introduction
 
Cobit 5 introduction plgr
Cobit 5 introduction plgrCobit 5 introduction plgr
Cobit 5 introduction plgr
 
COBIT 5 - Principal 5 Separating Governance From Management
COBIT 5 - Principal 5 Separating Governance From ManagementCOBIT 5 - Principal 5 Separating Governance From Management
COBIT 5 - Principal 5 Separating Governance From Management
 

Viewers also liked

Cobit 4.1 ivooktavianti
Cobit 4.1 ivooktaviantiCobit 4.1 ivooktavianti
Cobit 4.1 ivooktavianti
Ivo Oktavianti
 
Cobit 4.1 ivo oktavianti
Cobit 4.1 ivo oktaviantiCobit 4.1 ivo oktavianti
Cobit 4.1 ivo oktavianti
darminritonga amy
 
Cv ivo oktavianti
Cv ivo oktaviantiCv ivo oktavianti
Cv ivo oktavianti
Ivo Oktavianti
 
Jéssica melo, jéssica rosa, patricia, rita. 11ºj
Jéssica melo, jéssica rosa, patricia, rita. 11ºjJéssica melo, jéssica rosa, patricia, rita. 11ºj
Jéssica melo, jéssica rosa, patricia, rita. 11ºjanaoliveira541960
 
O Reino Messiânico 3 - Paz
O Reino Messiânico 3 - PazO Reino Messiânico 3 - Paz
O Reino Messiânico 3 - Paz
Carlos Almeida
 
Genética 01
Genética 01Genética 01
Mairead Loughman Dissertation FINAL 240716
Mairead Loughman Dissertation FINAL 240716Mairead Loughman Dissertation FINAL 240716
Mairead Loughman Dissertation FINAL 240716Mairéad Loughman
 
Composição da comoc
Composição da comocComposição da comoc
Composição da comoc
luiseveraldo
 
Memória flora teles 3
Memória flora teles 3Memória flora teles 3
Memória flora teles 3
floraqteles
 
Sampa desconhecida tom ze
Sampa desconhecida tom zeSampa desconhecida tom ze
Sampa desconhecida tom ze
Danielle Ribeiro
 
Justica Yorkshire Lana
Justica Yorkshire LanaJustica Yorkshire Lana
Justica Yorkshire Lana
Lana Yorkshire
 
Qualidade
QualidadeQualidade
Qualidade
tourlinesviagens
 
Memória flora teles 1
Memória flora teles 1Memória flora teles 1
Memória flora teles 1
floraqteles
 

Viewers also liked (20)

Cobit 4.1 ivooktavianti
Cobit 4.1 ivooktaviantiCobit 4.1 ivooktavianti
Cobit 4.1 ivooktavianti
 
Cobit 4.1 ivo oktavianti
Cobit 4.1 ivo oktaviantiCobit 4.1 ivo oktavianti
Cobit 4.1 ivo oktavianti
 
Cv ivo oktavianti
Cv ivo oktaviantiCv ivo oktavianti
Cv ivo oktavianti
 
Cv ivo oktavianti
Cv ivo oktaviantiCv ivo oktavianti
Cv ivo oktavianti
 
Jéssica melo, jéssica rosa, patricia, rita. 11ºj
Jéssica melo, jéssica rosa, patricia, rita. 11ºjJéssica melo, jéssica rosa, patricia, rita. 11ºj
Jéssica melo, jéssica rosa, patricia, rita. 11ºj
 
Nota de falecimento
Nota de falecimentoNota de falecimento
Nota de falecimento
 
O Reino Messiânico 3 - Paz
O Reino Messiânico 3 - PazO Reino Messiânico 3 - Paz
O Reino Messiânico 3 - Paz
 
Genética 01
Genética 01Genética 01
Genética 01
 
Simulado completo aluno
Simulado completo alunoSimulado completo aluno
Simulado completo aluno
 
Is that what we want to live with
Is that what we want to live withIs that what we want to live with
Is that what we want to live with
 
Mairead Loughman Dissertation FINAL 240716
Mairead Loughman Dissertation FINAL 240716Mairead Loughman Dissertation FINAL 240716
Mairead Loughman Dissertation FINAL 240716
 
Composição da comoc
Composição da comocComposição da comoc
Composição da comoc
 
My professional life
My professional lifeMy professional life
My professional life
 
Páscoa
Páscoa Páscoa
Páscoa
 
Memória flora teles 3
Memória flora teles 3Memória flora teles 3
Memória flora teles 3
 
Sampa desconhecida tom ze
Sampa desconhecida tom zeSampa desconhecida tom ze
Sampa desconhecida tom ze
 
Justica Yorkshire Lana
Justica Yorkshire LanaJustica Yorkshire Lana
Justica Yorkshire Lana
 
T.d vírus
T.d vírusT.d vírus
T.d vírus
 
Qualidade
QualidadeQualidade
Qualidade
 
Memória flora teles 1
Memória flora teles 1Memória flora teles 1
Memória flora teles 1
 

Similar to Cobit 4.1 ivo oktavianti

Cobit 4.1 indri
Cobit 4.1 indriCobit 4.1 indri
Cobit 4.1 indri
dwiza indri
 
Donna Febriani
Donna FebrianiDonna Febriani
Donna Febriani
Donna Febriani
 
Cobit 2019 framework by ISACA
Cobit 2019 framework by ISACACobit 2019 framework by ISACA
Cobit 2019 framework by ISACA
MDFazlaRabbiAbir
 
PPT-UEU-Topik-dalam-IT-Resources-Management-13.pptx
PPT-UEU-Topik-dalam-IT-Resources-Management-13.pptxPPT-UEU-Topik-dalam-IT-Resources-Management-13.pptx
PPT-UEU-Topik-dalam-IT-Resources-Management-13.pptx
ssuserd1791e
 
02-cobit5-introduction.ppt
02-cobit5-introduction.ppt02-cobit5-introduction.ppt
02-cobit5-introduction.ppt
ElonMotta
 
COBIT
COBITCOBIT
Introduction to COBIT 2019 and IT management
Introduction to COBIT 2019 and IT managementIntroduction to COBIT 2019 and IT management
Introduction to COBIT 2019 and IT management
Christian F. Nissen
 
Cobit5 introduction
Cobit5 introductionCobit5 introduction
Cobit5 introduction
suhaskokate
 
COBIT 5 IT Governance Model: an Introduction
COBIT 5 IT Governance Model: an IntroductionCOBIT 5 IT Governance Model: an Introduction
COBIT 5 IT Governance Model: an Introduction
aqel aqel
 
Principal 4 Enabling A Holistic Approach
Principal 4 Enabling A Holistic ApproachPrincipal 4 Enabling A Holistic Approach
Principal 4 Enabling A Holistic Approach
Mohammad Reda Katby
 
COBIT 2019 - DIGITAL TRUST FRAMEWORK
COBIT 2019 - DIGITAL TRUST FRAMEWORKCOBIT 2019 - DIGITAL TRUST FRAMEWORK
COBIT 2019 - DIGITAL TRUST FRAMEWORK
Maganathin Veeraragaloo
 
Cobi t 4.1-brochure
Cobi t 4.1-brochureCobi t 4.1-brochure
Cobi t 4.1-brochure
Deloitte
 
PECB Webinar: Aligning COBIT 5.0 and ISO/IEC 38500
PECB Webinar: Aligning COBIT 5.0 and ISO/IEC 38500PECB Webinar: Aligning COBIT 5.0 and ISO/IEC 38500
PECB Webinar: Aligning COBIT 5.0 and ISO/IEC 38500
PECB
 
CobiT, Val IT & Balanced Scorecards
CobiT, Val IT & Balanced ScorecardsCobiT, Val IT & Balanced Scorecards
CobiT, Val IT & Balanced ScorecardsMichael Sim
 
It governance & cobit 5
It governance & cobit 5It governance & cobit 5
It governance & cobit 5
Laddawan Rattanaruang
 
Use COBIT for IT SAVINGS
Use COBIT for IT SAVINGSUse COBIT for IT SAVINGS
Use COBIT for IT SAVINGS
Sanjiv Arora
 

Similar to Cobit 4.1 ivo oktavianti (20)

Cobit 4.1 indri
Cobit 4.1 indriCobit 4.1 indri
Cobit 4.1 indri
 
Donna Febriani
Donna FebrianiDonna Febriani
Donna Febriani
 
Co5bit
Co5bitCo5bit
Co5bit
 
Cobit 2019 framework by ISACA
Cobit 2019 framework by ISACACobit 2019 framework by ISACA
Cobit 2019 framework by ISACA
 
PPT-UEU-Topik-dalam-IT-Resources-Management-13.pptx
PPT-UEU-Topik-dalam-IT-Resources-Management-13.pptxPPT-UEU-Topik-dalam-IT-Resources-Management-13.pptx
PPT-UEU-Topik-dalam-IT-Resources-Management-13.pptx
 
02-cobit5-introduction.ppt
02-cobit5-introduction.ppt02-cobit5-introduction.ppt
02-cobit5-introduction.ppt
 
COBIT5-IntroductionS
COBIT5-IntroductionSCOBIT5-IntroductionS
COBIT5-IntroductionS
 
COBIT
COBITCOBIT
COBIT
 
Introduction to COBIT 2019 and IT management
Introduction to COBIT 2019 and IT managementIntroduction to COBIT 2019 and IT management
Introduction to COBIT 2019 and IT management
 
Cobit5 introduction
Cobit5 introductionCobit5 introduction
Cobit5 introduction
 
01 intro-cobit
01 intro-cobit01 intro-cobit
01 intro-cobit
 
COBIT 5 IT Governance Model: an Introduction
COBIT 5 IT Governance Model: an IntroductionCOBIT 5 IT Governance Model: an Introduction
COBIT 5 IT Governance Model: an Introduction
 
Principal 4 Enabling A Holistic Approach
Principal 4 Enabling A Holistic ApproachPrincipal 4 Enabling A Holistic Approach
Principal 4 Enabling A Holistic Approach
 
COBIT 2019 - DIGITAL TRUST FRAMEWORK
COBIT 2019 - DIGITAL TRUST FRAMEWORKCOBIT 2019 - DIGITAL TRUST FRAMEWORK
COBIT 2019 - DIGITAL TRUST FRAMEWORK
 
Cobi t 4.1-brochure
Cobi t 4.1-brochureCobi t 4.1-brochure
Cobi t 4.1-brochure
 
CobiT And ITIL Breakfast Seminar
CobiT And ITIL Breakfast SeminarCobiT And ITIL Breakfast Seminar
CobiT And ITIL Breakfast Seminar
 
PECB Webinar: Aligning COBIT 5.0 and ISO/IEC 38500
PECB Webinar: Aligning COBIT 5.0 and ISO/IEC 38500PECB Webinar: Aligning COBIT 5.0 and ISO/IEC 38500
PECB Webinar: Aligning COBIT 5.0 and ISO/IEC 38500
 
CobiT, Val IT & Balanced Scorecards
CobiT, Val IT & Balanced ScorecardsCobiT, Val IT & Balanced Scorecards
CobiT, Val IT & Balanced Scorecards
 
It governance & cobit 5
It governance & cobit 5It governance & cobit 5
It governance & cobit 5
 
Use COBIT for IT SAVINGS
Use COBIT for IT SAVINGSUse COBIT for IT SAVINGS
Use COBIT for IT SAVINGS
 

Recently uploaded

Mule 4.6 & Java 17 Upgrade | MuleSoft Mysore Meetup #46
Mule 4.6 & Java 17 Upgrade | MuleSoft Mysore Meetup #46Mule 4.6 & Java 17 Upgrade | MuleSoft Mysore Meetup #46
Mule 4.6 & Java 17 Upgrade | MuleSoft Mysore Meetup #46
MysoreMuleSoftMeetup
 
aaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaa
aaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaa
aaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaa
siemaillard
 
Chapter 3 - Islamic Banking Products and Services.pptx
Chapter 3 - Islamic Banking Products and Services.pptxChapter 3 - Islamic Banking Products and Services.pptx
Chapter 3 - Islamic Banking Products and Services.pptx
Mohd Adib Abd Muin, Senior Lecturer at Universiti Utara Malaysia
 
Instructions for Submissions thorugh G- Classroom.pptx
Instructions for Submissions thorugh G- Classroom.pptxInstructions for Submissions thorugh G- Classroom.pptx
Instructions for Submissions thorugh G- Classroom.pptx
Jheel Barad
 
Language Across the Curriculm LAC B.Ed.
Language Across the  Curriculm LAC B.Ed.Language Across the  Curriculm LAC B.Ed.
Language Across the Curriculm LAC B.Ed.
Atul Kumar Singh
 
Palestine last event orientationfvgnh .pptx
Palestine last event orientationfvgnh .pptxPalestine last event orientationfvgnh .pptx
Palestine last event orientationfvgnh .pptx
RaedMohamed3
 
Thesis Statement for students diagnonsed withADHD.ppt
Thesis Statement for students diagnonsed withADHD.pptThesis Statement for students diagnonsed withADHD.ppt
Thesis Statement for students diagnonsed withADHD.ppt
EverAndrsGuerraGuerr
 
Overview on Edible Vaccine: Pros & Cons with Mechanism
Overview on Edible Vaccine: Pros & Cons with MechanismOverview on Edible Vaccine: Pros & Cons with Mechanism
Overview on Edible Vaccine: Pros & Cons with Mechanism
DeeptiGupta154
 
678020731-Sumas-y-Restas-Para-Colorear.pdf
678020731-Sumas-y-Restas-Para-Colorear.pdf678020731-Sumas-y-Restas-Para-Colorear.pdf
678020731-Sumas-y-Restas-Para-Colorear.pdf
CarlosHernanMontoyab2
 
Biological Screening of Herbal Drugs in detailed.
Biological Screening of Herbal Drugs in detailed.Biological Screening of Herbal Drugs in detailed.
Biological Screening of Herbal Drugs in detailed.
Ashokrao Mane college of Pharmacy Peth-Vadgaon
 
Home assignment II on Spectroscopy 2024 Answers.pdf
Home assignment II on Spectroscopy 2024 Answers.pdfHome assignment II on Spectroscopy 2024 Answers.pdf
Home assignment II on Spectroscopy 2024 Answers.pdf
Tamralipta Mahavidyalaya
 
1.4 modern child centered education - mahatma gandhi-2.pptx
1.4 modern child centered education - mahatma gandhi-2.pptx1.4 modern child centered education - mahatma gandhi-2.pptx
1.4 modern child centered education - mahatma gandhi-2.pptx
JosvitaDsouza2
 
Synthetic Fiber Construction in lab .pptx
Synthetic Fiber Construction in lab .pptxSynthetic Fiber Construction in lab .pptx
Synthetic Fiber Construction in lab .pptx
Pavel ( NSTU)
 
"Protectable subject matters, Protection in biotechnology, Protection of othe...
"Protectable subject matters, Protection in biotechnology, Protection of othe..."Protectable subject matters, Protection in biotechnology, Protection of othe...
"Protectable subject matters, Protection in biotechnology, Protection of othe...
SACHIN R KONDAGURI
 
Digital Tools and AI for Teaching Learning and Research
Digital Tools and AI for Teaching Learning and ResearchDigital Tools and AI for Teaching Learning and Research
Digital Tools and AI for Teaching Learning and Research
Vikramjit Singh
 
The approach at University of Liverpool.pptx
The approach at University of Liverpool.pptxThe approach at University of Liverpool.pptx
The approach at University of Liverpool.pptx
Jisc
 
CACJapan - GROUP Presentation 1- Wk 4.pdf
CACJapan - GROUP Presentation 1- Wk 4.pdfCACJapan - GROUP Presentation 1- Wk 4.pdf
CACJapan - GROUP Presentation 1- Wk 4.pdf
camakaiclarkmusic
 
A Strategic Approach: GenAI in Education
A Strategic Approach: GenAI in EducationA Strategic Approach: GenAI in Education
A Strategic Approach: GenAI in Education
Peter Windle
 
Honest Reviews of Tim Han LMA Course Program.pptx
Honest Reviews of Tim Han LMA Course Program.pptxHonest Reviews of Tim Han LMA Course Program.pptx
Honest Reviews of Tim Han LMA Course Program.pptx
timhan337
 
Embracing GenAI - A Strategic Imperative
Embracing GenAI - A Strategic ImperativeEmbracing GenAI - A Strategic Imperative
Embracing GenAI - A Strategic Imperative
Peter Windle
 

Recently uploaded (20)

Mule 4.6 & Java 17 Upgrade | MuleSoft Mysore Meetup #46
Mule 4.6 & Java 17 Upgrade | MuleSoft Mysore Meetup #46Mule 4.6 & Java 17 Upgrade | MuleSoft Mysore Meetup #46
Mule 4.6 & Java 17 Upgrade | MuleSoft Mysore Meetup #46
 
aaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaa
aaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaa
aaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaa
 
Chapter 3 - Islamic Banking Products and Services.pptx
Chapter 3 - Islamic Banking Products and Services.pptxChapter 3 - Islamic Banking Products and Services.pptx
Chapter 3 - Islamic Banking Products and Services.pptx
 
Instructions for Submissions thorugh G- Classroom.pptx
Instructions for Submissions thorugh G- Classroom.pptxInstructions for Submissions thorugh G- Classroom.pptx
Instructions for Submissions thorugh G- Classroom.pptx
 
Language Across the Curriculm LAC B.Ed.
Language Across the  Curriculm LAC B.Ed.Language Across the  Curriculm LAC B.Ed.
Language Across the Curriculm LAC B.Ed.
 
Palestine last event orientationfvgnh .pptx
Palestine last event orientationfvgnh .pptxPalestine last event orientationfvgnh .pptx
Palestine last event orientationfvgnh .pptx
 
Thesis Statement for students diagnonsed withADHD.ppt
Thesis Statement for students diagnonsed withADHD.pptThesis Statement for students diagnonsed withADHD.ppt
Thesis Statement for students diagnonsed withADHD.ppt
 
Overview on Edible Vaccine: Pros & Cons with Mechanism
Overview on Edible Vaccine: Pros & Cons with MechanismOverview on Edible Vaccine: Pros & Cons with Mechanism
Overview on Edible Vaccine: Pros & Cons with Mechanism
 
678020731-Sumas-y-Restas-Para-Colorear.pdf
678020731-Sumas-y-Restas-Para-Colorear.pdf678020731-Sumas-y-Restas-Para-Colorear.pdf
678020731-Sumas-y-Restas-Para-Colorear.pdf
 
Biological Screening of Herbal Drugs in detailed.
Biological Screening of Herbal Drugs in detailed.Biological Screening of Herbal Drugs in detailed.
Biological Screening of Herbal Drugs in detailed.
 
Home assignment II on Spectroscopy 2024 Answers.pdf
Home assignment II on Spectroscopy 2024 Answers.pdfHome assignment II on Spectroscopy 2024 Answers.pdf
Home assignment II on Spectroscopy 2024 Answers.pdf
 
1.4 modern child centered education - mahatma gandhi-2.pptx
1.4 modern child centered education - mahatma gandhi-2.pptx1.4 modern child centered education - mahatma gandhi-2.pptx
1.4 modern child centered education - mahatma gandhi-2.pptx
 
Synthetic Fiber Construction in lab .pptx
Synthetic Fiber Construction in lab .pptxSynthetic Fiber Construction in lab .pptx
Synthetic Fiber Construction in lab .pptx
 
"Protectable subject matters, Protection in biotechnology, Protection of othe...
"Protectable subject matters, Protection in biotechnology, Protection of othe..."Protectable subject matters, Protection in biotechnology, Protection of othe...
"Protectable subject matters, Protection in biotechnology, Protection of othe...
 
Digital Tools and AI for Teaching Learning and Research
Digital Tools and AI for Teaching Learning and ResearchDigital Tools and AI for Teaching Learning and Research
Digital Tools and AI for Teaching Learning and Research
 
The approach at University of Liverpool.pptx
The approach at University of Liverpool.pptxThe approach at University of Liverpool.pptx
The approach at University of Liverpool.pptx
 
CACJapan - GROUP Presentation 1- Wk 4.pdf
CACJapan - GROUP Presentation 1- Wk 4.pdfCACJapan - GROUP Presentation 1- Wk 4.pdf
CACJapan - GROUP Presentation 1- Wk 4.pdf
 
A Strategic Approach: GenAI in Education
A Strategic Approach: GenAI in EducationA Strategic Approach: GenAI in Education
A Strategic Approach: GenAI in Education
 
Honest Reviews of Tim Han LMA Course Program.pptx
Honest Reviews of Tim Han LMA Course Program.pptxHonest Reviews of Tim Han LMA Course Program.pptx
Honest Reviews of Tim Han LMA Course Program.pptx
 
Embracing GenAI - A Strategic Imperative
Embracing GenAI - A Strategic ImperativeEmbracing GenAI - A Strategic Imperative
Embracing GenAI - A Strategic Imperative
 

Cobit 4.1 ivo oktavianti

  • 1. Di Susun Oleh : Ivo Oktavianti 11353202788 SIF VII H Control & Audit Sistem Informasi Dosen Pembimbing : Muhammad jazzman, S. Kom., M.InfoSys COBIT 4.1
  • 2. DEFINITION CONTROL  Control is one the managerial functions like planning, organizing, staffing and directing  Management is required by law to establish and maintain an adequate system of internal controls.
  • 3. DEFINITIONS AUDIT Audit is an objective examination and evaluation of the financial statements of an organization to make sure that the records are a fair and axxurate representation of the transactions they claim to represent. Audit information technology or IT (information technology) is also known as the audit or audit information system (information system audit) is the testing of the control activities of the infrastructure unit groups of a system / information technology. Internal Auditing is an indepent, objective, assurance and consulting activity design to add value and improve an organization’s operations.
  • 4. COBIT Cobit is a frameword for developing, implementing, monitoring and improving information technologi (IT) governance and management practices. The cobit frameword is published by the IT Governance institute and the information System Audit and Control Association (ISACA). Cobit is a good –practice framework created by international professional association ISACA for IT Management and IT Governance.
  • 5. What Is Cobit?  Authoritative, Up-Date, International set of generally accepted IT control objectives and control practices for day-to-day use by business managers and auditor  Struktured and organized to provide a powerful control model
  • 6. TRANSITION MESSAGE  COBIT 4.1, Val IT and Risk IT users who are already engaged in governance of enterprise IT (GEIT) implementation activities can transition to COBIT 5 and benefit from the latest and improved guidance that it provides during the next iterations of their enterprise’s improvement life cycle.  COBIT 5 builds on previous versions of COBIT (and Val IT and Risk IT) and so enterprises can also build on what they have developed using earlier versions
  • 7. COBIT 4.1 – IT Governance Framework  Internationally accepted good practices  Managemen-oriented  Supported by tools and training  Freely available  Sharing knowladge and leveraging expert volunteers  Continually Evoloving  Maintained by reputable not-for-profit organisations  Maps 100 percent to COSO  Maps Strongly to all major related standards
  • 8. COBIT SOURCES  Professional Standars for Internal control and auditing (COSO, IFAC, AICPA, IIA,etc)  Technical Standards (ISO, EDIFACT,etc)  Codes of Conduct  Qualification Criteria for IT system and processes (ISO9000,ITSEC. TCSEC.etc)  Industry practices and requirements from  Industry forums (ESF,14)
  • 9. COBIT FRAMEWORK  Documents relationships among information criteria, IT resources, and IT Processes Link control objectives and control practices to business processes and business objectives  Assists in confirming that appropriate IT processes are in places  Facilitates evaluation and assurance methods.
  • 10. STAKEHOLDER VALUE AND BUSINESS OBJECTIVES  Enterprises exist to create value for their stakeholders. Consequently, any enterprise— commercial or not—will have value creation as a governance objective.  Value creation means: Realising benefits at an optimal resource cost while optimising risk.
  • 11. Continue Principle 1. Meeting Stakeholder Needs:  Stakeholder needs have to be transformed into an enterprise’s actionable strategy.  The COBIT 5 goals cascade translates stakeholder needs into specific, practical and customised goals within the context of the enterprise, IT-related goals and enabler goals.
  • 12. Cont...  Stakeholder needs can be related to a set of generic enterprise goals.  These enterprise goals have been developed using the Balanced Scorecard (BSC) dimensions. (Kaplan, Robert S.; Norton, David P.; The Balanced Scorecard: Translating Strategy into Action, Harvard University Press, USA, 1996)  The enterprise goals are a list of commonly used goals that an enterprise has defined for itself.  Although this list is not exhaustive, most enterprise-specific goals can be easily mapped onto one or more of the generic enterprise goals.
  • 13. Cont...  The goals cascade is not ‘new’ to COBIT.  It was introduced in COBIT 4.0 in 2005.  Those COBIT users who have applied the thinking to their enterprises have found value.  BUT not everyone has recognized this value.  The goals cascade supports the COBIT 5 stakeholder needs principle that is fundamental to COBIT and has therefore been made prominent early in the COBIT 5 guidance.  The goals cascade has been revisited and updated for the COBIT 5 release.
  • 14. Governance and Management Defined  Governance ensures that stakeholder needs, conditions and options are evaluated to determine balanced, agreed- on enterprise objectives to be achieved; setting direction through prioritisation and decision making; and monitoring performance and compliance against agreed- on direction and objectives (EDM).  Management plans, builds, runs and monitors activities in alignment with the direction set by the governance body to achieve the enterprise objectives (PBRM).
  • 15. AREAS OF CHANGE  The following slides summarise the major changes in COBIT 5 content and how they may impact GEIT implementation/improvement:  New GEIT Principles  Increased Focus on Enablers  New Process Reference Model  New and Modified Processes  Practices and Activities  Goals and Metrics  Inputs and Outputs  RACI Charts  Process Capability Maturity Models and Assessments
  • 16. New GEIT Principles  Val IT and Risk IT frameworks are principles-based.  Feedback indicated that principles are easy to understand and put into an enterprise context, allowing value to be derived from the supporting guidance more effectively.  ISO/IEC 38500 also incorporates principles to underpin its messages to achieve the same market benefit delivery, although the principles in this standard and COBIT 5 are not the same
  • 17. INCREASED FOCUS ON ENABLERS COBIT 4.1 did not have enablers! Yes it did—they were not called enablers but they were there, explicitly or implicitly.
  • 18. Cont...  Information, infrastructure, applications (services) and people (people, skills and competencies) were COBIT 4.1 resources.  Principles, policies and frameworks were mentioned in a few COBIT 4.1 processes.  Processes were central to COBIT 4.1 use.  Organisational structure was implied through the responsible, accountable, consulted or informed (RACI) roles and their definitions.  Culture, ethics and behaviour were mentioned in a few COBIT 4.1 processes.
  • 19. New Process Reference Model  COBIT 5 is based on a revised process reference model with a new governance domain and several new and modified processes that now cover enterprise activities end-to-end, i.e., business and IT function areas.  COBIT 5 consolidates COBIT 4.1, Val IT and Risk IT into one framework, and has been updated to align with current best practices, e.g., ITIL V3 2011, TOGAF.  The new model can be used as a guide for adjusting as necessary the enterprise’s own process model (just like COBIT 4.1).
  • 20. Cont...  COBIT 5 introduces five new governance processes that have leveraged and improved COBIT 4.1, Val IT and Risk IT governance approaches.  This guidance:  Helps enterprises to further refine and strengthen executive management-level GEIT practices and activities  Supports GEIT integration with existing enterprise governance practices and is aligned with ISO/IEC 38500
  • 21. NEW AND MODIFIED PROCESSES COBIT 5 has clarified management level processes and integrated COBIT 4.1, Val IT and Risk IT content into one process reference model
  • 22. NEW AND MODIFIED PROCESSES  COBIT 5 processes now cover end-to-end business and IT activities, i.e., a full enterprise-level view.  This provides for a more holistic and complete coverage of practices reflecting the pervasive enterprisewide nature of IT use.  It makes the involvement, responsibilities and accountabilities of business stakeholders in the use of IT more explicit and transparent
  • 23. INPUTS AND OUTPUTS  COBIT 5 provides inputs and outputs for every management practice, whereas COBIT 4.1 only provided these at the process level.  This provides additional detailed guidance for designing processes to include essential work products and to assist with interprocess integration.
  • 24. Process Capability Models and Assessments  COBIT 5 discontinues the COBIT 4.1, Val IT and Risk IT CMM- based capability maturity modelling approach.  COBIT 5 will be supported by a new process capability assessment approach based on ISO/IEC 15504, and the COBIT Assessment Programme has already been established for COBIT 4.1 as an alternative to the CMM approach.  The COBIT 4.1, Val IT and Risk IT CMM-based approaches are not considered compatible with the ISO/IEC 15504 approach because the methods use different attributes and measurement scales.
  • 25. PROCESS CAPABILITY MODELS AND ASSESSMENTS  COBIT 4.1, Val IT and Risk IT users wishing to move to the new COBIT Assessment Programme approach will need to realign their previous ratings, adopt and learn the new method, and initiate a new set of assessments in order to gain the benefits of the new approach.  Although some of the information gathered from previous assessments may be reusable, care will be needed in migrating this information forward because there are significant differences in requireme
  • 26. Cont...  COBIT 4.1, Val IT and Risk IT users wishing to continue with the CMM-based approach, either as an interim or ongoing approach, can use the COBIT 5 guidance, but must use the COBIT 4.1 generic attribute table without the high-level maturity models.