SlideShare a Scribd company logo
Tugas Mandiri
Control & Audit Sistem Informasi
Dosen Pengampuh : Muhammad jazman, S. Kom,M. InfoSys
Di Susun Oleh :
Darmin Ritonga
11353205418
Definitions Audit
Audit information technology or IT (information technology) is also
known as the audit or audit information system (information system
audit) is the testing of the control activities of the infrastructure unit
groups of a system / information technology.
Definitions cobit
Cobit is a frameword for developing, implementing, monitoring and
improving information technologi (IT) governance and management
practices.
The cobit frameword is published by the IT Governance institute
and the information System Audit and Control Association (ISACA).
Transition Message
• COBIT 4.1, Val IT and Risk IT users who are already
engaged in governance of enterprise IT (GEIT)
implementation activities can transition to COBIT 5 and
benefit from the latest and improved guidance that it
provides during the next iterations of their enterprise’s
improvement life cycle.
• COBIT 5 builds on previous versions of COBIT (and Val
IT and Risk IT) and so enterprises can also build on what
they have developed using earlier versions
Stakeholder Value and Business
Objectives
• Enterprises exist to create value for their stakeholders.
Consequently, any enterprise— commercial or not—will have
value creation as a governance objective.
• Value creation means: Realising benefits at an optimal resource
cost while optimising risk.
Cont...
Principle 1. Meeting Stakeholder Needs:
 Stakeholder needs have to be transformed into an enterprise’s
actionable strategy.
 The COBIT 5 goals cascade translates stakeholder needs into
specific, practical and customised goals within the context of the
enterprise, IT-related goals and enabler goals.
Cont...
• Stakeholder needs can be related to a set of generic
enterprise goals.
• These enterprise goals have been developed using the
Balanced Scorecard (BSC) dimensions. (Kaplan, Robert S.;
Norton, David P.; The Balanced Scorecard: Translating
Strategy into Action, Harvard University Press, USA, 1996)
• The enterprise goals are a list of commonly used goals that an
enterprise has defined for itself.
• Although this list is not exhaustive, most enterprise-specific
goals can be easily mapped onto one or more of the generic
enterprise goals.
Cont...
• The goals cascade is not ‘new’ to COBIT.
• It was introduced in COBIT 4.0 in 2005.
• Those COBIT users who have applied the thinking to their
enterprises have found value.
• BUT not everyone has recognized this value.
• The goals cascade supports the COBIT 5 stakeholder needs
principle that is fundamental to COBIT and has therefore been
made prominent early in the COBIT 5 guidance.
• The goals cascade has been revisited and updated for the COBIT 5
release.
Governance and Management Defined
• Governance ensures that stakeholder needs, conditions and
options are evaluated to determine balanced, agreed-on enterprise
objectives to be achieved; setting direction through prioritisation
and decision making; and monitoring performance and
compliance against agreed-on direction and objectives (EDM).
• Management plans, builds, runs and monitors activities in
alignment with the direction set by the governance body to achieve
the enterprise objectives (PBRM).
Areas of Change
 The following slides summarise the major changes in COBIT 5
content and how they may impact GEIT
implementation/improvement:
 New GEIT Principles
 Increased Focus on Enablers
 New Process Reference Model
 New and Modified Processes
 Practices and Activities
 Goals and Metrics
 Inputs and Outputs
 RACI Charts
 Process Capability Maturity Models and Assessments
New GEIT Principles
• Val IT and Risk IT frameworks are principles-based.
• Feedback indicated that principles are easy to understand and put
into an enterprise context, allowing value to be derived from the
supporting guidance more effectively.
• ISO/IEC 38500 also incorporates principles to underpin its
messages to achieve the same market benefit delivery, although the
principles in this standard and COBIT 5 are not the same
Increased Focus on Enablers
COBIT 4.1 did not have enablers! Yes it did—they were not called
enablers but they were there, explicitly or implicitly!
Cont...
• Information, infrastructure, applications (services) and people
(people, skills and competencies) were COBIT 4.1 resources.
• Principles, policies and frameworks were mentioned in a few
COBIT 4.1 processes.
• Processes were central to COBIT 4.1 use.
• Organisational structure was implied through the responsible,
accountable, consulted or informed (RACI) roles and their
definitions.
• Culture, ethics and behaviour were mentioned in a few COBIT 4.1
processes.
New Process Reference Model
• COBIT 5 is based on a revised process reference model with a new
governance domain and several new and modified processes that
now cover enterprise activities end-to-end, i.e., business and IT
function areas.
• COBIT 5 consolidates COBIT 4.1, Val IT and Risk IT into one
framework, and has been updated to align with current best
practices, e.g., ITIL V3 2011, TOGAF.
• The new model can be used as a guide for adjusting as necessary
the enterprise’s own process model (just like COBIT 4.1).
Cont...
• COBIT 5 introduces five new governance processes that have
leveraged and improved COBIT 4.1, Val IT and Risk IT
governance approaches.
• This guidance:
• Helps enterprises to further refine and strengthen executive
management-level GEIT practices and activities
• Supports GEIT integration with existing enterprise governance
practices and is aligned with
ISO/IEC 38500
New and Modified Processes
COBIT 5 has clarified management level processes and integrated
COBIT 4.1, Val IT and Risk IT content into one process reference
model
Cont...
• COBIT 5 processes now cover end-to-end business and IT
activities, i.e., a full enterprise-level view.
• This provides for a more holistic and complete coverage of
practices reflecting the pervasive enterprisewide nature of IT use.
• It makes the involvement, responsibilities and accountabilities of
business stakeholders in the use of. IT more explicit and
transparent.
Inputs and Outputs
• COBIT 5 provides inputs and outputs for every management
practice, whereas COBIT 4.1 only provided these at the process
level.
• This provides additional detailed guidance for designing processes
to include essential work products and to assist with interprocess
integration.
Process Capability Models and Assessments
 COBIT 5 discontinues the COBIT 4.1, Val IT and Risk IT CMM-
based capability maturity modelling approach.
 COBIT 5 will be supported by a new process capability assessment
approach based on ISO/IEC 15504, and the COBIT Assessment
Programme has already been established for COBIT 4.1 as an
alternative to the CMM approach.
 The COBIT 4.1, Val IT and Risk IT CMM-based approaches are
not considered compatible with the ISO/IEC 15504 approach
because the methods use different attributes and measurement
scales.
Cont...
 COBIT 4.1, Val IT and Risk IT users wishing to move to the new
COBIT Assessment Programme approach will need to realign their
previous ratings, adopt and learn the new method, and initiate a
new set of assessments in order to gain the benefits of the new
approach.
 Although some of the information gathered from previous
assessments may be reusable, care will be needed in migrating this
information forward because there are significant differences in
requireme
Cont...
• COBIT 4.1, Val IT and Risk IT users wishing to continue with the
CMM-based approach, either as an interim or ongoing approach,
can use the COBIT 5 guidance, but must use the COBIT 4.1
generic attribute table without the high-level maturity models.
finish

More Related Content

What's hot

Cobit5
Cobit5Cobit5
Cobit 5 - An Overview
Cobit 5 - An OverviewCobit 5 - An Overview
Cobit 5 - An Overview
Anurag Purohit
 
COBIT 5 IT Governance Model: an Introduction
COBIT 5 IT Governance Model: an IntroductionCOBIT 5 IT Governance Model: an Introduction
COBIT 5 IT Governance Model: an Introduction
aqel aqel
 
Cobit5 owerwiev and implementation proposal
Cobit5 owerwiev and implementation proposalCobit5 owerwiev and implementation proposal
Cobit5 owerwiev and implementation proposal
Emilio Gratton
 
Cobit Foundation Training
Cobit Foundation TrainingCobit Foundation Training
Cobit Foundation Training
vyomlabs
 
Study Notes - COBIT 5 Foundation Certification
Study Notes - COBIT 5 Foundation CertificationStudy Notes - COBIT 5 Foundation Certification
Study Notes - COBIT 5 Foundation Certification
WAJAHAT IQBAL
 
I Forum GSTI - David Bathiely
I Forum GSTI - David BathielyI Forum GSTI - David Bathiely
I Forum GSTI - David Bathiely
Marcos Andre
 
COBIT 5 - Principal 3 Applying A Single Integrated Framework
COBIT 5 - Principal 3 Applying A Single Integrated FrameworkCOBIT 5 - Principal 3 Applying A Single Integrated Framework
COBIT 5 - Principal 3 Applying A Single Integrated Framework
Mohammad Reda Katby
 
Co5bit
Co5bitCo5bit
Co5bit
Anne Starr
 
Cobit
CobitCobit
COBIT5 Introduction
COBIT5 IntroductionCOBIT5 Introduction
COBIT5 Introduction
Mohammad Reda Katby
 
CObIT
CObITCObIT
Business and ITSM on the same page at last! ITIL, TOGAF and COBIT working to...
Business and ITSM on the same page at last!  ITIL, TOGAF and COBIT working to...Business and ITSM on the same page at last!  ITIL, TOGAF and COBIT working to...
Business and ITSM on the same page at last! ITIL, TOGAF and COBIT working to...
CTE Solutions Inc.
 
Cobit 5 principle 1
Cobit 5 principle 1Cobit 5 principle 1
Cobit 5 principle 1
Thomson Reuters
 
Cobit 5 used in an information security review
Cobit 5 used in an information security reviewCobit 5 used in an information security review
Cobit 5 used in an information security review
Johnbarchie
 
COBIT 5 Basic Concepts
COBIT 5 Basic ConceptsCOBIT 5 Basic Concepts
COBIT 5 Basic Concepts
Spyros Ktenas
 
Cobit 5 introduction plgr
Cobit 5 introduction plgrCobit 5 introduction plgr
Cobit 5 introduction plgr
Pedro Garcia Repetto
 
Cobit 4.1 Highlights
Cobit 4.1 HighlightsCobit 4.1 Highlights
Cobit 4.1 Highlights
geoffharmer
 
Cobit5 introduction
Cobit5 introductionCobit5 introduction
Cobit5 introduction
Markus Yaldu
 

What's hot (19)

Cobit5
Cobit5Cobit5
Cobit5
 
Cobit 5 - An Overview
Cobit 5 - An OverviewCobit 5 - An Overview
Cobit 5 - An Overview
 
COBIT 5 IT Governance Model: an Introduction
COBIT 5 IT Governance Model: an IntroductionCOBIT 5 IT Governance Model: an Introduction
COBIT 5 IT Governance Model: an Introduction
 
Cobit5 owerwiev and implementation proposal
Cobit5 owerwiev and implementation proposalCobit5 owerwiev and implementation proposal
Cobit5 owerwiev and implementation proposal
 
Cobit Foundation Training
Cobit Foundation TrainingCobit Foundation Training
Cobit Foundation Training
 
Study Notes - COBIT 5 Foundation Certification
Study Notes - COBIT 5 Foundation CertificationStudy Notes - COBIT 5 Foundation Certification
Study Notes - COBIT 5 Foundation Certification
 
I Forum GSTI - David Bathiely
I Forum GSTI - David BathielyI Forum GSTI - David Bathiely
I Forum GSTI - David Bathiely
 
COBIT 5 - Principal 3 Applying A Single Integrated Framework
COBIT 5 - Principal 3 Applying A Single Integrated FrameworkCOBIT 5 - Principal 3 Applying A Single Integrated Framework
COBIT 5 - Principal 3 Applying A Single Integrated Framework
 
Co5bit
Co5bitCo5bit
Co5bit
 
Cobit
CobitCobit
Cobit
 
COBIT5 Introduction
COBIT5 IntroductionCOBIT5 Introduction
COBIT5 Introduction
 
CObIT
CObITCObIT
CObIT
 
Business and ITSM on the same page at last! ITIL, TOGAF and COBIT working to...
Business and ITSM on the same page at last!  ITIL, TOGAF and COBIT working to...Business and ITSM on the same page at last!  ITIL, TOGAF and COBIT working to...
Business and ITSM on the same page at last! ITIL, TOGAF and COBIT working to...
 
Cobit 5 principle 1
Cobit 5 principle 1Cobit 5 principle 1
Cobit 5 principle 1
 
Cobit 5 used in an information security review
Cobit 5 used in an information security reviewCobit 5 used in an information security review
Cobit 5 used in an information security review
 
COBIT 5 Basic Concepts
COBIT 5 Basic ConceptsCOBIT 5 Basic Concepts
COBIT 5 Basic Concepts
 
Cobit 5 introduction plgr
Cobit 5 introduction plgrCobit 5 introduction plgr
Cobit 5 introduction plgr
 
Cobit 4.1 Highlights
Cobit 4.1 HighlightsCobit 4.1 Highlights
Cobit 4.1 Highlights
 
Cobit5 introduction
Cobit5 introductionCobit5 introduction
Cobit5 introduction
 

Similar to Darmin ritonga 11353205418

Donna Febriani
Donna FebrianiDonna Febriani
Donna Febriani
Donna Febriani
 
Cobit 4.1 indri
Cobit 4.1 indriCobit 4.1 indri
Cobit 4.1 indri
dwiza indri
 
Cobit 4.1 ivo oktavianti
Cobit 4.1 ivo oktaviantiCobit 4.1 ivo oktavianti
Cobit 4.1 ivo oktavianti
darminritonga amy
 
Cobit 4.1 ivooktavianti
Cobit 4.1 ivooktaviantiCobit 4.1 ivooktavianti
Cobit 4.1 ivooktavianti
Ivo Oktavianti
 
Audit rizkie hafizzah
Audit rizkie hafizzahAudit rizkie hafizzah
Audit rizkie hafizzah
Rizkie Hafizzah
 
COBIT 5 FAQ
COBIT 5 FAQCOBIT 5 FAQ
COBIT 5 FAQ
Mas'ud Adhi Saputra
 
COBIT
COBITCOBIT
PPT-UEU-Topik-dalam-IT-Resources-Management-13.pptx
PPT-UEU-Topik-dalam-IT-Resources-Management-13.pptxPPT-UEU-Topik-dalam-IT-Resources-Management-13.pptx
PPT-UEU-Topik-dalam-IT-Resources-Management-13.pptx
ssuserd1791e
 
cobit 2019 -current-user - ISACA Publication
cobit 2019 -current-user - ISACA Publicationcobit 2019 -current-user - ISACA Publication
cobit 2019 -current-user - ISACA Publication
Thilak Pathirage -Senior IT Gov and Risk Consultant
 
Cobit 2019 framework by ISACA
Cobit 2019 framework by ISACACobit 2019 framework by ISACA
Cobit 2019 framework by ISACA
MDFazlaRabbiAbir
 
IT Governance Framework
IT Governance FrameworkIT Governance Framework
IT Governance Framework
Sherri Booher
 
Cobit5 Principal 1 Meeting Stakeholder Needs
Cobit5 Principal 1 Meeting Stakeholder NeedsCobit5 Principal 1 Meeting Stakeholder Needs
Cobit5 Principal 1 Meeting Stakeholder Needs
Mohammad Reda Katby
 
PECB Webinar: Aligning COBIT 5.0 and ISO/IEC 38500
PECB Webinar: Aligning COBIT 5.0 and ISO/IEC 38500PECB Webinar: Aligning COBIT 5.0 and ISO/IEC 38500
PECB Webinar: Aligning COBIT 5.0 and ISO/IEC 38500
PECB
 
Cobit5 brochure
Cobit5 brochureCobit5 brochure
Cobit5 brochure
Knowledgehut
 
Use COBIT for IT SAVINGS
Use COBIT for IT SAVINGSUse COBIT for IT SAVINGS
Use COBIT for IT SAVINGS
Sanjiv Arora
 
IT Governance - COBIT 5 Capability Assessment
IT Governance - COBIT 5 Capability AssessmentIT Governance - COBIT 5 Capability Assessment
IT Governance - COBIT 5 Capability Assessment
Eryk Budi Pratama
 
Introduction to COBIT 5 and IT management
Introduction to COBIT 5 and IT managementIntroduction to COBIT 5 and IT management
Introduction to COBIT 5 and IT management
Christian F. Nissen
 
COBIT 2019 Executive Summary_v1.1 .pdf
COBIT 2019 Executive Summary_v1.1 .pdfCOBIT 2019 Executive Summary_v1.1 .pdf
COBIT 2019 Executive Summary_v1.1 .pdf
DiegoIvanAlvaradoVel
 
IT Governance - Capability Assessment using COBIT 5
IT Governance - Capability Assessment using COBIT 5IT Governance - Capability Assessment using COBIT 5
IT Governance - Capability Assessment using COBIT 5
Eryk Budi Pratama
 
Cobi t vs itil
Cobi t vs itilCobi t vs itil
Cobi t vs itil
Rodrigo Costa
 

Similar to Darmin ritonga 11353205418 (20)

Donna Febriani
Donna FebrianiDonna Febriani
Donna Febriani
 
Cobit 4.1 indri
Cobit 4.1 indriCobit 4.1 indri
Cobit 4.1 indri
 
Cobit 4.1 ivo oktavianti
Cobit 4.1 ivo oktaviantiCobit 4.1 ivo oktavianti
Cobit 4.1 ivo oktavianti
 
Cobit 4.1 ivooktavianti
Cobit 4.1 ivooktaviantiCobit 4.1 ivooktavianti
Cobit 4.1 ivooktavianti
 
Audit rizkie hafizzah
Audit rizkie hafizzahAudit rizkie hafizzah
Audit rizkie hafizzah
 
COBIT 5 FAQ
COBIT 5 FAQCOBIT 5 FAQ
COBIT 5 FAQ
 
COBIT
COBITCOBIT
COBIT
 
PPT-UEU-Topik-dalam-IT-Resources-Management-13.pptx
PPT-UEU-Topik-dalam-IT-Resources-Management-13.pptxPPT-UEU-Topik-dalam-IT-Resources-Management-13.pptx
PPT-UEU-Topik-dalam-IT-Resources-Management-13.pptx
 
cobit 2019 -current-user - ISACA Publication
cobit 2019 -current-user - ISACA Publicationcobit 2019 -current-user - ISACA Publication
cobit 2019 -current-user - ISACA Publication
 
Cobit 2019 framework by ISACA
Cobit 2019 framework by ISACACobit 2019 framework by ISACA
Cobit 2019 framework by ISACA
 
IT Governance Framework
IT Governance FrameworkIT Governance Framework
IT Governance Framework
 
Cobit5 Principal 1 Meeting Stakeholder Needs
Cobit5 Principal 1 Meeting Stakeholder NeedsCobit5 Principal 1 Meeting Stakeholder Needs
Cobit5 Principal 1 Meeting Stakeholder Needs
 
PECB Webinar: Aligning COBIT 5.0 and ISO/IEC 38500
PECB Webinar: Aligning COBIT 5.0 and ISO/IEC 38500PECB Webinar: Aligning COBIT 5.0 and ISO/IEC 38500
PECB Webinar: Aligning COBIT 5.0 and ISO/IEC 38500
 
Cobit5 brochure
Cobit5 brochureCobit5 brochure
Cobit5 brochure
 
Use COBIT for IT SAVINGS
Use COBIT for IT SAVINGSUse COBIT for IT SAVINGS
Use COBIT for IT SAVINGS
 
IT Governance - COBIT 5 Capability Assessment
IT Governance - COBIT 5 Capability AssessmentIT Governance - COBIT 5 Capability Assessment
IT Governance - COBIT 5 Capability Assessment
 
Introduction to COBIT 5 and IT management
Introduction to COBIT 5 and IT managementIntroduction to COBIT 5 and IT management
Introduction to COBIT 5 and IT management
 
COBIT 2019 Executive Summary_v1.1 .pdf
COBIT 2019 Executive Summary_v1.1 .pdfCOBIT 2019 Executive Summary_v1.1 .pdf
COBIT 2019 Executive Summary_v1.1 .pdf
 
IT Governance - Capability Assessment using COBIT 5
IT Governance - Capability Assessment using COBIT 5IT Governance - Capability Assessment using COBIT 5
IT Governance - Capability Assessment using COBIT 5
 
Cobi t vs itil
Cobi t vs itilCobi t vs itil
Cobi t vs itil
 

Recently uploaded

How Barcodes Can Be Leveraged Within Odoo 17
How Barcodes Can Be Leveraged Within Odoo 17How Barcodes Can Be Leveraged Within Odoo 17
How Barcodes Can Be Leveraged Within Odoo 17
Celine George
 
BIOLOGY NATIONAL EXAMINATION COUNCIL (NECO) 2024 PRACTICAL MANUAL.pptx
BIOLOGY NATIONAL EXAMINATION COUNCIL (NECO) 2024 PRACTICAL MANUAL.pptxBIOLOGY NATIONAL EXAMINATION COUNCIL (NECO) 2024 PRACTICAL MANUAL.pptx
BIOLOGY NATIONAL EXAMINATION COUNCIL (NECO) 2024 PRACTICAL MANUAL.pptx
RidwanHassanYusuf
 
Leveraging Generative AI to Drive Nonprofit Innovation
Leveraging Generative AI to Drive Nonprofit InnovationLeveraging Generative AI to Drive Nonprofit Innovation
Leveraging Generative AI to Drive Nonprofit Innovation
TechSoup
 
Data Structure using C by Dr. K Adisesha .ppsx
Data Structure using C by Dr. K Adisesha .ppsxData Structure using C by Dr. K Adisesha .ppsx
Data Structure using C by Dr. K Adisesha .ppsx
Prof. Dr. K. Adisesha
 
Benner "Expanding Pathways to Publishing Careers"
Benner "Expanding Pathways to Publishing Careers"Benner "Expanding Pathways to Publishing Careers"
Benner "Expanding Pathways to Publishing Careers"
National Information Standards Organization (NISO)
 
Chapter wise All Notes of First year Basic Civil Engineering.pptx
Chapter wise All Notes of First year Basic Civil Engineering.pptxChapter wise All Notes of First year Basic Civil Engineering.pptx
Chapter wise All Notes of First year Basic Civil Engineering.pptx
Denish Jangid
 
Gender and Mental Health - Counselling and Family Therapy Applications and In...
Gender and Mental Health - Counselling and Family Therapy Applications and In...Gender and Mental Health - Counselling and Family Therapy Applications and In...
Gender and Mental Health - Counselling and Family Therapy Applications and In...
PsychoTech Services
 
Temple of Asclepius in Thrace. Excavation results
Temple of Asclepius in Thrace. Excavation resultsTemple of Asclepius in Thrace. Excavation results
Temple of Asclepius in Thrace. Excavation results
Krassimira Luka
 
Beyond Degrees - Empowering the Workforce in the Context of Skills-First.pptx
Beyond Degrees - Empowering the Workforce in the Context of Skills-First.pptxBeyond Degrees - Empowering the Workforce in the Context of Skills-First.pptx
Beyond Degrees - Empowering the Workforce in the Context of Skills-First.pptx
EduSkills OECD
 
skeleton System.pdf (skeleton system wow)
skeleton System.pdf (skeleton system wow)skeleton System.pdf (skeleton system wow)
skeleton System.pdf (skeleton system wow)
Mohammad Al-Dhahabi
 
Haunted Houses by H W Longfellow for class 10
Haunted Houses by H W Longfellow for class 10Haunted Houses by H W Longfellow for class 10
Haunted Houses by H W Longfellow for class 10
nitinpv4ai
 
CIS 4200-02 Group 1 Final Project Report (1).pdf
CIS 4200-02 Group 1 Final Project Report (1).pdfCIS 4200-02 Group 1 Final Project Report (1).pdf
CIS 4200-02 Group 1 Final Project Report (1).pdf
blueshagoo1
 
Bonku-Babus-Friend by Sathyajith Ray (9)
Bonku-Babus-Friend by Sathyajith Ray  (9)Bonku-Babus-Friend by Sathyajith Ray  (9)
Bonku-Babus-Friend by Sathyajith Ray (9)
nitinpv4ai
 
How to Predict Vendor Bill Product in Odoo 17
How to Predict Vendor Bill Product in Odoo 17How to Predict Vendor Bill Product in Odoo 17
How to Predict Vendor Bill Product in Odoo 17
Celine George
 
Pharmaceutics Pharmaceuticals best of brub
Pharmaceutics Pharmaceuticals best of brubPharmaceutics Pharmaceuticals best of brub
Pharmaceutics Pharmaceuticals best of brub
danielkiash986
 
MDP on air pollution of class 8 year 2024-2025
MDP on air pollution of class 8 year 2024-2025MDP on air pollution of class 8 year 2024-2025
MDP on air pollution of class 8 year 2024-2025
khuleseema60
 
Skimbleshanks-The-Railway-Cat by T S Eliot
Skimbleshanks-The-Railway-Cat by T S EliotSkimbleshanks-The-Railway-Cat by T S Eliot
Skimbleshanks-The-Railway-Cat by T S Eliot
nitinpv4ai
 
Nutrition Inc FY 2024, 4 - Hour Training
Nutrition Inc FY 2024, 4 - Hour TrainingNutrition Inc FY 2024, 4 - Hour Training
Nutrition Inc FY 2024, 4 - Hour Training
melliereed
 
Juneteenth Freedom Day 2024 David Douglas School District
Juneteenth Freedom Day 2024 David Douglas School DistrictJuneteenth Freedom Day 2024 David Douglas School District
Juneteenth Freedom Day 2024 David Douglas School District
David Douglas School District
 
Présentationvvvvvvvvvvvvvvvvvvvvvvvvvvvv2.pptx
Présentationvvvvvvvvvvvvvvvvvvvvvvvvvvvv2.pptxPrésentationvvvvvvvvvvvvvvvvvvvvvvvvvvvv2.pptx
Présentationvvvvvvvvvvvvvvvvvvvvvvvvvvvv2.pptx
siemaillard
 

Recently uploaded (20)

How Barcodes Can Be Leveraged Within Odoo 17
How Barcodes Can Be Leveraged Within Odoo 17How Barcodes Can Be Leveraged Within Odoo 17
How Barcodes Can Be Leveraged Within Odoo 17
 
BIOLOGY NATIONAL EXAMINATION COUNCIL (NECO) 2024 PRACTICAL MANUAL.pptx
BIOLOGY NATIONAL EXAMINATION COUNCIL (NECO) 2024 PRACTICAL MANUAL.pptxBIOLOGY NATIONAL EXAMINATION COUNCIL (NECO) 2024 PRACTICAL MANUAL.pptx
BIOLOGY NATIONAL EXAMINATION COUNCIL (NECO) 2024 PRACTICAL MANUAL.pptx
 
Leveraging Generative AI to Drive Nonprofit Innovation
Leveraging Generative AI to Drive Nonprofit InnovationLeveraging Generative AI to Drive Nonprofit Innovation
Leveraging Generative AI to Drive Nonprofit Innovation
 
Data Structure using C by Dr. K Adisesha .ppsx
Data Structure using C by Dr. K Adisesha .ppsxData Structure using C by Dr. K Adisesha .ppsx
Data Structure using C by Dr. K Adisesha .ppsx
 
Benner "Expanding Pathways to Publishing Careers"
Benner "Expanding Pathways to Publishing Careers"Benner "Expanding Pathways to Publishing Careers"
Benner "Expanding Pathways to Publishing Careers"
 
Chapter wise All Notes of First year Basic Civil Engineering.pptx
Chapter wise All Notes of First year Basic Civil Engineering.pptxChapter wise All Notes of First year Basic Civil Engineering.pptx
Chapter wise All Notes of First year Basic Civil Engineering.pptx
 
Gender and Mental Health - Counselling and Family Therapy Applications and In...
Gender and Mental Health - Counselling and Family Therapy Applications and In...Gender and Mental Health - Counselling and Family Therapy Applications and In...
Gender and Mental Health - Counselling and Family Therapy Applications and In...
 
Temple of Asclepius in Thrace. Excavation results
Temple of Asclepius in Thrace. Excavation resultsTemple of Asclepius in Thrace. Excavation results
Temple of Asclepius in Thrace. Excavation results
 
Beyond Degrees - Empowering the Workforce in the Context of Skills-First.pptx
Beyond Degrees - Empowering the Workforce in the Context of Skills-First.pptxBeyond Degrees - Empowering the Workforce in the Context of Skills-First.pptx
Beyond Degrees - Empowering the Workforce in the Context of Skills-First.pptx
 
skeleton System.pdf (skeleton system wow)
skeleton System.pdf (skeleton system wow)skeleton System.pdf (skeleton system wow)
skeleton System.pdf (skeleton system wow)
 
Haunted Houses by H W Longfellow for class 10
Haunted Houses by H W Longfellow for class 10Haunted Houses by H W Longfellow for class 10
Haunted Houses by H W Longfellow for class 10
 
CIS 4200-02 Group 1 Final Project Report (1).pdf
CIS 4200-02 Group 1 Final Project Report (1).pdfCIS 4200-02 Group 1 Final Project Report (1).pdf
CIS 4200-02 Group 1 Final Project Report (1).pdf
 
Bonku-Babus-Friend by Sathyajith Ray (9)
Bonku-Babus-Friend by Sathyajith Ray  (9)Bonku-Babus-Friend by Sathyajith Ray  (9)
Bonku-Babus-Friend by Sathyajith Ray (9)
 
How to Predict Vendor Bill Product in Odoo 17
How to Predict Vendor Bill Product in Odoo 17How to Predict Vendor Bill Product in Odoo 17
How to Predict Vendor Bill Product in Odoo 17
 
Pharmaceutics Pharmaceuticals best of brub
Pharmaceutics Pharmaceuticals best of brubPharmaceutics Pharmaceuticals best of brub
Pharmaceutics Pharmaceuticals best of brub
 
MDP on air pollution of class 8 year 2024-2025
MDP on air pollution of class 8 year 2024-2025MDP on air pollution of class 8 year 2024-2025
MDP on air pollution of class 8 year 2024-2025
 
Skimbleshanks-The-Railway-Cat by T S Eliot
Skimbleshanks-The-Railway-Cat by T S EliotSkimbleshanks-The-Railway-Cat by T S Eliot
Skimbleshanks-The-Railway-Cat by T S Eliot
 
Nutrition Inc FY 2024, 4 - Hour Training
Nutrition Inc FY 2024, 4 - Hour TrainingNutrition Inc FY 2024, 4 - Hour Training
Nutrition Inc FY 2024, 4 - Hour Training
 
Juneteenth Freedom Day 2024 David Douglas School District
Juneteenth Freedom Day 2024 David Douglas School DistrictJuneteenth Freedom Day 2024 David Douglas School District
Juneteenth Freedom Day 2024 David Douglas School District
 
Présentationvvvvvvvvvvvvvvvvvvvvvvvvvvvv2.pptx
Présentationvvvvvvvvvvvvvvvvvvvvvvvvvvvv2.pptxPrésentationvvvvvvvvvvvvvvvvvvvvvvvvvvvv2.pptx
Présentationvvvvvvvvvvvvvvvvvvvvvvvvvvvv2.pptx
 

Darmin ritonga 11353205418

  • 1. Tugas Mandiri Control & Audit Sistem Informasi Dosen Pengampuh : Muhammad jazman, S. Kom,M. InfoSys Di Susun Oleh : Darmin Ritonga 11353205418
  • 2. Definitions Audit Audit information technology or IT (information technology) is also known as the audit or audit information system (information system audit) is the testing of the control activities of the infrastructure unit groups of a system / information technology.
  • 3. Definitions cobit Cobit is a frameword for developing, implementing, monitoring and improving information technologi (IT) governance and management practices. The cobit frameword is published by the IT Governance institute and the information System Audit and Control Association (ISACA).
  • 4. Transition Message • COBIT 4.1, Val IT and Risk IT users who are already engaged in governance of enterprise IT (GEIT) implementation activities can transition to COBIT 5 and benefit from the latest and improved guidance that it provides during the next iterations of their enterprise’s improvement life cycle. • COBIT 5 builds on previous versions of COBIT (and Val IT and Risk IT) and so enterprises can also build on what they have developed using earlier versions
  • 5. Stakeholder Value and Business Objectives • Enterprises exist to create value for their stakeholders. Consequently, any enterprise— commercial or not—will have value creation as a governance objective. • Value creation means: Realising benefits at an optimal resource cost while optimising risk.
  • 6. Cont... Principle 1. Meeting Stakeholder Needs:  Stakeholder needs have to be transformed into an enterprise’s actionable strategy.  The COBIT 5 goals cascade translates stakeholder needs into specific, practical and customised goals within the context of the enterprise, IT-related goals and enabler goals.
  • 7. Cont... • Stakeholder needs can be related to a set of generic enterprise goals. • These enterprise goals have been developed using the Balanced Scorecard (BSC) dimensions. (Kaplan, Robert S.; Norton, David P.; The Balanced Scorecard: Translating Strategy into Action, Harvard University Press, USA, 1996) • The enterprise goals are a list of commonly used goals that an enterprise has defined for itself. • Although this list is not exhaustive, most enterprise-specific goals can be easily mapped onto one or more of the generic enterprise goals.
  • 8. Cont... • The goals cascade is not ‘new’ to COBIT. • It was introduced in COBIT 4.0 in 2005. • Those COBIT users who have applied the thinking to their enterprises have found value. • BUT not everyone has recognized this value. • The goals cascade supports the COBIT 5 stakeholder needs principle that is fundamental to COBIT and has therefore been made prominent early in the COBIT 5 guidance. • The goals cascade has been revisited and updated for the COBIT 5 release.
  • 9. Governance and Management Defined • Governance ensures that stakeholder needs, conditions and options are evaluated to determine balanced, agreed-on enterprise objectives to be achieved; setting direction through prioritisation and decision making; and monitoring performance and compliance against agreed-on direction and objectives (EDM). • Management plans, builds, runs and monitors activities in alignment with the direction set by the governance body to achieve the enterprise objectives (PBRM).
  • 10. Areas of Change  The following slides summarise the major changes in COBIT 5 content and how they may impact GEIT implementation/improvement:  New GEIT Principles  Increased Focus on Enablers  New Process Reference Model  New and Modified Processes  Practices and Activities  Goals and Metrics  Inputs and Outputs  RACI Charts  Process Capability Maturity Models and Assessments
  • 11. New GEIT Principles • Val IT and Risk IT frameworks are principles-based. • Feedback indicated that principles are easy to understand and put into an enterprise context, allowing value to be derived from the supporting guidance more effectively. • ISO/IEC 38500 also incorporates principles to underpin its messages to achieve the same market benefit delivery, although the principles in this standard and COBIT 5 are not the same
  • 12. Increased Focus on Enablers COBIT 4.1 did not have enablers! Yes it did—they were not called enablers but they were there, explicitly or implicitly!
  • 13. Cont... • Information, infrastructure, applications (services) and people (people, skills and competencies) were COBIT 4.1 resources. • Principles, policies and frameworks were mentioned in a few COBIT 4.1 processes. • Processes were central to COBIT 4.1 use. • Organisational structure was implied through the responsible, accountable, consulted or informed (RACI) roles and their definitions. • Culture, ethics and behaviour were mentioned in a few COBIT 4.1 processes.
  • 14. New Process Reference Model • COBIT 5 is based on a revised process reference model with a new governance domain and several new and modified processes that now cover enterprise activities end-to-end, i.e., business and IT function areas. • COBIT 5 consolidates COBIT 4.1, Val IT and Risk IT into one framework, and has been updated to align with current best practices, e.g., ITIL V3 2011, TOGAF. • The new model can be used as a guide for adjusting as necessary the enterprise’s own process model (just like COBIT 4.1).
  • 15. Cont... • COBIT 5 introduces five new governance processes that have leveraged and improved COBIT 4.1, Val IT and Risk IT governance approaches. • This guidance: • Helps enterprises to further refine and strengthen executive management-level GEIT practices and activities • Supports GEIT integration with existing enterprise governance practices and is aligned with ISO/IEC 38500
  • 16. New and Modified Processes COBIT 5 has clarified management level processes and integrated COBIT 4.1, Val IT and Risk IT content into one process reference model
  • 17. Cont... • COBIT 5 processes now cover end-to-end business and IT activities, i.e., a full enterprise-level view. • This provides for a more holistic and complete coverage of practices reflecting the pervasive enterprisewide nature of IT use. • It makes the involvement, responsibilities and accountabilities of business stakeholders in the use of. IT more explicit and transparent.
  • 18. Inputs and Outputs • COBIT 5 provides inputs and outputs for every management practice, whereas COBIT 4.1 only provided these at the process level. • This provides additional detailed guidance for designing processes to include essential work products and to assist with interprocess integration.
  • 19. Process Capability Models and Assessments  COBIT 5 discontinues the COBIT 4.1, Val IT and Risk IT CMM- based capability maturity modelling approach.  COBIT 5 will be supported by a new process capability assessment approach based on ISO/IEC 15504, and the COBIT Assessment Programme has already been established for COBIT 4.1 as an alternative to the CMM approach.  The COBIT 4.1, Val IT and Risk IT CMM-based approaches are not considered compatible with the ISO/IEC 15504 approach because the methods use different attributes and measurement scales.
  • 20. Cont...  COBIT 4.1, Val IT and Risk IT users wishing to move to the new COBIT Assessment Programme approach will need to realign their previous ratings, adopt and learn the new method, and initiate a new set of assessments in order to gain the benefits of the new approach.  Although some of the information gathered from previous assessments may be reusable, care will be needed in migrating this information forward because there are significant differences in requireme
  • 21. Cont... • COBIT 4.1, Val IT and Risk IT users wishing to continue with the CMM-based approach, either as an interim or ongoing approach, can use the COBIT 5 guidance, but must use the COBIT 4.1 generic attribute table without the high-level maturity models.