Control Objectives for Information and related Technology (COBIT) is a framework that can be used as a control tool in an IT environment. It provides managers, auditors and IT users with generally accepted measures, processors and indicators that can be used as best practices in for controlling purposes.
COBIT was first released in 1996 with the motto “to research, develop, publicize and promote an authoritative, up-to-date, international set of generally accepted information technology control objectives for day-to-day use by business managers and auditors.” This framework provides managers, auditors and users an understanding about level of security and controls that should be implemented in order to protect company assets though an IT governance model.
The complete COBIT package is a set consisting of six publications:
- Executive Summary
- Framework
- Control Objectives
- IT Assurance Guide (formerly Audit Guidelines)
- Implementation Tool Set
- Management Guidelines
COBIT covers four domains:
- Plan and Organize
- Acquire and Implement
- Deliver and Support
- Monitor and Evaluate
No comments:
Post a Comment