“IT Governance Frameworks: ITIL and CobiT - Overhead or Strategic Weapon?”
Hello to All-
I am getting ready to present the following topic in NYC to Senior IT management in the financial vertical space. I thought it might be of interest to some out there.
The talk is entitled, “IT Governance Frameworks: ITILĀ® and CobiTĀ®
Overhead or Strategic Weapon?
I have only 10 minutes to make an executive level presentation–so it stays high level.
Slide 1 deals with the root issue for most IT transformation activities--IT operating in technical silos rather than as one enterprise. And often not realizing it due to the still mostly technical rather than process view of the world in IT.
Slide 2: Heightened Interest in Process Frameworks
(business drivers)
Sarbanes Oxley / Compliance
Alignment With Business
Service Quality & Accuracy
Efficiency / Cost Reduction
Agility
Risk Reduction
Business Continuity / Disaster Recovery for Data Centers
Slide 3: What is ITIL?
ITIL (IT Infrastructure Library) is an integrated set of best practices (processes) for enterprise delivery of IT?s products & services
Service Support? 5 Mgmt. Disciplines
Incident, Problem, Configuration, Change, and Release
Service Delivery?5 Mgmt. Disciplines
Service Level, Financial, Capacity, Service Continuity, AvailabilitySlide 4: ITIL Pros and Cons
Strengths
De facto standard, comprehensive, independent, large body of knowledge, educational support, common language
Shortcomings
Not prescriptive, not the goal, ?grand design? trap, no value measurement, meets organizational resistance
Business Values
Align with business, policy compliance, risk reduction, service quality, agility, accountability, better business continuity / disaster recovery, efficiency
Key Challenge: How to get the business value?
Slide 5: What is CobiT?
CobiT (Control Objectives for Information and Related Technologies) is a comprehensive model for enterprise control of the IT environment / IT Governance.
Generally accepted as de facto guidance for Sarbanes 404 compliance
4 Domains
Planning & Organization
Acquisition and Implementation
Delivery and Support
Monitoring
32 Processes
Over 300 detailed control objectives for processes
Slide 6: CobiT Pros & Cons
Strengths
De facto standard, comprehensive, independent, evolving, large body of knowledge, educational support, common language, maturity model, good fit with ITIL
Shortcomings
Not fully prescriptive, very broad, ?grand design? trap, no value measurement, meets change resistance, unclear governance ownership
Business Values
compliance, corporate risk reduction, accountability, use in base-lining control maturity
Key Challenges: Scope and order of application, business value, i.e., how to make other than an overhead burden?
Slide 9 is a picture. It shows CMMi–ITIL–CobiT as a effective process framework over the components of IT–Applications, Infrastructure, and DataCenter. They combine logically to form most of end to end guidance, with little overlap.
Slide 10 tells a Business Story around enterprise process.
Challenge: How to meet Sarbanes Oxley 404 compliance AND improve operational effectiveness?
Approach:
Create a base level framework of ITIL & COBIT components
Engineer in compliance at start of work ?use ITIL Change Mgmt.
Update policy, work processes, imbed in technology
Drive adoption via web and policy
Results:
Automated 404 compliance for IT
Reduced change processing time by 30%
Improved accuracy & reduced risk (system abends fell by 90%)
Became proactive–emergency changes dropped from majority of changes to <10%
I welcome any thoughts you may have–if the Powerpoint may be of any use to you, feel free to drop me a line and I will send you a copy.
Cheers-
Don Casson
UPDATED:
You can now download the presentation from evergreensys.com
—–








