Governance System Principles Flashcards

S1 M5

1
Q

List the 6 principles for a governance system (“very healthy dietors do tyry everything”)

A

value
holistic
dynamic
distinct
tailored
end-to-end

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
2
Q

create value for the company’s stakeholders by balancing benefits, risks, & resources

A

value

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
3
Q

comprises diverse components where governance & management are not treated as isolated elements

A

holistic

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
4
Q

when a change in one governance system occurs, the impact on all others should be considered so that the system continues to meet the demands of the organization

A

dynamic

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
5
Q

management activities & governance systems should be clearly distinguished from each other

A

distinct

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
6
Q

governance systems should be customized to each company, using design factors to prioritize & tailor the system

A

tailored

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
7
Q
A
How well did you know this?
1
Not at all
2
3
4
5
Perfectly
8
Q

3 principles used to develop the COBIT 2019 core model

A

based on conceptual model
open & flexible
aligned to major standards

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
9
Q

1 domain of governance objectives

A

evaluate, direct, & monitor (EDM)

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
10
Q

those charged with governance evaluate strategic objectives, direct management to achieve those objectives, & monitor whether objectives are being met

A

evaluate, direct, & monitor (EDM)

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
11
Q

ensuring benefits delivery
governance framework setting
risk optimization
resource optimization
stakeholder engagement

A

evaluate, direct, & monitor (EDM)

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
12
Q

4 domains of management objectives

A

align, plan, & organize (APO)
build, acquire, & implement (BAI)
deliver, service, support (DSS)
monitor, evaluate, & assess (MEA)

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
13
Q

(domain) focuses on IT’s overall strategy, organization, & supporting activities

A

align, plan, & organize (APO)

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
14
Q

(domain) managed data
IT infrastructure & architecture
innovation
budgeting
human resources
vendors
quality
security
managing risk

A

align, plan, organize (APO)

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
15
Q

(domain) addresses the security, delivery, & support of IT services

A

deliver, service, & support (DSS)

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
16
Q

(domain) managed operations
service requests
managed problems
continuity
security services
business process controls

A

deliver, services, & support (DSS)

17
Q

(domain) addresses IT’s conformance to the company’s performance targets & control objectives along with external requirements

A

monitor, evaluate, & assess (MEA)

18
Q

(domain) managed performance & conformance monitoring
managed system of interla control
compliance with external requirements
managed assurance

A

monitor, evaluate, & assess (MEA)

19
Q

7 components of the governance system

A

process
organizational strucutures
principles, policies, & frameworks
information
Culture, ethics & competencies
services, infrastructure, & applications

20
Q

(component) set of activities or practices that produce outputs that help achieve overall IT goals

21
Q

(component) the decision-making entities within an organization

A

organizational strucutures

23
Q

(component) info needed for the governance system to function properly

A

information

24
Q

(component) influence the success of all management & governance activities

A

culture, ethics, & behavior

25
25
(component) needed so that sound decisions are made, corrective actions are taken when necessary, & critical objectives are completed
people, skills, & competencies
26
(component) tools required so that a well-designed governance system is in place for IT processing
services, infrastructure, & applications
27
(design factor) IT governance strategies generally include a primary secondary strategy
enterprise strategy
28
(design factor) goals support the strategy & are structured based on the balanced scorecard dimensions (financial, customer, internal, & growth)
enterprise goals
29
(design factor) addresses current risk exposure for the current organization & maps out which risks exceed the organization's risk appetite
risk profile
30
(design factor) common issues include regular IT audit findings of poor IT quality or control, insufficient resources, frustration between departments, hidden IT spending, problems with data quality, & noncompliance with applicable regulations
information & technology issues
31
(design factor) environment in which the company operates (normal or high)
threat landscape
32