IT Governance

March 12, 2018 | Author: genius_blue | Category: N/A
Share Embed Donate


Short Description

Download IT Governance...

Description

c IT GOVERNANCE : IT AUDIT ROLE ccccccccccccccc

Definisi IT Governance c c  c  c  c c c c    c c  c c  c c  c c c c  c   c c  !c c c  c c c   c   cc  c c c "c c c c c c   !c #c  c c c c c c c   c  c  c c c  c c c c   c c "c   c c c  c   c c c c !c $%c c c c c c c %c  c %c c c c c c &&c c "&c c c  ccc"%c  ccccc cc'c cc!c (c  c %c !c c )c  c ?   c %c  c c c c c c  c c c "&c c c c c  c c c  !c *c c c c +c )c"c  c ?   c%c  c "c c c c  c c c c c  cc c   c" cc  c  c %!c #c c ?   c c  %c  c c c c  c c c  c c"c %cc   !cc c c c c  c  c c c !c ?  c c c "&c c #&c #c c ,"c - c !c ? 

 c %c c c %c c c c  %c c c c c c c   c c     c c "c "c c   ccc c cc"c  !c cccc%cccccc % ccc cc   cc  cc  c c c   c %c  %!c *  c c c % c c c   c c   c "c  c c  c cc %c  c!c (c c c c c c c c c   c  cccc  ccccc  c   c"c c c   c c  !c,c

. c /  c

c c c c c %c c c "&c c c  ccc c å  c c c % c c c  c  c c"cccc0c c (c c % c c   c c c c 0c c c  cccc0c 1c cc   cc  c  cc "c cccc%ccc /!c ,ccccc c  c !c 1c c c c c c c    c c   c % c %c c   c c  c c c   c  !c

*!c åc c c c   c c  c "c c %c c c c c %c 2c c  c c c c   c  c c %c  c % c  cc c   c %c c   c c  c c !c (c %c c c c  c  c c c c %c c %c  c c c  c c   c cc!c

!c % c c c c   c c c c c c c c c    c c % c %c c    c c "c c c   3c c c %c%c c cc!c c c  %c c c  c c %c c c  cccccccccc"cc !c c   c c c c c c c c  %!c $%c -4c 5 c $-5  c $%c 5c 5 c $55  c $%c 6c 5 c $65  c $%c c 5 c $5  c c $%c %c 5 c $5 c "c %&c %c  c c c c  %cccccc% !cc c c c c c c % c c  c  c c   c  c c c c c c !c-c c c cc c%c   c   c c c c %cccc  !cc *c   c c c c c c  c c %&c c c c c   c c  c c c !c  c c c %c

c %c   c  c cc c   !c(c  c c c %cc%cc ccc %!c

est Practise for IT Governance c c c c %c c c c c    c c c $c !c c c  c c  c c   c c   c   c  %c c c c c c c "c c %c "c  c  %!c c c c  c c   c  c  c  c   c c& c"c cc ccccc  c  %!c #c c   c %c  %c c c ccc %ccc c ccc  c  ccc"c%c!cc #c c  c   c   c "c %c   c c "&c c  c c  c c c c " !c #c  c c c   cc  c c  c  c c  c  c  cc%c   cc ccc!ccc c %c c c  c c "!c # c c   c c c "&c%c  ccc c % c%c%ccc % c c%&c %ccc!c c

å c   c c c % c  c c %c c  c

c  c c  c %  c c c &!c  c c c % c %c  c  c c %c  c c  c   c %  c  c   c %c %c c c  c c

c  c c % c 

 

 

              cc   !c (c  ccc   c ccc cc  c  c c c c %c %c c c  c

 c    c %  c  c   c %c c  c c ccc  c  c c  cc cccc%cc  c  c %!c

åerangka IT Governance #&%cc%c%ccccc ´c Control Objectives for Information and related Technology (CoIT)c c %c c c  c ,c c c c cccc"cc c%&cc  c c   c c c c   c c   cc"&c c ccc c c c ccccc ´c % ISOIIEC 27001 (ISO 27001) Series of Standardsc %c c cccccc  ccc c%ccc !c ´c % IT Infrastructure Library (ITIL)c c %c  c 5c c c $c 5$ c c c c 6c ,"c c ( c c c c c "c c  c c ccc   c"cc c!c ´c % IT aseline Protection Catalogs, or IT-Grundschutz Catalogsc &c cc 7c c%cc c*c,c%ccc c c 6c 5c c (c c c %c 6(!c

#c  c c c  c c c c c %ccc!cc ´c % Information Security Management Maturity Model (ISM3)c %c   c  c(,cc!c ´c AS8015-2005c %c c 8 c c c c c  c c !c ´c ISOIIEC 38500:2008 Corporate Governance of Information Technologyc

c  c  c c 8() c /7 7c c c "c c c c c !c (5c 9c -$c *)7 c c c c c c c   c c %c c %c &"c %c  c c c c c %c c c c c   c!c(5-$c*)7 c%ccc  cc c  c c c c  %c &  cc %c c c c  !c

6 ccccccc%c 'c Strategic alignment c cc c%c  ccc 3c   c %c c  c   c c  c c  c ccc c %!c 'c Value deliveryc c %c c "c   c c %c  c  c  c %&c c c c c ""c %c  c   c c c c c cc c!c 'c Risk managementc c %c  c  c c "c  %c  c%cc" cc cc %c c%c c  c % c   c c  c c c

c  %c c c c "&c "c  c c c  !c 'c Resource managementc c %c c   c c  c c c c c  c c c c c  c c c c   c   c  c c !c   c c c c c%cc !c 'c Performance measurementc c "c cc  c c  c  c  c c c  c "c   c c c cc c  cc cc "%c c c c c c c "c c %!c

   

?  R c %&cc 7c%c c c c % c%ccccc /!c ?  Principles c c  c c c c c  cccc  !c !c ?  Drchitecture c c c %c c c c c cc  c%c%c  !c *!c ? ?nfrastructure cc" ccc cc c cc c c cccc c %c

!c usiness Dpplication 7!c ? †ailurec

IT AUDIT ROLE 8ccccc% c ccc c %c   !c 8c %c   c c c c c

 c c c %c c "c c c c c cc c cc!c (c cc c cc c  c c c cccc c  !c*c   c   c c  c c c c  c c c c ccccc !cc *ccccccccc  c ccc c  c cc c!c(cc% c  c c rc" c c cc" cc c%cc   ccc% !c c rc c c c  c c c  %c c c  cccc  !c c +c (c c c   c  c c c c   c c c cc%c!c c

8 ccccccccc c *""c c(cc c   c  c c"cc !c c *c "c "c c c %c   c   c  c c  cc c(!c c + c  c  c c  c   c  c c  c c c rcc  c c %c ccc(cccccccccccccccc ccccccccccccccccccccccccccccccccccccccccccccccccccccccccccccccccccccccccccccccccccccccccccccccccccccccccccccccccccccccccccccccccccccccccccccccccccccccccccccccccccccc

INFORMATION SYSTEM STRATEGY

c c

Perencanaan Strategis *c  c c c c (c %c c %c "c "c c  %c c c c c  cc c c   c   !c #c c c  c c c &c c c c % c  %c % c c %&c c  c  c c   c c  %c  c c "c  %!c ,"c c  c   c  c c c c

   c c c  c c c  c  c c %c c   c c c c ccc cc !c *c  cccccc c%c  %c c  c c c c   c c   c c   c c % c   c c c c c c c !c #c c c  c c c  c c c % c "c c %c c   c c c  !c #c c   c c  c c "c  c  c c  c   c c     c c c %c "c  c c c %c & c c  cc" c cccc%c c cc!cc *  c c  c c %c c % c  c c c  c c "c c c c %c c   ccccc%c  c c!cc  cc% c

c c %c  c  c c c c c c  cccc c  !c 8c (c % c c %c %c %c c c  c  c  c c c "c c !c #c c  c "c c c %c c  c c c c   c c  %c c   !c 8c (c % c  c c c  ccccc  !c8c(c% c %c c $5c c "c c c c c c %c c   !c åc c c c c c   c  c %&c c  c %&c c c c c c  cc c  !c

åomite Pengendalian (¢teering ommittee) ,"c  %c c "c c c c c cc& c c(c c !cåccc c c c c c  c c c c c  c%&cc(c  cc cc"c %!cåc c c c &c c "c  c "c c %c cc   ccc(!cc  c cc "&c c cc cc !c 8ccc% c%c" c cccc(!c (c c c c &&c c c  c c cc&%cc  !c

åc cc c c c&c"ccc c  c (c c c c c c c  c !c 6 c cccc c c ,"c c "c "c c c c c (c c  c%&cc  cc"cc %!c c ,"c c "c %c c  c c c c c c  cc "c%c&c !c c ,"c c & c c c c c c c c c ( c c  c "c c c   c c & c %c"c(!c c ,"c c "c c  c c c c c (c  c  c   c c    c c   c c c

 c c !c c ,"c c c c  c c c %c & c  c c!c c ,c  c %c c   c  !c    c c  cc"&!c c ,c c c  c c c c "c c c %c %!c c ,cc&c ccc(!c ::::::::::::::::::::::::::::::::::::::::::::::::::::::::::::::::::::: $cc"&ccc cc %c cc %ccc c"&cc cc ccc"&ccccc !c (c  %c % c  c c c c "c c"cccccc(c c cc

c  c c c c c %c c "&c c c  c c c !c c  %c "c c c c c c !c 8c (c c c  c c c c   cc !c

::::::::::::::::::::::::::::::::::::::::::::::::::::::::::::::::::::: åc c (c c c  c "c c c c c ( c c c c c c c c c c c  c c & c  c (c  %!c åc c & c "c c c c c  c c c % c c !crcc cccc(c ccc  ccc c!c c

c

POLICIES AND PROCEDURESc c å"c c  c c c c %c c "c c c c %c  c   c c c c c   c c  c !c

POLICIES c

  c c "c %c c c c c   c

 c  %c c   c c c c c "c c c c   c   !c ,"c % c c c  c %c c c c c "&c c   c  c   c c c c "c c"ccc%!c

c

,"c % c c %%c c c c

 c %&c &c %c %c "c  c c " c %c c "c c c %c  !c (c % c "cc"ccc%ccc  cccc "ccccc¢    c (5 !c c

(c "c  %c c c   c c  % c

%c  c c c   c % c   c c "c c  ccccc&cc cccccc  ccc !c c

(c c &c c c &c  c

c c   c c "c  c c "c !c ; c c   c c c  c c  c c  !c * % %c %c c c c c %c %c c "c "c c c  c c  c c % c c c c  c  !cc%cccc"c c c c "c c    c c c  !c *c c c c %c  c c c c c    cc  ccc"cc !c c

,"c % c &c c "c c !c c

cc% ccc& ccc(cc % c  c !c å"c c %c c  c "c  c %c c c c %c c c   c  cc cc cc   cc  c c  c c c !c å"c c  c % c c c "c   c c  c c (!c  c

"c % c c %c %c c c %c "c c c %c  c c c c   c c c "c   !c *c c % c %c c % c c ccc&ccc!c(c c c c c c c %c "c  c  c "c c c c %c c c "c c c c c %c %c % c  c c"c  !c c

(c c % c %c %&c "c c c c   c

c c "c %c "!c åc (c % c c c "c  %c c (c c % c c "c c c c  c %!c ; c "c "c c c %c c "c  c"cc% c cccc!c c

(c c "c % c c "%c c "c  c

c%ccc  c  cc" cc%cc "ccc  cc"c %!c

INFORMATION SECURITY POLICY c

(%c "c c      c  c c

c c %c c  c "c c c  !c (%c "c c c  c c c c %c %c c "c c  c c c c   c c   !c å"c c c %c c %c c c c  c c cc%c  !cå"cc% ccc ccc !c
View more...

Comments

Copyright ©2017 KUPDF Inc.
SUPPORT KUPDF