Preview

COBIT Case Study

Powerful Essays
Open Document
Open Document
3244 Words
Grammar
Grammar
Plagiarism
Plagiarism
Writing
Writing
Score
Score
COBIT Case Study
Q1. What are the key motivations of the banks to implement COBIT? Is there any similarity in motivations between these banks for COBIT implementation? Discuss.
Key motivations of banks to implement COBIT
There are many key motivations of Kuwait Turk Bank to implement COBIT. According to the Kuwait Turk bank case study, Kuwait Turk bank begin to use Control Objectives for Information and Related Technology (COBIT) to meet the rules and requirements made by the Banking Regulation and Supervision Agency of Turkey (BRSA). In May 2006, BRSA passed regulation demanding all banks in Turkey to adopt COBIT’s best practices when managing IT-related processes. Article 30 from the legislation required all banks to comply with auditing requirements based
…show more content…
Both banks decided to implement COBIT, the globally accepted set of good practices from the IT Governance Institute (ITGI) that can be used to ensure that their IT function is aiding them to accomplish their goals and objectives because COBIT is popular and internationally recognized and considered to be effective at controlling IT-related processes. They use COBIT because they want to align its department processes and principles with a common framework that is greatly flexible and adaptable, and has controls and processes in common with other industry frameworks. COBIT give detailed mapping with other frameworks including International Organization for Standardization (ISO) standards, The Open Group Architecture Framework (TOGAF) and the Project Management Body of Knowledge (PMBOK). There is no other framework except COBIT that give such detailed mapping with diverse, industry-accepted standards [1]. They use COBIT because COBIT helped in the processes creation with internationally accepted, auditable and measurable structures that incorporate the best practices in the banking industry …show more content…
Therefore, the board is well informed on the discoveries and makes decisions based on the IT audit division’s recommendations. In 2005, the chief auditor, who previously was the head of IT audit division, became a board member, giving IT an important presence in the meeting room. “This is a very big plus because many companies do not have any IT-savvy board members,” said Komitas Stepanyan, head of the IT audit division. “The lack of an IT presence affects many of their IT related decisions and makes it more difficult to manage IT

You May Also Find These Documents Helpful

  • Powerful Essays

    Sec's Rule 78j-1

    • 1369 Words
    • 6 Pages

    The financial reporting process needs oversight to function effectively. The audit committee is vital to that oversight process. While management is responsible for the daily operation of the company, the audit committee, in its oversight role, serves “as a check and balance on a company's financial reporting system” [SEC Release No. 33-8220 (4/25/2003)]. The audit committee helps to ensure that policies, procedures, and internal controls exist and are functioning properly within the risk parameters established. Duties encompass the independent review and oversight of the company's financial reporting processes, internal controls and independent auditors [SEC Release 33-8220].…

    • 1369 Words
    • 6 Pages
    Powerful Essays
  • Powerful Essays

    The structure of the board as well as the behaviour of the individual board members are fundamental aspects high-performing organisations and are crucial factors in delivering integrated governance. Whether the board is effective and the framework works in practise will be influenced by the organisational culture, ethos and behaviour of key individuals. The real challenge is not just to design appropriate processes to identify, evaluate, manage and control risk but to ensure that these are embedded into the culture of the organisation. The leadership from the Chair and CEO is essential to establish the right culture and requires them to “lead by example” to ensure that frontline staff understand their role and responsibilities and to carry them out properly and…

    • 3701 Words
    • 15 Pages
    Powerful Essays
  • Satisfactory Essays

    Unit I HW MBA5101

    • 521 Words
    • 2 Pages

    Boards of Directors have many roles and responsibilities, none of which should be taken lightly and all directly impact the success or failure of the company (Wheelen, 2010). Some of these…

    • 521 Words
    • 2 Pages
    Satisfactory Essays
  • Satisfactory Essays

    Unit 2 Lab

    • 330 Words
    • 1 Page

    COBIT is organized in four IT domains that are process oriented. Each domain interacts with the others and is focused on the organizations activities. The first domain, Plan and Organize, covers tactics and strategy, comparing its IT resources to the strategic vision of the organization. The second domain, Acquire and Implement, is where the organization purchases and implements new IT solutions. The third, Deliver and Support, uses these resources to deliver their data or services and ensures the IT services are supporting business requirements. The final domain, Monitor and Evaluate, is used to detect problems and implements controls to ensure the IT resources remain effective and efficient.…

    • 330 Words
    • 1 Page
    Satisfactory Essays
  • Better Essays

    Northern Rock Plc

    • 1975 Words
    • 8 Pages

    The board should also be review and monitor the external auditors work their appointments and re appointments, their remunerations, and more importantly the non audit services should be checked very closely.…

    • 1975 Words
    • 8 Pages
    Better Essays
  • Satisfactory Essays

    Binoy Study

    • 751 Words
    • 4 Pages

    with the goals (Pathak, 2005). 4.0 Changing Roles of the auditors The impact of information technology on Organisations audit processes, 2012 Page | 2…

    • 751 Words
    • 4 Pages
    Satisfactory Essays
  • Powerful Essays

    The development of auditing in the fast growth of technology, which directly contributes to information technology auditing, internal control standards and guidelines explained by Yang (2004). Technology, electronic data processing, and information system have altered the way organizations handle its business, endorsing operational efficiency and assist decision-making. American Institute of Certified Public Accountants (AICPA) and the Information Systems Audit and Control Association (ISACA), have provided standards to allow and deliver required guidance to auditors. In SAS No. 48, "the effects of computer processing on the examination of financial statements," explained and suggested auditors to consider the methods of computer data processing and other important factors such as planning and supervision, study and assessment of internal control, evidential matter, systematic review procedures, and requirements of the audit team. It also underlined the individual characteristics of information technology systems that should be measured by the auditor when directing the assessment process. In SAS No. 94 recognized the types of systems, controls and evidence auditors faced. The author…

    • 1346 Words
    • 6 Pages
    Powerful Essays
  • Powerful Essays

    Information technology system is a really important sector for banks. There are several benefits can get from bank as follows. Not only can it speed up operation, but increase reliability in bank industry as well. Also, information technology can reduce the cost significantly from world wide networking. These days, if a bank doesn’t have a sound information system, it might be hard to compete in this aggressive market; which means an information technology system becomes a necessary element in banking industry.…

    • 4308 Words
    • 18 Pages
    Powerful Essays
  • Good Essays

    Parmalat

    • 1003 Words
    • 5 Pages

    Based on this situation, suggest let the internal control responsible for administering authority and company board, when find big problems report to them at once. Auditors must be independent and have the corresponding knowledge, such some financial experts. Audit committee must pay more attention on evaluation enterprise risk assessment and care about CEO and CFO’s job investigation. Strict auditors’ rotated control is quite essential. Clear the function of an auditor. The auditor must responsible for merging accounting report forms.…

    • 1003 Words
    • 5 Pages
    Good Essays
  • Good Essays

    I.T Governance

    • 1128 Words
    • 5 Pages

    The article “IT Governance and Its Mechanisms” basically explains IT governance and the relationship of IT Governance with enterprise governance. IT governance basically refers to organisational and leadership structures, relationship and process mechanisms and how these aspects are used to ensure the organisation IT strategy supports and maintains the underlying business strategy of the organisation. To better understand IT governance the governance framework can be used. This framework contains processes, relationship mechanisms and supporting structures to help governance be attained in operation. It Terms of the Dentdel case study, many of the key principles such as key governance questions, structures and processes and maturity models can be used to aid solutions to the issues facing Dentdel. We will now discuss some of the ideas presented in the article in relation to Dentdel.…

    • 1128 Words
    • 5 Pages
    Good Essays
  • Satisfactory Essays

    Audit Committee reviews financial reports and controls with independent auditors, Vice President of Corporate Audit and Dells management the adequacy of Dell’s control on financial reporting which includes computerized information system controls and security.…

    • 295 Words
    • 2 Pages
    Satisfactory Essays
  • Good Essays

    Having a common governance framework can play a critical part in assisting board members to better comprehend their oversight roles. The framework should have parts that contribute to effective governance and contain tools that address the risks associated with governance risks. A framework will additionally give a more pertinent build to assessing how management’s obligations fit with the board’s oversight responsibilities. There are four attributes that help assess the board’s performance level and place the framework in action. Board members can use these attributes to help identify the strengths and opportunities for improvement within each of the governance elements. The first attribute is skills and knowledge. What skills are needed for…

    • 399 Words
    • 2 Pages
    Good Essays
  • Good Essays

    Itil Version 3 Paper

    • 11361 Words
    • 46 Pages

    • a means of delivering value to customer by a means of delivering value to customer by • facilitating outcomes customers want to achieve • without the ownership of specific costs and risks…

    • 11361 Words
    • 46 Pages
    Good Essays
  • Good Essays

    As of 2002, following the Sarbanes-Oxley Act, annual reports of internal controls is required by Securities Exchange Act. The report must state management’s responsibility for establishing and maintaining adequate internal control structure and procedures for financial reporting, as well as an assessment of the effectiveness of the internal control structure and procedures for financial reporting (Securities and Exchange Commission, 2008). Management is responsible for the security, accuracy, and reliability of the controls for management and reporting of company financial data. Control Objectives for Information Technology (COBIT) and Committee of Sponsoring Organizations (COSO) are two common types of frameworks of control that provide a structure to design information technology (IT) general and application controls. To comply with Sarbanes-Oxley organizations must identify and report areas where technology has a significant impact on the financial reporting process.…

    • 734 Words
    • 3 Pages
    Good Essays
  • Good Essays

    Week 2 Lab

    • 507 Words
    • 3 Pages

    5. True or False – COBIT P09 Risk Management controls objectives focus on assessment and management of IT risk.…

    • 507 Words
    • 3 Pages
    Good Essays