IT Administra-ve Controls Week 3 Organizing an IT Func-on What - - PowerPoint PPT Presentation

it administra ve controls
SMART_READER_LITE
LIVE PREVIEW

IT Administra-ve Controls Week 3 Organizing an IT Func-on What - - PowerPoint PPT Presentation

IT Administra-ve Controls Week 3 Organizing an IT Func-on What func-ons are Opera-ons cri-cal to an IT Applica-on development organiza-on? Architecture Program management Security Compliance/quality Finance


slide-1
SLIDE 1

IT Administra-ve Controls

Week 3

slide-2
SLIDE 2

Organizing an IT Func-on

  • What func-ons are

cri-cal to an IT

  • rganiza-on?
  • Opera-ons
  • Applica-on development
  • Architecture
  • Program management
  • Security
  • Compliance/quality
  • Finance
  • Rela-onship

management

slide-3
SLIDE 3

Why Have IT Administra-on Controls?

  • Enable the company’s IT applica-ons and data

to meet business needs

  • Reliable deployment of the company’s IT

infrastructure

  • Protect the above, assuring integrity and

reliability

slide-4
SLIDE 4

Fundamental Administra-ve Controls

  • IT standards, policies and procedures
  • IT budget
  • IT asset controls
  • IT personnel management controls
  • IT purchasing controls
  • IT office administra-on controls
  • Monitoring and review controls
  • IT administra-on performance measures
slide-5
SLIDE 5

IT Budgets

  • Top down vs. boPom up
  • Forecast vs. actual

– Rolling forecast updates

  • Capitalize vs. expense
slide-6
SLIDE 6

IT Personnel Controls

  • Screening
  • Employment contracts and job descrip-ons
  • Supervision
  • Segrega-on of du-es
  • Rota-on of du-es
  • Vaca-on
  • Professional code adop-on
slide-7
SLIDE 7

Example of an IT Org Chart

CIO App Dev New Apps App Maintenance DBA Informa-on Security Computer Opera-ons IT Infrastructure Management Help Desk Data Processing

ISACA Journal, Volume 6, 2012

slide-8
SLIDE 8

Segrega-on of Du-es

  • What is segrega-on of du-es and why is it

important?

  • Why is the import to segregate du-es between:

– IT and user departments – DBA’s and the rest of IT – Applica-on Development and Applica-on Maintenance – Applica-on Development and DBA’s and IT Opera-ons – Security and the rest of IT