Tuesday 10 June 2008

Corporate governance and information technology

The International Organisation for Standardisation (ISO) has published a new standard: ISO/IEC 38500, Corporate Governance of Information Technology. According to the ISO, this new standard:
is applicable to organizations from all sizes, including public and private companies, government entities, and not-for-profit organizations. This standard provides a framework for effective governance of IT to assist those at the highest level of organizations to understand and fulfill their legal, regulatory, and ethical obligations in respect of their organizations’ use of IT. The framework comprises definitions, principles and a model. It sets out six principles for good corporate governance of IT that express preferred behavior to guide decision making: responsibility, strategy, acquisition, performance, conformance, human behavior".

For further information click here. A copy of the standard is not available to view free of charge.

No comments: