• Embed Doc
  • Readcast
  • Collections
  • CommentGo Back
Download
 
COBIT
®
5:
The Framework 
Exposure Draft
 
COBIT 
 
5:
 
The
 
Framework 
 
Exposure
 
Draft 
 
ISACA
®
 
With
 
95,000
 
constituents
 
in
 
160
 
countries,
 
ISACA
 
(
www.isaca.org
)
 
is
 
a
 
leading
 
global
 
provider
 
of 
 
knowledge,
 
certifications,
 
community,
 
advocacy
 
and
 
education
 
on
 
information
 
systems
 
(IS)
 
assurance
 
and
 
security,
 
enterprise
 
governance
 
and
 
management
 
of 
 
IT,
 
and
 
IT
related
 
risk
 
and
 
compliance.
 
Founded
 
in
 
1969,
 
the
 
non
profit,
 
independent
 
ISACA
 
hosts
 
international
 
conferences,
 
publishes
 
the
 
ISACA®
 
 Journal 
,
 
and
 
develops
 
international
 
IS
 
auditing
 
and
 
control
 
standards,
 
which
 
help
 
its
 
constituents
 
ensure
 
trust
 
in,
 
and
 
value
 
from,
 
information
 
systems.
 
It
 
also
 
advances
 
and
 
attests
 
IT
 
skills
 
and
 
knowledge
 
through
 
the
 
globally
 
respected
 
Certified
 
Information
 
Systems
 
Auditor
®
 
(CISA®),
 
Certified
 
Information
 
Security
 
Manager®
 
(CISM®),
 
Certified
 
in
 
the
 
Governance
 
of 
 
Enterprise
 
IT®
 
(CGEIT®)
 
and
 
Certified
 
in
 
Risk
 
and
 
Information
 
Systems
 
Control™
 
(CRISC™)
 
designations.
 
ISACA
 
continually
 
updates
 
COBIT®,
 
which
 
helps
 
IT
 
professionals
 
and
 
enterprise
 
leaders
 
fulfil
 
their
 
IT
 
governance
 
and
 
management
 
responsibilities,
 
particularly
 
in
 
the
 
areas
 
of 
 
assurance,
 
security,
 
risk
 
and
 
control,
 
and
 
deliver
 
value
 
to
 
the
 
business.
 
Disclaimer
ISACA
 
has
 
designed
 
this
 
publication,
 
COBIT 
®
 
5:
 
The
 
Framework 
 
Exposure
 
Draft 
 
(the
 
‘Work’),
 
primarily
 
as
 
an
 
educational
 
resource
 
for
 
control
 
professionals.
 
ISACA
 
makes
 
no
 
claim
 
that
 
use
 
of 
 
any
 
of 
 
the
 
Work
 
will
 
assure
 
a
 
successful
 
outcome.
 
The
 
Work
 
should
 
not
 
be
 
considered
 
inclusive
 
of 
 
all
 
proper
 
information,
 
procedures
 
and
 
tests
 
or
 
exclusive
 
of 
 
other
 
information,
 
procedures
 
and
 
tests
 
that
 
are
 
reasonably
 
directed
 
to
 
obtaining
 
the
 
same
 
results.
 
In
 
determining
 
the
 
propriety
 
of 
 
any
 
specific
 
information,
 
procedure
 
or
 
test,
 
readers
 
should
 
apply
 
their
 
own
 
professional
 
 judgement
 
to
 
the
 
specific
 
control
 
circumstances
 
presented
 
by
 
the
 
particular
 
systems
 
or
 
information
 
technology
 
environment.
 
Reservation of Rights
©
 
2011
 
ISACA.
 
All
 
rights
 
reserved.
 
No
 
part
 
of 
 
this
 
publication
 
may
 
be
 
used,
 
copied,
 
reproduced,
 
modified,
 
distributed,
 
displayed,
 
stored
 
in
 
a
 
retrieval
 
system
 
or
 
transmitted
 
in
 
any
 
form
 
by
 
any
 
means
 
(electronic,
 
mechanical,
 
photocopying,
 
recording
 
or
 
otherwise)
 
without
 
the
 
prior
 
written
 
authorisation
 
of 
 
ISACA.
 
Reproduction
 
and
 
use
 
of 
 
all
 
or
 
portions
 
of 
 
this
 
publication
 
are
 
permitted
 
solely
 
for
 
academic,
 
internal
 
and
 
non
commercial
 
use
 
and
 
for
 
consulting/advisory
 
engagements
 
and
 
must
 
include
 
full
 
attribution
 
of 
 
the
 
material’s
 
source.
 
No
 
other
 
right
 
or
 
permission
 
is
 
granted
 
with
 
respect
 
to
 
this
 
work.
 
ISACA
 
3701
 
Algonquin
 
Road,
 
Suite
 
1010
 
Rolling
 
Meadows,
 
IL
 
60008
 
USA
 
Phone:
 
+1.847.253.1545
 
Fax:
 
+1.847.253.1443
 
E
mail:
 
info@isaca.org
 
Web
 
site:
 
www.isaca.org
 
COBIT 
®
5: The Framework Exposure Draft 
CRISC
 
is
 
a
 
trademark/service
 
mark
 
of 
 
ISACA.
 
The
 
mark
 
has
 
been
 
applied
 
for
 
or
 
registered
 
in
 
countries
 
throughout
 
the
 
world.
 
 
COBIT 
 
5:
 
The
 
Framework 
 
Exposure
 
Draft 
 
2
 
|
 
P a g e
 
©
 
A l l
 
r i g h t s
 
r e s e r v e d .
 
 Acknowledgements
 
ISACA
 
wishes
 
to
 
recognise:
 
COBIT
 
5
 
Task
 
Force
 
(2009
2011)
 
John
 
W.
 
Lainhart,
 
IV,
 
CISA,
 
CISM,
 
CGEIT,
 
IBM
 
Global
 
Consulting
 
Services,
 
USA,
 
Co
chair
 
Derek
 
J.
 
Oliver,
 
Ph.D.,
 
DBA,
 
CISA,
 
CISM,
 
CITP,
 
FBCS,
 
FISM,
 
MInstISP,
 
Ravenswood
 
Consultants
 
Ltd,
 
UK,
 
Co
chair
 
Pippa
 
G.
 
Andrews,
 
CISA,
 
ACA,
 
CIA,
 
KPMG,
 
Australia
 
Elisabeth
 
Antonsson,
 
CISM,
 
BSc,
 
BA,
 
Nordea
 
Bank,
 
Sweden
 
Steven
 
A.
 
Babb,
 
CGEIT,
 
KPMG,
 
UK
 
Steven
 
De
 
Haes,
 
Ph.D.,
 
University
 
of 
 
Antwerp
 
Management
 
School,
 
Belgium
 
Peter
 
Harrison,
 
CGEIT,
 
FCPA,
 
IBM
 
Australia
 
Ltd.,
 
Australia
 
Jimmy
 
Heschl,
 
CISA,
 
CISM,
 
CGEIT,
 
ITIL
 
Expert,
 
BWIN,
 
Austria
 
Robert
 
D.
 
Johnson,
 
CISA,
 
CISM,
 
CGEIT,
 
ING
 
US
 
Financial
 
Services,
 
USA
 
Erik
 
Pols,
 
CISA,
 
CISM,
 
Shell
 
International
ITCI,
 
Netherlands
 
Vernon
 
Poole,
 
CISM,
 
CGEIT,
 
Sapphire,
 
UK
 
Abdul
 
Rafeq,
 
CISA,
 
CGEIT,
 
CIA,
 
FCA,
 
A.
 
Rafeq
 
and
 
Associates,
 
India
 
Development
 
Team
 
Floris
 
Ampe,
 
CISA,
 
CGEIT,
 
CIA,
 
ISO27000,
 
PricewaterhouseCoopers,
 
Belgium
 
Gert
 
du
 
Preez,
 
CGEIT,
 
PricewaterhouseCoopers,
 
Canada
 
Stefanie
 
Grijp,
 
PricewaterhouseCoopers,
 
Belgium
 
Gary
 
Hardy,
 
CGEIT,
 
IT
 
Winners,
 
South
 
Africa
 
Bart
 
Peeters,
 
PricewaterhouseCoopers,
 
Belgium
 
Dirk
 
Steuperaert,
 
CISA,
 
CGEIT,
 
CRISC
 
IT
 
In
 
Balance
 
BVBA,
 
Belgium
 
Workshop
 
Participants
 
Gary
 
Baker,
 
CA,
 
Canada
 
Brian
 
Barnier,
 
USA
 
Johannes
 
Hendrik
 
Botha,
 
MBCS
CITP,
 
FSM,
 
getITright
 
Skills
 
Development,
 
South
 
Africa
 
Ken
 
Buechler,
 
PMP,
 
Great
 
West
 
Life,
 
Canada
 
Don
 
Caniglia,
 
FLMI,
 
USA
 
Mark
 
Chaplin,
 
UK
 
Roger
 
Debreceny,
 
Ph.D.,
 
CGEIT,
 
FCPA,
 
University
 
of 
 
Hawaii—Manoa,
 
USA
 
Mike
 
Donahue,
 
CISA,
 
CISM,
 
CGEIT,
 
CFE,
 
CGFM,
 
CICA,
 
Towson
 
University,
 
USA
 
Urs
 
Fischer,
 
CISA,
 
CRISC,
 
CIA,
 
CPA
 
(Swiss),
 
Switzerland
 
Bob
 
Frelinger,
 
CISA,
 
CGEIT,
 
Oracle
 
Corporation,
 
USA
 
James
 
Golden,
 
CISM,
 
CGEIT,
 
CISSP,
 
IBM,
 
USA
 
Meenu
 
Gupta,
 
CISA,
 
CISM,
 
CBP,
 
CISSP,
 
CIPP,
 
Mittal
 
Technologies,
 
USA
 
Gary
 
Langham,
 
CISSP,
 
CPFA,
 
Australia
 
Nicole
 
Lanza,
 
CGEIT,
 
IBM,
 
USA
 
Philip
 
Mark
 
Le
 
Grand,
 
Prince
 
2,
 
Datum
 
International
 
Plc,
 
UK
 
Debra
 
Malette,
 
CISA,
 
CGEIT,
 
CSSBB,
 
Kaiser
 
Permanente
 
IT,
 
USA
 
Stuart
 
MacGregor,
 
Real
 
IM
 
Solutions
 
(Pty)
 
Ltd.,
 
South
 
Africa
 
Christian
 
Nissen,
 
CISM,
 
CGEIT,
 
FSM,
 
CFN
 
People,
 
Denmark
 
Jamie
 
Pasfield,
 
ITIL
 
v3,
 
PRINCE2,
 
Pfizer,
 
UK
 
Eddy
 
Schuermans,
 
Esras,
 
Belgium
 
Michael
 
Semrau,
 
RWE
 
Germany,
 
Germany
 
Max
 
Shanahan,
 
FCPA,
 
Max
 
Shanahan
 
&
 
Associates,
 
Australia
 
Alan
 
Simmonds,
 
TOGAF9,
 
UK
 
Cathie
 
Skoog,
 
CISM,
 
CGEIT,
 
CRISC,
 
IBM,
 
USA
 
Dejan
 
Slokar,
 
CISA,
 
CGEIT,
 
CISSP,
 
Deloitte
 
LLP,
 
Canada
 
Roger
 
Southgate,
 
UK
 
Nicky
 
Tiesenga,
 
CISA,
 
CISM,
 
CGEIT,
 
IBM,
 
USA
 
Wim
 
Van
 
Grembergen,
 
Ph.D.,
 
University
 
of 
 
Antwerp
 
Mgmt
 
School,
 
Belgium
 
Greet
 
Volders,
 
CGEIT,
 
Voquals
 
N.V.,
 
Belgium
 
of 00

Leave a Comment

You must be to leave a comment.
Submit
Characters: ...
You must be to leave a comment.
Submit
Characters: ...