Tabla de contenido
1. Resumen ejecutivo
2. Antecedentes
Drivers del negocio para el uso de las mejores prácticas de TI
Desafíos actuales
4. ¿Por qué las mejores prácticas son importantes para la empresa?
Las mejores prácticas y los estándares ayudan a posibilitar un gobierno eficaz de las actividades de TI.
Un marco de referencia de gestión de TI para apoyar a la empresa
Los beneficios para la empresa
5. COBIT, ITIL e ISO/IEC 27002: Lo que ofrecen y consideran
COBIT
ITIL
ISO/IEC 27002
6. ¿Cuál es la mejor forma de implementar COBIT, ITIL e ISO/IEC 27002?
Elaboración
Priorización
Planificación
Evitar obstáculos
Alinear las mejores prácticas
Apéndice I: Mapeo de ITIL v3 e ISO/IEC 27002 con los Objetivos de Control de COBIT 4.1
Apéndice II: Mapeo de los objetivos de control de COBIT 4.1 con ITIL V3
Apéndice III: Mapeo de los objetivos de control de COBIT 4.1 e ITIL V3 con ISO/IEC 27002.
Apéndice IV: COBIT y productos relacionados
Descarga del libro
Version en español (PDF, 130 pag)
This project was developed with the Office for Government Commerce (OGC) to update the very popular management briefing first produced in 2005. The briefing applies generally to all IT best practices but focuses on three specific practices and standards that are becoming widely adopted around the world. It has been updated to reflect the latest versions:
- ITIL V3—Published by the UK government to provide a best practice framework for IT service management
- COBIT 4.1—Published by ITGI and positioned as a high-level governance and control framework over IT processes
- ISO/IEC 27002:2005—Published by the International Organization for Standardization (ISO) and International Electrotechnical Commission (IEC) ato provide a framework of a standard for information security management
IT best practices need to be aligned to business requirements and integrated with one another and with internal procedures. COBIT can be used at the highest level, providing an overall governance and control framework based on an IT process model that should suit every organization generically. Specific practices and standards such as ITIL and ISO/IEC 27002 cover discrete areas and can be mapped to the COBIT framework, thus providing a hierarchy of guidance materials.
The briefing explains to business users and senior management the value of IT best practices and how harmonization, implementation and integration of best practices may be made easier.
The appendices provide mappings:- COBIT to sections of ITIL and ISO/IEC 27002
- ITIL key topics to COBIT
- ISO/IEC 27002 classifications to COBIT
Fuente: ISACA
No hay comentarios:
Publicar un comentario