Information and Technology Governance
Making the most of your information and technology resources
At PreterLex we believe that simple and uncomplicated is better
and this is where good, effective governance can help
Often we find that organisations share 2 types of problems -
applying common sense and utilising their technology and
information resources and assets to their best potential. Without
proper governance it is likely that you will have underperforming
processes and resources which can lead to increased risk. This risk
is increased though not meeting your compliance obligations,
greater dependency on changing technology and partner risks such as
outsourcing. Without governance these can expose your organisation
to:
- Reduced service levels
- Reputational damage
- Increased customer churn rates
- Civil litigation
- Criminal prosecution
What we do
PreterLex's Information and Technology Governance approach
identifies the key areas of compliance, policy management,
organisation and disclosure that protect the organisation's
technology and information assets. We achieve this through:
- Strategic review of existing governance processes
- Identifying and assessing your organisation's technology risk
profile
- Alignment with audit and risk management requirements
- Identifying and aligning your organisation's technology
and information governance requirements with
-
- Industry, technology, security and relevant standards
- Regulation, legislation, privacy and relevant compliance
obligations
- Integrating approved product, services and technology sets with
other areas of the business such as finance, procurement and
training
- Mapping internal standards and policies to external industry
frameworks
- Processes to ensure continuing compliance with the relevant
regulations, standards and architectures
- Continuous assessment of change
Our Governance Capability Lifecycle helps us understand your
organisation and provides a proven basis for establishing or
refining governance activities and resources. We use this not only
for information and technology governance but for other forms of
governance as well.
Preterlex has formalised a comprehensive approach to
establishing and delivering all aspects of governance through our
Governance Delivery
Method
Our Information and Technology Governance Capability
PreterLex ensures that technology governance promotes the use of
procedures that encourage control, visibility and effective
management of information technology and related areas to meet
internal and external obligations.
Our approach is flexible and encourages the introduction of
governance as a guiding capability that is content-friendly and can
be adopted across the organisation as required through:
- Assessment - understanding your organisation's technology
governance and what processes are in place
- Implementation - defining and implementing the necessary
process improvements
- Automation - implementing tools to automate the measurement and
control of all processes through workflow
- Standards and frameworks adherence
Standards and Frameworks Implementation and Adherence
PreterLex is involved in the development of COBIT5®
and TOGAF® and can bring a deep insight and experience
of implementation of these across many industry sectors.
We will work with your organisation to establish the correct
response and adherence to (amongst others) COBIT®,
TOGAF®, ISO2700x, ISO3100x, ISO38500, PCI DSS, SoX, ASX
and of course common sense.
Knowledge Share
The meaning of ingormation and technology governance - the
practice by which organisations are managed and controlled by:
- Ensuring a dynamic balance of power within the
organisation
- Monitoring a range of risk categories and supporting management
of these within agreed parameters
- Ensuring compliance with legal, regulatory and social
obligations
- Implementing practices to ensure accountability to a clearly
identified stakeholder community - both inside and outside the
organisation
A clearly defined approach, series of processes, cultural
orientation and set of owned responsibilities that ensures the
integrity and effectiveness of the organisation's systems. Strong
governance is particularly important when an organisation is
focused on:
Managing risks and constraints such as budget, market, product,
service, legal, political issues etc.
- Meeting regulatory requirements
- Outsourcing - before, during and after
- Lawsuit activity
- Project investment e.g. M&A and JVs
- Changing market and industry environment
- Introduction of new technology and products
Formal information and Technology Governance
New legislation and regulations means that technology governance
must be in place, has assigned accountable parties and be auditable
- hence the requirement for board level responsibility
To ensure that the client makes the best decision in a timely
manner to extract full value from their technology
investments, PreterLex will help you to:
- Create processes to continually review the organisation's
technology governance to determine strategic options
- Create and use of all necessary technology governance
collateral, processes and organisational structures
- Set up and optionally participate in Technology Governance
Steering Committee
- Identify your organisation's compliance obligation
requirements
- Evaluate benchmarking and baselining decisions against best
practice
Benefits
PreterLex has a commitment to ensuring that your governance is
properly established and effective
- Discipline - introduction of standard processes and
formalisation of governance activities
- Accountability and responsibility - correct organisational
structures and responses are defined and established
- Skills transfer - of best practice governance activities,
structures and operations Full implementation capabilities - from
concept to automation and organisational change
- Multidiscipline governance basis - the approach is flexible and
content-adaptive
- Proven experience - across a number of industry sectors and in
different governance areas