cobit itil and iso 27001 mapping

1
Strategy Generation IT Financial Management Service Portfolio Management Demand Management Service Catalogue Management Service Level Management Availability Management Capacity Management IT Service Continuity Management Information Security Management Supplier Management Transition Planning & Support Change Management Service Asset & Configuration Management Release & Deployment Management Service Validation & Testing Evaluation Knowledge Management Incident Management Event Management Request Fulfilment Problem Management Access Management Service Reporting Service Measurement & Control Return on Investment on CSI PO Plan & Organise PO1 Define a Strategic IT Plan x x PO2 Define the Information Architecture x x x x x PO3 Determine Technological Direction x x x x PO4 Define the IT Processes, Organisation and Relationships x x x x x x x x x x x x x PO5 Manage the IT Investment x x x PO6 Communicate Management Aims and Direction x x x x x PO7 Manage IT Human Resources x PO8 Manage Quality x x x x x x x x x x x x x x x x x x x x x x PO9 Assess and Manage IT Risks x x x x x x x x x x x x x x x PO10 Manage Projects x x x x x AI Acquire & Implement AI1 Identify Automated Solutions x x x x AI2 Acquire and Maintain Application Software x x AI3 Acquire and Maintain Technology Infrastructure x x x x AI4 Enable Operation and Use x x x x x AI5 Procure IT Resources x x AI6 Manage Changes x x x AI7 Install and Accredit Solutions and Changes x x x x DS Deliver & Support DS1 Define and Manage Service Levels x x x DS2 Manage Third-Party Services x x DS3 Manage Performance and Capacity x x DS4 Ensure Continuous Service x DS5 Ensure Systems Security x DS6 Identify and Allocate Costs x DS7 Educate and Train Users x x DS8 Manage Service Desk and Incidents x x DS9 Manage the Configuration x DS10 Manage Problems x DS11 Manage Data x DS12 Manage Physical Environment x x x DS13 Manage Operations x x x x ME Monitor and Evaluate ME1 Monitor and Evaluate IT Performance x x x x x x x x x x x x ME2 Monitor and Evaluate Internal Control x x x x x x x x ME3 Ensure Regulatory Compliance x x x x x x ME4 Provide IT Governance x x x x x x x x x x x x COBIT 4th & ITIL v3 Mapping Service Operation Continual Service Improvement Service Design Service Transition Service Strategy 1

Upload: muhammad-aslam

Post on 09-Aug-2015

62 views

Category:

Technology


18 download

TRANSCRIPT

Page 1: Cobit itil and iso 27001 mapping

Str

ateg

y G

ener

atio

n

IT F

inan

cial

Man

agem

ent

Ser

vic

e P

ort

foli

o M

anag

emen

t

Dem

and

Man

agem

ent

Ser

vic

e C

atal

ogue

Man

agem

ent

Ser

vic

e L

evel

Man

agem

ent

Av

aila

bil

ity

Man

agem

ent

Cap

acit

y M

anag

emen

t

IT S

erv

ice

Con

tin

uit

y M

anag

emen

t

Info

rmat

ion

Sec

uri

ty M

anag

emen

t

Suppli

er M

anag

emen

t

Tra

nsi

tio

n P

lan

nin

g &

Su

pp

ort

Chan

ge

Man

agem

ent

Ser

vic

e A

sset

& C

onfi

gura

tion M

anag

emen

t

Rel

ease

& D

eplo

ym

ent

Man

agem

ent

Ser

vic

e V

alid

atio

n &

Tes

ting

Ev

alu

atio

n

Kn

ow

led

ge

Man

agem

ent

Inci

den

t M

anag

emen

t

Ev

ent

Man

agem

ent

Req

ues

t F

ulf

ilm

ent

Pro

ble

m M

anag

emen

t

Acc

ess

Man

agem

ent

Ser

vic

e R

eport

ing

Ser

vic

e M

easu

rem

ent

& C

ontr

ol

Ret

urn

on

Inves

tmen

t on C

SI

PO Plan & Organise

PO1 Define a Strategic IT Plan x x

PO2 Define the Information Architecture x x x x x

PO3 Determine Technological Direction x x x x

PO4 Define the IT Processes, Organisation and Relationships x x x x x x x x x x x x x

PO5 Manage the IT Investment x x x

PO6 Communicate Management Aims and Direction x x x x x

PO7 Manage IT Human Resources x

PO8 Manage Quality x x x x x x x x x x x x x x x x x x x x x x

PO9 Assess and Manage IT Risks x x x x x x x x x x x x x x x

PO10 Manage Projects x x x x x

AI Acquire & Implement

AI1 Identify Automated Solutions x x x x

AI2 Acquire and Maintain Application Software x x

AI3 Acquire and Maintain Technology Infrastructure x x x x

AI4 Enable Operation and Use x x x x x

AI5 Procure IT Resources x x

AI6 Manage Changes x x x

AI7 Install and Accredit Solutions and Changes x x x x

DS Deliver & Support

DS1 Define and Manage Service Levels x x x

DS2 Manage Third-Party Services x x

DS3 Manage Performance and Capacity x x

DS4 Ensure Continuous Service x

DS5 Ensure Systems Security x

DS6 Identify and Allocate Costs x

DS7 Educate and Train Users x x

DS8 Manage Service Desk and Incidents x x

DS9 Manage the Configuration x

DS10 Manage Problems x

DS11 Manage Data x

DS12 Manage Physical Environment x x x

DS13 Manage Operations x x x x

ME Monitor and Evaluate

ME1 Monitor and Evaluate IT Performance x x x x x x x x x x x x

ME2 Monitor and Evaluate Internal Control x x x x x x x x

ME3 Ensure Regulatory Compliance x x x x x x

ME4 Provide IT Governance x x x x x x x x x x x x

COBIT 4th & ITIL v3 Mapping Service

Operation

Continual

Service

Improvement

Service

Design

Service

Transition

Service

Strategy

1