CobiT definition:
IT resources, including people, hardware, software and services, need to be procured. This requires the definition and enforcement of procurement procedures, the selection of vendors, the setup of contractual arrangements, and the acquisition itself. Doing so ensures that the organisation has all required IT resources in a timely and cost-effective manner.
Control over the IT process of
Procure IT resources
that satisfies the business requirement for IT of
improving IT’s cost-efficiency and its contribution to business profitability
by focusing on
acquiring and maintaining IT skills that respond to the delivery strategy, an integrated and standardised IT infrastructure, and reducing IT procurement risk
is achieved by
- Obtaining professional legal and contractual advice
- Defining procurement procedures and standards
- Procuring requested hardware, software and services in line with defined procedures
and is measured by
- Number of disputes related to procurement contracts
- Amount of reduction of the purchasing cost
- Percent of key stakeholders satisfied with suppliers
Control objectives:
AI5 Procure IT Resources
AI5.1 Procurement Control
AI5.2 Supplier Contract Management
AI5.3 Supplier Selection
AI5.4 IT Resources Acquisition
Check out the links for details on the control objectives.
No related posts.