100% satisfaction guarantee Immediately available after payment Both online and in PDF No strings attached 4.2 TrustPilot
logo-home
Class notes

Enterprise Governance & Digital Transformation - Lectures summary

Rating
3.2
(5)
Sold
11
Pages
33
Uploaded on
15-10-2016
Written in
2016/2017

Summary of the lectures Enterprise Governance & Digital Transformation. Starting point is the lecture slides to which I added the notes I took during the lectures and some information from the required readings.

Institution
Course










Whoops! We can’t load your doc right now. Try again or contact support.

Written for

Institution
Study
Course

Document information

Uploaded on
October 15, 2016
Number of pages
33
Written in
2016/2017
Type
Class notes
Professor(s)
Unknown
Contains
All

Subjects

Content preview

Enterprise governance & Digital
transformation – Lectures
Lecture 1

Jerome Kerviel at Societe Generale
This man has cost French bank Societe Generale €4.9 billion in the biggest fraud in financial
history in 2008. €24.9 billion was actually equivalent to the market value of the bank!
He is accused of making fraudulent transactions involving European index futures that were
beyond his permitted trading limits, then creating false transactions to cover his tracks.

 There were a lot of holes within the IT governance framework.
 He used others’ username and passwords.
 They say that the senior management team share the responsibility.
 He didn’t have any limit in the transactions.
 If you manage the enterprise properly, this shouldn’t happen.

The French Finance Minister was investigating the case and wants to “understand why
control did not work… and recommend additional controls.’’
 Controls can be everything; people, processes, passwords, etc.

The government report indicated:
 Failure to set and monitor gross trading limits held by each trader; apparently,
Kerviel did not even have a defined gross exposure limit
 Breaches in the access control mechanisms: It is alleged that Kerviel sometimes used
the login and passwords of his colleagues to conduct factious trades
 Lack of independent confirmation of both external and (wrong) internal
counterparties to the trades that had been made
 Inadequate follow-up by management as and when alarms were raised, particularly
when one of the clearing houses alerted the bank about the unusual positions in
Kerviel’s book
 Failure to review all transactions executed by each trader.

Segregation of duty: separation of duty. In the banking/financial/transaction industry, the
person who can execute, approve, plan, etc. the transaction should be different people. If
one person covers all the roles, it’s easy to be fraudulent.

Concept of segregation:
 operating tasks
 approval tasks
 monitoring tasks
 auditing tasks




1

,Penalty: he had to pay up the € 4.9 billion and sentenced 3 years in prison. And he was
banned from the financial service industry.
 Immediately after, he was offered a job as IT consultant.

What is IT Governance?
 Definition: Aligning IT with the business objectives
 The role of IT in business: more about appraison
 CIO sitting in the board of directors: IT have equivalent say

IT Governance vs IT Management
IT Governance Institute makes a clear distinction between IT Governance and IT
Management.
 IT Management is more on the operational level; managing the daily activities.
Responsibility of the managers.
 IT Governance is more related to the risk management. In the responsibility of the
CIO and board of directors.

IT Governance
Governance ensures that stakeholder needs, conditions and options are evaluated to
determine balanced, agreed-on enterprise objectives to be achieved; setting direction
through prioritization and decision making; and monitoring performance and compliance
against agreed-on direction and objectives.

IT Management
Management plans, builds, runs and monitors activities in alignment with the direction set
by the governance body to achieve the enterprise objectives.

IT Governance concepts
 It’s not only about the rights, but also about responsibility.
 The CIO usually may or may not be included in the board of directors. It depends on
the type of organization.
 The IT auditor should be in the internal control department. They should be
independent. They need to be organized in the IT governance framework.

1. IT governance is “the framework for the leadership, organizational structures and
business processes, standards and compliance with these standards, which ensures
that the organization's information systems support and enable the achievement of
its strategies and objectives”.
2. IT governance is “specifying the decision rights and accountability framework to
encourage desirable behavior in using IT”

Governance Arrangement Matrix (EXAM question)
 Decisions: items of IT governance/concepts
 Archetype: the stereotype examples. Different stereotypes of models.

IT Governance concepts
 IT principles: clarifying the business role of IT


2

,  IT architecture: defining integration and standardization in a set of policies,
relationships and technical choices.
 IT infrastructure: determining shared and enabling services such as
telecommunication networks, servers, databases, intranet. But also human
infrastructure of knowledge, skills, standards and experience binds components.
 Business application needs: specifying the business need for purchased or internally
developed IT applications
 IT investment and prioritization: choosing which initiatives to fund and how much to
spend

Archetypes
 Business Monarchy: group of business executives or individual executives. Includes
committees of senior business executives (may include CIO). Excludes IT executives
acting independently.
 IT Monarchy: individuals or groups of IT executives. IT professionals make IT
decisions
 Feudal: business unit leaders, key process owners or their delegates. Business unit
takes the lead; they don’t care about others.
 Federal: c-level executives and business groups (for example business units or
processes); may also include IT executives as additional participants (depends on the
situation). Equivalent of the central and state governments working together. They
are not at all working isolated. They should ensure information can be communicated
across different units. So, others can be involved as well.
 IT Duopoly: IT executives and one other group. Means you have two dominating
parties. IT should have a role and the other party might come from the C-level or
business level.
 Anarchy: each individual user. Everybody can make a decision (so actually nobody
can make a decision). Already abandoned in most companies.

Key players in IT Governance archetypes




How enterprise actually governance IT (EXAM question)




3
$3.94
Get access to the full document:
Purchased by 11 students

100% satisfaction guarantee
Immediately available after payment
Both online and in PDF
No strings attached


Document also available in package deal

Reviews from verified buyers

Showing all 5 reviews
7 year ago

6 year ago

7 year ago

7 year ago

8 year ago

3.2

5 reviews

5
0
4
1
3
4
2
0
1
0
Trustworthy reviews on Stuvia

All reviews are made by real Stuvia users after verified purchases.

Get to know the seller

Seller avatar
Reputation scores are based on the amount of documents a seller has sold for a fee and the reviews they have received for those documents. There are three levels: Bronze, Silver and Gold. The better the reputation, the more your can rely on the quality of the sellers work.
annemiekvdb Tilburg University
Follow You need to be logged in order to follow users or courses
Sold
1249
Member since
12 year
Number of followers
834
Documents
14
Last sold
4 months ago

Graduated BSc Bedrijfseconomie (Business Administration), MSc Information Management and MSc Data Science at Tilburg University.

3.7

182 reviews

5
45
4
70
3
40
2
13
1
14

Recently viewed by you

Why students choose Stuvia

Created by fellow students, verified by reviews

Quality you can trust: written by students who passed their exams and reviewed by others who've used these notes.

Didn't get what you expected? Choose another document

No worries! You can immediately select a different document that better matches what you need.

Pay how you prefer, start learning right away

No subscription, no commitments. Pay the way you're used to via credit card or EFT and download your PDF document instantly.

Student with book image

“Bought, downloaded, and aced it. It really can be that simple.”

Alisha Student

Frequently asked questions