Enterprise Governance of I&T (EGIT)
Enterprise Governance is a system to direct and control entities. EGIT also focuses on the structure and processes in the enterprise for decision making, accountability and control. It involves directing and control of the information and technological (I&T) infrastructure of the organization.
Ineffective or weak governance in organizations is usually due to wrong strategic decision making or a culture of no accountability. This results in lack of compliance, substandard processes and security controls because of which it ultimately leads to endangering the very existence of the enterprise.
Organizations are realizing the need for implementing EGIT due to increased usage and reliance of I&T infrastructure.
EGIT is different from enterprise I&T management, as governance decides who makes the decisions, and management is tasked with directing and implementing the decisions.
According to the IT Governance Institute (ITGI), the governance of IT is concerned with 2 goals:
- The mitigation of I&T risk.
- I&T’s delivery of value to the business
Both of the above goals are influenced by alignment of I&T with the business and IT accountability to the enterprise.
According to COBIT 2019, the enterprise I&T governance have five goals with two being outcomes and rest being focus areas or drivers, as
- Strategic alignment
- Performance management
- Resource management (which encompasses them all)
COBIT 2019 provides guidance for implementing governance and management of I&T infrastructure.
COBIT 2019 Objectives
The objectives are grouped as management and governance objectives.