What are the eight principles for corporate governance outlined by the ASX Corporate Governance Council?
What are the three main objectives of IT governance?
The three main objectives of IT governance include:
Identify and briefly explain the drivers for developing COBIT 5.
What are the six principles that encapsulate the domain of IT governance, as outlined by Standards Australia?
List and briefly discuss at least four specific components of the control environment to be aware of, as mentioned in ASA 315.
1. The communication and policing of ethical behaviour in the organisation:
An organisation that does not strive to enforce proper conduct among its staff will face problems regardless of how well-designed the control system is.
2. Commitment to competence:
Refers to the awareness by management that different tasks and responsibilities in the organisation will have other pre-requisite skills and knowledge. As such, the organisation should have policies and procedures in place for gaining reasonable assurance that those within the organisation have the necessary skills and expertise to perform their jobs at a competent level.
3. Management philosophy and operating style:
This component looks at how management addresses the issues and risks that the organisation faces in its day-to-day activities. A sound control environment is one where managers are aware of the risks and are continually evaluating the extent of their potential impact on financial reporting, compliance with legislation and operating performance.
4. Organisational structure:
Refers to the way we design the organisation to facilitate the planning, execution, control and review of business activities.
5. Distribution of responsibility:
This section looks at how to distribute responsibility in the organisation, including who has the power to authorise, review and execute events, as well as the reporting and accountability relationships put in place to monitor them.
6. Recruitment policies:
It is concerned with the policies and procedures followed by the organisation in managing its people. It will include the processes for hiring staff, the mechanisms in place to monitor staff performance and the means in place for employee removal and dispute resolution.
Describe the merits and nature of audit committees.
Firms establish audit committees to monitor the organisation’s financial performance and as a point of liaison between the company and the internal and external auditors.
The audit committee consists of several company directors to represent the company’s shareholders.
An influential audit committee features four essential characteristics:
To reinforce audit committee independence, most of its members should be non-executive directors.
What is the relationship between corporate and IT governance?
IT governance is a subset of corporate governance.
Corporate governance is the way that organisations are managed and governed and includes the interests of all stakeholders, including shareholders, individuals, organisations and society at large.
Therefore, corporate governance concerns managing an organisation’s internal and external relationships.
IT governance, on the other hand, ensures that the use of IT is consistent with the organisational strategy.
Explain who the stakeholders are in corporate and IT governance and why.
The stakeholders in corporate governance and IT governance include shareholders, individuals, organisations and society.
Shareholders are significant stakeholders because they invest in the organisation.
Therefore, shareholders need to have timely, accurate and complete information to make investment decisions.
They also need to have confidence that corporate and IT governance is taken seriously by the Board.
Another key stakeholder is the individual (who may also be a shareholder), for example, an employee.
An employee may feel compromised if they are working in an environment that does not practice good corporate and IT governance.
A recent example is Volkswagen and the emissions scandal, which was allowed to flourish because of a lack of corporate governance.
Compromising the quality of the service or product impacts customers.
Furthermore, ethical values and customer service are essential for achieving competitive advantage.
Organisations and governments are stakeholders in corporate and IT governance.
Governments collect taxes and make regulations to protect other stakeholders and ensure an appropriate competitive environment.
Suppliers and partners rely on organisations for providing services and products.
Since creditors, such as banks, provide credit, they are exposed if corporate and IT governance is insufficient.
Other stakeholders, including the community or society, rely on organisations for jobs and contributions to the community, such as providing grants to worthy causes or volunteering.
What are some current technology trends and why is it important for an organisation to understand trends?
Technology trends include robotics, driverless cars, internet of things, cloud-based computing, big data and data analytics, 3D printing, and wearable devices.
The trend is moving towards more ethical use of technology and mobility.
Management needs to follow trends to incorporate new technologies and provide a competitive advantage.
Successfully deploying new technologies requires a structured framework, such as COBIT 5, to ensure meeting organisational goals and objectives.
Describe the importance of managing financial risks, including the possible consequences to an organisation.
Risks could lead to unreliable financial reporting through material misstatement on financial reports.
Potential threats could include data entry errors or the loss of a significant customer.
Other risks may impact on the operation of business processes and procedures and the organisation’s ability to achieve its objectives.
There are four COSO principles relating to risk assessment: