Risk Management: The Key Principles Of IT Value

Great Essays
The basic principles of IT value are the on-time and on budget delivery of appropriate quality, which achieves the benefits that were promised. In business terms, this is often translated into a competitive advantage but can be disadvantaged by risk. Taking ownership of risk and giving direction for managing risks is a fundamental aspect of successful governance initiative. Risk is further exaggerated when operating IT services in a multi-disciplinary open access environment such as higher education.

An absence of management responsibility and accountability for risk management policies can result in potentially serious risks being ignored. Furthermore misguided actions can result in costly investments being wasted or put in jeopardy. Ultimately
…show more content…
Auditors can provide initial momentum by highlighting to executive level management inadequate risk management practices or specific risks that are not being adequately addressed. Audit should also collate audits with key organisational risks and known areas of weakness, and provide independent assurance to management. Equally important is the ability to make sure that appropriate risk management plans are in place and are being followed in all key areas as well as providing improvement recommendations.
The following are the key principles of risk ownership:
• Allocate responsibility at a senior level for managing key risks.
• Ensure that every risk has an owner (there may be separate owners for the actions to mitigate the risks).
• Ensure anyone allocated ownership has the skills and authority to take on the responsibility and that they are aware that they are the designated
…show more content…
The practice of establishing service agreements is strongly recommended in any type of client-service provider or collaborative service relationship.
There is no doubt that effective use of SLA’s help to ensure that risks and delays are identified and managed as a routine part of everyday activities (Architecture Governance Group, 2008). Adoption of SLA’s will help to enable quick implementation of good procedures and avoid lengthy delays re-inventing wheels and agreeing approaches. The SLA’s have to be, however, consistent with the management framework and be appropriate for the departments involved. SLA effectiveness will depend on how they have been actually implemented and kept up to date with the changing needs of the Organisation.
It is often said that the SLA is a primarily contractual tool used to ensure a service provider can be “penalized” if performance requirements are not met. It is best practice to think of SLA’s more as a communication and behavioral guidance tool. When SLA’s are deployed effectively, they serve the goals of both customers and their service providers (and the lawyers from both

Related Documents

  • Improved Essays

    They just have to make sure implement a consistently system for example have a different costumers services line for preferred clients and make sure customers know that in order to have those additional benefits, they will have to meet some requirements. As well as empower employees at different level to be able to efficiently take decision and comply with customers’…

    • 719 Words
    • 3 Pages
    Improved Essays
  • Improved Essays

    Also, recommendations and conclusions on how these steps can be facilitated will be…

    • 441 Words
    • 2 Pages
    Improved Essays
  • Improved Essays

    Owing to the fact that PacifiCorp is a private firm that is why there is not enough information available to do a detailed valuaton of the company. However, the current ratio of the company is found to be more than 1 which shows a positive outlook. Current Ratio is a liquidity ratio and measures the ability of a firm to pay its Current (Short term) liabilities with its Current (Short term) assets. A ratio of greater than 1 would indicate availability of more current assets per unit of current liabilities. A ratio of less than 1 is considered to be risky as the firm will face problems meetings its short term obligations.…

    • 901 Words
    • 4 Pages
    Improved Essays
  • Improved Essays

    Wolftech Case Study

    • 1164 Words
    • 5 Pages

    a. Information Security Risk Assessment System for Wolftech The risk management is a process to identify risks within organization and to further manage the operations through putting up necessary controls in place. The further importance of risk assessment can be ascertained through fact that about 48% of the 283 companies have been victims of the computer crimes over 12 months’ period. In some other incident the internet worm affected the largest and complex network of computer in few hours.…

    • 1164 Words
    • 5 Pages
    Improved Essays
  • Improved Essays

    Identifying and managing risks is a critical responsibility of project managers. Risk is defined as the probability of a specified threat and the subsequent impact that the event produces (Vaidyanathan, 2013). Risks can also bring about either positive or negative outcomes for a project or organization. A project manager must identify potential risks and evaluate each one to determine the severity and likelihood of each event. Only by completing the risk management process, a project manager can determine what approach would work best to avoid, mitigate, and/or transfer the risk.…

    • 730 Words
    • 3 Pages
    Improved Essays
  • Improved Essays

    Furthermore, risk management is the act of forecasting and evaluating a certain situation and finding different ways to avoid and minimize the risks involved in getting the particular tasks done (Ryan, 2013). Leaders take risks, but they must first consider associated costs in order to determine if they can assume risks in a certain area and if taking those risks is advantageous. Risk management often requires careful consideration for personnel, equipment, and other resources because the goal is for individuals to achieve the most positive outcomes possible for the organization (Ryan,…

    • 970 Words
    • 4 Pages
    Improved Essays
  • Improved Essays

    Risk management is the process of identifying risk, assessing risk, and taking steps to reduce risk to an acceptable level. “Through risk management, the project changes from being in control of the project manager to the project manager being in control of the project” (Mulcahy, 2009). It is the portfolio managers’ responsibility to ensure projects align with an organization 's Objectives, Goals, Strategies and Measures (OSGM)…

    • 891 Words
    • 4 Pages
    Improved Essays
  • Great Essays

    In this paper I will discuss the pivotal role Risk Management plays in modern organisations. The organisation that I will discuss is Volkswagen. I will use their emission scandal to convey the importance of Risk management. Risk management can have numerous definitions, it can be perceived and interpreted by firms and industries in different ways. When dealing with the term management it is clear the concept of control is important.…

    • 1358 Words
    • 6 Pages
    Great Essays
  • Great Essays

    Meggitt Plc Case Study

    • 1498 Words
    • 6 Pages

    3.5. Risk Management Schmit and Roth (1990) assert that the basic concept that aims to reduce the negative effects of uncertainties with respect to losses is known as risk management. Redja (1998) defined risk management to be a purely systematic process that can be to identify and review the losses faced by an organisation or an individual. Moreover, this concept can also be used to recognize, choose and incorporate the best strategy to deal with such exposures. According to Bessis (2010), the risk management in general involves the recognition, scaling and the complete management of risk.…

    • 1498 Words
    • 6 Pages
    Great Essays
  • Great Essays

    Case Study: Vince Patton

    • 794 Words
    • 4 Pages

    Sometimes companies must go through a change. Vince Patton was the answer to RR Communications. His vision of a centralized system will deliver competitive products, value and a faster customer service experience. To achieve this goal Vince Patton fired the four divisional CIOs because they tried to sabotage the implementation. The DIOs believed that the centralized IT system would increase the bureaucracy and it would take away their powers.…

    • 794 Words
    • 4 Pages
    Great Essays
  • Improved Essays

    A good method of managing risk is by looking back at their past mistakes, evaluating them, correcting them, working on them and ensuring they don’t happen again. By doing so, they can avoid and mitigate potential pitfalls. In December 2006, the Boeing airplane was found to be much heavier than it was supposed to be as well as other technical problems which had caused a delay for it to enter service (Laurin, C. 2010). The company should consider possible events that could affect the project’s outcomes and then creating contingency plan. Boeing Commercial Airplanes should take up proactive attempts to foresee probable conditions that could prove adverse to the project and to plan to mitigate (find a solution which decreases the negative impact of the…

    • 862 Words
    • 4 Pages
    Improved Essays
  • Great Essays

    (Van Grembergen, 2004; Webb et al., 2006). Normally an IT strategy is compelled to focus on IT excellence and cost, in which does not translate into success by itself (Licker, 2007). Conversely, the benefits on IT and business can be achieved by involving an IT/Business strategy to the business and environmental imperatives (Weill and Ross, 2004). This approach of IT governance is studied as a practice, which in turn leads to superior IT, greater business value and enhance return on assets (Beimborn, 2009; Tallon et al.,…

    • 1684 Words
    • 7 Pages
    Great Essays
  • Improved Essays

    A). Risk management is the systematic approach of management policies, procedures and practices to the tasks of analyzing, evaluating, controlling, and monitoring risk. Risk Management is conducted throughout a medical device’s total product life cycle. The primary reason why a risk management should be done is because it is required by FDA, EU, and other countries laws and regulations. Product not complying with risk management requirements cannot be commercialized in certain countries that require it.…

    • 804 Words
    • 4 Pages
    Improved Essays
  • Improved Essays

    Introduction Purpose: This report will explain the definition of corporate governance and its importance. Describing the relationship to good internal control practices and explain the relationship of the two principles from ASX Corporate Governance Council’s Corporate Governance Principles and Recommendations from the components of internal control. Evaluating how efficient the corporate governance statement of the chosen company connects facts and details about its governance and internal control practices. I. Definition of Corporate Governance Corporate Governance is a set of policies, systems and methods which powerhouse is performed and regulated within the business.…

    • 752 Words
    • 4 Pages
    Improved Essays
  • Superior Essays

    Managing Business Risks

    • 1281 Words
    • 5 Pages

    With this abundance of risks, it is sometimes difficult to manage them. All of the risks that a business could possibly run into fall under two categories that are social risks and financial risks. Managing these two types of risks are very crucial in the survival of a business. If a business does not manage these risks, they will only pile up on each other never going away.…

    • 1281 Words
    • 5 Pages
    Superior Essays

Related Topics