• DocumentCode
    2895671
  • Title

    Quantifying Criticality of Dependability-Related IT Organization Processes in CobiT

  • Author

    Goldschmidt, Tobias ; Dittrich, Andreas ; Malek, Miroslaw

  • Author_Institution
    Inst. fur Inf., Humboldt-Univ. zu Berlin, Berlin, Germany
  • fYear
    2009
  • fDate
    16-18 Nov. 2009
  • Firstpage
    336
  • Lastpage
    341
  • Abstract
    With ever-growing complexity of computer and communication systems analytical methods do not scale, especially with respect to dependability assessment of information technology (IT) organization. Generic reference models can be used as an alternative to analytical approaches by focusing on transforming qualitative assessment into quantitative evaluation of IT organization. In this paper, we examine the reference models IT infrastructure library (ITIL) and the control objectives for information and related technology (CobiT) to derive a quantifiable concept for estimating the criticality of dependability-related IT organization processes in CobiT. After systematically analyzing ITIL processes and deriving properties that are relevant to dependability, those processes are mapped onto CobiT processes. Furthermore, we propose a process criticality index (PCI) which reflects the significance of each dependability-related process within a particular reference model. The PCI is based on the graph theory concept of betweenness centrality and uses a directed graph where nodes represent dependability-related processes and edges relations among them. Finally, using cycle and sequence analysis we are able to identify for every process which processes have to be implemented a priori. This provides an efficient strategy for implementing most significant processes first, according to the ranking based on the PCI.
  • Keywords
    digital libraries; directed graphs; organisational aspects; IT infrastructure library; computer-communication systems analytical methods; control objectives for information and related technology; dependability-related IT organization processes; directed graph; generic reference models; graph theory; information technology; process criticality index; qualitative assessment; Availability; Capability maturity model; Communication systems; Failure analysis; Graph theory; Information analysis; Information technology; Instruments; Libraries; Standards organizations; Availability; Dependability; IT Organization; Process Criticality; Reference Models;
  • fLanguage
    English
  • Publisher
    ieee
  • Conference_Titel
    Dependable Computing, 2009. PRDC '09. 15th IEEE Pacific Rim International Symposium on
  • Conference_Location
    Shanghai
  • Print_ISBN
    978-0-7695-3849-5
  • Type

    conf

  • DOI
    10.1109/PRDC.2009.60
  • Filename
    5368199