Title :
A Metrics Generation Model for Measuring the Control Objectives of Information Systems Audit
Author :
Nicho, Mathew ; Cusack, Brian
Author_Institution :
Auckland Univ. of Technol.
Abstract :
Information technology governance (ITG) which was a relatively new concept in the late 1990s, has gained importance in the 21st century due to factors namely the collapse of Enron Inc, and the need for a better reporting and financial disclosure system as requested by the US Securities and Exchange Commission chairman in 2001. Subsequent legislations namely the Sarbanes Oxley Act (SOX) in the United States and the Turnbull Guidance in the United Kingdom provided further impetus for the need for ITG. Other factors that prompt companies to give more importance to the management, control and measurement of information systems include the risk associated with information, the investments made by companies into the IT resource and the need to be competitive in the marketplace. All of these factors emphasize the requirement to measure the performance or effectiveness of information systems. The state of performance of various entities, events and process of information systems give a ´dashboard approach´ vision to management. In this paper a metrics generation model is proposed for generating metrics that can measure the key performance indicators and goals of the control objectives of CoBIT by applying the GQM model
Keywords :
DP management; auditing; information systems; software metrics; CoBIT; GQM model; control objective measures; dashboard approach; information systems audit; information technology governance; software metrics generation model; Code standards; Control systems; Information security; Information systems; Information technology; Management information systems; Resource management; Risk management; Software measurement; Standards development;
Conference_Titel :
System Sciences, 2007. HICSS 2007. 40th Annual Hawaii International Conference on
Conference_Location :
Waikoloa, HI
Electronic_ISBN :
1530-1605
DOI :
10.1109/HICSS.2007.21