Publication Cover
EDPACS
The EDP Audit, Control, and Security Newsletter
Volume 39, 2009 - Issue 2-3
214
Views
2
CrossRef citations to date
0
Altmetric
Original Articles

Painless: A Model for IT Governance Assessment in the UK Public Sector

Pages 1-25 | Published online: 27 Apr 2009

References

  • AS8015. The Australian Standard for Corporate Governance of IT. http://www.acs.org.au/governance (Accessed: 3 February 2009 ).
  • Broadbent , M. . CIO futures—Lead with effective governance . ICA 36th Conference . Singapore.
  • Brown , A. and Grant , G. 2005 . Framing the frameworks: A review of IT governance research . Communication of the AIS , 15 : 696 – 712 .
  • Cadbury (1992). Report of the Committee on the Financial Aspects of Corporate Governance. Available from the Institute of Internal Auditors. http://www.iia. org.uk/cms/iia/uploads/ 2c9103-ea9f7e9fbe--7e3a/cadbury.pdf (Accessed: 3 February 2009 ).
  • Calder , A. . Governance and IT security . Logicalis Conference, November .
  • Calder , A. 2005a . IT governance guidelines for directors , Cambridge, , UK : IT Governance Publishing .
  • Calder , A. 2005b . IT governance today, a practitioner's handbook , Cambridge, , UK : IT Governance Publishing . Version 1.2
  • Croteau , A. and Bergeron , F. 2001 . An information technology trilogy: Business strategy, technological deployment and organizational performance . Journal of Strategic Information Systems , 10 : 77 – 99 .
  • Deloitte (2005). Are you sitting comfortably? 2005 IT governance survey findings. http://www.deloitte.com (Accessed: 3 February 2009 ).
  • DTI (2004). Information security breaches survey. Department of Trade and Industry. http://www.pwc.com (Accessed: 3 February 2009 ).
  • DTI (2006). Information security breaches survey. Department of Trade and Industry. http://www.pwc.com (Accessed: 3 February 2009 ).
  • Duffy, J. (2002). IT/Business alignment: Is it an option or is it mandatory? IDC Report No. 26831. http://archive.bita-centre.com (Accessed: 3 February 2009 ).
  • Earl , M. J. 1993 . Experiences in strategic information systems planning . MIS Quarterly , 17 ( 1 ) : 1 – 24 .
  • Ernst and Young (2006). 9th annual global information security survey. http://www.ey.com/global/contentnsf/international/assurance&advisory (Accessed: 3 February 2009 ).
  • Exler, R. (2004). IT governance frameworks. The Robert Francis Group.
  • Furnell , S. and Clarke , N. 2005 . Organisational security culture: Embedding security awareness, education and training , UK : Network Research Group, School of Computing, Communications and Electronics, University of Plymouth .
  • Gartner (2001). MeasureIT. Special edition 2001: Capability maturity model. http://www.gartner.com (Accessed: 3 February 2009 ).
  • Guldentrops , E. . IT governance: Part and parcel of corporate governance . CIO Summit, European Financial Management & Marketing Conference, Brussels .
  • HM Treasury (2006). An analysis of reported fraud in government departments 2006. http://www.hm-treasury. gov.uk (Accessed: 3 February 2009 ).
  • ITGI (2001). Board briefing on IT governance, IT Governance Institute. http://www. ITgovernance.org (Accessed: 3 February 2009 ).
  • ITGI (2003). IT Governance Institute board briefing on IT governance, 2nd ed. http://www.ITgovernance.org (Accessed: 3 February 2009 ).
  • ITGI (2005a). Information risks—Whose business are they? IT Governance Institute. http://www.itgi.org/template (Accessed: 3 February 2009 ).
  • ITGI (2005b). Information security governance—Top actions for security managers. IT Governance Institute http://www.itgi.org (Accessed: 3 February 2009 ).
  • Jiang , J. , Klein , G. , Hwang , H. , Huant , J. and Hung , S. 2004 . An exploration of the relationship between software development process maturity and project performance . Information and Management , 41 : 279 – 288 .
  • Kaplan , R. S. and Norton , D. P. 1992 . The balanced scorecard: Measures that drive performance . Harvard Business Review (January–February) , : 71 – 80 .
  • Kingsford , R. , Dunn , L. and Cooper , J. . Information systems, IT governance and organisational culture . 14th Australasian Conference on Information Systems Perth . Western Australia.
  • Koch, C. (2002). The powers that should be—Governance. http://www.cio.com/archive/091502/powers. html?printversion=yes (Accessed: 3 February 2009 ).
  • Korac , N. and Kakabadse , A. 2001 . IS/IT governance: Need for an integrated model . Corporate Governance , 1 ( 4 ) : 9 – 11 .
  • Lee , R. . KPMG presentation on auditing IT performance . Institute of Internal Auditors South West District Society Meeting . February 7, 2007.
  • Linberg , K. R. 1999 . Software development perceptions about software project failure: A case . The Journal of Systems and Software , 49 ( 12 ) : 177 – 192 .
  • McGinnis , S. K. , Pumphrey , L. K. , Trimmer , K. and Wiggins , C. . Sustaining and extending organizational strategy via information technology governance . Proceedings of the 37th Hawaii International Conference on System Sciences . Big Island. Hawaii .
  • Mitchell, J. (2004). IT governance, added value or added cost. Institute of Internal Auditors UK and Ireland online article. http://www.iia.org.uk/knowledgecentre/itaudit/management&standards (Accessed: 3 February 2009 ).
  • OECD (1999). OECD principles of corporate governance. Organisation for Economic Co-operation and Development website http://www.oecd.org
  • OECD (2004). OECD Principles of Corporate Governance. Organisation for Economic Co-operation and Development Web site http://www.oecd.org (Accessed: 3 February 2009 ).
  • Patel , N. V. 2002 . Emergent forms of IT governance to support global e-business models . JITTA: Journal of Information Technology Theory and Application , 4 ( 2 ) : 33 – 48 .
  • PWC (2006). PriceWaterhouseCoopers, The PWC global governance status report 2006. http://www.pwc.com (Accessed: 3 February 2009 ).
  • Rezaee , Z. and Reinstein , A. 1998 . The impact of emerging information technology on auditing . Managerial Auditing Journal , 13 ( 8 ) : 465 – 471 .
  • Ross , J. and Weill , P. 2004 . Recipes for good governance . CIO: Australia's Magazine for Information Executives , December 7
  • Sabherwal , R. and Chan , Y. E. 2001 . Alignment between business and IS strategies: A study of prospectors, analyzers, and defenders . Information Systems Research , 12 : 11 – 33 .
  • Sambamurthy , V. and Zmud , R. W. 1999 . Arrangements for information technology governance: A theory of multiple contingencies . MIS Quarterly , 23 ( 2 ) : 261 – 290 .
  • Segers , A. H. and Grover , V. 1996 . Designing company wide information systems: Risk factors and coping strategies . Long Range Planning , 29 ( 3 ) : 381 – 392 .
  • Sherer , S. A. . IS project selection: The role of strategic vision and IT governance . Proceedings of the 37th Hawaii International Conference on System Sciences . Big Island. Hawaii .
  • Standish (1995). Chaos, The Standish Group Report 1995. http://www.standishgroup.com (Accessed: 3 February 2009 ).
  • Symons, C. (2005). IT governance framework. Structures, processes and communication. Forrester Research Inc.
  • Trites , G. 2004 . Director responsibility for IT governance . International Journal of Accounting Information Systems , 5 ( 2 ) : 89 – 100 .
  • Turnbull (1999). Internal control—Guidance for directors on the combined code. ICAEW. http://www.kmpg.com.cn/en/Virtual_library/Risk_advisory_services/Internal_control.pdf
  • Turban , E. , McLean , E. and Wetherbey , J. 2002 . Information technology for management: Transforming business in the digital economy , 3rd , John Wiley and Sons Inc .
  • Van Grembergen , W. . Introduction to the Minitrack: IT governance and its mechanisms . Proceedings of the 35th Hawaii International Conference on System Sciences, IEEE .
  • Venkatraman , N. 1999 . Valuing the IS contribution to the business , Computer Sciences Corporation .
  • Webb , W. , Pollard , C. and Ridley , G. . Attempting to define IT governance: Wisdom or folly? . Proceedings of the 39th Hawaii International Conference on System Sciences .
  • Weill , P. and Ross , J. 2004 . IT governance: How top performers manage IT decision rights for superior results , HBS Press .
  • Ziolkowski , R. and Clark , E. 2005 . Standards of ICT governance: The need for stronger epistemological foundations in shifting sands . The Asia Pacific Journal of Public Administration , 26 ( 1 ) : 77 – 90 .

Reprints and Corporate Permissions

Please note: Selecting permissions does not provide access to the full text of the article, please see our help page How do I view content?

To request a reprint or corporate permissions for this article, please click on the relevant link below:

Academic Permissions

Please note: Selecting permissions does not provide access to the full text of the article, please see our help page How do I view content?

Obtain permissions instantly via Rightslink by clicking on the button below:

If you are unable to obtain permissions via Rightslink, please complete and submit this Permissions form. For more information, please visit our Permissions help page.