IT governance is how an organization makes sure its use of technology supports its goals, delivers value, manages risk and uses resources responsibly. It is part of enterprise governance, not a separate IT project. Governance is different from management. Governance evaluates options, sets direction, makes high-level decisions and monitors performance; management plans, builds, runs and monitors activities within that direction. The CISA exam returns to this split often: when a question asks who is ultimately accountable, it is usually a governance body.
Keep reading for free
Create a free StudyToCert account to read the rest of this lesson: 7 more sections, 7 key terms, a real-world example, an exam tip and self-check questions. Every lesson, lab and practice test is free with an account.