Risk standard up for review

29.05.2011
An international standard aimed at reducing IT risks is now up for review.

An "exposure draft" of the upcoming COBIT 4.1 Process Assessment Model (PAM) is .

COBIT is a globally accepted set of tools that helps minimise IT-related risks and aims to maximise the benefits of technology investment. COBIT acts as an integrator of more detailed international IT standards and guidance.

The PAM provides a process capability assessment based on ISO/IEC 15504 and COBIT.

After conducting a global survey to determine market need, ISACA, the worldwide information security professionals organisation, found that 89 percent of the nearly 1,400 respondents expressed a need for a "rigorous and reliable IT process capability assessment".

"Since COBIT's release, many organisations have been using it to assess and improve their IT processes. However, until now there hasn't been a consistent and reliable assessment approach," said Roger Southgate, a member of the COBIT Assessment Process (CAP) development team.