Combining ITIL, COBIT and ISO/IEC 27002 in order to design a comprehensive IT framework in organizations

Several frameworks, tools and standards have been included in IT management systems, in organizations. However, on their own, they are not comprehensive enough to serve as efficient IT management system. This paper reviews two established frameworks, i.e. ITIL, COBIT and a standard, ISO/IEC 27002 fo...

Full description

Saved in:
Bibliographic Details
Main Authors: Sahibudin, Shamsul, Sharifi, Mohammad, Ayat, Masarat
Format: Book Section
Published: IEEE 2008
Subjects:
Online Access:http://eprints.utm.my/id/eprint/12514/
http://dx.doi.org/10.1109/AMS.2008.145
Tags: Add Tag
No Tags, Be the first to tag this record!
Institution: Universiti Teknologi Malaysia
Description
Summary:Several frameworks, tools and standards have been included in IT management systems, in organizations. However, on their own, they are not comprehensive enough to serve as efficient IT management system. This paper reviews two established frameworks, i.e. ITIL, COBIT and a standard, ISO/IEC 27002 focusing on their similarities and differences. It then proposes a comprehensive framework by integrating the three general framework and standards into an IT framework that could be used in every company.