18.01.2013 Views

Enabling Processes

Enabling Processes

Enabling Processes

SHOW MORE
SHOW LESS

Create successful ePaper yourself

Turn your PDF publications into a flip-book with our unique Google optimized e-Paper software.

APPENDIX A<br />

MAPPING BETWEEN COBIT 5 AND LEGACY ISACA FRAMEWORKS<br />

Figure 14—COBIT 4.1 Control Objectives Mapped to COBIT 5 (cont.)<br />

COBIT 4.1 Control Objective Covered in COBIT 5 by:<br />

PO10.4 Stakeholder Commitment BAI01.03<br />

PO10.5 ������� ����� ��������� BAI01.07<br />

PO10.6 ������� ����� ���������� BAI01.07<br />

PO10.7 ���������� ������� ���� BAI01.08<br />

PO10.8 ������� ��������� BAI01.08<br />

PO10.9 ������� ���� ���������� BAI01.10<br />

PO10.10 ������� ������� ���� BAI01.09<br />

PO10.11 ������� ������ ������� BAI01.11<br />

PO10.12 ������� �������� �� ��������� ������� BAI01.08<br />

PO10.13 ������� ����������� ������������ ��������� ��� ���������� BAI01.06; BAI01.11<br />

PO10.14 ������� ������� BAI01.13<br />

AI1.1 Definition and Maintenance of Business Functional<br />

and Technical Requirements<br />

BAI02.01<br />

AI1.2 Risk Analysis Report BAI02.03<br />

AI1.3 Feasibility Study and Formulation of Alternative Courses of Action BAI02.02<br />

AI1.4 Requirements and Feasibility Decision and Approval BAI02.04<br />

AI2.1 High-level Design BAI03.01<br />

AI2.2 Detailed Design BAI03.02<br />

AI2.3 Application Control and Auditability BAI03.05<br />

AI2.4 Application Security and Availability BAI03.01-03; BAI03.05<br />

AI2.5 Configuration and Implementation of Acquired Application Software BAI03.03; BAI03.05<br />

AI2.6 ����� �������� �� �������� ������� BAI03.10<br />

AI2.7 Development of Application Software BAI03.03-04<br />

AI2.8 Software Quality Assurance BAI03.06<br />

AI2.9 Applications Requirements Management BAI03.09<br />

AI2.10 Application Software Maintenance BAI03.10<br />

AI3.1 Technological Infrastructure Acquisition Plan BAI03.04<br />

AI3.2 Infrastructure Resource Protection and Availability BAI03.03; DSS02.03<br />

AI3.3 Infrastructure Maintenance BAI03.10<br />

AI3.4 Feasibility Test Environment BAI03.07-08<br />

AI4.1 Planning for Operational Solutions BAI05.05<br />

AI4.2 Knowledge Transfer to Business Management BAI08.01-04<br />

AI4.3 Knowledge Transfer to End Users BAI08.01-04<br />

AI4.4 Knowledge Transfer to Operations and Support Staff BAI08.01-04<br />

AI5.1 Procurement Control BAI03.04<br />

AI5.2 Supplier Contract Management APO10.01; APO10.03<br />

AI5.3 Supplier Selection APO10.02<br />

AI5.4 IT Resources Acquisition APO10.03<br />

AI6.1 Change Standards and Procedures BAI06.01-04<br />

AI6.2 Impact Assessment, Prioritisation and Authorisation BAI06.01<br />

AI6.3 Emergency Changes BAI06.02<br />

AI6.4 Change Status Tracking and Reporting BAI06.03<br />

AI6.5 Change Closure and Documentation BAI06.04<br />

AI7.1 Training BAI05.05<br />

AI7.2 Test Plan BAI07.01; BAI07.03<br />

Personal Copy of: Mr. Dong Hong Wang<br />

219

Hooray! Your file is uploaded and ready to be published.

Saved successfully!

Ooh no, something went wrong!