Critical.
Authoritative.
Strategic.
Subscribe to CIO Magazine »

Blog: Six Questions For Governance

MIT Professor Erik Bynolfssen expresses it perfectly: "in the long run productivity is everything". An organization that consistently wastes two-thirds of its project expenditure will simply be incapable of competing with organizations that succeed 85 per cent of the time. The boards and management teams that take up the challenge of avoiding such waste, says ISACA director Raymond Young, will be the winners in the next decade. Young has been teasing out the implications for corporations of the release of Australian Standard AS8016 (for corporate governance of projects involving IT investments) for comment. The release follows the international adoption of AS8015 as ISO38500 on the corporate governance of IT, and the release of Young's handbook HB280-2006 to advise boards and top managers on how to influence projects to succeed.

Almost certainly, Young says, the standard expected of boards and top management has altered significantly as a result of those releases, even at this stage, when the draft standard may merely be considered as offering guidelines.

And he suspects a precedent may already have been set when the CFO, CEO and chair of the audit committee resigned after an IT project failure at Australian Pharmaceutical industries in 2006

"The Customs fiasco was probably another turning point," Young says. "The NSW T-card project is another disaster created by the leaders rather than the technology. People are tired of project failures and are starting to see through weak excuses." Boards are well aware of the problem of project failure, Young says, but his recent interviews with board members have left him convinced that until now it has been a secondary issue for most, because compliance has been addressed as a "must do" item, and efficiency/productivity as a "should do" item.

"Boards are bedding down the compliance effort of the past couple of years and 'are looking for ways to maintain compliance without taking up all their thinking time'.

"The Australian Institute of Company Directors (AICD) specifically notes that 'more shareholder value has been destroyed as a result of strategic mismanagement and poor execution than was lost in all the recent compliance scandals combined'," Young says.

Join the CIO Australia group on LinkedIn. The group is open to CIOs, IT Directors, COOs, CTOs and senior IT managers.

More about: Australian Institute of Company Directors, Australian Pharmaceutical Industries, AUSTRALIAN PHARMACEUTICAL INDUSTRIES, BPI, Evolve, MIT

Comments

Post new comment

The content of this field is kept private and will not be shown publicly.
Users posting comments agree to the CIO comments policy.
Login or register to link comments to your user profile, or you may also post a comment without being logged in.
Related Whitepapers
Latest Stories
Community Comments
Latest Blog Posts
Whitepapers
  • Protecting Generation Web
    From data privacy to personal safety issues, cyber-bullying, inappropriate content and malware, schools are facing an increasingly difficult task when it comes to allowing young people to spread their online wings without compromising their safety and personal development. The reality that most schools are catering to the needs of mixed age groups and abilities, and it’s easy to understand why a simple stop and block approach won’t work. Learning environments are, by nature, flexible. It stands to reason that the IT resources used in them should be flexible too. Read on.
    Learn more »
  • Fixing Your Dropbox Problem - How the Right Data Protection Strategy Can Help
    It’s estimated that more than 50 million people have used public cloud storage services such as Dropbox to share and exchange files. Public cloud services are so easy to use that their openness can undermine existing IT policies regarding the transmission of confidential data. With data volumes threatening to overwhelm onsite storage, IT managers are looking to find a solution that’s affordable and secure. This paper details a simple three-step approach to helping users manage access to the public cloud without placing your data or your business at risk. Read on.
    Learn more »
  • Using Application Control to Reduce Risk with Endpoint Security
    Unwanted applications, like games, result in productivity loss. This is often the primary consideration when applying application control. But unauthorized applications also increase your company’s risks of malware infection and data loss. This paper details how endpoint security solutions that incorporate application control provide the most efficient, comprehensive defense against unauthorized applications.
    Learn more »
All whitepapers
rhs_login_lockGet exclusive access to Invitation only events CIO, reports & analysis.
Recent comments