A risk mitigation model of information technology governance in selected Malaysian Universities

Information Technology (IT) Governance faces various risks such as strategic,operational and technical risks. These risks should be identified, measured and mitigated. After risks are identified, appropriate actions should be devoted to mitigate these risks. However, risk mitigation is a complicated...

Full description

Saved in:
Bibliographic Details
Main Author: Bokolo, Anthony Junior
Format: Thesis
Language:English
Published: 2015
Subjects:
Online Access:http://psasir.upm.edu.my/id/eprint/57089/1/FSKTM%202015%202RR.pdf
Tags: Add Tag
No Tags, Be the first to tag this record!
id my-upm-ir.57089
record_format uketd_dc
spelling my-upm-ir.570892017-08-23T02:28:35Z A risk mitigation model of information technology governance in selected Malaysian Universities 2015-11 Bokolo, Anthony Junior Information Technology (IT) Governance faces various risks such as strategic,operational and technical risks. These risks should be identified, measured and mitigated. After risks are identified, appropriate actions should be devoted to mitigate these risks. However, risk mitigation is a complicated process especially in IT Governance. It leads to difficulty in choosing and executing mitigation actions. The mitigation of risks aids practitioners to identify the cause and effect among the components of risks mitigation and it provides a suitable metric to measure these risks. In mitigating risk, accurate decision making is based on the identified and measured risks. Risk mitigation in IT Governance provides a multidisciplinary environment for proactive decision making to measure and treat potential risk continuously. However, the existing standards for risk mitigation show limitations when mitigating operational and technical risks. Besides, the existing model provides inadequate support to practitioners in making risk decision pertaining to risk mitigation especially in IT governance. This is due to the fact that existing models lacks the capabilities to support practitioners in making decision relating to risk mitigation. The mitigation risks were identified by previous researchers, academicians and practitioners use various techniques such as prioritizing, evaluating and ranking the risks. This research develops a risk mitigation model for risk mitigation of IT Governance. In order to develop the model, this research identifies the processes and operational and technical risk components in mitigating risk of IT Governance. The risk mitigation system (RMS) is developed based on proposed model using software agents and knowledge mapping. The research scope is mainly on several Malaysian universities that specifically mainly decision in risk mitigation process. Qualitative research using Case study was adopted using only interview mainly in this research. Pilot study was carried out in 2 Malaysian universities with 5 expert informants to verify the instrument and the data of risk mitigation based on IT Governance. The case study was carried out in 2 Malaysian Universities which involved 7 expert informants to verify the risk mitigation process and components derived from the literature review. The risk decisions process was verified by adopting Iterative triangulation. The risk mitigation model can assists in measuring the probabilities and impact of risks, provides risk reduction advice using risk data, provide suggestions for monitoring activities, supporting collaborative decision-making process among risk mitigation practitioners in their organisation. Information technology Strategic planning Universities and colleges - Education - Higher 2015-11 Thesis http://psasir.upm.edu.my/id/eprint/57089/ http://psasir.upm.edu.my/id/eprint/57089/1/FSKTM%202015%202RR.pdf application/pdf en public masters Universiti Putra Malaysia Information technology Strategic planning Universities and colleges - Education - Higher
institution Universiti Putra Malaysia
collection PSAS Institutional Repository
language English
topic Information technology
Strategic planning
Universities and colleges - Education - Higher
spellingShingle Information technology
Strategic planning
Universities and colleges - Education - Higher
Bokolo, Anthony Junior
A risk mitigation model of information technology governance in selected Malaysian Universities
description Information Technology (IT) Governance faces various risks such as strategic,operational and technical risks. These risks should be identified, measured and mitigated. After risks are identified, appropriate actions should be devoted to mitigate these risks. However, risk mitigation is a complicated process especially in IT Governance. It leads to difficulty in choosing and executing mitigation actions. The mitigation of risks aids practitioners to identify the cause and effect among the components of risks mitigation and it provides a suitable metric to measure these risks. In mitigating risk, accurate decision making is based on the identified and measured risks. Risk mitigation in IT Governance provides a multidisciplinary environment for proactive decision making to measure and treat potential risk continuously. However, the existing standards for risk mitigation show limitations when mitigating operational and technical risks. Besides, the existing model provides inadequate support to practitioners in making risk decision pertaining to risk mitigation especially in IT governance. This is due to the fact that existing models lacks the capabilities to support practitioners in making decision relating to risk mitigation. The mitigation risks were identified by previous researchers, academicians and practitioners use various techniques such as prioritizing, evaluating and ranking the risks. This research develops a risk mitigation model for risk mitigation of IT Governance. In order to develop the model, this research identifies the processes and operational and technical risk components in mitigating risk of IT Governance. The risk mitigation system (RMS) is developed based on proposed model using software agents and knowledge mapping. The research scope is mainly on several Malaysian universities that specifically mainly decision in risk mitigation process. Qualitative research using Case study was adopted using only interview mainly in this research. Pilot study was carried out in 2 Malaysian universities with 5 expert informants to verify the instrument and the data of risk mitigation based on IT Governance. The case study was carried out in 2 Malaysian Universities which involved 7 expert informants to verify the risk mitigation process and components derived from the literature review. The risk decisions process was verified by adopting Iterative triangulation. The risk mitigation model can assists in measuring the probabilities and impact of risks, provides risk reduction advice using risk data, provide suggestions for monitoring activities, supporting collaborative decision-making process among risk mitigation practitioners in their organisation.
format Thesis
qualification_level Master's degree
author Bokolo, Anthony Junior
author_facet Bokolo, Anthony Junior
author_sort Bokolo, Anthony Junior
title A risk mitigation model of information technology governance in selected Malaysian Universities
title_short A risk mitigation model of information technology governance in selected Malaysian Universities
title_full A risk mitigation model of information technology governance in selected Malaysian Universities
title_fullStr A risk mitigation model of information technology governance in selected Malaysian Universities
title_full_unstemmed A risk mitigation model of information technology governance in selected Malaysian Universities
title_sort risk mitigation model of information technology governance in selected malaysian universities
granting_institution Universiti Putra Malaysia
publishDate 2015
url http://psasir.upm.edu.my/id/eprint/57089/1/FSKTM%202015%202RR.pdf
_version_ 1747812163628564480