ISO 38500 is the international standard for IT governance, providing guidance for governing bodies – and their advisors – on the effective, efficient and acceptable use of IT in their organizations. Available in hardcopy or PDF formats.
ISO 38500 provides principles, definitions and a model for governing bodies to use when evaluating, directing and monitoring the use of information technology (IT) in their organizations, helping those at the highest level to understand and fulfil their legal, regulatory and ethical obligations in respect of their organizations' use of IT.
It also provides guidance to those advising, informing, or assisting governing bodies, such as:
ISO 38500 applies to the governance of management processes and decisions relating to the information and communication services used by an organization . Processes could be controlled by IT specialists within the organization, by external service providers or by business units within the organizations.
ISO 38500 is the first international standard for IT governance, and provides an efficient and effective framework for IT governance, leading to better alignment of IT with organisational decisions.
The advice and guidance in this standard is applicable to all organizations, including public and private companies, government organizations, and not-for-profit organizations, irrespective of their size or type, and regardless of the extent of their use of IT. It not only applies to directors but also provides essential guidance on the appropriate governance of IT to all key members of staff.
If you need help with ISO 38500 and IT governance, you may also be interested in: