Transcript
A (0:02)
You're listening to the Cyberwire Network powered by N2K. This episode is brought to you by Indeed. Stop waiting around for the perfect candidate. Instead, use Indeed Sponsored Jobs to find the right people with the right skills fast. It's a simple way to make sure your listing is the first candidate. C According to Indeed data, sponsored jobs have four times more applicants than non sponsored jobs. So go build your dream team today with Indeed. Get a $75 sponsor job credit@ Indeed.com podcast. Terms and conditions apply.
B (0:44)
The word is cobit. Spelled C for control, O and B for objectives, I for information, and T for technolog. Definition an it governance framework developed by isaca. Example sentence the organization used the COBIT framework to coordinate its IT operations, Origin and context. In a 2021 LinkedIn essay by Edwin Covert, at the time of this episode, the director of risk Assessments and testing at Warner Bros. Discovery, he explains that experts define IT security auditing as those independent activities undertaken to verify whether an organization's internal cybersecurity controls are in place and functioning as intended. But, he says, in order to audit something, there needs to be a standard to audit against. COBIT is one of those standards. In the essay, Mr. Covert describes how IT security auditing components align as a pyramid of concepts that begin at the top and flow down into each other. The pyramid starts with the official laws at the top, followed by best practice frameworks. These generate control objectives and finally, at the base of the pyramid, the specific controls designed to meet the objectives. COBIT is not specifically a security framework, but an IT management framework that has some security components. IT was created by ISACA, an international nonprofit founded in 1969 to provide guidance and education for governing IT systems. COBIT was released in 1996 and was originally meant to help financial auditors deal with the proliferation of IT systems. ISACA has released updated versions of the COBIT framework over the years, with the most recent being COBIT 2019. Not to be confused with COVID 19, the scary virus we've been dealing with for the past few years. According to Sarah White at CIO Online, one major difference between COBIT and other frameworks from the International Standards Organization, the National Institute of Standards and Technology, and the Information Technology Infrastructure Library is that COBIT 2019 isn't a framework for organizing business processes, managing technology, making IT related decisions, or determining IT strategies or architecture. Rather, it's designed strictly as a framework for governance and management of enterprise IT across the organization. End quote. Nerd Reference Mark Pardee, back in 2016, was the it Governance Program manager for a company called Dart Container. As of this episode, he's still there. He said back then that when he explains what Cobit is to his leadership team, he likes to think of his 85 year old dad as the receiver of the information.
![COBIT (noun) [Word Notes] - Hacking Humans cover](/_next/image?url=https%3A%2F%2Fmegaphone.imgix.net%2Fpodcasts%2Ffacb84d2-10fc-11f1-8871-7f8287750d03%2Fimage%2F441b0ca2db080b93b935568d381ce462.png%3Fixlib%3Drails-4.3.1%26max-w%3D3000%26max-h%3D3000%26fit%3Dcrop%26auto%3Dformat%2Ccompress&w=1920&q=75)