Why is COBIT implemented?
For hospitals and medical organizations, risk management typically refers to conditions like immediate response situation. The staff and employees of medical organizations have very less knowledge and experience about IT and high-risk management related to it (Putri, Lestari & Aknuranda, 2017). Their management style is not well planned in case of IT risk assessment and response. Implementing a well-organized and efficient IT based risk management system is utmost important for medical facilities as the IT for such organizations are quite critical and complex in nature (Boži?, 2012). In addition to this, medical staffs do not have adequate knowledge in this field. This is the reason COBIT 4.1 framework has been chosen to analyze the IT risk management and steps required for these within a short time limit.
The risk factors related to any health organizations are typically three types. The medical risk factors, which include situations, like bacterial or information outbreak, medical errors and any problem related to the medical situations (Khther & Othman, 2013). The second in the list is the financial risks like, irregular cash flow, irregular bill clearing or anything related to cost management system. The last in the list is the rules and regulations, which includes matters like electronic statements and intern acceptance (Othman et al., 2013). To manage these risk factors and implement a proper IT base solution is the target of COBIT framework.
Objective of COBIT analysis
The objective of implementing COBIT analysis is to give reasonable affirmation that future objectives can be achieved and any undesirable event can be predicted successful and can be prevented in time. All these can be achieved if the company policies, practices, and organizational formation is reviewed and renewed. Certain control objectives do exist in IT based governance system, which are helpful to build sustainable administration (Pasquini & Galiè, 2013). This process can be a continuous service if certain control parameters are renewed like communication among departments, improved customer service, implementation of tight data security (Andry & Hartono, 2017). A continuous test of all these parameters are also quite important to keep up with the high-service quality. COBIT 4.1 framework provides guidelines to assess control and rearrange particular IT based processes to enhance the service of a certain organization (Surbakti, 2014).
COBIT 4.1 framework based analysis of the requirements and implementations in City Medical Partners
As per the COBIT 4.1 framework, the requirements, which need to be addressed in City Medical Partners Organization in the planning and organizing phase. The requirements are as follows.
COBIT 4.1 framework based planning required for City Medical Partners Organization
Based on the requirements of City Medical Partners Organization, below mentioned planning steps are required for the hospital.
Conclusion and Recommendation
City Medical Partners Organization, being a reputed organization has to maintain a high level of performance in their services. In case a lagging attitude in implementing a strong IT based risk management system can hamper the medical service of the company as well as the reputation of the organization. COBIT 4.1 frameworks are used here to clearly point out the requirements of the organizations. This report explains clearly that the medical facility has to implement an IT based system to resolve the entire short comes to maintain a strong position in the market. For an emergency service provider, City Medical Partners Organization should be able to understand the importance of communication within employees and top management. By implementing the results of COBIT 4.1 framework analysis, it is clear that the organization has to implement a thorough solution of IT based framework for a well-planned risk management system.
COBIT 4.1 framework is a typical analysis of the existing IT based system of an organization and analyze the short comes of the system. As per the report, the major problem in the IT based system of City Medical Partners Organization is the lack of communication among departments is hampering the smooth run of the system. In addition to this, the organization has to increase security levels of data safety besides increasing the strength of the IT department. Importance should be given to constant updating of the system to increase knowledge base on recent trends in the medical field and recent laws regarding patient safety and medical practices. The administration of must have to keep an eye on the finance department too, as any risk in this department can hamper the emergency services. The study recommends the City Medical Partners Organization to take immediate actions to enhance the IT based system. This will also escalate the process of treatments giving a boost to the reputation of the organization. Besides the enhancing the IT department, the management should know the importance of regular communication among doctors, nurses and top management. This is required to avoid any situation of medical risk.
For a medical institution, IT can have advantages besides risk factor. If implemented properly, IT can reduce the risk factors in considerable level, yet it can be a high-risk parameter in opposite condition. COBIT is a highly beneficial framework for any medical establishment to properly implement the IT or Hospital Information System (HIS) and avail risk management (Zhang & Le, 2013). This is because employees of any medical organization do not have adequate knowledge regarding how to handle IT related risk. COBIT framework is the best solution to cop up in such situation and identify the necessary steps, which need to be implement properly for risk management in hospitals. The report will explain the implementation of COBIT to analyze the IT-related risk assessment at City Medical Partners, which is situated in New Zealand.
Identifying the risk factors and COBIT control parameters for medical organizations are quite a task for many specialists however, in case of City Medical Partners Organization, it is apparently an Easy one as the new Chief Information Officer (CIO) of the organization, Jim Foley, has previous experience of utilizing COBIT framework. He understands the importance of data protection and IT risk parameters. In addition, he has sound knowledge regarding the regulatory rules and regulations of Data protection and health organizations in New Zealand. The aim of this report is to identify the IT risk factors of the hospital and suggest regulatory actions, which will be beneficial for the organizations.
Reference:
Amid, A., & Moradi, S. (2013). A Hybrid Evaluation Framework of CMM and COBIT for Improving the Software Development Quality. Journal of Software Engineering and Applications, 6(05), 280.
Andry, J. F., & Hartono, H. (2017). Performance Measurement of IT Based on COBIT Assessment: A Case Study. Jurnal Sistem Informasi Indonesia, 2(1).
Batenburg, R., Neppelenbroek, M., & Shahim, A. (2014). A maturity model for governance, risk management and compliance in hospitals. Journal of Hospital Administration, 3(4), 43.
Boži?, V. (2012, June). Risk management in informatization. In Central European Conference on Information and Intelligent Systems Pg (pp. 337-493).
Khther, R. A., & Othman, M. (2013). Cobit framework as a guideline of effective it governance in higher education: a review. International Journal of Information Technology Convergence and Services, 3(1), 21.
Krisanthi, G. T., Sukarsa, I. M., & Bayupati, I. P. A. (2014). Governance audit of application procurement using COBIT framework. Journal of Theoretical and Applied Information Technology, 59(2), 342-351.
Latif, A. A., & Hanifi, N. (2013). Analyzing IT Function Using COBIT 4.1–A Case Study of Malaysian Private University. Journal of Economics, Business and Management, 1(4), 406-408.
Mangalaraj, G., Singh, A., & Taneja, A. (2014). IT governance frameworks and COBIT-a literature review.
Othman, M., Ahmad, M. N., Suliman, A., Arshad, N. H., & MARA, N. (2013). Towards COBIT-based Framework to Govern Flood Management. In PACIS (p. 118).
Pasquini, A., & Galiè, E. (2013). COBIT 5 and the Process Capability Model. Improvements Provided for IT Governance Process. Proceedings of FIKUSZ, 13, 67-76.
Putri, M. A., Lestari, V. A., & Aknuranda, I. (2017, January). Audit of Information Technology Governance Using COBIT 4.1: Case Study in PT. XY. In Int. Conf. Ind. Internet Things (ICIIOT), Bandung, Indonesia (pp. 1-7).
Ramadhani, D. P., Kurniati, A. P., & Maharani, W. (2013). IT governance analysis of XYZ hospital based on COBIT 4.1. In The Proceedings of The 7th international conference on information and communication technology and systems (ICTS).
Sadikin, M., Hardi, H., & Haji, W. H. (2014). IT governance self assessment in higher education Based on COBIT case study: University of Mercu Buana. Journal of Advanced Management Science Vol, 2(2).
Surbakti, H. (2014). Cobit 4.1: A Maturity Level Framework For Measurement of Information System Performance (Case Study: Academic Bureau at Universitas Respati Yogyakarta). International Journal of Engineering, 3(8).
TARIQ, M. I., HAQ, D. I. U., & IQBAL, J. (2013). SLA Based Information Security Metric for Cloud Computing from COBIT 4.1 Framework. International Journal of Computer Networks and Communications Security, 1(3), 95-101.
Zhang, S., & Le, F. H. (2013). An Examination of the Practicability of COBIT Framework and the Proposal of a COBIT-BSC Model. Journal of Economics, 1, 5.
Essay Writing Service Features
Our Experience
No matter how complex your assignment is, we can find the right professional for your specific task. Contact Essay is an essay writing company that hires only the smartest minds to help you with your projects. Our expertise allows us to provide students with high-quality academic writing, editing & proofreading services.Free Features
Free revision policy
$10Free bibliography & reference
$8Free title page
$8Free formatting
$8How Our Essay Writing Service Works
First, you will need to complete an order form. It's not difficult but, in case there is anything you find not to be clear, you may always call us so that we can guide you through it. On the order form, you will need to include some basic information concerning your order: subject, topic, number of pages, etc. We also encourage our clients to upload any relevant information or sources that will help.
Complete the order formOnce we have all the information and instructions that we need, we select the most suitable writer for your assignment. While everything seems to be clear, the writer, who has complete knowledge of the subject, may need clarification from you. It is at that point that you would receive a call or email from us.
Writer’s assignmentAs soon as the writer has finished, it will be delivered both to the website and to your email address so that you will not miss it. If your deadline is close at hand, we will place a call to you to make sure that you receive the paper on time.
Completing the order and download