Control Objectives for Information and Related Technology (COBIT)


The COBIT 2019 framework aims to help organizations create value from their IT assets and provides a framework for the governance and management of those assets.

  • created in 1996 by the Information Systems Audit and Control Association (ISACA)
  • provides a list of processes and practices that an organization should review
  • is technology neutral
  • general enough that any type of organization can use the framework

6 Key Principles

  • Providing stakeholder value
  • Adopting a holistic approach
  • Understanding that governance is dynamic
  • Separating governance from management
  • Tailoring governance to the organization’s needs
  • Covering the whole organization