IT Governance

Noun · Security & Infosec

Definitions

  1. The structures and decision processes used to ensure technology investments, risks, policies, and operations are aligned with organizational goals and accountability. In security, IT governance defines who owns risk, approves exceptions, and is responsible for control effectiveness.

    In plain English: The way an organization decides who is responsible for technology choices, rules, and risks.

    Example: "Weak IT governance meant no one owned the decision to retire the unsupported remote access platform."

Related Terms