IT Governance
Noun · Security & Infosec
Definitions
The structures and decision processes used to ensure technology investments, risks, policies, and operations are aligned with organizational goals and accountability. In security, IT governance defines who owns risk, approves exceptions, and is responsible for control effectiveness.
In plain English: The way an organization decides who is responsible for technology choices, rules, and risks.
Example: "Weak IT governance meant no one owned the decision to retire the unsupported remote access platform."