There aren't many funny ITSM books
According to all the reader feedback so far, the satirical Introduction to Real ITSM is!
ISO38500 may be too late; the word "governance" is rapidly equalling "management"
Blog entry submitted by skeptic
on Sat, 2008-06-07 01:03. [nid:633] in
The word "governance" is in danger of total debasement. ISO38500 may be only half-cooked but that is because it arrived just in time... or perhaps too late.
There have been concerns raised about ISO38500. One reader wrote to me with some valid questions about ISO38500
I think such questions/concerns are valid. ISO38500 defines a term and its broad shape. We must wait for more guidance on what certifiable IT Governance actually looks like. But there is plenty of evidence around that 38500 is desperately needed, and possibly too late to save the total erosion of meaning of "governance". Take this article as just one example:
They are talking about management. Governors might check that managers are making these decisons well.
Putting aside the consultant babble of "effective governance processes are characterized by both methodological comprehensiveness and social interventions where key stakeholders build collaborative relationships and shared understanding" that would win me Bullshit Bingo in one sentence, the bits I can understand are talking about management. If this is governance, what does the Board do? If this is not management, what is?
The monthly newsletter of the IT Skeptic: all the news on ITIL, CMDB and other IT topics that is fit to print... and then some! Subscribe here. Privacy respected. No registration required. |
Comments
From your quotes, you are
From your quotes, you are 100% right. Those quotes talk about management.
One of the points of governance is that it's separate from management - it checks up on management - it governs it. The governors, sorry, the "governance roles", must not have any vested interest in approving mgt decisions because it makes themselves look good: they must not be the managers: they must be non-executive. (The importance of non-executive directors at board level and the splitting of chairman and CEO roles is the same kind of thing; ignoring it gives us Enron. [My bid for oversimplification of the month, but I'm still right.])
Is it perhaps the case that true governance simply isn't happening?* - Thereby leaving the term free for those trying to advise the managers (that includes me) to use and abuse? We vendors, trainers, consultants and bloggers are less likely to get the attention and the money of the true non-executive corporate governors, so let's go for the managers.
Having an International Standard won't by itself stop this dilution of the term; having CEOs and CIOs afraid of governance will.
* (Why might IT governance not be happening - as in, not going down to an effective level? My experience of SOX and COBIT governance efforts suggests that they all have a tendency to focus on very few controls, and even then to drop some of them when the resistance shows up. And in the case of SOX, to focus only on the ability to produce financial reports. If corporate governance is so hard, it doesn't bode well for the value of IT governance.)