9-5 Policy for Information Technology Governance
Return to Administrative Policy Manual
Approved: County Administrative Officer
Authority: Information Systems/County Administrator
Origination Date: March 17, 2011
I. Purpose
Information Technology (IT) Governance is a set of rules and criteria that form a process to guide how the County cooperates to manage technology.
This policy promotes the effective and efficient use of Information Technology by establishing an IT Governance framework that aligns IT services and resources with County business needs, and maximizes the value of IT investments.
II. Scope
This policy applies to all County of Sonoma Departments and Local Agencies.
III. Policy
A Countywide IT Governance framework shall be established with the purpose of:
- Governing the County’s strategic IT investments;
- Assuring the business transformation results of those investments;
- Approving Countywide IT policies and standards;
- Determining the balance of IT centralization and de-centralization;
- Assuring that overall IT cost efficiencies are maintained on a Countywide basis;
- Recognizing and cost effectively mitigating risk to Countywide information and information systems; and
- Ensuring compliance with applicable State and Federal regulations as pertains to the privacy and security of information.
IV. Responsibilities
- The County Administrative Officer (CAO) is responsible for:
- Overseeing enterprise wide IT Governance activity and
- Resolving executive level IT Governance disputes.
- Overseeing enterprise wide IT Governance activity and
- The Information Systems Director is responsible for:
- Acting as Countywide Chief Information Officer (CIO);
- Acting as Countywide Chief Information Security Officer (CISO);
- Developing Countywide IT policies, procedures, standards and guidelines;
- Developing the Countywide IT Strategic Plan;
- Providing Countywide IT support services;
- Reporting upon risk to and vulnerabilities in Countywide information and information systems;
- Implementing and coordinating the establishment of an executive-level IT governance council and supporting committees and
- Assisting in interdepartmental and interagency IT coordination, cooperation and collaboration.
- Acting as Countywide Chief Information Officer (CIO);
- Department Heads/Local Agency General Managers are responsible for:
- Ensuring Department/Local Agency compliance with IT Countywide policies and procedures;
- Articulating business requirements for the Countywide IT strategic plan;
- Implementing the departmental portion of the Countywide IT strategic plan and
- Participating on the executive-level IT governance council as needed.
- Ensuring Department/Local Agency compliance with IT Countywide policies and procedures;
V. Related Documents
- IT Governance Council Charter
- IT Governance Council Operating Guidelines
VI. Revision History
Version 1.0 dated 3/17/2011; chapter/section: all; details: New policy entitled "IT Governance Policy"