An IT Asset portfolio serves as a crucial repository for achieving IT governance. As the adage goes, “you can only protect what you know is yours,” hence, maintaining a comprehensive portfolio is essential to gaining a clear understanding of your Organization’s assets. You can refer to my blog on “Defining an IT Asset” to determine the necessary entries for the portfolio.

Regardless of the method used, certain key pieces of information must be captured, including the Business owner, Asset’s Technology owner, location, platform, technology stack, environment, components, development and support contacts. Additionally, entries should incorporate the results of the Business Impact Assessment, which determine asset criticality, information or data classification, disaster recovery, or business continuity requirements, among others.

Regular review of the information in the entries is necessary, along with periodic reassessment of the business impact, to ensure they remain current and reliable sources of information for all users. Metadata such as the creation date, last modification date, last criticality assessment date, and the approver of the criticality rating should be included to enhance the meaning and reliability of the entries.

Most of the commercial CMDB software caters for IT Asset or Application Portfolio. However this could be created and maintained with minimal resources if budget is a concern


Comments

Leave a Reply

This site uses Akismet to reduce spam. Learn how your comment data is processed.

Discover more from CSO Tips

Subscribe now to keep reading and get access to the full archive.

Continue reading

Discover more from CSO Tips

Subscribe now to keep reading and get access to the full archive.

Continue reading