Implementing Information Technology Risk Management: A Case Study in the African Airline Industry

Journal Title: Journal of Organizations, Technology and Entrepreneurship - Year 2023, Vol 1, Issue 1

Abstract

Recent financial scandals and crises have underscored the criticality of robust risk management practices, particularly in the realm of information technology (IT). This study explores the implementation of an Information Technology Risk Management (ITRM) system within an African airline, utilizing the RITM 23 methodological approach. RITM 23, a comprehensive framework, integrates standards from enterprise risk management (ISO 31000 and COSO ERM) and ITRM (COBIT 5), guiding organizations through framing the project, data collection, development of the ITRM system, and its subsequent communication and monitoring. The case study demonstrates the effective implementation of the RITM 23 framework, which led to the establishment of a complete environment for ITRM, inclusive of templates, tools, procedures, and governance processes. This implementation significantly enhanced the management of IT risks, mitigating potential catastrophic outcomes associated with unmanaged IT threats in the airline sector. The study concludes with a contemplation of future advancements, particularly the integration of artificial intelligence to further streamline and automate the ITRM process. This case study not only illustrates the successful application of RITM 23 but also sets a precedent for future ITRM implementations in similar sectors.

Authors and Affiliations

Hasnaa Berrada,Souhaïl El Ghazi El Houssaïni,Jaouad Boutahar

Keywords

Related Articles

Evaluating the Role of Couriers in E-commerce Delivery: A Performance-Based Ranking Model for Optimising Logistics Efficiency

The efficient delivery of e-commerce parcels is heavily reliant on the performance of couriers, who represent a critical interface between businesses and end-users, thus influencing the competitive positioning of compani...

Measuring Inconsistencies in Research and Development Descriptions in Annual Reports of Listed Companies

The descriptions of Research and Development (R&D) activities in the annual reports of listed companies provide crucial insights into a company’s internal governance, external competitiveness, and long-term sustainabilit...

Navigating the Determinants of Marketing Performance in SMEs: An Integrative Systematic Review and Theoretical Analysis

The determinants influencing marketing performance in small and medium-sized enterprises (SMEs) have garnered increasing scholarly attention due to their critical role in driving economic development. SMEs face multiface...

A Bibliometric Analysis of Leadership Styles in Healthcare: Trends, Impact, and Research Networks

Leadership within the healthcare sector plays a pivotal role in shaping institutional performance, employee engagement, and patient satisfaction. Over time, leadership paradigms have evolved from traditional to contempor...

Industry 4.0 and Its Impact on Entrepreneurial Ecosystems: An Examination of Trends and Key Implications

In the burgeoning nexus between Industry 4.0 and entrepreneurial ecosystems, a transformative and disruptive dynamic has been observed. Defined by the integration of digital technologies into traditional sectors, Industr...

Download PDF file
  • EP ID EP732677
  • DOI https://doi.org/10.56578/jote010105
  • Views 72
  • Downloads 0

How To Cite

Hasnaa Berrada, Souhaïl El Ghazi El Houssaïni, Jaouad Boutahar (2023). Implementing Information Technology Risk Management: A Case Study in the African Airline Industry. Journal of Organizations, Technology and Entrepreneurship, 1(1), -. https://www.europub.co.uk/articles/-A-732677