The Role of IT Governance Frameworks in Enhancing Organisational Cyber-Resilience

Manasseh F. Oguru *

Engineering Project Management, Coventry University, Priory Street, Coventry, United Kingdom.

*Author to whom correspondence should be addressed.


Abstract

The escalating frequency and sophistication of cyber threats highlight the urgent need for organisations to establish robust mechanisms that safeguard digital assets while ensuring operational continuity. The study aims to examine the Role of IT Governance Frameworks (COBIT, ITIL) in enhancing organisational Cyber-Resilience. Traditional approaches to cybersecurity often emphasise technical controls but fall short of addressing governance, strategic alignment, and resilience. A narrative review was considered appropriate because it allows for an integrative synthesis of diverse literature, theoretical contributions, and empirical findings without being restricted to the rigid parameters of systematic reviews. Information Technology (IT) governance frameworks such as Control Objectives for Information and Related Technologies (COBIT) and the Information Technology Infrastructure Library (ITIL) provide structured methodologies that integrate risk management, compliance, and operational excellence. This paper examines the role of COBIT and ITIL in enhancing organisational cyber-resilience, with particular attention to their complementary strengths in governance, process optimisation, and service management. COBIT emphasises strategic alignment, value delivery, and control objectives, enabling organisations to bridge the gap between business goals and IT risk mitigation. ITIL, on the other hand, focuses on service lifecycle management and continuous improvement, ensuring operational resilience in the face of disruptions. Challenges persist, particularly in leadership commitment, cultural alignment, and performance measurement. Without addressing these barriers, even the most robust frameworks may fail to achieve their intended outcomes. By analysing case studies and synthesising current literature, this work illustrates how organisations can leverage both frameworks to create a synergistic approach that not only prevents and detects cyber incidents but also enhances recovery capabilities. The discussion underscores the importance of embedding governance structures into cybersecurity strategies, fostering a culture of accountability, and aligning IT services with business continuity goals. Ultimately, integrating COBIT and ITIL strengthens decision-making, improves resource allocation, and enhances overall resilience against emerging cyber risks. The findings suggest that organisations adopting a hybrid governance framework can better anticipate, withstand, and adapt to cyber disruptions, positioning themselves competitively in a digital economy increasingly shaped by risk and uncertainty. In conclusion, the role of IT governance frameworks in enhancing cyber-resilience is multifaceted, encompassing strategy alignment, operational management, incident learning, and national-level coordination.

Keywords: IT governance, Control Objectives for Information and Related Technologies, Information Technology Infrastructure Library, cyber-resilience, organisational security


How to Cite

Oguru, Manasseh F. 2025. “The Role of IT Governance Frameworks in Enhancing Organisational Cyber-Resilience”. Asian Journal of Advanced Research and Reports 19 (10):80-89. https://doi.org/10.9734/ajarr/2025/v19i101173.

Downloads

Download data is not yet available.