If you are a director with an IT-based function, the issue of corporate governance should be at the top of youragenda. Indeed, no director, regardless of function, can afford to disregard the importance of information systemsgovernance on the companyÂs business. This paper reflects on the importance of an integrated approach torisk management which contemplates the deployment of strategies, policies and processes to minimise andmanage legal risks.