- 2.173.1 IT Governance Policy
- 2.173.1.1 Program Scope and Objectives
- 2.173.1.1.1 Background
- 2.173.1.1.2 Authority
- 2.173.1.1.3 Responsibilities
- 2.173.1.1.4 Program Management and Review
- 2.173.1.1.5 Program Controls
- 2.173.1.1.6 Terms/Acronyms
- 2.173.1.1.7 Related Resources
- 2.173.1.1 Program Scope and Objectives
Part 2. Information Technology
Chapter 173. IT Program Governance
Section 1. IT Governance Policy
2.173.1 IT Governance Policy
Manual Transmittal
August 14, 2026
Purpose
(1) This transmits revised IRM 2.173.1, IT Program Governance, IT Governance Policy
Material Changes
(1) IRM 2.173.1 - Updated to include all required internal controls and reorganized related subsections.
(2) IRM 2.173.1 - Minor editorial changes to include plain language, correct broken links, updated authority and organizational terms to increase clarity.
(3) IRM 2.173.1.1, Original Section 2.173.1.1.1.1 - Purpose, realigned to Programs Scope and Objectives to align with the required internal controls format.
(4) IRM 2.173.1 - Minor editorial changes to update plain language, correct broken links, updated authority and organizational terms to increase clarity, and updated organizational information due to recent IT reorganization.
Effect on Other Documents
IRM 2.173.1 dated February 9, 2024, is superseded.
Audience
IRS IT employees and contractors who support reporting and oversight activities of IT programs, projects, and portfolios.
Effective Date
(08-14-2026)
Kaschit Pandya
Chief Information Officer
- This IRM provides the purpose, scope, authority, and mandates for Information Technology (IT) governance policy.
- Purpose: The purpose of this IRM is to establish the authority, responsibility, processes, and procedures for IT governance. IT governance provides a framework of accountability, transparency, and decision-making on the IRS IT investment portfolio.
- Audience: IRS IT employees and contractors who support reporting and oversight activities of IT programs, projects, and portfolios.
- Policy Owner: IRS IT
- Program Owner: IRS IT, Strategy and Product Management
- Primary Stakeholders: All IRS IT organizations (Verticals & Horizontals) and external business units
- Program Goals: The goal is to outline the IT Governance framework for providing effective oversight and decision-making on IRS IT programs, projects, and portfolio investments.
- IT Governance is a subset of the broader IRS Governance structure that provides a decision-making and oversight framework for the execution and delivery of IT investments, programs, and projects.
- IT Strategy and Product Management oversee and manage IT Governance and guides Governance Boards, Executive Steering Committees, IT programs, and stakeholders on established.
- IT Governance is comprised of two types of governance bodies working together to provide a forum for governance oversight and decision making, 1) Governance Boards and 2) Executive Steering Committees.
Authority for this IRM includes:
- Federal Information Technology Acquisition Reform Act (FITARA)
- OMB Circular No. A-130, Managing Information as a Strategic Resource
- OMB Circular No. A-11, Preparation, Submission, and Execution of the Budget
- Treasury Directive 81-01, Treasury Information Technology (IT) Programs
- S&PM supports the overarching governance activities across the various IT governance boards and provides tools and resources to impacted stakeholders to ensure compliance throughout the enterprise.
- IT Governance is comprised of two types of governance bodies working together to provide a forum for governance oversight and decision making, 1) Governance Boards (GB) and 2) Executive Steering Committees (ESC). An ESC or GB may establish a lower-level Advisory Boards (AB) to provide support and recommendations, while maintaining executive oversight responsibilities.
- A governance board is a chartered body responsible for conducting governance as set out in its governance board charter. The full listing of IT governance boards and charters are located on the IT Governance SharePoint site.
IT governance reflects a hierarchical framework. ESCs are the top level of governance and supported by GBs and ABs. See the table below for an overview of board responsibilities:
Governance Board Type Responsibilities ESC - Oversee assigned IT portfolio performance
- Resolve escalated risks and issues
- Oversee and support subordinate GBs and ABs
- Oversee IT portfolio decisions as outlined in the IT governance Decision Matrix
GB - Recommend scope and schedule changes to the ESC
- Manage portfolio performance and risk
- Escalate unresolved risks and issues
- Manage decisions, risks and issues delegated by the ESC
- Monitor and report on cost, schedule, risk and scope variance of the programs and projects
AB - Recommend and maintain escalation criteria
- Recommend portfolio selection criteria
- Provide Subject Matter Expertise and advise ESCs and GBs
The table below identifies key IT governance stakeholders and their responsibilities:
Stakeholder Description Responsibilities Board Chair /Co-Chair Sponsoring senior executive Lead/Co-Lead meetings, set agendas, delegate as appropriate Voting Board Member Key business or IT resource owners responsible for IT investments in the Board portfolio Discuss, evaluate, and make decisions. Vote or appoint a proxy to vote. Provide input to agendas. Advisor (Non-voting Board Member) Key functional or process owner enabling sound Governance Provide expertise to support risk and issue discussions. Provide input to agenda. IT Project Manager/Subject Matter Expert (SME) Manages a project and/or SME for the project Report on project/program status, cost, schedule, scope, and risks. Responsible for project implementation and execution. Ensure enterprise processes and requirements are followed including registering major transformation efforts and initiatives within the enterprise reporting tools for leadership visibility and accountability. Governance Lead Supports and delivers effective board meetings Support the ESC or GB and its board meetings. Create, distribute, and archive meeting minutes.
- Program reports are generated using data sourced from the IT portfolio management tool and referenced during IT governance board meetings to support decision making.
- Records are maintained for all board meeting decisions, presentations and supporting artifacts to measure the program’s effectiveness.
- This program uses the IRS Internal Management Documents System to establish controls.
- IT governance provides a framework for IT investment portfolio decision-making. IT governance identifies the decisions, rights, and accountability necessary to track and achieve desired results with IT investments.
Below are key IT governance terms and definitions:
Term Definition IT Investment A single line item of funding in the IT Portfolio. Frequently a related set of procurements, projects, programs, and operations organized around a mission, related business functionality, or an end-to-end process. IT Program A group of organizational or functionally related projects managed in a coordinated way to obtain benefits and control not available from managing them individually. IT Project An IT endeavor with a unique start and end date following a defined software development lifecycle, or an implementation schedule and has approved funding and staffing resources which can be planned, monitored, measured, and controlled which directly result in a unique product for business functionality. IT Projects are undertaken for development, modernization, enhancement, disposal, or maintenance and are funded from a specific investment with a Unique Investment Identifier (UII) which determines ESC alignment. Projects are assigned to a GB based on functionality and organizational alignment and are responsible for regular performance reporting. IT Portfolio A collection of IT projects, programs, and/or investments used to represent the inventory of IT work being conducted and executed throughout the service for the given fiscal year, and within the confines of the IT budget. Escalation Escalation is the process for reporting and escalating program / project risk up from a subordinate GB to an ESC. Below is a list of IT governance acronyms:
Acronyms Description AB Advisory Board ESC Executive Steering Committee FITARA Federal Information Technology Acquisition Reform Act GB Governance Board PM Project Manager UII Unique Investment Identifiers