Skip to main content
Why Your Information Team Keeps Making the Same Certification MistakesInformation Governance
5 min readFor Information Governance Professionals

Why Your Information Team Keeps Making the Same Certification Mistakes

Your organization just hired three new information governance professionals. Two have data analytics certifications. One has a project management credential. None have training in records lifecycle management, metadata governance, or retention compliance. Within six months, you're cleaning up misclassified records, explaining to Legal why disposition didn't happen, and justifying to auditors why your retention schedule exists only on paper.

This scenario repeats across organizations that treat information management as a subset of IT or data analytics. The assumption is that smart people with adjacent credentials can figure it out. They can't, and the mistakes reveal a fundamental misunderstanding of what managing non-tabular content actually requires.

Why These Mistakes Keep Happening

Organizations conflate "information" with "data" and assume the skill sets are interchangeable. A database administrator knows how to optimize queries and maintain referential integrity. An information professional knows how to apply retention rules to email threads, classify contracts according to a business classification scheme, and determine when a document becomes a record requiring legal preservation.

The difference matters because most organizational content lives outside structured databases. Documents, emails, contracts, policies, and multimedia files make up the bulk of what you create daily. Managing this content requires understanding capture workflows, metadata strategies, classification schemes, and lifecycle decisions that don't map to relational tables.

When you skip specialized training, you're betting that people can reverse-engineer compliance requirements and governance frameworks on the job. That bet fails predictably.

Mistake 1: Assuming Data Certifications Cover Information Management

Why it happens: HR sees "data" and "information" as synonyms. If someone can manage a data warehouse, surely they can manage SharePoint.

The consequence: Your new hire builds beautiful dashboards but doesn't understand that the contract repository needs retention metadata, that emails under legal hold require different treatment than active correspondence, or that disposition authority is a documented process, not a delete button.

The fix: Require certifications that cover content lifecycle, not just data manipulation. AIIM's Certified Information Professional (CIP) covers the full lifecycle from capture through storage, active use, dissemination, Accessioning, and eventual disposition, all under continuous compliance and governance requirements. That lifecycle expertise is what separates information professionals from data managers.

Mistake 2: Treating Metadata as an IT Problem

Why it happens: Metadata sounds technical, so it gets assigned to IT or development teams who understand database schemas.

The consequence: You get technical metadata (file size, creation date, format) but not governance metadata (retention trigger, record status, business classification). When Legal asks for all documents related to a specific project, you can't answer the question because no one tagged content with business context.

The fix: Assign metadata strategy to people who understand business classification schemes and controlled vocabularies, not just database normalization. Information professionals know that metadata is the shipping label that tells AI systems and users what's inside a document before they open it. Without that label, your content is a container full of unknown goods.

Mistake 3: Believing AI Will Solve Your Information Chaos

Why it happens: Vendors promise that machine learning will auto-classify documents, extract data, and manage retention without human intervention.

The consequence: Your AI tool classifies drafts as final versions, flags outdated policies as current guidance, and can't distinguish between a casual email and an official record with seven-year retention requirements. You still need humans to clean up the mess, but now you've spent budget on a tool that amplified the chaos.

The fix: Deploy AI only after you've established foundational metadata and classification. AI needs context to function accurately. It can't tell which version of a policy is authoritative, whether a document was ever approved, or what retention schedule applies. Certified information professionals provide that context. They know that "garbage in, garbage out" applies to machine learning just as it did to database queries.

Mistake 4: Skipping Retention Compliance Training

Why it happens: Your team assumes retention is common sense: keep important things, delete old things.

The consequence: You delete records still under legal hold. You retain documents past their disposition authority date, creating unnecessary eDiscovery exposure. You can't produce a defensible disposition log during an audit because no one documented cutoff dates or event-based retention triggers.

The fix: Train your team on records control schedules, disposition authority, and legal hold procedures. These aren't intuitive concepts. A retention schedule isn't a suggestion; it's a compliance obligation. Event-based retention doesn't start when you think the event happened; it starts when the documented trigger occurs. Certified professionals understand these distinctions because they're tested on them.

Mistake 5: Hiring for Tools Instead of Principles

Why it happens: Job descriptions list SharePoint, M365, or specific platforms as requirements, treating information management as software administration.

The consequence: Your hire knows the interface but not the methodology. They can create document libraries but don't understand functional classification. They can set permissions but don't know when to declare a record or apply a records freeze.

The fix: Hire for principles first, tools second. A certified information professional understands Generally Accepted Recordkeeping Principles, ISO 30300 management systems, and how to apply governance frameworks across platforms. They can learn your specific tools. You can't easily teach recordkeeping principles to someone who's only ever been a system administrator.

Prevention Checklist

Before you staff your next information governance role or assign responsibility for records management:

  • Verify candidates hold information-specific certifications (CIP, IGP, or equivalent), not just adjacent credentials
  • Confirm they can explain the difference between data and information, and why it matters for your compliance obligations
  • Ask them to describe a business classification scheme and how it differs from folder structures
  • Test their understanding of retention triggers, cutoff, and disposition authority
  • Ensure they can articulate how metadata supports both human findability and AI accuracy
  • Check whether they understand legal hold procedures and records freeze requirements
  • Confirm they know that compliance obligations don't have an AI exception clause

Your content represents years of institutional knowledge, decisions, and relationships. It's an asset. Leaving it in the hands of people who lack specialized training is a compliance risk and a waste of something valuable.

A new version of the CIP is expected in early 2027, which makes now the right time to assess your team's credentials before the standard evolves. The certification exists because the work is specialized. Treat it that way.

You Might Also Like