Wednesday, September 3, 2014

Information Security Project Management Areas

Project Scope Management
Project scope management ensures that the project plan includes only those activities that are necessary to complete it. One thing that undermines many projects once they are underway is scope creep. Scope Creep occurs when the quantity or quality of project deliverables is expanded from the original project plan.
Project Scope management Includes:
·         Scope Planning
·         Scope definition
·         Scope verification.
Project Time Management
Project time management entails ensuring that the project is finished by the identified completion date while meeting its objectives.  Failure to meet deadlines is one of the most frequently cited failures in project management.
Trimming time or resources from these amounts requires reducing the quantity or quality of the deliverables.
Project Time management Includes
·         Activity definition
·         Activity sequencing
·         Activity duration estimating
·         Schedule development
·         Schedule control.
Project Cost management:
Cost management includes the processes required to ensure that a project is completed within the resource constraints placed on it. Some projects are planned using financial budget which all resources – personnel, equipment, supplies and so forth.
Cost management includes
·         Resource Planning
·         Cost Estimating
·         Cost Budgeting
·         Cost Control
Project Quality Management
Includes the processes required to ensure that the project adequately meets the project specifications.
Deliverables of the project meet the requirements specified in the project plan, then that project has bet the met its quality objective.
Quality management includes
·         Quality planning
·         Quality Assurance
·         Quality control.
Project Human Resource Management
Includes the process necessary to ensure that the personnel assigned to a project are effectively employed.
Human resource Management must address some of the following factors
·         Not all workers operate at the same level of efficiency; in fact, wide variance in the productivity of individuals is the norm. Project managers must accommodate the work style of each project resource while encouraging every worker to be as efficient as possible.
·         Not all workers begin the project assignment with the same degree of skill. An astute project manager attempts to evaluate the skill level of some or all of the assigned resources to better match them to the needs of the project plan.
·         Skill mixtures among actual project workers seldom match the needs of the project plan. Therefore in some circumstances, workers may be asked to perform tasks for which they are not necessarily well suited, and those tasks take longer and or cost more than planned.
For information Security projects has additional complexities including
·         Extended clearances may be required. Some infosec projects involve working in sensitive areas of the organization. Project managers may have restrictions placed on which resources can be used.
·         Infosec project deploy technology controls that are new to the organization, and in such cases there is not a pool of skilled resources in that area from which to draw.
Human resource management includes the following processes:
·         Organizational planning
·         Staff acquisition
·         Team Development.
Project Communications Management
Communications management includes the processes necessary to convey to all involved parties the details of activities associated with the project. Includes creation, distribution, classification, storage, ultimate destruction of documents, messages and other associated project information.
Communication management includes the following processes.
·         Communication Planning
·         Information Distribution
·         Performance reporting
·         Administrative closure
Project Risk Management
Risk management include the process necessary to assess, mitigate, manage, and reduce the impact of adverse occurrences on the project.
Risk management includes the following processes.
·         Risk identification
·         Risk quantification
·         Risk response development
·         Risk response control
Project Procurement Management
Procurement management includes the processes necessary to acquire needed resources to complete the project.
Processes that includes are follows:
·         Procurement planning
·         Solicitation planning
·         Solicitation.
·         Source selection
·         Contract Administration

·         Contract closeout.

Reference: Management of Information Security by Whitman and Mattord

No comments:

Post a Comment