Sponsors

Microsoft


TechWell

We have 2302 guests and 4 members online

Home Articles CM Journal CM Journal - March 2008

CM Journal - March 2008

E-mail
Tuesday, 17 November 2009 00:00
CM Journal
Each month the CM Journal provides original content articles and regular columns from industry thought leaders and software providers on a wide variety of configuration management and application lifecycle management topics.
.


Get the CM Journal RSS Feed Get the Feed


IT Governance and Compliance - Providing Transparency to Senior Management

Volume 6 - Number 3 - March 2008

IT Governance and compliance are essential practices that are required by Federal law in many organizations. Too often, compliance is treated as the audit that one must simply "get through" so that we can get back to the "real" work. This month our experts provide a great deal of expertise on how to not only meet the requirements of IT governance and compliance, but also to utililize this effort to improve productivity and quality as well. Joe Farah starts us off this month with his view of IT Governance and the Next Generation. Austin Hastings discusses many of the most important practices required by compliance models in his Dimensions of SCM Challenge - Standards and Interfaces and also his SCM Techniques #3 - FormalInterfaces and Standards.

The CM Journal has long ago become permanently attached to Agile practices and I twisted Robert Cowhan's arm until he quickly dashed out some thoughts on applying Agile to IT Governance (expect more articles covering Agile and compliance in the future). Russell Pannone joins us, for the first time, and also discusses Role of Management in an Iterative and Agile Software Development Environment. Of course I weighed in on applying IT Governance frameworks in my column, Behaviorally Speaking. Recently, I had the pleasure of hearing Dr. Adam Kalawa speak (at the NYC SPIN) on Automated Defect Prevent so this month I reviewed his excellent book which takes us to the next level by establishing an infrastructure for automating defect prevention. Don't miss my review on this book and please also enjoy Dr. Kalawa's article on Automated Infrastructure and Workflow for Process Improvement.

Most compliance frameworks cover security and this month we also have an excellent article from Symantec's Sandeep Kumar covering IT governance risk and compliance.IT Governance and Compliance are all about providing the most critical information to senior management. CM Crossroads is the place where you can always find the information that you need to manage your application lifecycle!


Bob Aiello
Editor-in-Chief
CM Journal
raiello@acm.org


Featured articles...


Transparency improves Governance
IT governance and compliance - providing transparency to senior management. This months topic is IT governance and compliance, which tends to suggest more formal and rigorous processes. If you go to the IT Governance Institute you can get lots of information and pointers, including to standards such as COBIT. Areas covered by governance include:
Read More >>


CM: THE NEXT GENERATION of ALM Transparency
When it comes to IT governance, a key issue is transparency of process and data, all the way up the chain.
Read More >>


Role of Management in an Iterative and Agile Software Development Environment
This article is meant to link software developers and management with iterative and agile software development, and iterative and agile project management. I am sharing my personal experience as a software engineer who started out in the traditional way of software development, and along the way discovered a much better way - iterative and agile software development and iterative and agile project management.
Read More >>

More articles...

Dimensions of SCM Challenge #2
Standards and Interfaces & Requirements or Business Demands Part of managing software development is dealing with the challenges that arise. Delivering software requires overcoming the challenges, or at least mitigating the attendant risks during the development activity. Generally, organizations work with a constant level of challenge. When one challenge is overcome, the organization will take on a new challenge. For example, when a project releases software that overcomes a tech...
Read More >>


SCM Techniques #3
Formal Interfaces and Standards & Requirements Management Patterns are a well-understood concept in software development. Thanks to Steve Berczuk and Brad Appleton, they are a part of the SCM vocabulary as well. So far, the SCM pattern vocabulary is relatively low-level, concentrated on describing repository layout, branching strategy and the like. The techniques discussed here are not patterns—they don't have the required structure, and don't provide prescriptive fo...
Read More >>


An Automated Infrastructure and Workflow for Process Improvement
A good workflow can make or break a group's quality initiative. I've seen too many cases where a manager wants to improve quality, but ends up hurting productivity. Why? Because he ended up disrupting the team's workflow instead of improving it.  For example, say the manager requires developers to check coding standards and fix all violations before check in. With most tools, this requires a lot of extra work-each developer has to run the tool, look at a report of proble...

Read More >>


Behaviorally Speaking - IT governance and compliance - providing transparency to senior management
Developing complex enterprise-wide applications is a challenging endeavor and those of us in the trenches often feel like senior management doesn't have a clue about what is going on.   ...

Read More >>


Effective IT GRC Starts at the Top
Information security is a business issue, not just a technology issue. Data breach incidents, new laws and regulations, and security audits have grabbed the attention of corporate executives across the globe, driving the evolution of information security from mainly a technical problem into a business challenge. 

Read More >>


Automated Defect Prevention - Best Practices in Software Management
by Dorota Huizinga and Adam Kolawa Automated Defect Prevention by Dorota Huizinga and Adam Kolawa presents an approach to Software Management that is both powerful and thought provoking. 

Read More >>



 
509 Bandwidth Limit Exceeded

Bandwidth Limit Exceeded

The server is temporarily unable to service your request due to the site owner reaching his/her bandwidth limit. Please try again later.