Project Initiation. ProPath. Office of Information and Technology
|
|
|
- Noreen Neal
- 10 years ago
- Views:
Transcription
1 Project Initiation ProPath Office of Information and Technology
2 Table of Contents Project Initiation Process Maps... 1 Process: Project Initiation Project Initiation and Goals Goals Project Initiation RACI Information Project Initiation Process Process Activity Name: PRI-1 Define Business Requirements Process Activity Name: PRI-1.1 Identify Needs and Capabilities Process Activity Name: PRI-1.2 Identify EA Content Process Activity Name: PRI-1.2-DEC01 Segment Level Content? Process Activity Name: PRI-1.3 Identify Segment Content Process Activity Name: PRI-1.4 Update Business Requirements with EA Traceability Process Activity Name: PRI-2 Create QUAD Chart Process Activity Name: PRI-3 Develop Initial Infrastructure Rough Order of Magnitude Process Activity Name: PRI-4 Create Project Charter Process Activity Name: PRI-5 Evaluate Enterprise Shared Services Process Activity Name: PRI-5.1 Submit IAM Service Request Process Activity Name: PRI-5.2 Receive IAM Service Request Process Activity Name: PRI-5.3 Determine Need for IAM Service Request Process Activity Name: PRI-5.3-DEC01 IAM Required? Process Activity Name: PRI-5.3-DEC02 Additional Services? Process Activity Name: PRI-5.4 Schedule IAM Service Request Review Meeting Process Activity Name: PRI-5.5 Review IAM Service Request Package Process Activity Name: PRI-5.5-DEC01 Concur? Process Activity Name: PRI-5.6 Schedule Governance Review Intake Team Meeting Process Activity Name: PRI-5.7 Obtain IAM MOU Signatures Process Activity Name: PRI-5.8 Review IAM Service Request Process Activity Name: PRI-5.8-DEC01 Approved? Process Activity Name: PRI-5.9 Assign IAM Team Members Process Activity Name: PRI-5.10 Create IAM Change Requests Process Activity Name: PRI-5.11 Notify IAM Project Manager Change Requests Created Project Initiation i
3 Process Activity Name: PRI-5.12 Notify Project Manager Service Request Approved Process Activity Name: PRI-5.13 Receive IAM Change Requests Process Activity Name: PRI-5.14 Receive IAM Service Request Decision Process Activity Name: PRI-5.15 Close IAM Service Request Process Activity Name: PRI-6 Register Project with Enterprise Systems Engineering Process Activity Name: PRI-6.1 Complete ESE Registration Form (Initial) Process Activity Name: PRI-6.2 Set Up ESE Process Initiation (PI) Meeting. 51 Process Activity Name: PRI-6.3 Conduct PI Meeting and Confirm Preliminary Requirements Process Activity Name: PRI-6.4 Update Work Breakdown Structure Process Activity Name: PRI-7 Establish and Resource Integrated Project Team Process Activity Name: PRI-7.1 Determine IPT Resource Requirements Process Activity Name: PRI-7.2 Submit HPS Intake Form Process Activity Name: PRI Populate HPS Intake Form Process Activity Name: PRI Determine Tier 2 IPT Member Process Activity Name: PRI Create Intake Tracker Record Process Activity Name: PRI Review Intake Form Process Activity Name: PRI Create Intake Assessment Findings Report Process Activity Name: PRI Update Intake Tracker Process Activity Name: PRI Communicate Intake Assessment Findings Report Process Activity Name: PRI Receive Intake Assessment Findings Report Process Activity Name: PRI-7.3 Submit Request for ISO Support Process Activity Name: PRI Submit Request for ISO Support Form Process Activity Name: PRI Perform Security Review Process Activity Name: PRI Receive Security Review Findings Process Activity Name: PRI-7.4 Conduct Security Impact Analysis Process Activity Name: PRI Initiate Security Impact Analysis Process Activity Name: PRI DEC01 Health Product? Process Activity Name: PRI Assign HCSR Resource Process Activity Name: PRI Conduct Security Impact Analysis Process Activity Name: PRI Communicate Security Impact Analysis.. 70 Process Activity Name: PRI-7.5 Submit Privacy Threshold Analysis Process Activity Name: PRI Submit/Update Privacy Threshold Analysis Request Project Initiation ii
4 Process Activity Name: PRI Review Privacy Threshold Analysis Process Activity Name: PRI DEC01 Complete? Process Activity Name: PRI Review Privacy Threshold Analysis Request Process Activity Name: PRI DEC01 Approved? Process Activity Name: PRI Accept Privacy Threshold Analysis Process Activity Name: PRI DEC01 Accepted? Process Activity Name: PRI Receive Completed Privacy Threshold Analysis Process Activity Name: PRI-7.6 Submit SDE PAO New Project Request Form Process Activity Name: PRI-7.7 Submit ASD IPT Support Request Process Activity Name: PRI-7.8 Submit Privacy Officer Support Request Process Activity Name: PRI-7.9 Receive Notifications of IPT Member Assignments Process Activity Name: PRI-7.10 Form Integrated Project Team Process Activity Name: PRI-PR1 Conduct Peer Review of the Business Requirements Document Process Activity Name: PRI-FR1 Conduct Formal Review of the Business Requirements Document Process Activity Name: PRI-FR1-DEC01 Requirements Sufficient? Process Activity Name: PRI-8 Elaborate Business Requirements Process Activity Name: PRI-9 Select Design Approach Process Activity Name: PRI-MS0 Conduct Milestone 0 Review Project Initiation iii
5 Project Initiation Process Maps Project Initiation Office of Responsibility home overview MS0 raci help PRI-9 Select Design Approach Project Manager PRI-5 Evaluate Enterprise Shared Services PRI-4 Create Project Charter PRI-6 Register Project with Enterprise Systems Engineering PRI-7 Establish and Resource Integrated Project Team F P Yes Requirements Sufficient? No PRI-3 Develop Initial Infrastructure Rough Order of Magnitude Business Analyst PRI-1 Define Business Requirements PRI-2 Create QUAD Chart PRI-8 Elaborate Business Requirements The links in this process map are inactive. Please scroll to view activity data. 1
6 Project Initiation: PRI-1 Define Business Requirements home proc ess overview raci help Segment Architect PRI-1.3 Identify Segment Content Yes EA Architect PRI-1.2 Identify EA Content Segment Level Content? No Business Analyst PRI-1.1 Identify Needs and Capabilities PRI-1.4 Update Business Requirements with EA Traceability The links in this process map are inactive. Please scroll to view activity data. 2
7 Project Initiation: PRI-5 Evaluate Enterprise Shared Services IAM Governance Review Intake Team No Yes Approved? PRI-5.8 Review IAM Service Request home process overview PRI-5.9 Assign IAM Team Members raci help IAM Governance Manager PRI-5.3 Determine Need for IAM Service Request PRI-5.2 Receive IAM Service Request PRI-5.4 Schedule IAM Service Request Review Meeting Yes IAM Required? No PRI-5.5 Review IAM Service Request Package Concur? No Yes PRI-5.7 Obtain IAM MOU Signatures PRI-5.6 Schedule Governance Review Intake Team Meeting PRI-5.11 Notify IAM Project Manager Change Requests Created PRI-5.10 Create IAM Change Requests PRI-5.12 Notify Project Manager Service Request Approved IAM Project Manager PRI-5.13 Receive IAM Change Requests Project Manager PRI-5.1 Submit IAM Service Request Additional Services? Yes No PRI-5.14 Receive IAM Service Request Decision To: RFSC Request for Service Consumption PRI-5.15 Close IAM Service Request From: RFSC Request for Service Consumption The links in this process map are inactive. Please scroll to view activity data. 3
8 Project Initiation: PRI-6.0 Register Project with Enterprise Systems Engineering home process overview raci help Project Manager PRI-6.1 Complete ESE Registration Form (Initial) PRI-6.4 Update Work Breakdown Structure ESE Release Readiness Officer PRI-6.2 Set Up ESE Process Initiation (PI) Meeting PRI-6.3 Conduct PI Meeting and Confirm Preliminary Requirements The links in this process map are inactive. Please scroll to view activity data. 4
9 Project Initiation: PRI-7 Establish and Resource Integrated Project Team home process overview raci help PRI-7.2 Submit HPS Intake Form PRI-7.6 Submit SDE PAO New Project Request Form Project Manager PRI-7.1 Determine IPT Resource Requirements PRI-7.3 Submit Request for ISO Support PRI-7.4 Conduct Security Impact Analysis PRI-7.7 Submit ASD IPT Support Request PRI-7.8 Submit Privacy Officer Support Request PRI-7.9 Receive Notifications of IPT Member Assignments PRI-7.10 Form Integrated Project Team PRI-7.5 Submit Privacy Threshold Analysis The links in this process map are inactive. Please scroll to view activity data. 5
10 Project Initiation: PRI-7.2 Submit HPS Intake Form home process back overview raci help Project Manager PRI Populate HPS Intake Form PRI Receive Intake Assessment Findings Report Tier 2 (T2) Helath Product Support Specialist PRI Determine Tier 2 IPT Member Tier 3 (T3) Sustainment Manager PRI Create Intake Tracker Record PRI Review Intake Form PRI Create Intake Assessment Findings Report PRI Update Intake Tracker PRI Communicate Intake Assessment Findings Report The links in this process map are inactive. Please scroll to view activity data. 6
11 Project Initiation: PRI-7.3 Submit Request for ISO Support home process back overview raci help Project Manager PRI Submit Request for ISO Support Form PRI Receive Security Review Findings Information Security Officer PRI Perform Security Review The links in this process map are inactive. Please scroll to view activity data. 7
12 Project Initiation: PRI-7.4 Conduct Security Impact Analysis home process back overview raci help Project Manager PRI Initiate Security Impact Analysis Health Product? Yes No PRI Conduct Security Impact Analysis PRI Communicate Security Impact Analysis Director Health Care Security Requirements PRI Assign HCSR Resource The links in this process map are inactive. Please scroll to view activity data. 8
13 Project Initiation: PRI-7.5 Submit Privacy Threshold Analysis home process back overview raci help Privacy Services PRI Accept Privacy Threshold Analysis Accepted? No Yes System Owner Yes Approved? No PRI Review Privacy Threshold Analysis Request Privacy Officer PRI Review Privacy Threshold Analysis Yes Complete? No Project Manager PRI Submit/Update Privacy Threshold Analysis Request PRI Receive Completed Privacy Threshold Analysis The links in this process map are inactive. Please scroll to view activity data. 9
14 Process: Project Initiation Overview: The process map for Project Initiation cycles through the following process and review activities: PRI-1 Define Business Requirements PRI-1.1 Identify Needs and Capabilities PRI-1.2 Identify EA Content PRI-1.2-DEC01 Segment Level Content? PRI-1.3 Identify Segment Content PRI-1.4 Update Business Requirements with EA Traceability PRI-2 Create QUAD Chart PRI-3 Develop Initial Infrastructure Rough Order of Magnitude PRI-4 Create Project Charter PRI-5 Evaluate Enterprise Shared Services PRI-5.1 Submit IAM Service Request PRI-5.2 Receive IAM Service Request PRI-5.3 Determine Need for IAM Service Request PRI-5.3-DEC01 IAM Required? PRI-5.3-DEC02 Additional Services? PRI-5.4 Schedule IAM Service Request Review Meeting PRI-5.5 Review IAM Service Request Package PRI-5.5-DEC01 Concur? PRI-5.6 Schedule Governance Review Intake Team Meeting PRI-5.7 Obtain IAM MOU Signatures PRI-5.8 Review IAM Service Request PRI-5.8-DEC01 Approved? PRI-5.9 Assign IAM Team Members PRI-5.10 Create IAM Change Requests PRI-5.11 Notify IAM Project Manager Change Requests Created PRI-5.12 Notify Project Manager Service Request Approved PRI-5.13 Receive IAM Change Requests PRI-5.14 Receive IAM Service Request Decision PRI-5.15 Close IAM Service Request PRI-6 Register Project with Enterprise Systems Engineering PRI-6.1 Complete ESE Registration Form (Initial) PRI-6.2 Set Up ESE Process Initiation (PI) Meeting PRI-6.3 Conduct PI Meeting and Confirm Preliminary Requirements PRI-6.4 Update Work Breakdown Structure PRI-7 Establish and Resource Integrated Project Team PRI-7.1 Determine IPT Resource Requirements PRI-7.2 Submit HPS Intake Form PRI Populate HPS Intake Form PRI Determine Tier 2 IPT Member PRI Create Intake Tracker Record PRI Review Intake Form PRI Create Intake Assessment Findings Report Project Initiation 10
15 PRI Update Intake Tracker PRI Communicate Intake Assessment Findings Report PRI Receive Intake Assessment Findings Report PRI-7.3 Submit Request for ISO Support PRI Submit Request for ISO Support Form PRI Perform Security Review PRI Receive Security Review Findings PRI-7.4 Conduct Security Impact Analysis PRI Initiate Security Impact Analysis PRI DEC01 Health Product? PRI Assign HCSR Resource PRI Conduct Security Impact Analysis PRI Communicate Security Impact Analysis PRI-7.5 Submit Privacy Threshold Analysis PRI Submit/Update Privacy Threshold Analysis Request PRI Review Privacy Threshold Analysis PRI DEC01 Complete? PRI Review Privacy Threshold Analysis Request PRI DEC01 Approved? PRI Accept Privacy Threshold Analysis PRI DEC01 Accepted? PRI Receive Completed Privacy Threshold Analysis PRI-7.6 Submit SDE PAO New Project Request Form PRI-7.7 Submit ASD IPT Support Request PRI-7.8 Submit Privacy Officer Support Request PRI-7.9 Receive Notifications of IPT Member Assignments PRI-7.10 Form Integrated Project Team PRI-PR1 Conduct Peer Review of the Business Requirements Document PRI-FR1 Conduct Formal Review of the Business Requirements Document PRI-FR1-DEC01 Requirements Sufficient? PRI-8 Elaborate Business Requirements PRI-9 Select Design Approach PRI-MS0 Conduct Milestone 0 Review Project Initiation 11
16 Project Initiation and Goals Project Initiation is the process by which a project transitions from the Project Management Accountability System (PMAS) state of "New Start" into the state of "Planning". A project New Start state is a candidate for Planning once the project has been added to the Business Operating Plan and the Enterprise Project Structure identifies the funds released by the Information Technology Resource Management (ITRM). Projects require a Milestone 0 review to establish if in full compliance before transitioning to Planning. The Project Manager is responsible for establishing the Milestone 0 review through the applicable Office Of Responsibility. Goals The Goals of Project Initiation are as follows: - To determine if the business requirements are sufficient - To determine if the service level requirements are sufficient - To create a high level spend plan - To identify the project team - To ensure privacy requirements are determined - To ensure identity and access management requirements are determined - To ensure security and if needed, Compliance, Advising and Security Engineering (CASE) management requirements are determined - To identify the integrated project team - To ensure design pattern guidance is reviewed for the project's development activity types when determining the overall design approach - To determine if the project is ready for the planning state Project Initiation 12
17 Project Initiation RACI Information The following describes the RACI information for this process: PRI-1.1 Identify Needs and Capabilities : Business Analyst Accountable Role: Business Unit Lead Consulted Role: Business Analyst, Stakeholder(s), System Owner PRI-1.2 Identify EA Content : Enterprise Architect Accountable Role: Business Unit Lead PRI-1.2-DEC01 Segment Level Content? : Enterprise Architect Accountable Role: PRI-1.3 Identify Segment Content : Segment Architect Accountable Role: Business Unit Lead Informed Role: Stakeholder(s) PRI-1.4 Update Business Requirements with EA Traceability : Business Analyst Accountable Role: Business Unit Lead Informed Role: Stakeholder(s) PRI-2 Create QUAD Chart : Business Analyst Project Initiation 13
18 Accountable Role: Business Unit Lead Consulted Role: Office of Responsibility Informed Role: Stakeholder(s) PRI-3 Develop Initial Infrastructure Rough Order of Magnitude : Project Manager Accountable Role: Program Manager Consulted Role: Enterprise Operations Storage Management Informed Role: Stakeholder(s) PRI-4 Create Project Charter : Project Manager Accountable Role: Program Manager Consulted Role: Business Sponsor, Integrated Project Team Member, Program Manager Informed Role: Stakeholder(s) PRI-5.1 Submit IAM Service Request : Project Manager Accountable Role: Program Manager PRI-5.2 Receive IAM Service Request : Identity and Access Management Governance Manager Accountable Role: Identity and Access Management Governance Review Intake Team PRI-5.3 Determine Need for IAM Service Request : Identity and Access Management Governance Manager Accountable Role: Identity and Access Management Governance Review Intake Team Informed Role: Project Manager Project Initiation 14
19 PRI-5.3-DEC01 IAM Required? : Identity and Access Management Governance Manager Accountable Role: PRI-5.3-DEC02 Additional Services? : Project Manager Accountable Role: PRI-5.4 Schedule IAM Service Request Review Meeting : Identity and Access Management Governance Manager Accountable Role: Identity and Access Management Governance Review Intake Team Consulted Role: Project Team PRI-5.5 Review IAM Service Request Package : Identity and Access Management Governance Manager Accountable Role: Identity and Access Management Governance Review Intake Team Consulted Role: Project Team PRI-5.5-DEC01 Concur? : Project Manager Accountable Role: PRI-5.6 Schedule Governance Review Intake Team Meeting : Identity and Access Management Governance Manager Accountable Role: Identity and Access Management Governance Review Intake Team Consulted Role: Project Manager Informed Role: Business Sponsor Project Initiation 15
20 PRI-5.7 Obtain IAM MOU Signatures : Identity and Access Management Governance Manager Accountable Role: Identity and Access Management Governance Review Intake Team Consulted Role: Stakeholder(s) PRI-5.8 Review IAM Service Request : Identity and Access Management Governance Review Intake Team Accountable Role: Identity and Access Management Governance Review Intake Team Consulted Role: Business Sponsor, Governance Review Intake Team, Project Team PRI-5.8-DEC01 Approved? : Identity and Access Management Governance Review Intake Team Accountable Role: PRI-5.9 Assign IAM Team Members : Identity and Access Management Governance Review Intake Team Accountable Role: Office of Responsibility PRI-5.10 Create IAM Change Requests : Identity and Access Management Governance Manager Accountable Role: Identity and Access Management Governance Review Intake Team PRI-5.11 Notify IAM Project Manager Change Requests Created : Identity and Access Management Governance Manager Accountable Role: Identity and Access Management Governance Review Intake Team Informed Role: Identity and Access Management Project Manager PRI-5.12 Notify Project Manager Service Request Approved Project Initiation 16
21 : Identity and Access Management Governance Manager Accountable Role: Identity and Access Management Governance Review Intake Team Informed Role: Project Manager PRI-5.13 Receive IAM Change Requests : Identity and Access Management Project Manager Accountable Role: Identity and Access Management Governance Manager Informed Role: Governance Review Intake Team PRI-5.14 Receive IAM Service Request Decision : Project Manager Accountable Role: Program Manager Informed Role: Project Team, Stakeholder(s) PRI-5.15 Close IAM Service Request : Project Manager Accountable Role: Program Manager PRI-6.1 Complete ESE Registration Form (Initial) : Project Manager Accountable Role: Product Manager PRI-6.2 Set Up ESE Process Initiation (PI) Meeting : Enterprise Systems Engineering Release Officer Accountable Role: Deputy Director, Enterprise Systems Engineering Informed Role: Capacity and Performance Management Analyst, Enterprise Systems Engineering Capacity Planning and Engineering Operational Readiness Review Analyst, Health Product Support Release Coordinator, Enterprise Systems Engineering Test Analyst, Release Readiness Office POC, Service Delivery and Engineering Point of Contact, VHA Release Management Team Project Initiation 17
22 PRI-6.3 Conduct PI Meeting and Confirm Preliminary Requirements : Enterprise Systems Engineering Release Officer Accountable Role: Deputy Director, Enterprise Systems Engineering Consulted Role: Capacity and Performance Management Analyst, Enterprise Systems Engineering Capacity Planning and Engineering Operational Readiness Review Analyst, Health Product Support Release Coordinator, Release Readiness Office POC, Service Delivery and Engineering Point of Contact, 508 Reviewer, VHA Release Management Team PRI-6.4 Update Work Breakdown Structure : Project Manager Accountable Role: Program Manager Informed Role: Project Team PRI-7.1 Determine IPT Resource Requirements : Project Manager Accountable Role: Program Manager Informed Role: Stakeholder(s) PRI Populate HPS Intake Form : Project Manager Accountable Role: Program Manager Informed Role: Health Product Support Release Coordinator PRI Determine Tier 2 IPT Member : Tier 2 (T2) Health Product Support Specialist Accountable Role: Tier 2 (T2) Health Product Support Division Director Informed Role: Tier 2 (T2) Health Product Support Specialist Project Initiation 18
23 PRI Create Intake Tracker Record : Tier 3 (T3) Sustainment Manager Accountable Role: Director, Health Product Support PRI Review Intake Form : Tier 3 (T3) Sustainment Manager Accountable Role: Director, Health Product Support PRI Create Intake Assessment Findings Report : Tier 3 (T3) Sustainment Manager Accountable Role: Director, Health Product Support PRI Update Intake Tracker : Tier 3 (T3) Sustainment Manager Accountable Role: Director, Health Product Support PRI Communicate Intake Assessment Findings Report : Tier 3 (T3) Sustainment Manager Accountable Role: Director, Health Product Support Informed Role: Project Manager PRI Receive Intake Assessment Findings Report : Project Manager Accountable Role: Program Manager Informed Role: Business Sponsor, Integrated Project Team, Stakeholder(s) PRI Submit Request for ISO Support Form : Project Manager Project Initiation 19
24 Accountable Role: Director, Software Development Informed Role: Information Security Officer PRI Perform Security Review : Information Security Officer Accountable Role: Director, Office of Cyber Security Informed Role: Project Manager, Stakeholder(s) PRI Receive Security Review Findings : Project Manager Accountable Role: Director, Software Development Informed Role: Integrated Project Team, Project Team, Stakeholder(s) PRI Initiate Security Impact Analysis : Project Manager Accountable Role: Director, Software Development Consulted Role: Information Security Officer, Privacy Officer, Privacy Services Informed Role: Integrated Project Team PRI DEC01 Health Product? : Project Manager Accountable Role: Director, Software Development PRI Assign HCSR Resource : Director, Health Care Security Requirements Accountable Role: Project Manager Consulted Role: Information Security Officer, Privacy Officer Informed Role: Health Care Security Requirements (HCSR) Security Specialist, Integrated Project Team Project Initiation 20
25 PRI Conduct Security Impact Analysis : Project Manager Accountable Role: Director, Office of Cyber Security Consulted Role: Health Care Security Requirements (HCSR) Security Specialist, Information Security Officer, Privacy Officer Informed Role: Integrated Project Team PRI Communicate Security Impact Analysis : Project Manager Accountable Role: Director, Software Development Consulted Role: Integrated Project Team, Information Security Officer, Privacy Officer, Privacy Services Informed Role: Health Care Security Requirements (HCSR) Security Specialist, Stakeholder(s) PRI Submit/Update Privacy Threshold Analysis Request : Project Manager Accountable Role: Director, Software Development Informed Role: Integrated Project Team, Privacy Officer, System Owner PRI Review Privacy Threshold Analysis : Privacy Officer Accountable Role: Director, Office of Cyber Security PRI DEC01 Complete? : Privacy Officer Accountable Role: Director, Office of Cyber Security PRI Review Privacy Threshold Analysis Request Project Initiation 21
26 : System Owner Accountable Role: System Owner PRI DEC01 Approved? : System Owner Accountable Role: Project Manager PRI Accept Privacy Threshold Analysis : Privacy Services Accountable Role: Director, Office of Cyber Security PRI DEC01 Accepted? : Privacy Services Accountable Role: Director, Office of Cyber Security PRI Receive Completed Privacy Threshold Analysis : Project Manager Accountable Role: Director, Software Development PRI-7.6 Submit SDE PAO New Project Request Form : Project Manager Accountable Role: Program Manager PRI-7.7 Submit ASD IPT Support Request : Project Manager Accountable Role: Program Manager PRI-7.8 Submit Privacy Officer Support Request Project Initiation 22
27 : Project Manager Accountable Role: Program Manager Consulted Role: Administrations and Staff Offices Leadership Informed Role: Privacy Officer, Stakeholder(s) PRI-7.9 Receive Notifications of IPT Member Assignments : Project Manager Accountable Role: Program Manager Informed Role: Integrated Project Team, Stakeholder(s) PRI-7.10 Form Integrated Project Team : Project Manager Accountable Role: Program Manager Consulted Role: Integrated Project Team, Stakeholder(s) PRI-PR1 Conduct Peer Review of the Business Requirements Document : Project Manager Accountable Role: Program Manager Consulted Role: Integrated Project Team, Project Team PRI-FR1 Conduct Formal Review of the Business Requirements Document : Project Manager Accountable Role: Program Manager Consulted Role: Stakeholder(s) PRI-FR1-DEC01 Requirements Sufficient? : Project Manager Accountable Role: Program Manager Project Initiation 23
28 PRI-8 Elaborate Business Requirements : Business Analyst Accountable Role: Business Unit Lead PRI-9 Select Design Approach : Project Manager Accountable Role: Program Manager PRI-MS0 Conduct Milestone 0 Review : Office of Responsibility Accountable Role: Deputy Assistant Secretary/Deputy Chief Information Officer Consulted Role: 508 Reviewer, Office of Responsibility, Stakeholder(s) Project Initiation 24
29 Project Initiation Process Process Activity Name: PRI-1 Define Business Requirements Note: This activity is performed concurrently with: PRI-2 Create QUAD Chart PRI-3 Develop Initial Infrastructure Rough Order of Magnitude None PRI-4 Create Project Charter The sub-process map PRI-1 Define Business Requirements process cycles through the following dependent activities: PRI-1.1 Identify Needs and Capabilities PRI-1.2 Identify EA Content PRI-1.3 Identify Segment Content PRI-1.4 Update Business Requirements with EA Traceability Process Activity Name: PRI-1.1 Identify Needs and Capabilities None PRI-1.2 Identify EA Content The Business Analyst ensures the Business Requirements document (BRD) is created in draft form by the Enterprise Systems Manager, Office of Business Process Integration, or Corporate Business Analyst to capture and describe the business needs of the customer/business owner and identifies the needs and reviews the capabilities the stakeholders and the target users identify and why these needs exist, providing a focused overview of the requirements, constraints, and Information Technology options considered, including insight into the current state, current capabilities and proposed business area or process and identifies stakeholders and profiles primary and secondary user communities. The business analyst also specifically addresses requirements for identity and access service needs. Business Needs Documents New Service Request Project Initiation 25
30 Service Level Requirements Artifacts Created Business Flow Diagrams Business Requirements Document Business Analyst IBM Rational Requirements Composer IBM Rational RequisitePro VA EA Enterprise Technical Architecture (ETA) Compliance Criteria Requirement Level Guide VA Identify Management Policy (VAIQ ) All community generated Open Source products (products developed by anyone outside the VA national development resources) that are identified as viable candidates to be used within VA must be reviewed by the business community to assure that stakeholders approve all of the functionality that is provided in any such product. For VHA, contact Health Systems staff to ensure the proper Program Offices are engaged. The project team may use either IBM Rational RequisitePro or IBM Rational Requirements Composer until IBM Rational RequisitePro is officially discontinued. Process Activity Name: PRI-1.2 Identify EA Content PRI-1.1 Identify Needs and Capabilities PRI-1.2-DEC01 Segment Level Content? The Enterprise Architect (EA) identifies EA content and determines if the business needs fall within the current Business Reference Model and Service Reference Model and if the capability to meet the needs currently exists. Business Requirements Document Project Initiation 26
31 Artifacts Created Updated Business Requirements Document Enterprise Architect Business Reference Model VA Systems Inventory Requirement Level Guide All community generated Open Source products (products developed by anyone outside the VA national development resources) that are identified as viable candidates to be used within VA must be reviewed by the business community to assure that stakeholders approve all of the functionality that is provided in any such product. For VHA, contact Health Systems staff to ensure the proper Program Offices are engaged. The Feedback section of the VA Systems Inventory can be used to provide update for existing system or Register new system. Process Activity Name: PRI-1.2-DEC01 Segment Level Content? PRI-1.2 Identify EA Content If Yes, PRI-1.3 Identify Segment Content If No, PRI-1.4 Update Business Requirements with EA Traceability Note: There is a decision dependency that determines the next activity: The EA Architect determines if there is segment level content. If Yes, the next activity is PRI-1.3 Identify Segment Content. If No, the next activity is Update Business Requirements with EA Traceability. Project Initiation 27
32 Enterprise Architect Process Activity Name: PRI-1.3 Identify Segment Content PRI-1.2-DEC01 Segment Level Content? is YES PRI-1.4 Update Business Requirements with EA Traceability The Segment Architect identifies and articulates the changes the business needs drive to the target business and information architectures by: - Analyzing the gap between current and proposed business information environments in the context of business needs, - Determining which elements within the current state business and information environment must change to meet desired improvements, - Describing required changes to the business and information environment and whether these changes are currently addressed with - planned initiatives or investments, - Ensuring that both functional and non-functional requirements are identified. As-is Business Function Model As-is Business Value Chain Diagrams As-is Key Business Process Models As-is Key Business Process Swim Lane Diagrams As-is Key Information Sources Qualitative Assessment Business Requirements Document Common/Mission Services Maturity Levels Existing documentation on current business and information environment (practices, rules, PAR, applicable PART) Segment Scope and Strategic Intent Artifacts Created Updated Business Requirements Document Segment Architect IBM Rational Requirements Composer Project Initiation 28
33 IBM Rational RequisitePro Requirement Level Guide All community generated Open Source products (products developed by anyone outside the VA national development resources) that are identified as viable candidates to be used within VA must be reviewed by the business community to assure that stakeholders approve all of the functionality that is provided in any such product. For VHA, contact Health Systems staff to ensure the proper Program Offices are engaged. The project team may use either IBM Rational RequisitePro or IBM Rational Requirements Composer until IBM Rational RequisitePro is officially discontinued. Process Activity Name: PRI-1.4 Update Business Requirements with EA Traceability PRI-1.3 Identify Segment Content Or PRI-1.2-DEC01 Segment Level Content? is NO PRI-4 Create Project Charter The Business Analyst updates the Business Requirements Document (BRD) providing documentation at a maturity level of 2 (at a minimum) sufficient to support subsequent IT Project Planning. Business Requirements Document Artifacts Created Updated Business Requirements Document Business Analyst IBM Rational Requirements Composer IBM Rational RequisitePro Project Initiation 29
34 Requirement Level Guide All community generated Open Source products (products developed by anyone outside the VA national development resources) that are identified as viable candidates to be used within VA must be reviewed by the business community to assure that stakeholders approve all of the functionality that is provided in any such product. For VHA, contact Health Systems staff to ensure the proper Program Offices are engaged. The project team may use either IBM Rational RequisitePro or IBM Rational Requirements Composer until IBM Rational RequisitePro is officially discontinued. Process Activity Name: PRI-2 Create QUAD Chart Note: This activity is performed concurrently with: PRI-1 Define Business Requirements PRI-3 Develop Initial Infrastructure Rough Order of Magnitude None PRI-4 Create Project Charter The Business Analyst is responsible for the creation of the QUAD Chart which is a formal document that summarizes the high level scope, deliverables, schedule, and planned budget for a set of business requirements. The Business Analyst collaborates with the Office of Responsibility and assigned support staff to create the QUAD Chart and to obtain the Enterprise Project Structure (EPS) Number for the project. The QUAD Chart is used as a communication tool across organizations and is designed to support the decision making and prioritization process. Business Requirements Document Office of Responsibility and Support Staff Designation Artifacts Created Quad Chart Business Analyst Project Initiation 30
35 PMAS Dashboard QUAD Information Change to Project Management Accountability System (PMAS) Guide V5.0 (VAIQ ) Project Management Accountability System (PMAS) Guide Please the VA OIT PD PPO IM mail group if you have specific questions or concerns. Please the VA OIT PD PPO EPS mail group if you have specific questions or concerns about EPS numbers. The EPS number is located under the EPS tab on the PMAS Dashboard menu. Process Activity Name: PRI-3 Develop Initial Infrastructure Rough Order of Magnitude Note: This activity is performed concurrently with: PRI-1 Define Business Requirements PRI-2 Create Quad Chart None PRI-4 Create Project Charter The Project Manager develops an initial rough order or magnitude (ROM) infrastructure and sustainment cost estimate for budget request purposes using the Government-Hosted Cloud/Shared Infrastructure Estimating Tool. The ROM is used to create a high level spend plan. The ROM estimates are not binding. Precise infrastructure and sustainment cost information are formulated by Enterprise Operations when the requisite project artifacts are submitted and the Systems Engineering and Design Review (SEDR) is completed later in the system development life cycle. To request an architected solution, a request to VAITSDEEOIntakeArchitecturalServicesAllStaff. Business Requirements Document (BRD) QUAD Chart Artifacts Created Corporate Data Center Operations (CDCO) Pricing Matrix, if used Infrastructure ROM Project Initiation 31
36 Updated Quad Chart Project Manager Government-Hosted Cloud/Shared Infrastructure Estimating Process Activity Name: PRI-4 Create Project Charter Note: The following activities are performed concurrently. PRI-1 Define Business Requirements PRI-2 Create QUAD Chart PRI-3 Develop Initial Infrastructure Rough Order of Magnitude PRI-5 Evaluate Enterprise Shared Services The Project Manager creates the Project Charter. If an existing Project Charter was created, it should be updated to include any revisions such as scope, etc. The revised Project Charter is signed by the Business Sponsor, Program Manager, Project Manager, and Integrated Project Team Chair. Business Requirements Document Artifacts Created Project Charter Project Manager Project Initiation 32
37 Communications Services Technical Services Project Repository (TSPR) Change to Project Management Accountability System (PMAS) Guide V5.0 (VAIQ ) Project Management Accountability System (PMAS) Guide VA EA Enterprise Technical Architecture (ETA) Compliance Criteria For information on how to set up a project folder on the PMAS portal, the Project Manager contacts the Communications Representative. If the Communications Representative is not known, then the Project Manager contacts the OIT PD Communications Managers mail group for assistance or goes to the Communication Services web site to view the current list of representatives. The OneVA EA ETA Compliance Criteria document establishes minimum compliance criteria for a product or product release. Process Activity Name: PRI-5 Evaluate Enterprise Shared Services PRI-4 Create Project Charter PRI-6 Register Project with Enterprise Systems Engineering The sub-process PRI-4 Evaluate Enterprise Shared Services process cycles through the following dependent activities: PRI-5.1 Submit IAM Service Request PRI-5.2 Receive IAM Service Request PRI-5.3 Determine Need for IAM Service Request PRI-5.4 Schedule IAM Service Request Review Meeting PRI-5.5 Review IAM Service Request Package PRI-5.6 Schedule Governance Review Intake Meeting PRI-5.7 Obtain IAM MOU Signatures PRI-5.8 Review IAM Service Request PRI-5.9 Assign IAM Team Members Project Initiation 33
38 PRI-5.10 Create IAM Change Requests PRI-5.11 Notify IAM Project Manager Change Requests Created PRI-5.12 Notify Project Manager Service Request Approved PRI-5.13 Receive IAM Change Requests PRI-5.14 Receive IAM Service Request Decision PRI-5.15 Close IAM Service Request Process Activity Name: PRI-5.1 Submit IAM Service Request PRI-4 Create Project Charter PRI-5.2 Receive IAM Service Request The Project Manager submits the Identity and Access Management (IAM) Service Request following the guidance available in the IAM Service Request Submission User Guide. The IAM Service Request, the Business Requirements Document, and the Business Flow Diagrams are submitted together as the IAM Service Request Package. The Business Requirements Document and Business Flow Diagrams must accompany the submitted service request. Within the attached BRD, highlight the business requirements sections applicable to the IAM request, and note the sections in the IAM Service Request online tool. For requests linked to an existing BRD, ensure the functionality within the BRD describes: - As is state - To be state - Expected benefits Business Process Models Business Requirements Document IAM Service Request Package Artifacts Created IAM Service Request Updated IAM Service Request Package Project Manager Project Initiation 34
39 Identity and Access Management Central Home IAM Service Request Submission User Guide The IAM Service Request form identifies business needs and specific IAM services required. The IAM Service Request allows the IAM Service Request Team to review and track the request from submission through implementation. The requester only fills out Sections 1.0 and 2.1 of the IAM Service Request. Within the attached BRD, highlight the business requirements sections applicable to the IAM request and note that section in the Service Request online tool. The project manager can provide a link to the project's Technical Services Project Repository (TSPR) site. If you have any questions regarding the IAM Governance process or need assistance with completing the Service Request form, please contact IAM Governance at the IAM Service Request mail group. Process Activity Name: PRI-5.2 Receive IAM Service Request PRI-5.1 Submit IAM Service Request PRI-5.3 Determine Need for IAM Service Request The Identity and Access Management (IAM) Governance Manager receives the IAM Service Request and IAM Service Request Package and enters the IAM Service Request into the IAM Service Work Plan. IAM Service Request IAM Service Request Package Artifacts Created Updated IAM Service Work Plan Identity and Access Management Governance Manager Identity and Access Management Central Home IAM Service Request Submission User Guide Project Initiation 35
40 The IAM Governance Manager is the project manager's point of contact for the request for questions and status updates regarding the IAM Service Request. Process Activity Name: PRI-5.3 Determine Need for IAM Service Request PRI-5.2 Receive IAM Service Request OR PRI-5.8-DEC01 Approved? is NO PRI-5.3-DEC01 IAM Required? The Identity and Access Management (IAM) Governance Manager determines the need for an Identity and Access Management (IAM) Service Request. If a determination is made that submission of an IAM Service Request is not necessary, the Identity and Access Management (IAM) Governance Manager documents that decision with a memorandum for the record and notifies the Project Manager Business Flow Diagram Business Requirements Document Artifacts Created IAM Service Request Package Memorandum for the Record, if needed Updated Business Requirements Document (if needed) Identity and Access Management Governance Manager Identity and Access Management Central Home Identity and Access Management Services Master Glossary Technical Services Project Repository (TSPR) IAM Service Request Submission User Guide VA EA Enterprise Technical Architecture (ETA) Compliance Criteria Project Initiation 36
41 VA Identify Management Policy (VAIQ ) The IAM Central Website provides guidance regarding business processes and the specific IAM services that enable project teams to satisfy the VA enterprise requirements. The requester is only required to fill out Sections 1.0 & 2.1 of the Service Request. If there are any questions regarding the IAM Governance process or assistance needed with completing the Service Request form and Service Request Package, please contact IAM Governance at the IAM Service Request mail group. Process Activity Name: PRI-5.3-DEC01 IAM Required? PRI-5.3 Determine Need for IAM Service Request If Yes, PRI-5.4 Schedule IAM Service Request Review Meeting If No, PRI-5.3-DEC02 Additional Services? Note: There is a Decision Activity that determines the next activity: If the Identity and Access Management Governance Manager determines IAM is required the next activity is PRI-5.4 Schedule IAM Service Request Review Meeting. If the Identity and Access Management Governance Manager determines IAM is not required the next activity is PRI-5.3-DEC02 Additional Services? Identity and Access Management Governance Manager Process Activity Name: PRI-5.3-DEC02 Additional Services? PRI-5.3 DEC01 IAM Required? is NO If Yes, there is a flow to the Request for Service Consumption Process. If No, PRI-6 Evaluate Enterprise Shared Services. Note: There is a decision dependency that determines the next activity to complete: Project Initiation 37
42 If the Enterprise Shared Services are required the next activity to complete is a flow to the Request for Service Consumption Process. If the Enterprise Shared Services not required the next activity to complete is PRI-6 Register Project with Enterprise Systems Engineering. Project Manager Process Activity Name: PRI-5.4 Schedule IAM Service Request Review Meeting PRI-5.3-DEC01 IAM Required? is YES PRI-5.5 Review IAM Service Request Package The Identity and Access Management (IAM) Governance Manager schedules a review of the IAM Service Request Package with the Project Manager to ensure all materials are complete and ready for continued submission to the IAM Governance Review Intake Team (GRIT). IAM Service Request IAM Service Request Package IAM Work Plan Artifacts Created Updated IAM Work Plan Identity and Access Management Governance Manager Identity and Access Management Central Home IAM Service Request Submission User Guide Project Initiation 38
43 Any questions regarding the IAM Governance process or assistance needed with completing the IAM Service Request form, please contact IAM Governance at the IAM Service Request mail group. Process Activity Name: PRI-5.5 Review IAM Service Request Package PRI-5.4 Schedule IAM Service Request Review Meeting PRI-5.5-DEC01 Concur? The Identity and Access Management (IAM) Governance Manager and Project Team representatives meet to review the IAM Service Request and IAM Service Request Package and ensure that IAM services are required and that all materials are ready for submission to the IAM Governance Review Intake Team (GRIT) for their review and approval. If the IAM Governance Manager concurs with the need for the IAM Service Request, the IAM Service Request Package is passed for scheduling to the IAM GRIT for review. If the IAM Governance Manager does not concur with the need for the IAM Service Request, the IAM Service Request is returned to the Project Manager with the Meeting Agenda and Minutes explaining the decision. IAM Service Request IAM Service Request Package IAM Work Plan Artifacts Created Artifact Review Agenda and Minutes Updated IAM Service Request Package Identity and Access Management Governance Manager Identity and Access Management Central Home Technical Services Project Repository (TSPR) IAM Service Request Submission User Guide Project Initiation 39
44 Process Activity Name: PRI-5.5-DEC01 Concur? PRI-5.5 Review IAM Service Request Package If Yes, PRI-5.6 Schedule Governance Review Intake Team Meeting If No, PRI-5.14 Receive IAM Service Request Decision Note: There is a decision dependency that determines the next activity to complete. If the IAM Governance Manager determines the need for an IAM Service Request the next activity to complete is PRI-4.6 Schedule Governance Review Intake Team Meeting. If the IAM Governance Manager determines there is no need for an IAM Service Request the next activity to complete is PRI-4.14 Receive IAM Service Request Decision. Project Manager Process Activity Name: PRI-5.6 Schedule Governance Review Intake Team Meeting PRI-5.5-DEC01 Concur? is YES PRI-5.7 Obtain IAM MOU Signatures The Identity and Access Management (IAM) Governance Manager, in conjunction with the Project Manager, schedules the IAM Governance Review Intake Team (GRIT) Meeting when the Business Sponsor, or designated representative, and the respective project team members can be available to discuss the content of the IAM Service Request and IAM Service Package. IAM Work Plan Project Initiation 40
45 Artifacts Created Updated IAM Work Plan Identity and Access Management Governance Manager Identity and Access Management Central Home The GRIT meets weekly. Any questions regarding the IAM Governance process please contact IAM Governance at the IAM Service Request mail group. Process Activity Name: PRI-5.7 Obtain IAM MOU Signatures PRI-5.6 Schedule Governance Review Intake Team Meeting PRI-5.8 Review IAM Service Request The Identity and Access (IAM) Governance Manager proceeds with preparing and obtaining necessary signatures on the Memorandum of Understanding defining the services and actions required of all parties. IAM Service Request IAM Service Request Package Artifacts Created IAM Memorandum of Understanding, signed Identity and Access Management Governance Manager Project Initiation 41
46 Identity and Access Management Central Home Technical Services Project Repository (TSPR) IAM Service Request Submission User Guide Process Activity Name: PRI-5.8 Review IAM Service Request PRI-5.7 Obtain IAM MOU Signatures PRI-5.8-DEC01 Approved? The IAM Governance Review Intake Team (GRIT) meets to review the IAM Service Request, IAM Service Request Package and Memorandum of Understanding. The entire requesting team (all POCs listed in the IAM Service Request POC listing) is required to attend the IAM GRIT meeting. The Business Sponsor or designated representative presents the business requirements and business flow diagrams from the IAM Service Request Package. The GRIT Team collectively determines to approve or disapprove IAM Service Request. If the IAM Service Request is disapproved, it is returned to the Project Manager with the Meeting Agenda and Minutes explaining the decision. If the IAM Service Request is approved, the IAM Governance Manager is notified to create and monitor the appropriate change requests. IAM Memorandum of Understanding, signed IAM Service Request IAM Service Request Package Artifacts Created Artifact Review Agenda and Minutes Identity and Access Management Governance Review Intake Team Identity and Access Management Central Home Technical Services Project Repository (TSPR) Project Initiation 42
47 Process Activity Name: PRI-5.8-DEC01 Approved? PRI-5.8 Review IAM Service Request If Yes, PRI-5.9 Assign IAM Team Members If No, PRI-5.3 Determine Need for IAM Service Request Note: There is a decision dependency that determines the next activity to complete: If the IAM Governance Review Intake Team approves the IAM Service Request the next activity to complete is PRI-4.9 Assign IAM Team Members. If the IAM Governance Review Intake Team does not approve the IAM Service Request the next activity to complete is PRI-4.3 Determine Need for IAM Service Request. Identity and Access Management Governance Review Intake Team Process Activity Name: PRI-5.9 Assign IAM Team Members PRI-5.8-DEC01 Approved? is YES PRI-5.10 Create IAM Change Requests The Identity and Access Management (IAM) Governance Intake Review Team (GRIT) assigns IAM Team Members to create the appropriate IAM Change Requests associated with the specifications contained in the approved IAM Service Request and IAM Service Request Package. Project Initiation 43
48 IAM Service Request IAM Service Request Package Meeting Agenda and Minutes Artifacts Created IAM Team Member Assignment Memorandum Identity and Access Management Governance Review Intake Team Identity and Access Management Central Home Technical Services Project Repository (TSPR) Process Activity Name: PRI-5.10 Create IAM Change Requests PRI-5.9 Assign IAM Team Members PRI-5.11 Notify IAM Project Manager Change Requests Created PRI-5.12 Notify Project Manager Service Request Approved The Identity and Access Management (IAM) Governance Manager creates the appropriate change requests associated with the specifications contained in the approved IAM Service Request and IAM Service Request Package. IAM Service Request IAM Service Request Package Project Initiation 44
49 Artifacts Created IAM Change Requests Identity and Access Management Governance Manager IBM Rational ClearQuest Identity and Access Management Central Home Process Activity Name: PRI-5.11 Notify IAM Project Manager Change Requests Created Note: This activity is performed concurrently with: PRI-5.12 Notify Project Manager Service Request Approved PRI-5.10 Create IAM Change Requests PRI-5.13 Receive IAM Change Requests The assigned Identity and Access Management (IAM) Governance Manager processes the change requests to effect assignment to the respective IAM Project Manager and creates the IAM Project Manager Assignment Memorandum designating which IAM Project Manager has been assigned responsibility for completion of the change request. IAM Change Requests IAM Service Request IAM Service Request Package Project Initiation 45
50 Artifacts Created IAM Project Manager Assignment Memorandum Updated IAM Change Requests Identity and Access Management Governance Manager IBM Rational ClearQuest Identity and Access Management Central Home Process Activity Name: PRI-5.12 Notify Project Manager Service Request Approved Note: This activity is performed concurrently with: PRI-5.11 Notify IAM Project Manager Change Requests Created PRI-5.10 Create IAM Change Requests PRI-5.13 Receive IAM Change Requests The Identity and Access Management (IAM) Governance Manager notifies the Project Manager that the IAM Service Request is officially approved and that the appropriate change requests have been created. IAM Change Requests IAM Service Request IAM Service Request Package Meeting Agenda and Minutes Project Initiation 46
51 Artifacts Created IAM Service Request (approved) Identity and Access Management Governance Manager IBM Rational ClearQuest Identity and Access Management Central Home Process Activity Name: PRI-5.13 Receive IAM Change Requests Note: The following process activities are performed concurrently: PRI-5.11 Notify IAM Project Manager Change Requests Created PRI-5.12 Notify Project Manager Service Request Approved PRI-5.3-DEC02 Additional Services? The Identity and Access Management (IAM) Project Manager receives the assigned change requests associated with the specifications contained in the approved IAM Service Request and IAM Service Request Package and notifies the Integration Team Members of the task assignment. IAM Change Request IAM Service Request IAM Service Request Package Artifacts Created Integration Team Member Assignment Memorandum Updated IAM Change Requests Project Initiation 47
52 Identity and Access Management Project Manager IBM Rational ClearQuest Identity and Access Management Central Home Process Activity Name: PRI-5.14 Receive IAM Service Request Decision PRI-5.5-DEC01 Concur? is NO PRI-5.15 Close IAM Service Request The Project Manager receives the disapproved Identity and Access Management (IAM) Service Request and Meeting Agenda and Minutes explaining the disapproval decision and updates the Project Management Accountability System (PMAS) Dashboard. IAM Service Request (disapproved) Meeting Agenda and Minutes Artifacts Created Updated PMAS Dashboard Project Manager Identity and Access Management Central Home PMAS Dashboard Project Initiation 48
53 Technical Services Project Repository (TSPR) The PMAS Dashboard landing page is open to all users in the VA network. For technical support regarding the PMAS Dashboard, select the link in the area titled "I m Looking for Site Help" and select the link "Submit Help Desk Support Ticket" Business Office. For general questions or inquiries regarding the PMAS Dashboard, submit an to VA PMAS Business Office. The PMAS Dashboard is updated when reportable information or conditions change. Each project/increment is updated at least monthly until closed. Process Activity Name: PRI-5.15 Close IAM Service Request PRI-5.14 Receive IAM Service Request Decision PRI-6 Register Project with Enterprise Systems Engineering The Project Manager closes the Identity and Access Management (IAM) Service Request and files the IAM Service Request Package in the Technical Services Project Repository (TSPR) project file. IAM Service Request Package Meeting Agenda and Minutes Artifacts Created Updated PMAS Dashboard Updated Technical Services Project Repository (TSPR) project file Project Manager Identity and Access Management Central Home PMAS Dashboard Technical Services Project Repository (TSPR) Project Initiation 49
54 The PMAS Dashboard landing page is open to all users in the VA network. For technical support regarding the PMAS Dashboard, select the link in the area titled "I m Looking for Site Help" and select the link "Submit Help Desk Support Ticket" Business Office. For general questions or inquiries regarding the PMAS Dashboard, submit an to VA PMAS Business Office. The PMAS Dashboard is updated when reportable information or conditions change. Each project/increment is updated at least monthly until closed. Process Activity Name: PRI-6 Register Project with Enterprise Systems Engineering PRI-5.15 Close IAM Service Request OR A flow from the Request for Service Consumption Process PRI-7 Establish and Resource Integrated Project Team The sub-process PRI-4 Evaluate Enterprise Shared Services process cycles through the following dependent activities: PRI-6.1 Complete ESE Registration Form (Initial) PRI-6.2 Set Up ESE Process Initiation Meeting PRI-6.3 Conduct PI Meeting and Confirm Preliminary Requirements PRI-6.4 Update Work Breakdown Structure Process Activity Name: PRI-6.1 Complete ESE Registration Form (Initial) PRI-5.15 Close IAM Service Request PRI-6.2 Set Up ESE Process Initiation Meeting The Project Manager completes the two Pre-Milestone 0 sections of the ESE Registration Form and saves the form. The two Pre-Milestone 0 sections are: Project Initiation 50
55 - General Information - System Characteristics (ASSESS/SEDR) Additional sections of the ESE Registration Form must be completed before Milestone 1. (See PRP-4.1) Those sections are: - System Characteristics (ASSESS/SEDR) - System Development & Implementation (TIA) - System Documentation (TIA) - ETS Workload Forecasting (TIA) Business Requirements Document Artifacts Created ESE Registration Form (Pre-Milestone 0 Sections) Project Manager ESE Registration Form Portal ESE Registration Form User Guide Systems Engineering and Design Review Process Process Activity Name: PRI-6.2 Set Up ESE Process Initiation (PI) Meeting PRI-6.1 Complete ESE Registration Form (Initial) PRI-6.3 Conduct PI Meeting and Confirm Preliminary Requirements Project Initiation 51
56 The ESE Release Readiness Officer schedules the ESE Process Initiation Meeting. The calendar invitation is sent to the PM and representatives from all ESE processes/entities involved in product release, as well as entities outside ESE. Attendees can include representatives from CPE, ETS, LRM, SEDR, EO, FO, VHA RMT, HPS, and others. ESE Registration Form Artifacts Created Calendar Invitation Enterprise Systems Engineering Release Officer Process Activity Name: PRI-6.3 Conduct PI Meeting and Confirm Preliminary Requirements PRI-6.2 Set Up ESE Process Initiation Meeting PRI-6.4 Update Work Breakdown Structure The ESE Release Readiness Officer conducts the ESE Process Initiation (PI) Meeting. Representatives from CPE, ETS, LRM, SEDR, EO, FO, VHA RMT, HPS, SQAS, and others identify POCs for each of their processes. The PM provides information about the product to be released. Following the meeting, the process POCs each provide the PM with a preliminary list of requirements for the Release. Project Initiation 52
57 ESE Registration Form Artifacts Created POC Requirements Summary Enterprise Systems Engineering Release Officer Enterprise Systems Engineering Project Team Drop Box ESE Registration Form Portal JAZZ Team Server Rational Tools Training Portal Process Activity Name: PRI-6.4 Update Work Breakdown Structure PRI-6.3 Conduct PI Meeting and Confirm Preliminary Requirements PRI-7 Establish and Resource Integrated Project Team The Project Manager adds tasks to the project schedule for the creation or update of required artifacts. Examples of required artifacts include the Version Document, the Production Operations Manual, the Requirements Traceability Matrix, and other key materials. List of Release Requirements from each Process POC Project Management Plan Project Schedule Work Breakdown Structure Project Initiation 53
58 Artifacts Created Updated PMAS Dashboard Updated Project Management Plan Updated Work Breakdown Structure Project Manager Process Activity Name: PRI-7 Establish and Resource Integrated Project Team PRI-6.4 Update Work Breakdown Structure PRI-PR1 Conduct Peer Review of the Business Requirements Document The sub-process PRI-6 Establishment and Resource Integrated Project Team cycles through the following dependent activities: PRI-7.1 Determine IPT Resource Requirements PRI-7.2 Submit HPS Intake Form PRI-7.3 Conduct Security Impact Analysis PRI-7.4 Submit Request for ISO Support PRI-7.5 Submit Privacy Threshold Analysis PRI-7.6 Submit SDE PAO New Project Request Form PRI-7.7 Receive Notifications of IPT Member Assignments PRI-7.8 Form Integrated Project Team Project Initiation 54
59 Process Activity Name: PRI-7.1 Determine IPT Resource Requirements PRI-6.4 Update Work Breakdown Schedule Note: The following activities are performed concurrently PRI-7.2 Submit HPS Intake Form PRI-7.3 Conduct Security Impact Analysis PRI-7.4 Submit Request for ISO Support PRI-7.5 Submit Privacy Threshold Analysis PRI-7.6 Submit SDE PAO New Project Request Form The Project Manager establishes the Integrated Project Team (IPT) using the Integrated Project Team Guide to determine the required attendees and referring to the Project Management Accountability System (PMAS) Guide for general guidance. The IPT is a team of people with complementary skills and expertise who collaborate and commit to a timely delivery of specified work products. The IPT members provide skills and advocacy appropriate to all phases of the project life cycle and are collectively responsible for delivery of work products as specified and committed. The IPT should include empowered representatives from organizations, disciplines, and functions that have a stake in the success of the project. The IPT Roles Matrix, included in the IPT Charter, must be completed during this activity. The Charter is created and signed by all IPT members and the Assistant Secretary/Information Technology or designee. Business Requirements Document Project Charter Updated list of VA Staff Resources Artifacts Created IPT Charter Project Team Kick-Off Meeting Agenda and Minutes Project Initiation 55
60 Project Manager Technical Services Project Repository (TSPR) Change to Project Management Accountability System (PMAS) Guide V5.0 (VAIQ ) Integrated Project Team (IPT) Guide v2.0 (VAIQ ) Project Management Accountability System (PMAS) Guide Refer to the Integrated Project Team (IPT) Guide for guidance on IPT members and how to obtain membership. Process Activity Name: PRI-7.2 Submit HPS Intake Form Note: The following activities are performed concurrently PRI-7.3 Conduct Security Impact Analysis PRI-7.4 Submit Request for ISO Support PRI-7.5 Submit Privacy Threshold Analysis PRI-7.6 Submit SDE PAO New Project Request Form PRI-7.7 Submit ASD IPT Support Request PRI-7.8 Submit Privacy Officer Support Request PRI-6.1 Determine IPT Resource Requirements PRI-7.8 Receive Notifications of IPT Member Assignments The sub-process PRI-7.2 Submit HPS Intake Form cycles through the following dependent activities: PRI Populate HPS Intake Form PRI Determine Tier 2 IPT Member PRI Create Intake Tracker Record PRI Review Intake Form PRI Create Intake Assessment Findings Report Project Initiation 56
61 PRI Update Intake Tracker PRI Communicate Intake Assessment Findings Report PRI Receive Intake Assessment Findings Report Process Activity Name: PRI Populate HPS Intake Form PRI-7.1 Determine IPT Resource Requirements Note: The following process activities are performed concurrently: PRI Determine Tier 2 IPT Member PRI Create Intake Tracker Record The Project Manager uses the Business Requirements Document and the Project Charter to complete and submit the Health Product Support Intake Assessment Form. Business Requirements Document Project Charter Artifacts Created Health Product Support Intake Assessment Form Project Manager Health Product Support (HPS) SharePoint Site To populate the Intake Form, click the Form Templates link in the quick launch bar on top left of the HPS Main Page. To submit the Intake Form, click the Submit Intake Assessment link in the quick launch bar on top left of the HPS Main Page Project Initiation 57
62 Process Activity Name: PRI Determine Tier 2 IPT Member Note: This activity is performed concurrently with: PRI Create Intake Tracker Record PRI Populate HPS Intake Form PRI Review Intake Form The lead Tier 2 (T2) Health Product Support Specialist receives the Health Product Support Intake Assessment Form and determines the Tier 2 Health Product Support Specialist to assign to the project Integrated Project Team (IPT). Health Product Support Intake Assessment Form Artifacts Created Tier 2 IPT Membership Assignment Tier 2 (T2) Health Product Support Specialist Process Activity Name: PRI Create Intake Tracker Record Note: This activity is performed concurrently with: PRI Determine Tier 2 IPT Member PRI Populate HPS Intake Form Project Initiation 58
63 PRI Review Intake Form The Tier 3 (T3) Sustainment Manager creates the Health Product Support Intake Tracker Record for the Project. Health Product Support Intake Assessment Form Artifacts Created Health Product Support Intake Tracker Record Tier 3 (T3) Sustainment Manager Process Activity Name: PRI Review Intake Form Note: The following process activities are performed concurrently: PRI Determine Tier 2 IPT Member PRI Create Intake Tracker Record PRI Create Intake Assessment Findings Report The Tier 3 (T3) Sustainment Manager receives and reviews the Health Product Support Intake Assessment Form. Project Initiation 59
64 Health Product Support Intake Assessment Form Artifacts Created Intake Analysis Tier 3 (T3) Sustainment Manager Process Activity Name: PRI Create Intake Assessment Findings Report PRI Review Intake Form PRI Update Intake Tracker The Tier 3 (T3) Sustainment Manager creates the Intake Assessment Finding Report after analysis of the information provided. Health Product Support Intake Assessment Form Intake Analysis Artifacts Created Intake Assessment Findings Report Project Initiation 60
65 Tier 3 (T3) Sustainment Manager Process Activity Name: PRI Update Intake Tracker PRI Create Intake Assessment Findings Report PRI Communicate Intake Assessment Findings Report The Tier 3 (T3) Sustainment Manager updates the Health Product Support Intake Tracker with any necessary information contained in the Intake Assessment Findings Report. Health Product Support Intake Tracker Record Intake Assessment Findings Report Artifacts Created Updated Health Product Support Intake Tracker Record Tier 3 (T3) Sustainment Manager Project Initiation 61
66 Process Activity Name: PRI Communicate Intake Assessment Findings Report PRI Update Intake Tracker PRI Receive Intake Assessment Findings Report The Tier 3 (T3) Sustainment Manager communicates the Intake Assessment Findings Report to the Project Manager. Intake Assessment Findings Report Artifacts Created Notice with Intake Assessment Findings Report attached Tier 3 (T3) Sustainment Manager Process Activity Name: PRI Receive Intake Assessment Findings Report PRI Communicate Intake Assessment Findings Report Project Initiation 62
67 PRI-7.8 Receive Notifications of IPT Member Assignments The Project Manager receives the Intake Findings Assessment Report indicating if there is continued need for Health Product Support participation. Intake Assessment Finding Report Integrated Project Team Charter Project Charter QUAD Chart Artifacts Created Updated Integrated Project Team Charter Updated Project Charter Updated QUAD Chart Project Manager Process Activity Name: PRI-7.3 Submit Request for ISO Support Note: The following activities are performed concurrently PRI-7.2 Submit HPS Intake Form PRI-7.3 Conduct Security Impact Analysis PRI-7.5 Submit Privacy Threshold Analysis PRI-7.6 Submit SDE PAO New Project Request Form PRI-7.7 Submit ASD IPT Support Request PRI-7.8 Submit Privacy Officer Support Request Project Initiation 63
68 PRI-7.1 Determine IPT Resource Requirements PRI-7.9 Receive Notifications of IPT Member Assignments The sub-process PRI-7.3 Submit Request for ISO Support cycles through the following dependent activities: PRI Submit Request for ISO Support Form PRI DEC01 Health Product? PRI Perform Security Review PRI Receive Security Review Findings Process Activity Name: PRI Submit Request for ISO Support Form PRI-7.1 Determine IPT Resource Requirements PRI Perform Security Review The Project Manager submits the Request for Information Security Officer (ISO) Support Form to the VA FSS ISO Requests mail group. Business Requirements Document Exhibit 300A: IT Capital Asset Summary Project Charter Artifacts Created Request for Information Security Officer Support Project Manager Office of Cyber Security (OCS) Portal Project Initiation 64
69 VA Handbook , Incorporating Security and Privacy into the System Development Life Cycle ISOs serve as principal security advisors to System Owners regarding security considerations in applications, systems, procurement, development, implementation, operation, maintenance, and disposal activities (i.e., SDLC management). The ISO should be involved as early as the Kickoff Meeting to incrementally review the project security-related documentation as it is being developed. Process Activity Name: PRI Perform Security Review PRI Initiate Security Impact Analysis PRI Conduct Review of Security Impact Analysis The Information Security Officer (ISO) performs a security review based on the scope and business needs of the project using the Initial System/Application (ISAD). Initial System/Application (ISAD) Artifacts Created Information Security Officer Assignment Information Security Officer Office of Cyber Security (OCS) Portal Project Initiation 65
70 Process Activity Name: PRI Receive Security Review Findings PRI Perform Security Review PRI-7.9 Receive Notifications of IPT Member Assignments The Project Manager receives the Information Security Officer Assignment indicating if there is continued need for Information Security Officer involvement in the Integrated Project Team (IPT). Information Security Officer Assignment Integrated Project Team Charter Project Charter QUAD Chart Artifacts Created Updated Integrated Project Team Charter Updated Project Charter Updated QUAD Chart Project Manager Process Activity Name: PRI-7.4 Conduct Security Impact Analysis Note: The following activities are performed concurrently PRI-7.2 Submit HPS Intake Form PRI-7.4 Submit Request for ISO Support Project Initiation 66
71 PRI-7.5 Submit Privacy Threshold Analysis PRI-7.6 Submit SDE PAO New Project Request Form PRI-7.7 Submit ASD IPT Support Request PRI-7.8 Submit Privacy Officer Support Request PRI-7.1. Determine IPT Resource Requirements PRI-7.9 Receive Notifications of IPT Member Assignments The sub-process PRI-7.4 Conduct Security Impact Analysis cycles through the following dependent activities: PRI Initiate Security Impact Analysis PRI Conduct Review of Security Impact Analysis PRI Communicate Security Impact Analysis Process Activity Name: PRI Initiate Security Impact Analysis PRI-7.1 Determine IPT Resource Requirements PRI DEC01 Health Product? The Project Manager, in collaboration with the Information Security Officer (ISO), and Privacy Officer (PO), creates the Security Impact Analysis (SIA), (NIST SP CM-4 Security Impact Analysis) using the on line template form. If the system is a health care product, the Project Manager submits the SIA and the Business Requirements Document (BRD) to the VHA 10P2 OIA CASE REQUESTS mail group for health related projects for review. Health Products include: development efforts involving electronic protected health information (EPHI), health care delivery services, or health care applications and systems. Business Requirements Document Exhibit 300A: IT Capital Assessment Summary Project Charter Project Initiation 67
72 Artifacts Created Security Impact Analysis Project Manager Health Care Security Requirements (HCSR) Website Office of Cyber Security (OCS) Portal CASE Security Impact Analysis (SIA) for Development Security Review CASE Security Impact Analysis Presentation Guide VA Handbook , Incorporating Security and Privacy into the System Development Life Cycle The template for the SIA is available from the Health Care Security Requirements (HCSR) website on the Tools and Resources link. The SIA assists with establishing expectations for the necessary level of security work; ensures security stakeholder representation early in the development process; tracks security analysis performed during the System Development Life Cycle (SDLC); assists the transfer of information between groups; and identifies potential security impacts prior to implementation. The Project Manager will begin to populate the SIA tool. Process Activity Name: PRI DEC01 Health Product? PRI Initiate Security Impact Analysis If Yes, PRI Assign HCSR Resource If No, PRI Conduct Review of Security Impact Analysis Note: There is a decision activity that determines the next activity: If the Project Manager determines the project is a health product related project, the Project Manager requests a Health Care Security Requirements (HCSR) Security Project Initiation 68
73 Specialist support by submitting the SIA and the Business Requirements Document (BRD) to the VHA 10P2 OIA HCSR REQUESTS mail group for review. The next activity to complete is PRI Assign HCSR Resource. If the Project Manager determines the project is not a health product related project, the next activity to complete is PRI Conduct Security Impact Analysis. Project Manager Process Activity Name: PRI Assign HCSR Resource PRI DEC01 Health Product? PRI Conduct Review of Security Impact Analysis The Health Care Security Requirements (HCSR) office receives the request for a HCSR Security Specialist. A HCSR Security Specialist is assigned to the project. Business Requirements Document (BRD) HCSR Security Specialist Request Security Impact Analysis (SIA) Artifacts Created HCSR Security Specialist Assignment Director, Health Care Security Requirements Project Initiation 69
74 Process Activity Name: PRI Conduct Security Impact Analysis PRI DEC01 Health Product? is YES PRI Communicate Security Impact Analysis The Project Manager, in collaboration with the Information Security Officer (ISO), and Privacy Officer (PO) completes the Security Impact Analysis. If a health product, the Health Care Security Requirements (HCSR) Security Specialist should be included and consulted. Business Requirements Document Security Impact Analysis Artifacts Created Recommended Security Categorization Updated Security Impact Analysis Project Manager Process Activity Name: PRI Communicate Security Impact Analysis PRI-7.1 Determine IPT Resource Requirements Project Initiation 70
75 PRI-7.9 Receive Notifications of IPT Member Assignments The Project Manager, if the project is for an existing product, communicates the results based on the Security Impact Analysis (SIA) to the respective Change Control Board and appends the SIA to the existing Configuration Management Plan if applicable. Configuration Management Plan Security Impact Analysis Response Security Impact Analysis Artifacts Created Notification to Change Control Board Updated Configuration Management Plan Project Manager Technical Services Project Repository (TSPR) Integrated Project Team (IPT) Guide v2.0 (VAIQ ) Completed Security Impact Analyses are maintained with the application or system Configuration Management Plan as an appendix for CM-4 Security Impact Analysis. Process Activity Name: PRI-7.5 Submit Privacy Threshold Analysis Note: The following activities are performed concurrently PRI-7.2 Submit HPS Intake Form PRI-7.3 Conduct Security Impact Analysis PRI-7.4 Submit Request for ISO Support PRI-7.6 Submit SDE PAO New Project Request Form PRI-7.7 Submit ASD IPT Support Request PRI-7.8 Submit Privacy Officer Support Request PRI-7.1 Determine IPT Resource Requirements Project Initiation 71
76 PRI-7.8 Receive Notifications of IPT Member Assignments The sub-process PRI-7.5 Submit Privacy Threshold Analysis cycles through the following dependent activities: PRI Submit Privacy Threshold Analysis Request PRI Review Privacy Threshold Analysis Request PRI Review Privacy Threshold Analysis Request PRI Accept Privacy Threshold Analysis PRI Receive Completed Privacy Threshold Analysis Process Activity Name: PRI Submit/Update Privacy Threshold Analysis Request PRI-7.1 Determine IPT Resource Requirements OR PRI DEC01 Complete? is NO PRI Review Privacy Threshold Analysis Request The Project Manager determines if the project is a change or upgrade to an existing IT system/program or a completely new IT system/program/technology. If a change or upgrade to an existing IT system/program, the Project Manager obtains the existing Privacy documentation, i.e. Privacy Threshold Analysis (PTA) and Privacy Impact Assessment (PIA) for the IT system/program and updates those documents with the prospective changes and submits to the assigned Privacy Officer for initial review and submits to VA Privacy Services via the [email protected] account for official determination. (VA Privacy Services reviews and approves only privacy documentation that is associated with FISMA reportable IT systems) For all other PMAS projects that are new or adding new IT systems or technologies, the Project Manager completes a PMAS PTA and submits to the Business Sponsor Privacy Officer associated with the Integrated Project Team (IPT) for review and determination if a PIA is needed. The Privacy Threshold Analysis (PTA) is used by Privacy Officers, IT System Owners, Project Managers and Integrated project Teams (IPTs) at every stage within the PMAS process to identify potential privacy issues and whether personally identifiable information (PII) exists and determines the following: Project Initiation 72
77 - Whether a Privacy Impact Assessment (PIA) is required under the E-Government Act of Whether a Privacy Officer is needed to attend IPT meetings regularly - The associated project has been reviewed for privacy implications in the development stage. Business Requirements Document Artifacts Created Privacy Threshold Analysis Request Project Manager Privacy Impact Assessments Portal Change to Project Management Accountability System (PMAS) Guide V5.0 (VAIQ ) M-03-22, OMB Guidance for Implementing the Privacy Provisions of the E-Government Act of 2002 NIST Special Publication , Guide to Protecting the Confidentiality of Personally Identifiable Information (PII) Project Management Accountability System (PMAS) Guide Public Law E-Government Act of 2002 VA Directive 6508, Privacy Impact Assessments For projects, complete a PMAS PTA for each increment. Templates are available at the Privacy Services website listed in Section. Process Activity Name: PRI Review Privacy Threshold Analysis PRI Submit/Update Privacy Threshold Analysis Request Or PRI DEC01 Approved? is NO PRI DEC01 Complete? Project Initiation 73
78 The Privacy Officer reviews the Privacy Threshold Analysis (PTA) for completeness and accuracy and assists the Project Manager with completing/updating a new/existing Privacy Impact Assessment (PIA) and System of Records Notice (SORN) if applicable. Privacy Threshold Analysis Request Artifacts Created Privacy Impact Assessment (if necessary) Privacy Threshold Analysis (signed) System of Records Notice (if applicable) Privacy Officer Change to Project Management Accountability System (PMAS) Guide V5.0 (VAIQ ) M-03-22, OMB Guidance for Implementing the Privacy Provisions of the E-Government Act of 2002 NIST Special Publication , Guide to Protecting the Confidentiality of Personally Identifiable Information (PII) Project Management Accountability System (PMAS) Guide Public Law E-Government Act of 2002 VA Directive 6508, Privacy Impact Assessments Process Activity Name: PRI DEC01 Complete? PRI Review Privacy Threshold Analysis Request If Yes, PRI Review Privacy Threshold Analysis Request If No, PRI Submit/Update Privacy Threshold Analysis Request Project Initiation 74
79 Note: There is a decision dependency that determines the next activity to complete: If the Privacy Officer determines the Privacy Threshold Analysis Request is complete, the next activity to complete is PRI Review Privacy Threshold Analysis Request. If the Privacy Officer determines the Privacy Threshold Analysis Request is not complete, the next activity to complete is PRI Submit/Update Privacy Threshold Analysis Request. Privacy Officer Process Activity Name: PRI Review Privacy Threshold Analysis Request PRI DEC01 Complete? is YES Or PRI DEC01 Accepted? is NO PRI DEC01 Approved? The System Owner approves the Privacy Threshold Analysis (PTA) then signs the PTA and submits to Privacy Services. Privacy Impact Assessment Privacy Threshold Analysis Request System of Records Notice Artifacts Created Signed Privacy Threshold Analysis Request System Owner Project Initiation 75
80 Change to Project Management Accountability System (PMAS) Guide V5.0 (VAIQ ) M-03-22, OMB Guidance for Implementing the Privacy Provisions of the E-Government Act of 2002 NIST Special Publication , Guide to Protecting the Confidentiality of Personally Identifiable Information (PII) Project Management Accountability System (PMAS) Guide Public Law E-Government Act of 2002 VA Directive 6508, Privacy Impact Assessments Process Activity Name: PRI DEC01 Approved? PRI Review Privacy Threshold Analysis Request If Yes, PRI Accept Privacy Threshold Analysis If No, PRI Review Privacy Threshold Analysis Request Note: there is a decision dependency that determines the next activity to complete: If the System Owner determines the Privacy Threshold Request is approved, the next activity to complete is PRI Accept Privacy Threshold Analysis. If the System Owner determines the Privacy Threshold Request is not approved, the next activity is PRI Review Privacy Threshold Analysis. System Owner Project Initiation 76
81 Process Activity Name: PRI Accept Privacy Threshold Analysis PRI DEC01 Approved? is YES PRI DEC01 Accepted? Privacy Services reviews the Privacy Threshold Analysis (PTA) for acceptance. Privacy Impact Assessment Privacy Threshold Analysis Request System of Records Notice Artifacts Created Signed Privacy Threshold Analysis Request Privacy Services Change to Project Management Accountability System (PMAS) Guide V5.0 (VAIQ ) M-03-22, OMB Guidance for Implementing the Privacy Provisions of the E-Government Act of 2002 NIST Special Publication , Guide to Protecting the Confidentiality of Personally Identifiable Information (PII) Project Management Accountability System (PMAS) Guide Public Law E-Government Act of 2002 VA Directive 6508, Privacy Impact Assessments Privacy Services will the completed PTA Request form directly to the individual submitting the PTA Request. Project Initiation 77
82 Process Activity Name: PRI DEC01 Accepted? PRI Accept Privacy Threshold Analysis If Yes, PRI Receive Completed Privacy Threshold Analysis If No, PRI Review Privacy Threshold Analysis Request Note: There is a decision dependency that determines the next activity to complete: If the Privacy Services determines that the Privacy Threshold Analysis is accepted, the next activity to complete is PRI Receive Completed Privacy Threshold Analysis. If the Privacy Services determines that the Privacy Threshold Analysis is not accepted, the next activity to complete is PRI Review Privacy Threshold Analysis Request. Privacy Services Process Activity Name: PRI Receive Completed Privacy Threshold Analysis PRI DEC01 Accepted? is YES PRI-7.8 Receive Notifications of IPT Member Assignments The Project Manager receives the Privacy Threshold Analysis (PTA) Request Form indicating if there is continued need for Privacy Officer participation in the Integrated Project Team (IPT) and updates the IPT Charter. Integrated Project Team Charter Privacy Threshold Analysis (PTA) Request Form Artifacts Created Updated Integrated Project Team Charter Project Initiation 78
83 Project Manager If it is determined the project doesn t require a Privacy Officer, add the words not needed, per PIA analysis" in the IPT membership table contained in the Milestone Review Presentation Templates. Process Activity Name: PRI-7.6 Submit SDE PAO New Project Request Form Note: The following activities are performed concurrently PRI-7.2 Submit HPS Intake Form PRI-7.3 Conduct Security Impact Analysis PRI-7.4 Submit Request for ISO Support PRI-7.5 Submit Privacy Threshold Analysis PRI-7.7 Submit ASD IPT Support Request PRI-7.8 Submit Privacy Officer Support Request PRI-7.1 Determine IPT Resource Requirements PRI-7.8 Receive Notifications of IPT Member Assignments The Project Manager submits the Service Delivery and Engineering (SDE) Program Administration Office (PAO) New Project Request Form. This form is used to request (1) that a new project be managed by SDE or (2) a sub-project be managed by SDE. The requestor should complete the form, save, and to the VA IT SDE Requests mail group. The Project Manager receives a meeting invitation from the SDE Intake team to review and finalize the New Project Request form in preparation for leadership review and approval. The status of the request is posted on the SDE PAO Project Initiation Request Log. Project Initiation 79
84 Any information specified by the business sponsor that can support the population of the request form such as the Original Requestor, Program Office or person endorsing the request (Sponsor), Proposed Project Name, Overall Project Scope and Objectives, Scope of Deliverables, Business Values/Drivers, Major Initiative Association, PMAS Status, and Proposed Project Timeframe. Artifacts Created SDE PAO New Project Request Form Project Manager PAO Project Artifacts Page Service Delivery and Engineering Intake Support Site The SDE PAO New Project Request Form is accessed through the SDE Intake Support Web site. The requestor can find additional support on the Service Delivery Engineering Intake Support Web site including the ability to submit an directly to SDE. Processes, procedures, helpful links, and contact information are available on the site. Process Activity Name: PRI-7.7 Submit ASD IPT Support Request PRI-7.2 Submit HPS Intake Form PRI-7.3 Conduct Security Impact Analysis PRI-7.4 Submit Request for ISO Support PRI-7.5 Submit Privacy Threshold Analysis PRI-7.6 Submit SDE PAO New Project Request Form PRI-7.8 Submit Privacy Officer Support Request PRI-7.1 Determine IPT Resource Requirements PRI-PR1 Conduct Peer Review of the Business Requirements Document Project Initiation 80
85 The Project Manager submits a request for Architecture, Strategy and Design (ASD) Integrated Product Team (IPT) support to the mail group VA ASD PPM IPT Support at [email protected] describing the effort. Business Requirements Document Project Charter Artifacts Created Request for ASD IPT Support Project Manager VA EA Home Integrated Project Team (IPT) Guide v2.0 (VAIQ ) Process Activity Name: PRI-7.8 Submit Privacy Officer Support Request PRI-7.2 Submit HPS Intake Form PRI-7.3 Conduct Security Impact Analysis PRI-7.4 Submit Request for ISO Support PRI-7.5 Submit Privacy Threshold Analysis PRI-7.6 Submit SDE PAO New Project Request Form PRI-7.7 Submit ASD IPT Support Request PRI-7.1 Determine IPT Resource Requirements PRI-7.9 Receive Notifications of IPT Member Assignments Project Initiation 81
86 The Project Manager submits an request to designate a Privacy Officer to the respective point of contact for the National Cemetery Administration, VA Central, Veteran's Benefit Administration, or Veteran's Health Administration as identified on the Privacy Officers SharePoint Portal. For privacy related support contact Privacy Services at mailto:[email protected] mail group. Business Requirements Document Project Charter Artifacts Created Privacy Officer Assignment Request Project Manager Privacy Officers Portal Process Activity Name: PRI-7.9 Receive Notifications of IPT Member Assignments Note: The following activities are completed concurrently: PRI-7.2 Submit HPS Intake Form PRI-7.3 Conduct Security Impact Analysis PRI-7.4 Submit Request for ISO Support PRI-7.5 Submit Privacy Threshold Analysis PRI-7.6 Submit SDE PAO New Project Request Form PRI-7.7 Submit ASD IPT Support Request PRI-7.8 Submit Privacy Officer Support Request Project Initiation 82
87 PRI-7.10 Form Integrated Project Team The Project Manager receives notifications from Stakeholder organization of specific membership assignments to the Integrated Project Team (IPT). Membership Notifications Artifacts Created Integrated Project Team Membership Roster Project Manager Integrated Project Team (IPT) Guide v2.0 (VAIQ ) Process Activity Name: PRI-7.10 Form Integrated Project Team PRI-7.9 Receive Notifications of IPT Member Assignments PRI-PR1 Conduct Peer Review of the Business Requirements Document The Project Manager, in conjunction with the Stakeholder designated Integrated Project Team Membership uses the Project Charter to create the Integrated Project Team Charter and obtain Sponsor and Member signatures as required. Integrated Project Team Membership Roster Project Charter Project Initiation 83
88 Artifacts Created Integrated Project Team Charter Project Manager Integrated Project Team (IPT) Guide v2.0 (VAIQ ) Process Activity Name: PRI-PR1 Conduct Peer Review of the Business Requirements Document PRI-7.10 Form Integrated Project Team PRI-FR1 Conduct Formal Review of the Business Requirements Document The Project Manager conducts a Peer Review of the Business Requirements Document in accordance with the Quality Assurance Standard (appropriate sections pertaining to Peer Reviews) performing the following general steps: - Distribute the Peer Review Materials. - Review the Peer Review Materials. - Distribute the Consolidated Peer Review Findings. - Record the Finding Resolutions. - Implement the Finding Resolutions. The goal of the peer review of the Business Requirements Document is to resolve any questions the project team may have and to ensure the quality of the deliverable. Business Requirements Document Project Initiation 84
89 Artifacts Created Business Requirements Document Review Findings Summary Record of Notification Updated Business Requirements Document Project Manager VA EA Enterprise Technical Architecture (ETA) Compliance Criteria Quality Assurance Standard The OneVA EA ETA Compliance Criteria document establishes minimum compliance criteria for a product or product release. Process Activity Name: PRI-FR1 Conduct Formal Review of the Business Requirements Document PRI-PR1 Conduct Peer Review of Business Requirements Document PRI-FR1-DEC01 Requirements Sufficient? The Project Manager conducts a Formal Review of the Business Requirements Document in accordance with the Quality Assurance Standard (appropriate sections pertaining to Formal Reviews) performing the following general steps: - Plan the Formal Review. - Review the Formal Review Materials. - Implement the Finding Resolutions. The goal of the formal review is to obtain stakeholder concurrence of the Business Requirements Document and the appropriate approval signatures. Business Requirements Document Project Initiation 85
90 Artifacts Created Artifact Review Agenda and Minutes Business Requirements Document Review Findings Summary Updated Business Requirements Document Project Manager Digital Signature Guide VA EA Enterprise Technical Architecture (ETA) Compliance Criteria Quality Assurance Standard The OneVA EA Enterprise Technical Architecture (ETA) Compliance Criteria document establishes minimum compliance criteria for a product or product release. Process Activity Name: PRI-FR1-DEC01 Requirements Sufficient? PRI-FR1 Conduct Formal Review of the Business Requirements Document If Yes, PRI-10 Select Design Approach If No, PRI-9 Elaborate Business Requirements Note: There is a decision dependency that determines the next activity to complete: If the Project Manager determines requirements are sufficient, the next activity to complete is PRI-9 Select Design Approach. If the Project Manager determines requirements are not sufficient, the next activity to complete is PRI-8 Elaborate Business Requirements. Project Manager Project Initiation 86
91 Process Activity Name: PRI-8 Elaborate Business Requirements PRI-FR1-DEC01 Requirements Sufficient? is NO PRI-FR1-DEC01 Requirements Sufficient? The Business Analyst reviews existing business needs and requirements and collaborates with the Business stakeholders, technical subject matter experts and other resources to articulate the detailed business requirements. Individual business processes are defined and modeled. Upon completion, all requirements and models are prepared, finalized, and forwarded for approval by the Business Owner. Business Requirements Change Document - External to Product Development (if available) Business Requirements Document (BRD) - External to Product Development Updated Business Requirements Document Artifacts Created Business Process Models Business Use Case (BUC) Requirements Elaboration Document (RED) Business Analyst IBM Rational ClearCase IBM Rational Requirements Composer IBM Rational RequisitePro Requirements Development and Management New Service Request Database (NSRD) VA Systems Inventory Business Requirements & Architecture Management Plan Change to Project Management Accountability System (PMAS) Guide V5.0 (VAIQ ) Project Management Accountability System (PMAS) Guide Project Initiation 87
92 Refer to the New Service Request Process Dictionary and the Business Process Models for Requirements Elaboration for guidance on artifacts and establishing an elaboration workgroup. For additional information or assistance, the Requirements Analysis and Engineering Management (RAEM) group can be contacted at mail group. The project team may use either IBM Rational RequisitePro or IBM Rational Requirements Composer until IBM Rational RequisitePro is officially discontinued. The Feedback section of the VA Systems Inventory can be used to provide update for existing system or Register new system. Process Activity Name: PRI-9 Select Design Approach PRI-FR1 DEC01 Requirements Sufficient? is YES PRI-MS0 Conduct Milestone 0 Review The Project Manager identifies the types of development activities to be undertaken to accomplish the business requirements. The types include: new Green Field application development, an enhancement and modernization to an existing production system, the selection of a suitable application, e.g., Commercial Off The Shelf (COTS), or the development for interagency information sharing. The Project Manager selects the high level design approach after reviewing the appropriate Architecture and Design Patterns. Upon completion, the design approach is forwarded for concurrence by the Business Owner. Business Process Models Business Requirements Document Artifacts Created Selected Design Approach Project Manager Requirements Development and Management New Service Request Database (NSRD) Project Initiation 88
93 Technology Strategies (TS) Documents: Design Patterns VA Systems Inventory VA EA Enterprise Technical Architecture (ETA) Compliance Criteria VA Directive 6051, Enterprise Architecture A solution development activity can involve one or more types of development. Process Activity Name: PRI-MS0 Conduct Milestone 0 Review PRI-9 Select Design Approach END OF PROJECT INITIATION PROCESS The Project Manager is responsible for requesting a Milestone 0 Review at the end of the 'New Start' state to ensure the project is ready to enter the 'Planning' state. The Milestone 0 Review verifies that the project is in the Budget Operating Plan (BOP). The Office of Responsibility's (OOR) Assistant Deputy Assistant Secretary/Assistant Deputy Chief Information Officer (ADAS/ADCIO) must participate in the Milestone 0 Review. Attendees at the Milestone 0 Review include empowered representatives from Architecture, Strategy and Design (ASD), Office of Information Security (OIS), OOR, OOR Budget Office, Product Development (PD), and Software Development and Engineering (SDE). The ProPath Required Artifacts page contains the specific listing of required artifacts needed to enter the Milestone 1 Review Active Development state. Budget Operating Plan PMAS Dashboard Artifacts Created MS0 Review Template Updated PMAS Dashboard Project Initiation 89
94 Office of Responsibility Budget Tracking Tool (BTT) PMAS Dashboard Technical Services Project Repository (TSPR) Requirement Level Guide VA Directive 6071, Project Management Accountability System (PMAS) VA EA Enterprise Technical Architecture (ETA) Compliance Criteria VA Identify Management Policy (VAIQ ) Send Milestone 0 Review requests to mail group VA PMAS REVIEWS. The OneVA EA ETA Compliance Criteria document establishes minimum compliance criteria for a product or product release. The Budget Tracking Tool requires permission to access the systems. The PMAS Dashboard landing page is open to all users in the VA network. For technical support regarding the PMAS Dashboard, select the link in the area titled I m Looking for Site Help and select the link Submit Help Desk Support Ticket Business Office. For general questions or inquiries regarding the PMAS Dashboard, submit an to VA PMAS Business Office. The PMAS Dashboard is updated when reportable information or conditions change. Each project/increment is updated at least monthly until closed. END OF PROCESS. Project Initiation 90
Release Management. ProPath. Office of Information and Technology
Release Management ProPath Office of Information and Technology Table of Contents Release Management Process Maps... 1 Process: Release Management... 7 Release Management and Goals... 9... 9 Goals... 9
Requirements Elaboration
Requirements Elaboration ProPath Office of Information and Technology Table of Contents Requirements Elaboration Process Maps... 1 Process: Requirements Elaboration... 4 Requirements Elaboration and Goals...
Project Closure. ProPath. Office of Information and Technology
Project Closure ProPath Office of Information and Technology Table of Contents Project Closure Process Map... 1 Process: Project Closure... 2 Project Closure Description and Goals... 3 Description... 3
Independent Test and Evaluation
Independent Test and Evaluation ProPath Office of Information and Technology Table of Contents Independent Test and Evaluation Process Maps... 1 Process: Independent Test and Evaluation... 3 Independent
Product Build. ProPath. Office of Information and Technology
Product Build ProPath Office of Information and Technology Table of Contents Product Build Process Maps... 1 Process: Product Build... 3 Product Build and Goals... 4... 4 Goals... 4 Product Build RACI
Project Monitoring and Control
Project Monitoring and Control ProPath Office of Information and Technology Table of Contents Project Monitoring and Control Process Maps... 1 Process: Project Monitoring and Control... 10 Project Monitoring
Department of Veterans Affairs VA DIRECTIVE 6071
Department of Veterans Affairs VA DIRECTIVE 6071 Washington, DC 20420 Transmittal Sheet PROJECT MANAGEMENT ACCOUNTABILITY SYSTEM (PMAS) 1. REASON FOR ISSUE. To set forth policies and responsibilities for
IT Asset Management. ProPath. Office of Information and Technology
IT Asset Management ProPath Office of Information and Technology Table of Contents IT Asset Management Process Maps... 1 Process: IT Asset Management... 19 IT Asset Management and Goals... 22... 22 Goals...
Assessment and Authorization
Assessment and Authorization ProPath Office of Information and Technology Table of Contents Assessment and Authorization Process Maps... 1 Process: Assessment and Authorization... 5 Assessment and Authorization
Vendor Access Management
Vendor Access Management ProPath Office of Information and Technology Table of Contents Vendor Access Management Process Map... 1 Process: Vendor Access Management... 2 Vendor Access Management Description
Configuration Management
Configuration Management ProPath Office of Information and Technology Table of Contents Configuration Management Process Map... 1 Process: Configuration Management... 2 Configuration Management Description
Practice Overview. REQUIREMENTS DEFINITION Issue Date: <mm/dd/yyyy> Revision Date: <mm/dd/yyyy>
DEPARTMENT OF HEALTH AND HUMAN SERVICES ENTERPRISE PERFORMANCE LIFE CYCLE FRAMEWORK PRACTIICES GUIIDE REQUIREMENTS DEFINITION Issue Date: Revision Date: Document
PHASE 1: INITIATION PHASE
PHASE 1: INITIATION PHASE The Initiation Phase begins when agency management determines that a business function requires enhancement through an agency information technology (IT) project and investment
Governance of Evaluation, Proof of Concept and Pilot Projects
Governance of Evaluation, Proof of Concept and Pilot Projects (OCIO) Government of Newfoundland & Labrador Prepared By: (PMO) Table of Contents 1.... 2 2. Definition of an Evaluation... 2 2.1 Example...
How To Understand The Business Analysis Lifecycle
Business Analysis Lifecycle by Sergey Korban Aotea Studios Ltd November 2011 Contents Introduction... 3 Business Analysis Lifecycle... 4 Practical Application... 5 Start-Up Phase... 5 Initiation Phase...
Partnering for Project Success: Project Manager and Business Analyst Collaboration
Partnering for Project Success: Project Manager and Business Analyst Collaboration By Barbara Carkenord, CBAP, Chris Cartwright, PMP, Robin Grace, CBAP, Larry Goldsmith, PMP, Elizabeth Larson, PMP, CBAP,
U.S. Department of Education Federal Student Aid
U.S. Department of Education Federal Student Aid Lifecycle Management Methodology Stage Gate Review Process Description Version 1.3 06/30/2015 Final DOCUMENT NUMBER: FSA_TOQA_PROC_STGRW.NA_001 Lifecycle
INFORMATION TECHNOLOGY PROJECT EXECUTION MODEL GUIDE FOR SMALL AND MEDIUM PROJECTS
NOT MEASUREMENT SENSITIVE DOE G 415.1-2 INFORMATION TECHNOLOGY PROJECT EXECUTION MODEL GUIDE FOR SMALL AND MEDIUM PROJECTS [This Guide describes acceptable, but not mandatory means for complying with requirements.
Department of Administration Portfolio Management System 1.3 June 30, 2010
E 06/ 30/ 2010 EX AM PL 1. 3 06/ 28/ 2010 06/ 24/ 2010 06/ 23/ 2010 06/ 15/ 2010 06/ 18/ 2010 Portfolio System 1.3 June 30, 2010 Contents Section 1. Project Overview... 1 1.1 Project Description... 1 1.2
Program Lifecycle Methodology Version 1.7
Version 1.7 March 30, 2011 REVISION HISTORY VERSION NO. DATE DESCRIPTION AUTHOR 1.0 Initial Draft Hkelley 1.2 10/22/08 Updated with feedback Hkelley 1.3 1/7/2009 Copy edited Kevans 1.4 4/22/2010 Updated
DATE REVISION xxxbyxxx. IT Modernization: EA Information Management. DATE: September 2003 AUTHOR: Enterprise Architecture Team
DATE REVISION xxxbyxxx IT Modernization: EA Information Management DATE: September 2003 AUTHOR: Enterprise Architecture Team 1.0 Introduction It is the policy of the United States Government that executive
Approval for the Project Management Accountability System (PMAS) Guide
Approval for the Project Management Accountability System (PMAS) Guide The PMAS Guide provides guidance for planning, management control, processes, roles, and responsibilities for VA Information Technology
System Development Life Cycle (SDLC) Map
System Development Life Cycle (SDLC) Map ProPath Office of Information and Technology Table of Contents System Development Life Cycle (SDLC) Map... 1 ProPath System Development Life Cycle (SDLC) Map...
ITS Projects Systems Engineering Process Compliance Checklist
ITS Projects Systems Engineering Process Compliance Checklist FHWA Final Rule (23 CFR 940) This checklist is to be completed by the MDOT or LPA Project Management Staff. Please refer to the accompanying
Best Practices Statement Project Management. Best Practices for Managing State Information Technology Projects
State of Arkansas Office of Information Technology 124 W. Capitol Ave. Suite 990 Little Rock, AR 72201 501.682.4300 Voice 501.682.4020 Fax http://www.cio.arkansas.gov/techarch Best Practices Statement
VA Office of Inspector General
. VA Office of Inspector General OFFICE OF AUDITS & EVALUATIONS Department of Veterans Affairs Review of Alleged Improper Program Management within the FLITE Strategic Asset Management Pilot Project September
PPM V2.0 Frequently Asked Questions (FAQs) U.S. Department of Housing and Urban Development
PPM V2.0 Frequently Asked Questions (FAQs) U.S. Department of Housing and Urban Development December 2015 1. Getting Started with PPM Life Cycle 2. PPM Life Cycle Process 3. PPM V2.0 and Project Types
ájoƒ ùdg á«hô dg áµلªÿg Yesser Overall SDLC Process Definition
ájoƒ ùdg á«hô dg áµلªÿg Yesser Overall SDLC Process Definition Version 0.6 - Page 3 / 43 Table of Contents 1. Process Introduction... 5 1.1. Process Scope... 5 1.2. Process Objectives and Benefits... 5
Federal Segment Architecture Methodology (FSAM): An Overview
Information Resources Management College Federal Segment Architecture Methodology (FSAM): An Overview Dr. Stan Boddie & Prof. Matt Newman 1 a global learning community for government s most promising information
Manag. Roles. Novemb. ber 20122
Information Technology Manag gement Framework Roles and Respo onsibilities Version 1.2 Novemb ber 20122 ITM Roles and Version History Version ed By Revision Date Approved By Approval Date Description of
Requirement Management with the Rational Unified Process RUP practices to support Business Analyst s activities and links with BABoK
IBM Software Group Requirement Management with the Rational Unified Process RUP practices to support Business Analyst s activities and links with BABoK Jean-Louis Maréchaux Software IT Specialist IBM Rational
Program Management Review
2020 Census Program Management Review High-level 2020 Census Life Cycle Schedule March 28, 2014 Kim Higginbotham Program Manager for Project Management, 2020 Census Research and Planning Office U.S. Census
Positive Train Control (PTC) Program Management Plan
Positive Train Control (PTC) Program Management Plan Proposed Framework This document is considered an uncontrolled copy unless it is viewed online in the organization s Program Management Information
IT Baseline Management Policy. Table of Contents
Table of Contents 1. INTRODUCTION... 1 1.1 Purpose... 2 1.2 Scope and Applicability... 2 1.3 Compliance, Enforcement, and Exceptions... 3 1.4 Authority... 3 2. ROLES, RESPONSIBILITIES, AND GOVERNANCE...
FY 2013-2015 Information Resources Management Strategic Plan
Department of Veterans Affairs FY 2013-2015 Information Resources Management Strategic Plan Office of Information and Technology March 28, 2014 1 January 31, 2014 DRAFT PRE-DECISIONAL version 3.10, May
NYU. Business Solution Engineering Project Sample Application XXX
NYU Business Solution Engineering Project Sample Application XXX Great things are not done by impulse, but by a series of small things brought together. Vincent Van Gogh Authors: xxx Version Number: 1.0
Software Engineering. Session 3 Main Theme Requirements Definition & Management Processes and Tools Dr. Jean-Claude Franchitti
Software Engineering Session 3 Main Theme Requirements Definition & Management Processes and Tools Dr. Jean-Claude Franchitti New York University Computer Science Department Courant Institute of Mathematical
Appendix 2-A. Application and System Development Requirements
Appendix 2-A. Application and System Development Requirements Introduction AHRQ has set up a Distributed Systems Engineering Lab (DSEL) to support all internal development efforts and provide a facility
DIRECTIVE TRANSMITTAL
U.S. NUCLEAR REGULATORY COMMISSION DIRECTIVE TRANSMITTAL TN: DT-07-08 To: Subject: Purpose: Office and Division of Origin: NRC Management Directives Custodians Transmittal of Management Directive 2.8,
PROJECT MANAGEMENT PLAN TEMPLATE < PROJECT NAME >
PROJECT MANAGEMENT PLAN TEMPLATE < PROJECT NAME > Date of Issue: < date > Document Revision #: < version # > Project Manager: < name > Project Management Plan < Insert Project Name > Revision History Name
Overview. FedRAMP CONOPS
Concept of Operations (CONOPS) Version 1.0 February 7, 2012 Overview Cloud computing technology allows the Federal Government to address demand from citizens for better, faster services and to save resources,
Requirements Definition and Management Processes
Software Engineering G22.2440-001 Session 1 Sub-Topic 1 Requirements Definition & Management Processes and Tools Dr. Jean-Claude Franchitti New York University Computer Science Department Courant Institute
COMMONWEALTH OF MASSACHUSETTS EXECUTIVE OFFICE OF HEALTH AND HUMAN SERVICES
COMMONWEALTH OF MASSACHUSETTS EXECUTIVE OFFICE OF HEALTH AND HUMAN SERVICES The Office of Information Technology Project Methodology and Lifecycle Guide Version 4.4 Last Updated: November 15, 2011 CE M
IT Solutions Life Cycle Management. Pension Benefit Guaranty Corporation Dated: November 1, 2012 v1.2
IT Solutions Life Cycle Pension Benefit Guaranty Corporation Dated: November 1, 2012 v1.2 IT Solutions Life Cycle Pension Benefit Guaranty Corporation ITSLCM External Processes IT Standards (S) & Guidance
Enterprise Performance Life Cycle Framework
United States Department of Health & Human Services Office of the Chief Information Officer Office of the Assistant Secretary for Resources and Technology Department of Health and Human Services (HHS)
Organize Work Information. Resolve Workflow Problems
Organize Work Information Resolve Workflow Problems Solution Overview Cases Bugs Tracker Notification Tasks Document Expenses Business Intelligent Phases Meeting Contact Dashboard Project Management Social
PROJECT SCOPE STATEMENT
PROJECT SCOPE STATEMENT Note: Any work not explicitly included in the Project Scope Statement is implicitly excluded from the project. Project Name: Prepared by: BI - IT Governance Amy Winkel Date: 12/20/2010
Information Technology Governance Overview and Charter
Information Technology Governance Overview and Charter Prepared by: Project #: Date submitted Document version: IT Governance Charter v03.05.2012 1.0 48.0 - Page 1 of 34 Document History Version Date Author
The role of integrated requirements management in software delivery.
Software development White paper October 2007 The role of integrated requirements Jim Heumann, requirements evangelist, IBM Rational 2 Contents 2 Introduction 2 What is integrated requirements management?
Transportation Security Administration Enterprise Risk Management. ERM Policy Manual. August 2014
Transportation Security Administration Enterprise Risk Management ERM Policy Manual August 2014 1 Contents Abbreviations...4 Introduction...5 Purpose of this document...6 ERM Objective...7 Enterprise Risk
State of California Department of Transportation. Transportation System Data Business Plan
DRAFT Page i State of California Department of Transportation Transportation System Data Business Plan RFO# TSI DPA-0003 September 29, 2011 DRAFT Page ii Table of Contents Executive Summary... 4 Chapter
PROJECT MANAGEMENT PLAN Outline VERSION 0.0 STATUS: OUTLINE DATE:
PROJECT MANAGEMENT PLAN Outline VERSION 0.0 STATUS: OUTLINE DATE: Project Name Project Management Plan Document Information Document Title Version Author Owner Project Management Plan Amendment History
SOMA, RUP and RMC: the right combination for Service Oriented Architecture
SOMA, RUP and RMC: the right combination for Service Oriented Architecture WebSphere User Group, Bedfont, 4th March, 2008 Keith Mantell Senior Solution Architect IBM Rational [email protected] March
Standard Operating Procedure
Standard Operating Procedure IT System Certification & Accreditation Process For Effective Date: 20080707 Expiration Date: 20110707 Responsible Office: Office of the Chief Information Officer Document
Value to the Mission. FEA Practice Guidance. Federal Enterprise Architecture Program Management Office, OMB
Value to the Mission FEA Practice Guidance Federal Enterprise Program Management Office, OMB November 2007 FEA Practice Guidance Table of Contents Section 1: Overview...1-1 About the FEA Practice Guidance...
Project Management Plan for
Project Management Plan for [Project ID] Prepared by: Date: [Name], Project Manager Approved by: Date: [Name], Project Sponsor Approved by: Date: [Name], Executive Manager Table of Contents Project Summary...
HHS OCIO Policy for Information Technology (IT) Enterprise Performance Life Cycle (EPLC)
Office of the Chief Information Officer Office of the Assistant Secretary for Resources and Technology Department of Health and Human Services HHS OCIO Policy for Information Technology (IT) Enterprise
1200 Project Control System Procedures
Control System Manual Jefferson Science Associates, LLC 1200 Control System Procedures 1200 Control System Procedures Control System Manual Revision 7-102 - Control System Manual PCS-01 Schedule Planning
Visual Enterprise Architecture
Business Process Management & Enterprise Architecture Services and Solutions October 2012 VEA: Click About to edit Us Master title style Global Presence Service and Solution Delivery in 22 Countries and
Bureau of Land Management. Information System Decommissioning Guide
Department Bureau of the Land Interior Management Bureau of Land Management Information System Decommissioning Guide Version Control Log Date Version # Author Description January 11, 2011 0.1 WO-550 Original
Supporting Workflow Overview. CSC532 Fall06
Supporting Workflow Overview CSC532 Fall06 Objectives: Supporting Workflows Define the supporting workflows Understand how to apply the supporting workflows Understand the activities necessary to configure
TREASURY INSPECTOR GENERAL FOR TAX ADMINISTRATION
TREASURY INSPECTOR GENERAL FOR TAX ADMINISTRATION The Customer Account Data Engine 2 Systems Development Guidelines; However, Process Improvements Are Needed to Address Inconsistencies September 30, Year
Requirements Management
MS Excel / Word, and ReqIF Export / Import and Round-trip Medical & Automotive Requirements and Risk (FMEA, IEC 62304, IEC 61508, ISO 26262...) Enterprise Architect and Atlassian JIRA integration Requirements
Information Resources Management Strategic Plan
Information Resources Management Strategic Plan Office of Information and Technology Technology DRAFT May 15, 2013 1 May 15, 2013 version 3.10, May 1, 2013 Table of Contents Executive Summary... 1 Introduction...
BAL2-1 Professional Skills for the Business Analyst
1 BAL2-1 Professional Skills for the Business Analyst OVERVIEW This course trains participants to help business clients articulate their needs and wants, and to document them clearly, concisely, and completely.
Concept of Operations for Line of Business Initiatives
Concept of Operations for Line of Business Initiatives Version 1.0 Office of E-Gov and IT, OMB March 2006 Table of Contents FOREWORD...2 1 OBJECTIVES OF THE LINES OF BUSINESS CONCEPT OF OPERATIONS...3
Fermilab Computing Division Service Level Management Process & Procedures Document
BMC Software Consulting Services Fermilab Computing Division Process & Procedures Document Client: Fermilab Date : 07/07/2009 Version : 1.0 1. GENERAL Description Purpose Applicable to Supersedes This
44-76 mix 2. Exam Code:MB5-705. Exam Name: Managing Microsoft Dynamics Implementations Exam
44-76 mix 2 Number: MB5-705 Passing Score: 800 Time Limit: 120 min File Version: 22.5 http://www.gratisexam.com/ Exam Code:MB5-705 Exam Name: Managing Microsoft Dynamics Implementations Exam Exam A QUESTION
Guide to Enterprise Life Cycle Processes, Artifacts, and Reviews
Department of Health and Human Services Centers for Medicare & Medicaid Services Center for Consumer Information and Insurance Oversight Guide to Enterprise Life Cycle Processes, Artifacts, and Reviews
Laila TECHNICAL SKILLS
PROFESSIONAL SUMMARY Diversified experience in the field of Information Technology in the financial domain. In depth knowledge of RUP, Agile, waterfall Software Development Life Cycle (SDLC) processes.
IT Project Management Methodology. Project Scope Management Support Guide
NATIONAL INFORMATION TECHNOLOGY AUTHORITY - UGANDA IT Project Management Methodology Project Scope Management Support Guide Version 0.3 Version Date Author Change Description 0.1 23 rd Mar, 2013 Gerald
COMMONWEALTH OF VIRGINIA
COMMONWEALTH OF VIRGINIA Information Technology Resource Management (ITRM) TECHNOLOGY MANAGEMENT PROJECT MANAGEMENT STANDARD Virginia Information Technologies Agency (VITA) Reviews This publication was
Enterprise Architecture Governance Procedure
Governance Procedure Adrian Hollister Head of Strategy and Craig Douglas Architect 26 February 2014 Version Control Version Date Detail Contributor 0.1 26/2/2014 Initial Document CJD 0.2 14/3/2014 Amended
Draft Requirements Management Plan
BAO111: Core Competencies for the Business Analyst Draft Requirements Management Plan 1.0 INTRODUCTION 1.1 Purpose This document outlines requirements roles and responsibilities, presents a stakeholder
Final. North Carolina Procurement Transformation. Governance Model March 11, 2011
North Carolina Procurement Transformation Governance Model March 11, 2011 Executive Summary Design Approach Process Governance Model Overview Recommended Governance Structure Recommended Governance Processes
OPM System Development Life Cycle Policy and Standards. Table of Contents
Table of Contents 1. INTRODUCTION... 4 1.1 Purpose... 4 1.1.1 OPM SDLC Policy... 4 1.1.2 Key Concepts and Principles... 4 1.2 Scope and Applicability... 5 1.3 Compliance, Enforcement and Exceptions...
Computing Services Network Project Methodology
Computing Services Network Project Prepared By: Todd Brindley, CSN Project Version # 1.0 Updated on 09/15/2008 Version 1.0 Page 1 MANAGEMENT PLANNING Project : Version Control Version Date Author Change
Enterprise Business Service Management
Technical white paper Enterprise Business Service Management Key steps and components of a successful solution Table of contents Executive Summary... 2 Setting the goal establishing an IT initiative...
CMMI Asset Library: Maturity Level 2
CMMI Asset Library: Maturity Level 2 All items listed below are to assist in achieving CMMI Maturity Level 2; they may be purchased by the bundle. David Consulting Group will invoice you for your total
Systems Development Life Cycle (SDLC) Methodology Information Technology Services
Systems Development Life Cycle (SDLC) Methodology Information Technology Services July 7, 2009 Version 1 Authors: Mel Barracliffe, Lisa Gardner, John Hammond, and Shawn Duncan Document Control Change Record
Vermont Enterprise Architecture Framework (VEAF) Identity & Access Management (IAM) Abridged Strategy Level 0
Vermont Enterprise Architecture Framework (VEAF) Identity & Access Management (IAM) Abridged Strategy Level 0 EA APPROVALS EA Approving Authority: Revision
Appeals Case Management System Project. Scope Management Plan. November 20, 2014
Appeals Case Management System Project Version 1.0 Health and Human Services Agency, Office of Systems Integration Template Revision History REVISION HISTORY REVISION # DATE OF RELEASE OWNER SUMMARY OF
Project Management Fundamentals. Office of the Senior Associate Vice President for Finance
Project Management Fundamentals Project Management Institute PMI is an aggregation of best practices from thousands of professional project managers Principles in this training are based on PMI methodologies,
Project Lifecycle Management (PLM)
Project Lifecycle Management (PLM) Process or Tool? Why PLM? Project Definition Project Management NEW REQUEST/ INITIATIVES SUPPORT (Quick fixes) PROJECT (Start Finish) ONGOING WORK (Continuous) ENHANCEMENTS
University of Wisconsin Platteville IT Governance Model Final Report Executive Summary
University of Wisconsin Platteville IT Governance Model Final Report Executive Summary February 2013 Project Objectives & Approach Objectives: Build on the efforts of the Technology Oversight Planning
Federal Enterprise Architecture Using EA to Design Future-Ready Agencies and Implement Shared Services
Federal Enterprise Architecture Using EA to Design Future-Ready Agencies and Implement Shared Services Scott A. Bernard, Ph.D. [email protected] Federal Chief Enterprise Architect Executive Office
5.2. 5.2 Template for IT Project Plan. Template for IT Project Plan. [Project Acronym and Name]
231 5.2 Template for IT Project Plan Name of the Tool: Source: Usage: Description: Template for IT Project Plan GIZ This template has been designed as a tool to support the planning of IT projects for
Information Technology Services ServiceNow: Change Management Phase I Project Charter
ServiceNow: Change Management Phase I Project Charter VERSION: 1.3 REVISION DATE: 9/28/2011 Approval of the Project Charter indicates an understanding of the purpose and content described in this deliverable.
Request for Offers (RFO) Addendum
Request for Offers (RFO) Addendum RFO Number: 0011 Addendum Number: 1 Date of Addendum: July 17, 2014 Original Due Date, Time: July 22, 2014, 12:00 p.m. (noon) CT Revised Date, Time (if changing): Not
The following is intended to outline our general product direction. It is intended for information purposes only, and may not be incorporated into
The following is intended to outline our general product direction. It is intended for information purposes only, and may not be incorporated into any contract. It is not a commitment to deliver any material,
Enterprise Data Governance
DATA GOVERNANCE Enterprise Data Governance Strategies and Approaches for Implementing a Multi-Domain Data Governance Model Mark Allen Sr. Consultant, Enterprise Data Governance WellPoint, Inc. 1 Introduction:
HKITPC Competency Definition
HKITPC Competency Definition for the Certification copyright 2011 HKITPC HKITPC Competency Definition Document Number: HKCS-CD-L1L2 Version: 1.0 Date: June 2011 Prepared by Hong Kong IT Professional Certification
