Critical Issues in IT Asset Management

Similar documents
How To Manage It Asset Management On Peoplesoft.Com

Software Asset Management on System z

PEOPLESOFT IT ASSET MANAGEMENT

The World of IT Financial Management

Asset management guidelines

FEDERAL SOFTWARE LICENSES

Commercial Software Licensing

Software License Asset Management (SLAM) Part III

IBM Tivoli Asset Management for IT

IAITAM s Certified Hardware Asset Management Professional Course Syllabus

IIA Super Conference

Software License Asset Management (SLAM) Part 1

STRATEGIC SOURCING. Selected Agencies Should Develop Performance Measures on Inclusion of Small Businesses and OMB Should Improve Monitoring

8 Tips for Winning the IT Asset Management Challenge START

The CMDB: The Brain Behind IT Business Value

DELL BACKUP ADMINISTRATION & MANAGEMENT SERVICES

White Paper November BMC Best Practice Process Flows for Asset Management and ITIL Configuration Management

Information Technology Asset Management

The Power to Take Control of Software Assets

SUMMIT ASSET MANAGEMENT DATASHEET

SapphireIMS 4.0 Asset Management Feature Specification

Altiris Asset Management Suite 7.0

SOLUTION BRIEF: CA IT ASSET MANAGER. How can I reduce IT asset costs to address my organization s budget pressures?

The Value of ITAM To IT Service Management. Presented by Daryl Frost. Copyright Burswood Information Solutions Limited 2015

Software Asset Management (SAM) and ITIL Service Management - together driving efficiency

How To Improve Mainframe Software Asset Management

Report via OMB s Integrated Data Collection (IDC), 10

AssetCenter 4.4. Total Asset Visibility and Control. Control Costs. Ensure Compliance. Reduce Complexity

INTERIOR FRANCHISE FUND PERMANENT AUTHORITY TO OPERATE

GAO DATA CENTER CONSOLIDATION. Strengthened Oversight Needed to Achieve Cost Savings Goal. Report to Congressional Requesters

Rosemary M. Amato, CISA Deloitte Accountants B.V.

Intelligent Inventory and Professional License Management

Scheduling Process Maturity Level Self Assessment Questionnaire

Next Generation ITAM in the Cloud: Business Intelligence and Analytics as a Service

IBM Maximo Asset Management for IT

Property and Equipment Accountability and Management Best Practice Discussion

Federal Office of Small and Disadvantaged Business Utilization (OSDBU) Directors Interagency Council. CHARTER

SACM and CMDB Strategy and Roadmap. David Lowe ActionableITSM.com March 20, 2012

IT Asset Inventory and Outsourcing: The Value of Visibility

DATA CENTER INFRASTRUCTURE MANAGEMENT

How To Use An Inventory And License Management Tool In A Microsoft Inventory Program

SOFTWARE LICENSES. DOD s Plan to Collect Inventory Data Meets Statutory Requirements

IAITAM s Certified Software Asset Manager Course Syllabus

TITLE I GENERAL PROVISIONS

Cracking the Code on Software License Management

Protect the data that drives our customers business. Data Security. Imperva s mission is simple:

Accenture Federal Services. Federal Solutions for Asset Lifecycle Management

Understanding the difference between Configuration Management, Asset Management, Inventory Management, Service Management and the CMDB

Upgrade. Figure 1: Asset Lifecycle

Understanding inventory, configuration and IT asset management

Altiris Asset Management Suite 7.1 from Symantec

agility made possible

Project Charter Updated

Ensuring Contract Compliance through integration of Ariba Contracts and SAP ECC Michael Chavez and Sean Rhoades, Deloitte Consulting LLP

License management service

AUDIT REPORT. Follow-up on the Department of Energy's Acquisition and Maintenance of Software Licenses

GAO. INFORMATION SECURITY Governmentwide Guidance Needed to Assist Agencies in Implementing Cloud Computing

Model Manage Monitor Maximize your Data Center

GAO DATA CENTER CONSOLIDATION. Agencies Need to Complete Inventories and Plans to Achieve Expected Savings. Report to Congressional Requesters

Software Asset Management: A view from two perspectives from the audit world

Internet Access to Information on Office of Inspector General Oversight of Agency Implementation of the American Recovery and Reinvestment Act of 2009

Software Asset Management: Risk and Reward. March 2015

Data Sheet: Server Management Altiris Server Management Suite 7.0 Essential server management: Discover, provision, manage, and monitor

How Can I Better Manage My Software Assets And Mitigate The Risk Of Compliance Audits?

ITIL A guide to service asset and configuration management

S. ll IN THE SENATE OF THE UNITED STATES A BILL

Software Asset Management. The challenge

IT Asset Management. ProPath. Office of Information and Technology

DATA CENTER CONSOLIDATION. Reporting Can Be Improved to Reflect Substantial Planned Savings

SoftwareAsset Management (SAM)

DATA CENTER INFRASTRUCTURE MANAGEMENT

Proven deployments across different Industry verticals; Being used by leading brands

Achieve greater efficiency in asset management by managing all your asset types on a single platform.

Unlock the code IT Asset Management

GAO DATA CENTER CONSOLIDATION. Agencies Making Progress on Efforts, but Inventories and Plans Need to Be Completed. Report to Congressional Requesters

Software Licenses Managing the Asset and Related Risks

IBM Tivoli Netcool network management solutions for enterprise

Data Sheet: Archiving Altiris Server Management Suite 7.0 from Symantec Essential server management: Discover, provision, manage, and monitor

Getting a head start in Software Asset Management

Enterprise Information Management and Business Intelligence Initiatives at the Federal Reserve. XXXIV Meeting on Central Bank Systematization

Appendix -- Homeland Security Mission Funding by Agency and Budget Account (budget authority in millions of dollars)

Software Asset Management High Risk, High Reward

Enterprise Energy Management with JouleX and Cisco EnergyWise

Transcription:

Western Region Fall Education Seminar Salt Lake City, Utah 2015 Critical Issues in IT Asset Management Norman Pugh-Newby Deloitte November 4, 2015

Agenda ITAM Why It Matters? Definition & Objectives IT Assets What Are They? Conceptual Model Objective State Critical Issues How Effective Is Your ITAM Program?

IT Asset Management Why It Matters Big Bucks: Annual Federal IT Buy ranges between $76B and $80B Private sector IT investment also very significant GAO, IGs and auditors find Poor Financial Management & Excess Procurements GAO and IGs find many organizations simply do not know what they have in the area of IT assets Security is an increasing challenge and you cannot secure what you do not know you have GAO finds most Federal Agencies lack goals, purpose or metrics for the IT enterprise ITAM provides visibility of IT assets and how they relate to mission needs.

IT Asset Management Definition & Objectives IT Asset Management (ITAM) The integrated management of an organization s IT asset inventory, policies, processes, tools, and resources in order to support life cycle management of Information Technology assets Objectives: Establish and maintain physical accountability of IT assets Allocate assets as efficiently and productively as possible Provide accurate configuration status of assets in accordance with defined standards Maintain full compliance with software licensing agreements Establish a centralized and complete asset information repository to support day-to-day IT operations and maintenance functions, plus IT asset life cycle management

IT Assets What are They? IT Assets include all elements of hardware and software found in an enterprise environment Consist of 6 asset categories with discrete asset contents: Facilities Cable Plant Server Facilities LHI Storage Network End User Devices

IT Asset Management Conceptual Model 2 core processes (Accountability Management and Asset Operational Management) 4 interfacing processes (Financial Management, Procurement, Configuration Management and Assurance Management) The interfacing processes collaborate with each of the core processes Effective IT Asset Management is a multifaceted inter-related process performed by a knowledgeable and integrated ITAM team

ITAM Objective State Enterprise ITAM is a multi-functional system, with multiple integration points and data feeds. Each integration point provides key data feeds supporting the enterprises operations, management, and reporting capabilities.

Critical Issue #1: Poor Accountability Management IT Asset accountability management is the process of establishing and maintaining accurate accountability records of the IT assets under your control Managing IT asset costs requires tracking IT assets across the entire asset lifecycle until they are no longer of capital or regulatory value. Effective asset accountability management requires the support of automated tools 3 distinct types of automated tools are typically used to support an effective asset accountability program: 1. Auto-discovery 2. Repository 3. Usage

IT Asset Discovery Discovery is the process of identifying all the IT assets that are in the network Assets are typically comprised of servers, network equipment, storage devices, computers, printers, monitors, external peripherals, cable, and leasehold improvements The discovery of IT assets can be automated via the use of auto discovery tools which generally work in two distinct methods: Agentless Tools: Agentless tools discover network devices automatically by scanning an Internet Protocol (IP) address range Agent-based Tools: Agent-based tools require the installation of an agent on the networked device One pitfall of auto discovery tools is that they are often encumbered by firewalls or governing security policies

Asset Reconciliation Between Discovery & PMIS Data Reconciliation: An important part of the process of ensuring that inventory information is accurate is to reconcile information from discovery database to information in PMIS. The following diagram represents how asset data could be reconciled between PMIS and Discovery Tool to improve inventory accuracy. Asset Reconciliation between Discovery and PMIS Agent or Agent less Network Discovery tool produces dashboard and reports showing devices on managed network on periodic basis Information Security Team Information transmitted to Discovery Database Y END Title OIT & OMS Personnel reconcile information from PMIS and Discover (Automatic process to compare information in the two datasets) Reconciliation Report Does the report indicate that information matches Devices not on PMIS list discovered Information Security Team validates additional devices on network thru certificates or other means OMS Team OMS Personnel work with OFA personnel to create baseline inventory Baseline created PMIS Information PMIS devices not Active on Network Device Status Updated Property Manager works with Information Security team to confirm device status and updates PMIS Legend PEAKING CA YOUR Key Control INTEREST System IN or ASSET MANAGEMENT Document or Process Activity # Activity Database Report Decision Point

Critical Issue #2: Wasted Software Dollars Software license management requires an understanding of where licenses are consumed (Software usage Tool), identifying potential savings, and aggregating costs An important goal of Software License Management is to eliminate software overbuying and illegal use o Harvest unused and low level used licenses for reuse o Audit licenses being used with licenses paid for Potential 30% software cost savings form reducing software maintenance quantities to match optimal deployment.

Critical Issue #3: Poor Financial Management Financial Management The process used to plan and manage cost allocations across departments for asset procurement, maintenance, and related services It enables control and accountability for spending at the organizational and departmental levels, based on actual need Aids in reducing waste and increasing efficiencies in spending and usage associated with assets and services Financial Management includes: Expense Forecasting Accurate Tech Refresh required to support baseline plan Investment Decisions Framework of costs vs. benefits during budget reviews Charge-back charging IT costs back to the using departments Policy Compliance e.g., DoD FMR Vol 4, Ch. 6, Accounting for PP&E Cost Allocation/Tracking Supports cost control and governance. Depreciation Allocates cost over useful life of assets Business Case Analysis Foundational analysis for justifying IT investment $$$

Critical Issue #4 Ineffective Procurements Procurement The procurement function involves the acquisition of network components and services with the following considerations to benefit the network operators and customers: Best possible total cost of ownership Right quantity and quality Right time Right place Right source The procurement process typically involves risk in either the cost or benefits and is a good business practice to make use of economic analysis methods such as cost-benefit-analysis or cost-utility analysis An Information Services Procurement Library is a best practice library for the management of IT related acquisition processes Ensure the property management team is linked-in to the procurement process

Critical Issue #4 Ineffective Procurements Contract management can be summarized as the process of systematically and efficiently managing contract creation, execution, and analysis for the purpose of maximizing financial and operational performance and minimizing risk managing the buy Contract management should ensure that products and services covered under the contract are provided in the required quality and quality, and within the prescribed timeframes Understanding, predicting and being able to effectively mitigate risk are critical to effective contract management Help yourself to mitigate risk by creating a historical database with details of critical issues associated with previous contracts such as: Real costs and duration versus budget and planning schedule Problems/solutions to include contract decision point challenges Effectiveness of suppliers and delivery plans Quality of supplies and services

Critical Issue #5: Unsecure Networks Lack of an accountability baseline for comparison with results of network security scans Lack of information exchange between critical ITAM business processes (Accountability Management, Configuration Management, Security Management) Lack of effective network access policy, procedures and governance

Critical Issue #6: No defined Goals, Purpose and Associated Metrics for IT Enterprise (GAO 2012 Study) Agency Department of Education Department of Health & Human Services Department of Agriculture Department of Commerce Department of Defense Department of Energy Department of Homeland Security Department of Housing & Urban Development Department of Justice Department of Labor Department of State Department of the Air Force Department of the Army Department of the Interior Department of the Navy Department of the Treasury Department of Transportation Department of Veterans Affairs Environmental Protection Agency General Services Administration National Aeronautics & Space Administration National Science Foundation Nuclear Regulatory Commission Office of Personnel Management Small Business Administration Social Security Administration US Agency for International Development GAO Assessment: IT Goals & Purpose Defined

How Effective Is Your ITAM Program?

Questions? Norman Pugh-Newby, CITAM, CPPA, PMP Specialist Master Deloitte (M) 240-460-4499 npughnewby@deloitte.com