Skip to main content

Towards a Process Assessment Model for Management System Standards

  • Conference paper
Software Process Improvement and Capability Determination (SPICE 2014)

Abstract

Certification to management system standards is more and more attractive for organisations, and many companies are today certified according to several of them (e.g., ISO 9001, ISO 14001, ISO/IEC 27001, etc.). However, in this case, it is a remaining challenge to optimise the system in place by mutualising as much as possible the different processes required by the various management systems, and thus improving the integrated overall system. In order to fill this gap, this paper presents how a process assessment model for management system standards has been built. It is based on the High Level Structure proposed by ISO, which defines a set of common requirements for management system standards. This process assessment model will provide the core content and could be the basis of all the future process assessment models that will be developed to assess domain-specific management systems.

This is a preview of subscription content, log in via an institution to check access.

Access this chapter

Chapter
USD 29.95
Price excludes VAT (USA)
  • Available as PDF
  • Read on any device
  • Instant download
  • Own it forever
eBook
USD 39.99
Price excludes VAT (USA)
  • Available as PDF
  • Read on any device
  • Instant download
  • Own it forever
Softcover Book
USD 54.99
Price excludes VAT (USA)
  • Compact, lightweight edition
  • Dispatched in 3 to 5 business days
  • Free shipping worldwide - see info

Tax calculation will be finalised at checkout

Purchases are for personal use only

Institutional subscriptions

Preview

Unable to display preview. Download preview PDF.

Unable to display preview. Download preview PDF.

References

  1. ISO Survey (2012), http://www.iso.org/iso/home/standards/certification/iso-survey.htm

  2. ISO/IEC Directives, Part1, Annex SL (2014)

    Google Scholar 

  3. ISO/IEC 33001: Information technology – Process assessment – Concepts and terminology (2014)

    Google Scholar 

  4. ISO/IEC 33002: Information technology – Process assessment – Requirements for performing process assessment (2014)

    Google Scholar 

  5. ISO/IEC 33004: Information technology – Process assessment – Requirements for process reference, process assessment and maturity models (2014)

    Google Scholar 

  6. Barafort, B., Renault, A., Picard, M., Cortina, S.: A Transformation Process for Building PRMs and PAMs based on a Collection of Requirements – Example with ISO/IEC 20000. In: 8th international SPICE 2008 Conference, Nuremberg (2008)

    Google Scholar 

  7. Rifaut, A.: Goal-driven requirements engineering for supporting the ISO 15504 assessment process. In: Richardson, I., Abrahamsson, P., Messnarz, R. (eds.) EuroSPI 2005. LNCS, vol. 3792, pp. 151–162. Springer, Heidelberg (2005)

    Chapter  Google Scholar 

  8. Cortina, S., Picard, M., Valdes, O., Renault, A.: A Challenging Process Models Development: The ITIL v3 Lifecycle Processes. In: Proceedings of the 10th International SPICE Conference on Process Assessment and Improvement, Pisa (2010)

    Google Scholar 

  9. Public Research Center Henri Tudor, ITSM Process Assessment Supporting ITIL. Amersfoort: Van Haren Publishing (2009)

    Google Scholar 

  10. Togneri MacMahon, S., Mc Caffery, F., Keenan, F.: Transforming Requirements of IEC 80001-1 into an ISO/IEC 15504-2 compliant Process Reference Model and Process Assessment Model. In: Proceedings of the 20th EuroSPI² Conference. Dundalk (2013)

    Google Scholar 

  11. ISO, ISO/IEC TR 24774: Software and systems engineering – Life cycle management – Guidelines for process description (2010)

    Google Scholar 

  12. ISO/IEC 33020: Information technology – Process assessment – Process measurement framework for assessment of process capability (2014)

    Google Scholar 

  13. ISO/IEC 27001: Information technology – Security techniques – Information security management systems – Requirements (2013)

    Google Scholar 

  14. ISO 22301: Societal security – Business continuity management systems – Requirements (2012)

    Google Scholar 

  15. ISO 31000: Risk management – Principles and guidelines (2009)

    Google Scholar 

  16. ISO 9001: Quality management systems – Requirements (2008)

    Google Scholar 

  17. Technical regulation requirements and measures for certifying Digitisation or Archiving Service Providers (PSDC) – Version 1.3 (2013)

    Google Scholar 

  18. Circular CSSF 12/544: Optimisation of the supervision exercised on the "support PFS" by a risk-based approach (2012)

    Google Scholar 

Download references

Author information

Authors and Affiliations

Authors

Editor information

Editors and Affiliations

Rights and permissions

Reprints and permissions

Copyright information

© 2014 Springer International Publishing Switzerland

About this paper

Cite this paper

Cortina, S., Mayer, N., Renault, A., Barafort, B. (2014). Towards a Process Assessment Model for Management System Standards. In: Mitasiunas, A., Rout, T., O’Connor, R.V., Dorling, A. (eds) Software Process Improvement and Capability Determination. SPICE 2014. Communications in Computer and Information Science, vol 477. Springer, Cham. https://doi.org/10.1007/978-3-319-13036-1_4

Download citation

  • DOI: https://doi.org/10.1007/978-3-319-13036-1_4

  • Publisher Name: Springer, Cham

  • Print ISBN: 978-3-319-13035-4

  • Online ISBN: 978-3-319-13036-1

  • eBook Packages: Computer ScienceComputer Science (R0)

Publish with us

Policies and ethics