 




<?xml version="1.0" encoding="UTF-8"?>
<rss version="2.0"
	xmlns:content="http://purl.org/rss/1.0/modules/content/"
	xmlns:wfw="http://wellformedweb.org/CommentAPI/"
	xmlns:dc="http://purl.org/dc/elements/1.1/"
	xmlns:atom="http://www.w3.org/2005/Atom"
	xmlns:sy="http://purl.org/rss/1.0/modules/syndication/"
	xmlns:slash="http://purl.org/rss/1.0/modules/slash/"
	>

<channel>
	<title>IT Governance, Risk, and Compliance &#187; Continuous Process Improvement</title>
	<atom:link href="http://itknowledgeexchange.techtarget.com/it-governance/tag/continuous-process-improvement/feed/" rel="self" type="application/rss+xml" />
	<link>http://itknowledgeexchange.techtarget.com/it-governance</link>
	<description></description>
	<lastBuildDate>Mon, 20 May 2013 00:56:50 +0000</lastBuildDate>
	<language>en-US</language>
	<sy:updatePeriod>hourly</sy:updatePeriod>
	<sy:updateFrequency>1</sy:updateFrequency>
	
		<item>
		<title>Measuring Delivery Value &#8211; Part IV</title>
		<link>http://itknowledgeexchange.techtarget.com/it-governance/measuring-delivery-value-part-iv/</link>
		<comments>http://itknowledgeexchange.techtarget.com/it-governance/measuring-delivery-value-part-iv/#comments</comments>
		<pubDate>Mon, 27 Apr 2009 18:25:27 +0000</pubDate>
		<dc:creator>Robert Davis</dc:creator>
				<category><![CDATA[Continuous Process Improvement]]></category>
		<category><![CDATA[CPI]]></category>
		<category><![CDATA[Information Security Governance]]></category>
		<category><![CDATA[Information Security Infrastructure Management]]></category>
		<category><![CDATA[Information Security Processes]]></category>
		<category><![CDATA[Information Security Service Management]]></category>
		<category><![CDATA[ISG]]></category>
		<category><![CDATA[ISIM]]></category>
		<category><![CDATA[ISSM]]></category>
		<category><![CDATA[IT Security Infrastructure]]></category>
		<category><![CDATA[IT Security Services]]></category>
		<category><![CDATA[Key Performance Indicators]]></category>
		<category><![CDATA[KPI]]></category>
		<category><![CDATA[Performance Measurement]]></category>
		<category><![CDATA[Safeguarding Investments]]></category>

		<guid isPermaLink="false">http://itknowledgeexchange.techtarget.com/it-governance/?p=136</guid>
		<description><![CDATA[Measurement techniques are the means for effective information security performance monitoring.]]></description>
				<content:encoded><![CDATA[<p>Performance measurement is a control activity. Measurement techniques are the means for effective information security performance monitoring. &#8220;Selective measurement utility is realized when a critical few indicators permit accurate and timely information for decision-making and, by extension, appropriate <a href="http://www.theiia.org/bookstore/product/it-auditing-information-assets-protection-iap-1276.cfm">information assets protection</a>.&#8221; KPIs provide the critical measuring technique for aligned objectives and goals. Adequate KPIs permit comparative analysis for assessing resource deployment and utilization success. When processes are evaluated within the pre-established context, KPIs enable rapid resource mobilization, substitution and/or elimination for organizational objectives fulfillment.</p>
<p><em>&#8220;View Part I of the Measuring Delivery Value series </em><a href="http://itknowledgeexchange.techtarget.com/it-governance/measuring-delivery-value-part-i//"><em>here</em></a>&#8220;</p>
<!-- wpms-network-global-inserts -->]]></content:encoded>
			<wfw:commentRss>http://itknowledgeexchange.techtarget.com/it-governance/measuring-delivery-value-part-iv/feed/</wfw:commentRss>
		<slash:comments>0</slash:comments>
		</item>
		<item>
		<title>Measuring Delivery Value &#8211; Part III</title>
		<link>http://itknowledgeexchange.techtarget.com/it-governance/measuring-delivery-value-part-iii/</link>
		<comments>http://itknowledgeexchange.techtarget.com/it-governance/measuring-delivery-value-part-iii/#comments</comments>
		<pubDate>Thu, 23 Apr 2009 18:41:22 +0000</pubDate>
		<dc:creator>Robert Davis</dc:creator>
				<category><![CDATA[Continuous Process Improvement]]></category>
		<category><![CDATA[CPI]]></category>
		<category><![CDATA[Information Security Governance]]></category>
		<category><![CDATA[Information Security Infrastructure Management]]></category>
		<category><![CDATA[Information Security Processes]]></category>
		<category><![CDATA[Information Security Service Management]]></category>
		<category><![CDATA[ISG]]></category>
		<category><![CDATA[ISIM]]></category>
		<category><![CDATA[ISSM]]></category>
		<category><![CDATA[IT Security Infrastructure]]></category>
		<category><![CDATA[IT Security Services]]></category>
		<category><![CDATA[Performance Measurement]]></category>
		<category><![CDATA[Safeguarding Investments]]></category>

		<guid isPermaLink="false">http://itknowledgeexchange.techtarget.com/it-governance/?p=131</guid>
		<description><![CDATA[...an adequate KPI enables determination of the degree of change from the current state to future expectations.]]></description>
				<content:encoded><![CDATA[<p>Information security <a href="http://www.pleier.com/itadsweb.htm">service management</a> can include financial and non-financial indicators to enable performance assessments. However, selected indicators must represent a mathematically measurable quality. An adopted KPI should have an established target, associated with a completion date and a path for improvement. Furthermore, an adequate KPI enables determination of the degree of change from the current state to future expectations. For instance, an information security goal might address access privileges. Consequently, considering the current state requires comparison to accepted standards for performance measurement, the &#8220;time to grant access privileges&#8221; KPI would specify whether the measurement duration is in minutes, hours or days. Reflecting the established time basis, a target for the KPI can be derived. Therefore, &#8220;reduce time to grant access privileges by four percent per year&#8221; communicates a clear target that employees should understand and undertake specific actions to accomplish. </p>
<p>One of the managerial challenges for process-driven entities is integrating &#8216;leading indicators&#8217; into KPIs. Similar to leading economic indicators, information security leading KPIs enable swift conditional <a href="http://www.pleier.com/infosecmgmt.htm">service delivery</a> responses to &#8216;code red&#8217; impact alerts. If leading indicators are properly implemented, management can preemptively adjust a process (or processes) before the expiration date on achieving an expected outcome.</p>
<p><em>&#8220;View Part I of the Measuring Delivery Value series </em><a href="http://itknowledgeexchange.techtarget.com/it-governance/measuring-delivery-value-part-i//"><em>here</em></a>&#8220;</p>
<!-- wpms-network-global-inserts -->]]></content:encoded>
			<wfw:commentRss>http://itknowledgeexchange.techtarget.com/it-governance/measuring-delivery-value-part-iii/feed/</wfw:commentRss>
		<slash:comments>0</slash:comments>
		</item>
		<item>
		<title>Measuring Delivery Value &#8211; Part II</title>
		<link>http://itknowledgeexchange.techtarget.com/it-governance/measuring-delivery-value-part-ii/</link>
		<comments>http://itknowledgeexchange.techtarget.com/it-governance/measuring-delivery-value-part-ii/#comments</comments>
		<pubDate>Mon, 20 Apr 2009 19:42:38 +0000</pubDate>
		<dc:creator>Robert Davis</dc:creator>
				<category><![CDATA[Continuous Process Improvement]]></category>
		<category><![CDATA[CPI]]></category>
		<category><![CDATA[Information Security Governance]]></category>
		<category><![CDATA[Information Security Infrastructure Management]]></category>
		<category><![CDATA[Information Security Processes]]></category>
		<category><![CDATA[Information Security Service Management]]></category>
		<category><![CDATA[ISG]]></category>
		<category><![CDATA[ISIM]]></category>
		<category><![CDATA[ISSM]]></category>
		<category><![CDATA[IT Security Infrastructure]]></category>
		<category><![CDATA[IT Security Services]]></category>
		<category><![CDATA[Safeguarding Investments]]></category>

		<guid isPermaLink="false">http://itknowledgeexchange.techtarget.com/it-governance/?p=125</guid>
		<description><![CDATA[...goals must be established with appropriate performance indicators for status assessments.]]></description>
				<content:encoded><![CDATA[<p>Procedurally, once information security management has analyzed the entity-centric mission, identified stakeholders, and defined objectives; goals must be established with appropriate performance indicators for status assessments. &#8220;Practical information security service delivery and support utilization requires identification of a critical few measurement indicators in each of the relevant measurement domains that align <a href="http://diy.craigspress.com/BookStore/BookStoreBookDetails.aspx?bookid=48453">safeguarding initiatives</a> to targeted processes and activities. At the detail-level, these few critical measurements represent key performance indicators [(KPIs)] tailored to gauge objective achievement elements. To effectively drive performance alignment, entities should utilize expected outcomes to enable multiple measurements identification so the positive impact safeguarding investments contribute are visible.&#8221; </p>
<p>KPIs are utilized to measure achievements through comparative analyses. Information accuracy and consistency are rudimentary to measurement reliance. If KPIs are going to reliably convey activity status, management must accurately define and consistently <a href="http://www.pleier.com/itasecgovweb.htm">measure expectations</a>. That is, activity calculation inputs must be understood and accepted by those accountable for expected performance until revision notification.</p>
<p><em>&#8220;View Part I of the Measuring Delivery Value series </em><a href="http://itknowledgeexchange.techtarget.com/it-governance/measuring-delivery-value-part-i//"><em>here</em></a>&#8220;</p>
<!-- wpms-network-global-inserts -->]]></content:encoded>
			<wfw:commentRss>http://itknowledgeexchange.techtarget.com/it-governance/measuring-delivery-value-part-ii/feed/</wfw:commentRss>
		<slash:comments>0</slash:comments>
		</item>
		<item>
		<title>Measuring Delivery Value &#8211; Part I</title>
		<link>http://itknowledgeexchange.techtarget.com/it-governance/measuring-delivery-value-part-i/</link>
		<comments>http://itknowledgeexchange.techtarget.com/it-governance/measuring-delivery-value-part-i/#comments</comments>
		<pubDate>Fri, 17 Apr 2009 17:56:48 +0000</pubDate>
		<dc:creator>Robert Davis</dc:creator>
				<category><![CDATA[Continuous Process Improvement]]></category>
		<category><![CDATA[CPI]]></category>
		<category><![CDATA[Information Security Governance]]></category>
		<category><![CDATA[Information Security Infrastructure Management]]></category>
		<category><![CDATA[Information Security Processes]]></category>
		<category><![CDATA[Information Security Service Management]]></category>
		<category><![CDATA[ISG]]></category>
		<category><![CDATA[ISIM]]></category>
		<category><![CDATA[ISSM]]></category>
		<category><![CDATA[IT Security Infrastructure]]></category>
		<category><![CDATA[IT Security Services]]></category>

		<guid isPermaLink="false">http://itknowledgeexchange.techtarget.com/it-governance/?p=119</guid>
		<description><![CDATA[...information security service level management should be considered quality of service administration permitting demonstrable process improvement contributions.]]></description>
				<content:encoded><![CDATA[<p>Considering adamant demands for continuous process improvements, focus on overall information protection and delivery value in terms of enabled <a href="http://www.pleier.com/itadsweb.htm">services</a> has become a managerial necessity. Information Security Service Management is a set of processes enabling and potentially optimizing IT security services for an entity in order to satisfy business requirements, while simultaneously providing strategic and tactical IT security infrastructure management. Consequently, information security service level management should be considered quality of service administration permitting demonstrable process improvement contributions. Measuring, monitoring and reporting on information security processes assist in ensuring organizational objectives are achieved.</p>
<!-- wpms-network-global-inserts -->]]></content:encoded>
			<wfw:commentRss>http://itknowledgeexchange.techtarget.com/it-governance/measuring-delivery-value-part-i/feed/</wfw:commentRss>
		<slash:comments>0</slash:comments>
		</item>
	</channel>
</rss>
