21
CSM Meeting CSM Meeting Shaun Fröhlich Shaun Fröhlich 1 1 st st June 2006 June 2006

CSM Meeting Shaun Fröhlich 1 st June 2006. Objectives To help you gain & remain in control of your software assets To improve security To improve

Embed Size (px)

Citation preview

Page 1: CSM Meeting Shaun Fröhlich 1 st June 2006. Objectives  To help you gain & remain in control of your software assets  To improve security  To improve

CSM MeetingCSM MeetingShaun FröhlichShaun Fröhlich

11stst June 2006 June 2006

Page 2: CSM Meeting Shaun Fröhlich 1 st June 2006. Objectives  To help you gain & remain in control of your software assets  To improve security  To improve

ObjectivesObjectives

To help you gain & remain in control To help you gain & remain in control of your software assetsof your software assets To improve security To improve security To improve service deliveryTo improve service delivery To reduce wasteTo reduce waste To reduce riskTo reduce risk

Page 3: CSM Meeting Shaun Fröhlich 1 st June 2006. Objectives  To help you gain & remain in control of your software assets  To improve security  To improve

AgendaAgenda

IntroductionIntroduction IiS a brief historyIiS a brief history ISO-19770 & the certification toolISO-19770 & the certification tool Trustworthy certificationTrustworthy certification Summary & closeSummary & close

Page 4: CSM Meeting Shaun Fröhlich 1 st June 2006. Objectives  To help you gain & remain in control of your software assets  To improve security  To improve

IIiiS Was Born From NeedS Was Born From Need

Definition, recognition & rewardDefinition, recognition & reward The need for a global approachThe need for a global approach

Independent, open & inclusiveIndependent, open & inclusive

RecognitionRecognition Of a definitive processOf a definitive process Of SAM expertise & experienceOf SAM expertise & experience Absolute clarity sorting good from badAbsolute clarity sorting good from bad On-going “On-going “certificates of conformity”certificates of conformity”

Reward - drivers to support SAMReward - drivers to support SAM

Page 5: CSM Meeting Shaun Fröhlich 1 st June 2006. Objectives  To help you gain & remain in control of your software assets  To improve security  To improve

IIiiS - Investors In SoftwareS - Investors In Software

Not-for-profit limited liability under Not-for-profit limited liability under English lawEnglish law

Mission:- Mission:- To support & advance To support & advance professionalism in software asset professionalism in software asset management and related IT asset management and related IT asset management, to enable individuals management, to enable individuals & organisations to improve & organisations to improve effectiveness & efficiencyeffectiveness & efficiency

www.investorsinsoftware.comwww.investorsinsoftware.com

Page 6: CSM Meeting Shaun Fröhlich 1 st June 2006. Objectives  To help you gain & remain in control of your software assets  To improve security  To improve

MembershipMembership Software publishers:Software publishers:

Microsoft, Symantec Microsoft, Symantec Software Tools vendors:Software Tools vendors:

Centennial, Express Metrics Centennial, Express Metrics Non Exec Directors:Non Exec Directors:

Ernst & Young, KPMG, Software Ernst & Young, KPMG, Software Spectrum, SCCSpectrum, SCC

Board Directors:Board Directors: Shaun Fröhlich, Zak Virdi, Sean Shaun Fröhlich, Zak Virdi, Sean

Robinson, Tony Fisher, Dave BickettRobinson, Tony Fisher, Dave Bickett

Page 7: CSM Meeting Shaun Fröhlich 1 st June 2006. Objectives  To help you gain & remain in control of your software assets  To improve security  To improve

Service Management

IT Asset Management

Software Asset Management ITIL SAM

BS 15000 ISO/IEC 20000

Best Practice Standards

ITIL

ISO/IEC 19770-1

SAM RelationshipsSAM Relationships

License Management

Page 8: CSM Meeting Shaun Fröhlich 1 st June 2006. Objectives  To help you gain & remain in control of your software assets  To improve security  To improve

Development ParallelsDevelopment Parallels

Major Market Major Market DriversDrivers

Best Best PracticePractice

User GroupUser Group StandardsStandards

Service Service ManagementManagement

Operations Operations Management Management (Help Desk (Help Desk etc)etc)

ITILITIL itSMFitSMF BS 15000BS 15000

ISO/IEC ISO/IEC 2000020000

Software Software Asset Asset ManagementManagement

Risk Risk Management Management (License (License Compliance Compliance etc)etc)

ITIL ITIL SAMSAM

Investors in Investors in SoftwareSoftware

ISO/IEC ISO/IEC 1977019770

Page 9: CSM Meeting Shaun Fröhlich 1 st June 2006. Objectives  To help you gain & remain in control of your software assets  To improve security  To improve

The ITIL SAM GuideThe ITIL SAM Guide

ITIL Best Practice ITIL Best Practice in Software Asset in Software Asset ManagementManagement BookBook

Published 9 Published 9 September 2003September 2003

ISBN:0113309430ISBN:0113309430

CDCD ISBN:0113309449ISBN:0113309449

Page 10: CSM Meeting Shaun Fröhlich 1 st June 2006. Objectives  To help you gain & remain in control of your software assets  To improve security  To improve

19770-1 History – Idea19770-1 History – IdeaSAM Community especially in UK but also

worldwide including commercial and government end-users, software manufacturers, service providers, and consultants

Project Team

ITIL SAM Guide

IT Infrastructure Library (ITIL)

Aligned to

Investors in Software

BS SAM Standard

BS 15000 Service Management

Aligned toAligned to

Aligned to

Aligned to

Page 11: CSM Meeting Shaun Fröhlich 1 st June 2006. Objectives  To help you gain & remain in control of your software assets  To improve security  To improve

19770-1 History – Issue 119770-1 History – Issue 1SAM Community especially in UK but also

worldwide including commercial and government end-users, software manufacturers, service providers, and consultants

Project Team

ITIL SAM Guide

IT Infrastructure Library (ITIL)

Aligned to

Investors in Software

BS SAM Standard

BS 15000 Service Management

Aligned toAligned to

Aligned to

Aligned to

ISO/IEC 20000 Service

ManagementFast-tracked to

Page 12: CSM Meeting Shaun Fröhlich 1 st June 2006. Objectives  To help you gain & remain in control of your software assets  To improve security  To improve

19770-1 History – Issue 219770-1 History – Issue 2SAM Community especially in UK but also

worldwide including commercial and government end-users, software manufacturers, service providers, and consultants

Project Team

ITIL SAM Guide

IT Infrastructure Library (ITIL)

Aligned to

Investors in Software

BS SAM Standard

BS 15000 Service Management

Aligned toAligned to

Aligned to

Aligned to

ISO/IEC 19770-1 SAM Processes

Compliance Focus

ISO/IEC JTC1SC7

Working Group 21

ISO/IEC SAM

Community <10 active individuals

Page 13: CSM Meeting Shaun Fröhlich 1 st June 2006. Objectives  To help you gain & remain in control of your software assets  To improve security  To improve

19770-1 History - Final19770-1 History - FinalSAM Community especially in UK but also

worldwide including commercial and government end-users, software manufacturers, service providers, and consultants

Project Team

ITIL SAM Guide

IT Infrastructure Library (ITIL)

Aligned to

Investors in Software

IiS Full Draft for 19770-1

BS 15000 Service Management

Aligned toAligned to

Aligned to

Aligned to

ISO/IEC 20000 Service

Management

British Standards Institution

(Standards Part, Not Commercial Part)

ISO/IEC 19770-1 SAM Processes

ISO/IEC JTC1SC7

Working Group 21

ISO/IEC SAM

Community <10 active individuals

Aligned to

Fast-tracked to

Page 14: CSM Meeting Shaun Fröhlich 1 st June 2006. Objectives  To help you gain & remain in control of your software assets  To improve security  To improve

ISO 19770-1 Certification ToolISO 19770-1 Certification Tool

Demonstration Demonstration

Page 15: CSM Meeting Shaun Fröhlich 1 st June 2006. Objectives  To help you gain & remain in control of your software assets  To improve security  To improve

ISO 19770-1

Self-certification

Un-authorised Cert

Accredited Certified

Accredited Cert + IiS

Status

Before any standards….

SAM - SuretyDriving Analogy

No SAM definition

Lawless roads Mayhem & self- rule

Self-taught

still dangerous

Licensed, legal, “safe” & insurableAdvanced safer & cheaper to insure

Self-checked no surety

Partner* checked so no surety or “badge”Accredited** checker so badge & no suretyCompliant & committed

Accredited Cert + IiSMS

n/a Recognition & reward

Microsoft

Symantec

Monotype & more…

Ve

nd

or

spe

cific

ext

en

sio

ns

*Without independently regulated partners there is no surety of the qualification or

capability of SAM practitioners. ISEB/ IiS

** UKAS determines which organisations can certify although with none have SAM expertise. IiS

Instructed still a bit dangerous

Page 16: CSM Meeting Shaun Fröhlich 1 st June 2006. Objectives  To help you gain & remain in control of your software assets  To improve security  To improve

Certification ChallengesCertification Challenges

Page 17: CSM Meeting Shaun Fröhlich 1 st June 2006. Objectives  To help you gain & remain in control of your software assets  To improve security  To improve

Certification ChallengesCertification Challenges

Anybody can certifyAnybody can certify In any way they wantIn any way they want

Mail-order certificationsMail-order certifications On-line certificationzOn-line certificationz Paper-based reviewsPaper-based reviews Partial certificationsPartial certifications With varying interpretations as to the With varying interpretations as to the

meaning of the standardmeaning of the standard

Page 18: CSM Meeting Shaun Fröhlich 1 st June 2006. Objectives  To help you gain & remain in control of your software assets  To improve security  To improve

IiS Certification SchemeIiS Certification Scheme

Based on itSMF Certification Scheme Based on itSMF Certification Scheme for Service Management (BS 15000 – for Service Management (BS 15000 – ISO/IEC 20000)ISO/IEC 20000)

With add-on manufacturer-specific With add-on manufacturer-specific certificationscertifications

Page 19: CSM Meeting Shaun Fröhlich 1 st June 2006. Objectives  To help you gain & remain in control of your software assets  To improve security  To improve

IiS Certification SchemeIiS Certification Scheme

Any individual performing Any individual performing certifications must have passed the certifications must have passed the relevant competency examinationrelevant competency examination 19770-1 auditing skills19770-1 auditing skills Manufacturer-specific exams for add-on Manufacturer-specific exams for add-on

certificationscertifications Exams and training likely to be Exams and training likely to be

world-wide via Information Systems world-wide via Information Systems Examination Board (ISEB)Examination Board (ISEB)

Page 20: CSM Meeting Shaun Fröhlich 1 st June 2006. Objectives  To help you gain & remain in control of your software assets  To improve security  To improve

IiS Certification SchemeIiS Certification Scheme

Additional exam available for Additional exam available for consultants / implementersconsultants / implementers

Registers ofRegisters of Individuals who can certifyIndividuals who can certify Individuals who can help Individuals who can help

prepare/implementprepare/implement Certification bodies participating in the Certification bodies participating in the

IiS schemeIiS scheme Organisations certified, and the Organisations certified, and the

relevant scope statementsrelevant scope statements

Page 21: CSM Meeting Shaun Fröhlich 1 st June 2006. Objectives  To help you gain & remain in control of your software assets  To improve security  To improve

SummarySummary

&&

Thank YouThank You