Skip to main content

Measuring Readiness for Compliance: A Gap Analysis Tool to Complete the TIPA Process Assessment Framework

  • Conference paper
  • First Online:
Systems, Software and Services Process Improvement (EuroSPI 2016)

Part of the book series: Communications in Computer and Information Science ((CCIS,volume 633))

Included in the following conference series:

Abstract

The combination of conformity and process assessment is gaining interest among business organizations, and the IT Service Management (ITSM) field is no exception to this trend. We have designed a Gap Analysis tool enabling to translate the identified requirement gaps into a process perspective. The tool is based on the proces map from the Process Assessment Model (PAM) built on the same requirements set to provide the process view, and so it creates correlations and offers interesting complementarities with the related PAM. The Proof of Concept presented in this paper validates the design of such a tool. It opens the door to its application to the IT Service Management field and, in particular, its integration within the current Tudor’s IT Process Assessment (TIPA) framework.

This is a preview of subscription content, log in via an institution to check access.

Access this chapter

Chapter
USD 29.95
Price excludes VAT (USA)
  • Available as PDF
  • Read on any device
  • Instant download
  • Own it forever
eBook
USD 39.99
Price excludes VAT (USA)
  • Available as EPUB and PDF
  • Read on any device
  • Instant download
  • Own it forever
Softcover Book
USD 54.99
Price excludes VAT (USA)
  • Compact, lightweight edition
  • Dispatched in 3 to 5 business days
  • Free shipping worldwide - see info

Tax calculation will be finalised at checkout

Purchases are for personal use only

Institutional subscriptions

References

  1. CMMI for Development, Version 1.3 (PDF). CMMI-DEV (Version 1.3, November 2010). Carnegie Mellon University Software Engineering Institute (2010). http://cmmiinstitute.com/resources/cmmi-development-version-13

  2. CMMI for Acquisition, Version 1.3 (PDF). CMMI-ACQ (Version 1.3, November 2010). Carnegie Mellon University Software Engineering Institute (2010). http://cmmiinstitute.com/resources/cmmi-acquisition-version-13

  3. CMMI for Services, Version 1.3 (PDF). CMMI-SVC (Version 1.3, November 2010). Carnegie Mellon University Software Engineering Institute (2010). http://cmmiinstitute.com/resources/cmmi-services-version-13

  4. Automotive Spice. http://www.automotivespice.com/fileadmin/software-download/Automotive_SPICE_PAM_30.pdf

  5. The Cabinet Office. ITIL Lifecycle Publication Suite. The Stationery Office Edition (2011)

    Google Scholar 

  6. Public Research Center Henri Tudor. ITSM Process Assessment Supporting ITIL. Van Haren Publishing (2009). ISBN:9789087535643

    Google Scholar 

  7. Renault, A., Cortina, S., Barafort, B.: Towards a maturity model for ISO/IEC 20000-1 based on the TIPA for ITIL process capability assessment model. In: Rout, T., O’Connor, R.V., Dorling, A. (eds.) SPICE 2015. CCIS, vol. 526, pp. 188–200. Springer, Heidelberg (2015)

    Chapter  Google Scholar 

  8. Picard, M., Renault, A., Barafort, B.: A maturity model for ISO/IEC 20000-1 based on the TIPA for ITIL process capability assessment model. In: O’Connor, R.V. (ed.) EuroSPI 2015. CCIS, vol. 543, pp. 168–179. Springer, Heidelberg (2015). doi:10.1007/978-3-319-24647-5_14

    Chapter  Google Scholar 

  9. TIPA for ITIL Process Assessment Model. http://bit.ly/23camL4

  10. ISO/IEC TR 20000-1:2011. Information Technology — Service management — Service management system requirements. International Organization for Standardization, Geneva (2011)

    Google Scholar 

  11. The Cabinet Office. ITIL - Continual Service Improvement volume. The Stationery Office Edition (2011)

    Google Scholar 

  12. Valdevit, T., Mayer, N.: A gap analysis tool for SMEs targeting ISO/IEC 27001 compliance. In: The International Conference ICEIS 2010, Funchal, Portugal (2010)

    Google Scholar 

  13. ISO 19011. Guidelines for auditing management systems, Geneva (2011)

    Google Scholar 

  14. ISO/IEC 17000. Conformity assessment – Vocabulary and general principles. International Organization for Standardization, Geneva (2004)

    Google Scholar 

  15. ISO/IEC 33001. Information Technology — Process assessment — Concepts and terminology. International Organization for Standardization, Geneva (2014)

    Google Scholar 

  16. ISO/IEC 27001. Information technology – Security techniques – Information security management systems – Requirements. International Organization for Standardization, Geneva (2013)

    Google Scholar 

  17. Paulk, M.C.: Comparing ISO 9001 and the capability maturity model for software. Softw. Qual. J. 2(4), 245–256 (1993)

    Article  Google Scholar 

  18. Jung, H.-W., Hunter, R.: The relationship between ISO/IEC 15504 process capability levels, ISO 9001 certification and organization size: an empirical study. J. Syst. Softw. 59(1), 43–55 (2001)

    Article  Google Scholar 

  19. Renault, A., Picard, M., Ferrand, D.: Process assessment to support conformity assessment – Experimentation of a PAM for accreditation conformity assessment. In: The International Conference SPICE 2008, Nuremberg, Germany (2008)

    Google Scholar 

  20. Walker, A., Coletta, A., Sivaraman, R.: An evaluation of the process capability implications of the requirements of ISO/IEC 20000-1. J. Softw. Evol. Process 26, 1316–1326 (2014)

    Article  Google Scholar 

  21. ISO/IEC Directives, Part1, Annex SL. International Organization for Standardization, Geneva (2014)

    Google Scholar 

  22. ISO/IEC TR 20000-4:2010. Information Technology — Service management — Process reference model. International Organization for Standardization, Geneva (2010)

    Google Scholar 

  23. ISO/IEC 15504-8:2012. Information Technology — Process assessment — An exemplar process assessment model for IT service management. International Organization for Standardization, Geneva (2012)

    Google Scholar 

  24. Clarke, P., Lepmets, M., Dorling, A., McCaffery, F.: Safety critical software process assessment: how MDevSPICE® addresses the challenge of integrating compliance and capability. In: Rout, T., O’Connor, R.V., Dorling, A. (eds.) SPICE 2015. CCIS, vol. 526, pp. 13–18. Springer, Heidelberg (2015)

    Chapter  Google Scholar 

  25. MDevSPICE. http://www.mdevspice.com/

  26. Susman, G., Evered, R.: An assessment of the scientific merits of action research. Adm. Sci. Q. 23(4), 582–603 (1978)

    Article  Google Scholar 

  27. Barafort, B., Renault, A., Picard, M., Cortina, S.: A transformation process for building PRMs and PAMs based on a collection of requirements – Example with ISO/IEC 20000. In: The International Conference SPICE 2008, pp. 12–21, Nuremberg, Germany (2008)

    Google Scholar 

  28. Cortina, S., Picard, M., Valdés, O., Renault, A.: A challenging process models development: the ITIL v3 lifecycle processes. In: The International Conference SPICE 2010, pp. 59–66, Pisa, Italy (2010)

    Google Scholar 

  29. ISO/IEC/IEEE 29148. Software and systems engineering - Life cycle processes - Requirements engineering. International Organisation for Standardisation, Geneva (2011)

    Google Scholar 

Download references

Author information

Authors and Affiliations

Authors

Corresponding authors

Correspondence to Michel Picard , Alain Renault , Béatrix Barafort or Stéphane Cortina .

Editor information

Editors and Affiliations

Rights and permissions

Reprints and permissions

Copyright information

© 2016 Springer International Publishing Switzerland

About this paper

Cite this paper

Picard, M., Renault, A., Barafort, B., Cortina, S. (2016). Measuring Readiness for Compliance: A Gap Analysis Tool to Complete the TIPA Process Assessment Framework. In: Kreiner, C., O'Connor, R., Poth, A., Messnarz, R. (eds) Systems, Software and Services Process Improvement. EuroSPI 2016. Communications in Computer and Information Science, vol 633. Springer, Cham. https://doi.org/10.1007/978-3-319-44817-6_9

Download citation

  • DOI: https://doi.org/10.1007/978-3-319-44817-6_9

  • Published:

  • Publisher Name: Springer, Cham

  • Print ISBN: 978-3-319-44816-9

  • Online ISBN: 978-3-319-44817-6

  • eBook Packages: Computer ScienceComputer Science (R0)

Publish with us

Policies and ethics