Please enable JavaScript.
Coggle requires JavaScript to display documents.
3.3 (5) (5 Final Testing and Implementation (Implementation plan (Advance…
3.3 (5)
5 Final Testing and Implementation
During the implementation phase,
the ACTUAL OPERATION OF NEW INFORMATION SYSTEM is ESTABLISHED AND TESTED
Final UAT is conducted in this environment
purpose
business application’s effectiveness at MITIGATING RISK TO AN APPROPRIATE LEVEL
provide MANAGEMENT ACCOUNTABILITY
over the
EFFECTIVENESS OF THE SYSTEM in meeting its intended objectives and
establishing an appropriate level of internal control.
Migration steps
PROGRAMS have been tested and refined
all necessary DATA have been successfully converted and loaded into the new system;
USERS have developed procedures and been FULLY TRAINED in the use of the new system
PROGRAM PROCEDURES and PRODUCTION SCHEDULES are in place
Implementation plan
Advance planning
formal plan
setting up the production environment
responsibilities assignment
back out procedures
new system will interface with other systems or is distributed across multiple platforms, some final commissioning tests of the production environment may be desirable to prove end-to-end connectivity.
acquired software
implementation project should be COORDINATED BY USER MANAGEMENT
with the help of IS management
total process SHOULD NOT BE DELEGATED TO VENDOR, .
to avoid possible unauthorized changes or introduction of malicious code by the vendor’s employees/representatives
After operations are established
Site acceptance testing
which is a full-system test conducted on the actual operations environment.
UAT supports the process of ensuring that the system is
production-ready and satisfies all documented requirements.
A security test,
such as a PENETRATION TEST, may also be performed at this stage
Post-implementation Review
purpose
beneficial to VERIFY THAT THE SYSTEM HAS BEEN PROPERLY DESIGNED AND DEVELOPED and that proper controls have been built into the system.
objectives:
• Assessing the
ADEQUACY
of the system
– Does the
system meet USER REQUIREMENTS AND BUSINESS OBJECTIVES
?
– Have
ACCESS CONTROLS been adequately defined and implemented
?
• Evaluating the
PROJECTED COST BENEFITS OR ROI MEASUREMENTS
•
Developing recommendations that address the system’s inadequacies and deficiencies
• Developing a plan for implementing the recommendations
• Assessing the development project process
– Were the
chosen METHODOLOGIES, STANDARDS AND TECHNIQUES followed
?
– Were
appropriate PROJECT MANAGEMENT TECHNIQUE used
?