惯性聚合 高效追踪和阅读你感兴趣的博客、新闻、科技资讯
阅读原文 在惯性聚合中打开

推荐订阅源

cs.CV updates on arXiv.org
cs.CV updates on arXiv.org
云风的 BLOG
云风的 BLOG
aimingoo的专栏
aimingoo的专栏
Vercel News
Vercel News
T
The Blog of Author Tim Ferriss
F
Full Disclosure
A
About on SuperTechFans
C
Check Point Blog
让小产品的独立变现更简单 - ezindie.com
让小产品的独立变现更简单 - ezindie.com
量子位
Know Your Adversary
Know Your Adversary
K
Kaspersky official blog
L
LINUX DO - 热门话题
Recorded Future
Recorded Future
C
Cisco Blogs
M
MIT News - Artificial intelligence
T
Tenable Blog
G
GRAHAM CLULEY
月光博客
月光博客
Recent Announcements
Recent Announcements
V
Visual Studio Blog
IT之家
IT之家
T
The Exploit Database - CXSecurity.com
The GitHub Blog
The GitHub Blog
T
Threat Research - Cisco Blogs
D
DataBreaches.Net
P
Privacy International News Feed
P
Proofpoint News Feed
I
Intezer
博客园 - 叶小钗
C
CXSECURITY Database RSS Feed - CXSecurity.com
The Hacker News
The Hacker News
Cyber Security Advisories - MS-ISAC
Cyber Security Advisories - MS-ISAC
博客园 - Franky
SecWiki News
SecWiki News
宝玉的分享
宝玉的分享
P
Palo Alto Networks Blog
Last Week in AI
Last Week in AI
小众软件
小众软件
Hacker News - Newest:
Hacker News - Newest: "LLM"
O
OpenAI News
N
News and Events Feed by Topic
Microsoft Security Blog
Microsoft Security Blog
Security Archives - TechRepublic
Security Archives - TechRepublic
N
News and Events Feed by Topic
The Cloudflare Blog
Spread Privacy
Spread Privacy
酷 壳 – CoolShell
酷 壳 – CoolShell
Exploit-DB.com RSS Feed
Exploit-DB.com RSS Feed
B
Blog RSS Feed

博客园 - 台风

让员工学会学习 - 台风 - 博客园 我们需要个性突出的员工吗? 为什么不提供离线Blog管理工具呢? 收集积累员工的技能数据和项目经验数据很重要 Web程序中要注意的安全问题 - 台风 - 博客园 规则表达式(笔记) - 台风 - 博客园 如何对Web Application进行安全性评估 项目管理中的组织结构 Migration项目总结 Auditor and Audit Stakeholder Anaylysis 项目的沟通管理 风险的应对策略 项目管理技能 维护项目阶段总结 Six sigma tools 持续过程改进 - 公司过程能力持续提高的保证 Variables Control Charts (计量值控制图) Attribute Control Charts(计数值控制图)
对PMR, PM and audit的一些想法
台风 · 2005-03-23 · via 博客园 - 台风

公司实施的是PCMM和CMMI(level 5),在项目进行过程中,每季度一次的PMR(Project Management Review),每两月一次的Project audit和每月一次的PM(Project monitoring),目的都是保证项目完全遵循PCMM和CMMI的流程. QAG和SEPG在每次的PMR/Project Audit/PM后都会email通知Project Leader那些NCR(None Conformance Report), Action Taken, Project Leader在规定的期限内close这些NCRs和Action Taken.

一般,QAG/SEPG会有所有PMR/PA/PM的report数据. 但我发现, 我作为一个Project Leader平时要想了解项目在以前的audit/review/monitoring过程中有哪些NCRs和Action Items时, 却只能向QAG/SEPG要这个数据. 可能我这次有一个NCR, 我close了. 但下次又有同样/类似的NCR. 这种方式只能说明各个Project和QAG/SEPG只是被动地follow CMM的process, 发现问题后改正. 如何改进一下,让project能主动follow Process, 主动提高project的Process capability呢?

我们可以建立一个信息共享机制, QAG和SEPG把所有的audit/review/monitoring数据发布在统一的地方,project team可以随时查询. 这样project team可以随身查询以前的数据,做到以史为鉴.

另外,我们还可以建议每个project team也同时使用audit/review/monitoring checklist对自己的工作随时自我audit/review/monitoring,提前发现问题,不要等到auditor/reviewer/monitor来发现问题.

如果每个project team能做到主动follow process,主动check,那么每个project的process capability就一定会很好. 推而广之, 整个organizational的process也能很好地follow CMM5, CMM5 assessment, 那么这个组织的CMM level还有上不去的吗? 这样实施CMM还有不成功的吗?