M4 S2 ISC CPA Change management

0.0(0)
Studied by 0 people
call kaiCall Kai
Locked
learnLearn
examPractice Test
spaced repetitionSpaced Repetition
heart puzzleMatch
flashcardsFlashcards
GameKnowt Play
Card Sorting

1/23

encourage image

There's no tags or description

Looks like no tags are added yet.

Last updated 11:40 AM on 8/25/26
Name
Mastery
Learn
Test
Matching
Spaced
Call with Kai
Chat

No analytics yet

Send a link to your students to track their progress

24 Terms

1
New cards

Change Management

The policies, procedures, and resources employed to govern change in an organization

  • Usually have an impact on IT infrastructure such as internal hardware, software applications, and governance


2
New cards

Development Phase

perform initial code revisions, which would be part of the development environment.

3
New cards

Configuration

Process of modifying the default system parameters to meet a company's needs. Configuration should be performed according to the implementation roadmap and approved system changes

4
New cards

Baseline

Represents a formally reviewed and accepted configuration of system settings, software, and state that serves as a reference point or starting point for reconfigurations. Once established, changes to the baseline can only be made through formal configuration and change management processes to maintain control and consistency.

5
New cards

Agile Method

Change management methodology that was created to address shortfalls of the Waterfall method, another methodology used to implement change. The Agile method has a more flexible approach that is distinguished by its use of cross-functional teams that are dedicated to different functions and improvement initiatives that are tied to a list of the end customer's prioritized needs.

The steps listed in Savestone Solution's mechanized process for completing updates aligns with the core Agile principles, which include satisfying customers early with continuous delivery of high-priority features, welcoming change, meeting frequently to make adjustments, and completing only work requested by the customer.

6
New cards

Change Management Process

A process an organization can keep up with changing application and hardware needs without losing the ability to operate or achieve its strategic objectives

  • Steps to manage change:

    1. Identify and define system change

    2. Design high-level plan to be achieved because of change

    3. Obtain approval from management for the change

    4. Develop appropriate budget & time line

    5. Assign personnel responsible for managing the change

    6. Identify/ address potential risks that could occur during the change

    7. Provide implementation road map

    8. Provide necessary resources and train personnel

    9. Test the system change

    10. Execute the implementation plan

    11. Review and monitor change implementation and test


7
New cards

Development Environment

Form of environment where software programmers write code to create application prototypes

  • Source code editing tool is used to create and modify code syntax, automation tools that have preconfigured code, and a debugging

tool to help fix errors

  • Revisions are made


8
New cards

Testing

Form of environment where developers test and debug code to identify errors that need to be corrected

  • Intentionally separate from Development environment so the focus is on debugging errors in an application that is mostly complete


9
New cards

Staging

Form of environment where organizations can test programs that are in their final phases of development in a production-like environment

  • Tests functionality, compatibility, security, and performance prior to deployment


10
New cards

Production

Form of environment where an application is deployed and made available to end users.

11
New cards

Change Management Risks

Component in the change management process where potential risks that can occur are identified as a result of a change

  • To combat, AICPA Trust Services Criteria can be applied

  1. Selection & Acquisition Risk

    1. Lack of expertise

    2. Lack of formal selection & acquisition process

    3. Software/ hardware vulnerability & incompatibility

  2. Integration Risks

    1. User resistance

    2. Lack of management support

    3. Lack of stakeholder support

    4. Resource concerns

    5. Business disruption

    6. Lack of system integration

  3. Outsourcing Risks

    1. Lack of organizational knowledge

    2. Uncertainty of the 3rd party’s knowledge and management

    3. Lack of security


12
New cards

Change Management Controls

Controls designed to minimize the possibility that the inherent risks will cause business disruptions or negatively impact IT systems

  1. Policies and Procedures ←- Outline change management policy

  2. Emergency Change Policies ←- Contingency policies/ procedures

  3. Standardized Change Request Forms

  4. Impact Assessment

  5. Authorization

  6. Standardized Change Requests



13
New cards
14
New cards
15
New cards
16
New cards
17
New cards
18
New cards
19
New cards
20
New cards
21
New cards
22
New cards
23
New cards
24
New cards