close this windows
www.secu-sys.com
Complex Provisioning in Project Structures
The administration of authorizations is often implemented in relatively inflexible
organizational structures in the company. Increasingly those working- or business
processes of dynamic organizational structures are eliminated.
This becomes particularly in the project organization clear. Already in a rising number
of companies, the project organization dominates the structuring of work processes.
The following mostly characterizes the project organization:
1. Projects are (planned) finitely
2. They are in general cross-structured organized
3. One employee may be a member of multiple project teams.
Authorizations or rights administration in the project management (PM) results clearly in a broader complexity, unlike the provisioning systems on the market so far, with their quite rigid role models.
The rights administration is at least two-dimensional in the project management. One employee can be e.g. a project leader, regarding only to the data view of this project, like special file space for this project. The employee may also be a member of a project e-mail group, regarding to the view of documents of that project, at the document management system, etc.
To disallow inadmissible and receive the correct data view, a special team role must exist, which may transfer, generically, corresponding project parameter during the allocation process. Instead of conventional role models in the project management, the user may receive one certain role for multiple projects, several times.
Of particular importance is the general and dynamic separation of duties! This means that a user in general is not allowed to be active in two mutually exclusive projects (such as competition customers).
The dynamic Separation of Duties is subject to the prohibition, where a user in one project may not own two different roles for this project at the same time (e.g. such as project manager and controller). Whereas in different projects this is quite possible.
The proposed solution offers various automated processes in the project management.
For a new creation also the following is executed:
• a file space is created and by the identification rule, clearly referenced with the project,
• a mailing group for the project created,
• a access rule for the project documents in DMS predefined,
• a project for the milestone management created.
At the end of the project, the team roles will be revoked (sorted) from the user, the user of the teams are dismissed and the authorizations to the archived data, consigned to the role owner “project coordinator“ for further operation.
The request procedure regulates the access and exit of new project members. Eligible project staff will be determined by the integrated skill management.
This solution enables effective management of many at the same time organizing projects
If you have any questions, please feel free to contact us!
Institut für System-Management GmbH (iSM)
Oldendorfer Straße 12, 18147 Rostock, GERMANY
Phone: +49 (0)381 37573-0, Fax: +49 (0)381 37573-29
E-mail: info@secu-sys.com
Web: www.secu-sys.com
|