首页> 外文会议>IEEE International Software Engineering Standards Symposium and Forum >Third-party registrars' audits-for better or for worse?
【24h】

Third-party registrars' audits-for better or for worse?

机译:第三方注册商的审计 - 无论好坏吗?

获取原文

摘要

Reviews the potential impact of third-party standards audits on a software organization's ability to respond to changing requirements. The authors focus on the responsibility of the auditee's management to ensure that the registrar's audit presents a balanced view of the auditee's position with respect to a standard. Ineffective audits and undeserved certification waste time and money. An ineffective audit has the potential to undermine carefully nurtured cultural attitudes about quality, standards, procedures and audits. At worst, an ineffective audit can obscure problems and divert a software organization from addressing real problems that adversely affect customer satisfaction, the quality of products and services, the efficiency of processes and the business viability of the organization. Drawing on their experience with ISO 9000 in software engineering, the authors discuss actual problems encountered and suggest techniques for ensuring that third-party audits are effective for ensuring that major nonconformities identify serious problems. One of the most prevalent examples is the apparent over-emphasis on document control. Lack of document control is a legitimate major problem. Up to 70% of ISO registrations are initially denied because of document control problems. It would, however, be of substantially more value to the auditee for a skilled auditor to discover that, for example, the process for creating and maintaining requirements documents is missing. While the authors' examples are drawn from ISO 9001 registration audits, the principles, problems and remedies they recommend translate into any standards environment.
机译:审查第三方标准审核对软件组织响应不断变化要求的能力的潜在影响。作者侧重于审计员管理层的责任,以确保书记官长的审计审计在标准方面达到了审计员地位的平衡观点。无效审核和不值得的认证浪费时间和金钱。无效审计有可能破坏质量,标准,程序和审计的精心培育文化态度。在最糟糕的情况下,无效的审计可以模糊问题并将软件组织转移到解决对客户满意度的不利影响,产品质量和服务效率以及组织的业务可行性的真正问题。提交人作者讨论了他们在软件工程中的ISO 9000体验,讨论了确保第三方审计的实际问题,并提出了确保主要不合格识别严重问题的技术。其中一个最普遍的例子是表观过度强调文档控制。缺乏文件控制是一个合理的主要问题。由于文件控制问题,最初拒绝了高达70%的ISO注册。但是,对于熟练的审计员来说,它将对审计员进行大量价值来发现,例如,缺少创建和维护要求文档的过程。虽然作者的示例是由ISO 9001注册审计,他们建议的原则,问题和补救措施转化为任何标准环境。

著录项

相似文献

  • 外文文献
  • 中文文献
  • 专利
获取原文

客服邮箱:kefu@zhangqiaokeyan.com

京公网安备:11010802029741号 ICP备案号:京ICP备15016152号-6 六维联合信息科技 (北京) 有限公司©版权所有
  • 客服微信

  • 服务号