CMMI Consultant Blog

CMMI Frequently Asked Questions and their responses from CMMI Consultant(s)

  • Home
  • CMMI FAQ
  • CMMI Services
  • About Rajendra Khare
  • « Go to Parent Site – DQSIndia.com

Search CMMI Consultant Blog




How to conduct Risk Management from CMMI point of view?

CMMI FAQ 0


30th April, 2013

In CMMI, Risk Management (RSKM) is a process area at CMMI Maturity Level 3 and requires projects to manage Risk so that projects are not disturbed by any unwanted conditions and deliver the result which they are intended to. In CMMI Maturity Level 2 under Project Monitoring and Control Process Area in SP 1.3 Monitor Project Risks, project risks have to be managed at CMMI Maturity Level 2 also. Risk Management (RSKM) helps in identifying potential problem as said and managing/mitigating/eliminating them before they occur.

Risk Management involves following activities:

  • Identification of risks – Risks can be identified related to the different categories and broadly belonging to Process (Complex, Simple, Medium Complex etc.), People (Team Members, Senior Management, Customers, and Suppliers), Technology (OS, Databases, Programming Language, Tools, COTS) and Others (Communication Language, Statutory, On-time Delivery). Refer to the Old Risk Log for selecting risks for your projects. It is also possible that there is no Risk Log available. Risks encountered shall be collected from Project Teams and documented in the form of Risk Log.
  • Analysis of Risks – Once you have identified all risks, do analyse them for different factors – risk, probability and its impact on the project. During risk analysis or assessment, we examine the accuracy of the estimates that were made during risk projection and attempt to prioritize the risks. For assessment to be useful, a risk level is determined. There is a level of performance degradation, cost overrun, support, or schedule slippage that (or any combination of the four) that will cause the project to be terminated. If the combination of risks lead to problems that cause schedule and cost overruns, there will be a level, that (when exceeded) will cause project termination. So Risk shall be analysed carefully based on the parameters as said above.
  • Risk Tracking – Risk tracking needs to be done on a real time basis. It can be done live or on completion of a milestone. Risk Log document is a live document and shall be updated periodically for the new Risk Score for the identified Risks and to add new Risks identified due to changes in project conditions/environment etc.
  • Risk Repository – Risks shall be documented from projects. Even if there was not Risk Log available in the past, oral evidences should be collected from project teams and shall be documented in the Risk Log and shall be used as Risk Repository for planning Risks Management in new projects.
  • Handling Risks – Risk Mitigation Plan shall be prepared for each risk. Risk mitigation planning can also include contingency plans to deal with the impact of selected risks that can occur despite attempts to handle/manage them. Risks shall be handled based on their occurrence in the project. Risks shall be handled whose threshold has exceeded from defined limits.

Risk Management Summary

  • Do estimate costs and benefits of implementing the risk mitigation plan for each risk.
  • Identify and assign resources who will handle the Risks Management.
  • Closely monitor the risk, update log and close the risk once its effect becomes very less.

How DQS India can help in better Risk Management?

DQS India has very experienced team of CMMI Consultants who have vast experience of working in diverse Project Environments, Team Sizes, and Domains. They can help projects team in understanding Risk Management in totally different light which will help them in managing risks better.

They can help in the development of Processes, Templates, Checklists and Guidelines for Risk Management and at the same time provide Training for implementation of these artefacts to project teams.

Share this:

  • Click to email a link to a friend (Opens in new window)
  • Click to print (Opens in new window)
  • Click to share on Facebook (Opens in new window)
  • Click to share on Twitter (Opens in new window)
  • Click to share on LinkedIn (Opens in new window)
  • Click to share on Tumblr (Opens in new window)
  • Click to share on Pinterest (Opens in new window)
  • Click to share on Reddit (Opens in new window)

Like this:

Like Loading...

Related


Published by CMMI Consultant


cmmi, risk log, risk management, rskm



Previous Post

How traceability is maintained for the software work product under Requirements Management (REQM) Process Area in CMMI?

Next Post

Dear CMMI Consultant, please describe CMMI SCAMPI Class C Assessment requirements in general terms.

Leave a ReplyCancel reply


Sidebar


Author: Rajendra Khare


Rajendra's LinkedIn Profile
Rajendra is a qualified and certified Lead Appraiser and Instructor for the following :

  • SCAMPI High Maturity Lead Appraiser (Certified)
  • CMMI Institute-Certified SCAMPI v1.3 Lead Appraiser for Acquisition (Certified)
  • CMMI Institute-Certified SCAMPI v1.3 Lead Appraiser for Development (Certified)
  • CMMI Institute-Certified SCAMPI v1.3 Lead Appraiser for Services (Certified)
  • CMMI Institute-Certified Introduction to CMMI-DEV v1.3 Instructor (Certified)
  • CMMI Institute-Certified Services Supplement for CMMI-DEV Instructor (Certified)
  • CMMI Institute-Certified CMMI-DEV Level 2 for Practitioners Instructor (Certified)
  • CMMI Institute-Certified CMMI-DEV Level 3 for Practitioners Instructor (Certified)
  • CMMI Institute-Certified SCAMPI B & C Team Leader for Acquisition (Certified)
  • CMMI Institute-Certified SCAMPI B & C Team Leader for Development (Certified)
  • CMMI Institute-Certified SCAMPI B & C Team Leader for Services (Certified)

Rajendra is Lead Assessor for ISO 9001 (QMS), ISO 14001 (EMS), OHSAS 18001 (OHSMS) since 1994

International Automotive Task Force (IATF) approved Lead Assessor for Automotive Standard TS 16949:2009

Lead Assessor for ISO 27001 (ISMS) and ISO 20000-1 (ITSM)

Rajendra has 25 years experience in the industry.


Tags

cmmi cmmi-acq cmmi-dev cmmi-svc cmmi appraisal CMMI Assessment cmmi benefits CMMI Certification cmmi consultant cmmi consultants cmmi consulting cmmi faq CMMI for Acquisition cmmi for development cmmi for services cmmi high maturity cmmi implementation cmmi institute cmmi maintenance cmmi maturity level cmmi maturity level 2 cmmi maturity level 3 cmmi model cmmi process cmmi process improvement cmmi services configuration management dqs india high maturity Information Security iso 9001 metrics opd opm opp organizational training pal PPQA process improvement qms risk management sam sepg supplier agreement management training

© 2025 Copyright © 2017 CMMI Consultant Blog.
Back to top
%d