Versions Compared

Key

  • This line was added.
  • This line was removed.
  • Formatting was changed.

...

Never worked with Jira before? No problem. Please first read the Jira training Basics page.
In this chapter below the Jira setup for Information Systems Jira-projects is explained.

J-sox compliance

J-SOX requires Japanese companies to enhance internal control reporting and demonstrate the effectiveness of their internal controls

To be J-SOX compliant, Yamaha Motor Europe N.V. will need to demonstrate 4 primary security controls in a yearly audit:

  • Secure Access Control Management. 
  • Demonstrate a Resilient Cybersecurity Framework. 
  • Demonstrate Data Backup Protocols. 
  • Change Management.

For Information Systems Division Controls will be integrated in the Jira workflows:

  • Secure Access Control Management: new user accounts must be registered and logged in Jira. Users manager need to be informed and included in the ticket.
  • Secure Access Control Management: all user authorization changes for Business applications (Ympact, SYS2000, YLS) must be logged in Jira.
    Approval for new authorization(s) is required from IT management (division manager, department manager, team lead).
  • Change management: approval (SQL's) by IT management (division manager, department manager, team lead)
  • Change management: Role segregation for development and testing. Developer does not test their own developed code.
  • Change management: Deployment approval request by IT management (division manager, department manager, team lead).
  • Change management: Deployments can only be performed by authorized roles (division manager, department manager, Team lead, Product Owner, Delivery manager).
  • Change management: Agile teams must met the organizations set Definition of Done. This is done via a checklist for issues moved to ready for Deployment.

Beforehand it is not known if a database correction or program change is required, to prevent delay in resolving reported requests the users manager is automatically added to the request (Jira issue/ticket).
YME and distributor users are directly synchronized in Jira with Active directory including users manager. The users manager is added via a automation after request creation. 
Active directory is maintained by Servicedesk.

Jira projects

Information Systems are Division is using the following Jira projects:

ProjectKeyProject type and Purpose
SD

Jira Service management - Incident management including Customer Portal

B2B-Apps - BABA

Software delivery  - Cognos, TM1, Cubes

B2B-Apps - LogisticsBLSoftware delivery - YLS, SYS2000, Witron
B2B-Apps - YmpactYMSoftware delivery - YMPACT
B2C-AppsB2CSoftware delivery  - various products used by B2C/EPAM team(s)
Change Advisory BoardCABSoftware delivery - management approval
YamahaISprojectsYISSoftware delivery -  Agile teams
Yamaha Portfolio BoardYPMSoftware delivery - Portfolio/Project planning 
Yamaha Motor Next Stage ProjectEUYNSSoftware delivery - Yamaha Next Stage (SAP/Informatica)

...


The Change Advisory Board will be phased out completely as it will be covered by the Yamaha Portfolio Board and  Software project(s).

J-sox compliance

J-SOX requires Japanese companies to enhance internal control reporting and demonstrate the effectiveness of their internal controls

To be J-SOX compliant, Yamaha Motor Europe N.V. will need to demonstrate 4 primary security controls in a yearly audit:

  • Secure Access Control Management. 
  • Demonstrate a Resilient Cybersecurity Framework. 
  • Demonstrate Data Backup Protocols. 
  • Change Management.

For Information Systems Division Controls will be integrated in the Jira workflows:

...

(

...

s

...

Beforehand it is not known if a database correction or program change is required, to prevent delay in resolving reported requests the users manager is automatically added to the request (Jira issue/ticket).
YME and distributor users are directly synchronized in Jira with Active directory including users manager. The users manager is added via a automation after request creation. 
Active directory is maintained by Servicedesk.

Yamaha Applications Support Desk (SD)

...

Note

Designs are no longer documented under the Functional Conceptional Designs but under YPM Project and Programme documentation 


Yamaha Portfolio Board (YPM)

...