SlideShare a Scribd company logo
1 of 20
www.drpete.co.ukwww.drpete.co.uk
What is IT (Technology)
Due Diligence?
A high level checklist
Roelof Iball & Paul McCormack
Senior Consultants,
Dr Pete Technology Experts
www.drpete.co.ukwww.drpete.co.uk
Contents
1. What is IT Due Diligence?
2. Why bother with ITDD?
3. Who undertakes the ITDD?
4. Understand the process of ITDD
5. People
6. Infrastructure
7. Software
8. Processes and controls
9. Documentation
10. Strategy and Management
11. Need help?
www.drpete.co.ukwww.drpete.co.uk
Due diligence is the name given to an investigation to provide reassurance
that a transaction is fair and true, before completion.
The concept has been in place for many years and is important for IT systems
in particular, as they affect the smooth running and efficiency of the
business.
It is commonly performed in the following circumstances:
● A company (Acquirer) is buying another company (Target), whole or in
part.
● A company is raising money, either via loan or equity, and the lender
(e.g. bank or prospective shareholder) wants assurance that IT is
effective and is value for money.
● Owners/shareholders wants to demonstrate that systems are fit before
selling part or all of the business, or receiving an investment. (Vendor
ITDD)
What is IT Due Diligence (ITDD)?
www.drpete.co.ukwww.drpete.co.uk
● Imagine buying a house without a survey - you would
ask a surveyor to assess the house to make sure it is
in good condition and to avoid expensive repair bills
and to strengthen your bargaining position.
● All businesses now rely on technology (even if it is
only a smartphone), it is imperative to ensure
systems are adequate.
● For example, a failure in key business systems (e.g.
eCommerce, warehousing, communications,
manufacturing, logistics) could be expensive and
damage your reputation.
● Businesses experiencing a disaster scenario have a
high failure rate; the business could effectively be
worthless.
Why bother with ITDD?
www.drpete.co.ukwww.drpete.co.uk
An ITDD may be performed internally or externally:
● An IT director or chief technology officer from
the Acquirer may investigate the Targets
technology setup.
● However, a preferred approach for both parties
would be to undertake an independent IT DD to:
o Ensure impartiality for both vendor and
acquirer.
o Offer transaction experience.
o Bring additional resource that may not be
available internally.
Who undertakes the ITDD?
www.drpete.co.ukwww.drpete.co.uk
To complete the assessment, the independent ITDD assessor will need
information from the IT Team.
● Staffing - skills, expertise, key-person dependency issues.
● Technology - architecture and extensibility, scalability, robustness,
security.
● Processes & procedures - policies, governance, documentation (systems
and strategic papers), suppliers and contracts.
● Strategy and management - a review of strategic plans and management
information.
A formal report on findings and recommendations will provide a clear
snapshot of the current IT situation and its capability to support the business
strategy.
Understand the process of ITDD
www.drpete.co.ukwww.drpete.co.uk
The Due Diligence Process
www.drpete.co.ukwww.drpete.co.uk
ITDD Example Checklists
www.drpete.co.ukwww.drpete.co.uk
People
☐ Do IT staff have the right skills available to support the
systems?
☐ Check there are no key-person dependencies (especially in
critical system support and/or software development).
☐ Is there staff cover for service availability demanded by
the business?
☐ Is there reporting on analysis of staff turnover, appraisal
processes, development and training plans?
☐ Are procedures/processes documented including a staff
guide?
☐ Does everyone have a current job description and how do
salaries compare to the market rates?
People are often the biggest risk and cost; it’s important that the right
capabilities exist and are appropriately deployed.
www.drpete.co.ukwww.drpete.co.uk
Infrastructure
☐ Is the hardware old and in need of imminent replacement?
☐ Is the current hardware (and firmware) appropriate, supported and
scaleable?
☐ Are systems robust, reliable and resilient - including infrastructure
such as data centres and internet provision?
☐ Do reports exist for security breaches (virus outbreak, network
hacks, data loss, physical impediment such as fire or flood)?
☐ Have the systems been tested for vulnerabilities?
☐ Is there an up-to-date record of all IT assets, including equipment
and licenses?
☐ Is there a backup regime; has a data restore been recently tested?
☐ Are plans in place for business continuity and disaster recovery?
Are the current hardware/infrasture systems capable of supporting the
business strategy?
www.drpete.co.ukwww.drpete.co.uk
Software
☐ Is the software very old and in need of imminent replacement?
☐ Is the software current and supported?
☐ Are there any proprietary/ bespoke systems?
☐ Is any software developed in-house, and if so, is it developed
using a recognised software development framework (SDLC)?
☐ Is the source code carefully maintained?
☐ Understand the ownership of any IP (intellectual property).
☐ Does the helpdesk/service desk system fulfil its requirements
to provide (and report) IT support to the business?
☐ Is licensing adequately controlled and managed?
Understand the software utilised in the business, its effectiveness and
ownership.
www.drpete.co.ukwww.drpete.co.uk
Processes and controls
☐ Key IT suppliers: Understand contracts & exit plans. Identify alternative suppliers and any
mitigation plans.
☐ Are key supplier performance metrics reviewed regularly? Benchmark costs to ensure value
for money and hold regular reviews (quarterly).
☐ Are Access Control measures in place, including password policy and “break- glass”
measures?
☐ Is there a policy for BYOD (bring your own device)?
☐ If WiFi is available, is there segregation between staff and guests?
☐ Has the business gained any assessment certification, such as ISO 27001?
☐ Are helpdesk and ITIL / Cobit adopted?
Understand procedures and authority to carry out the BAU (business as
usual).
www.drpete.co.ukwww.drpete.co.uk
Documentation
☐ Is there a published SOP (standard operating procedures) guide?
☐ Are documents up-to-date and version controlled?
☐ Is there an IT standard product catalogue that’s published and
known across the business?
☐ Do documents exist relating to service level agreements (SLA)
with suppliers and internal business groups?
☐ Are bespoke software systems adequately documented?
☐ Is documentation available for IT strategy, project management
and change control?
Understand how documentation supports the IT operation.
www.drpete.co.ukwww.drpete.co.uk
Strategy and Management
☐ Is the IT strategy planning process in place?
☐ How is the strategy or roadmap documented?
☐ Is the IT budgeting reasonable and adequate?
☐ To what extent does technology feature at the Board
level?
☐ Is the IT strategy aligned with the business strategy?
IT is critical to efficiency and staying ahead of the competition. IT DD
should address the following questions:
www.drpete.co.ukwww.drpete.co.uk
● Our checklist is a simplified snapshot/highlight
of typical questions, to provide food for
thought.
● In reality, every business will be different - for
example, online gaming will be different to
eCommerce - in terms of types of systems and
peak usage and security.
● We have over 30 experts, many from the Big 4
IT audit practices, who have undertaken
technology ITDD.
● We can tailor a cost effective plan based on
your requirements in the UK or around the
world.
Need help?
www.drpete.co.uk
Roelof Iball
Senior
Consultant
Roelof is a seasoned IT professional, corporate
(BP, Ernst & Young, Rentokil Initial, BDO) IT
problem solver, experienced across a range of
industries encompassing both mid-size and
enterprise organisations.
Reporting on IT investment and performance
issues for private equity and corporate finance
due diligence.
Paul
McCormack
Senior
Consultant
Paul is a seasoned IT professional, having
served as a Head of IT for a variety of
corporates. Prior to joining DrPete, Paul was
an an IT Consultant advising clients of BDO
LLP. He also undertook a discrete project
assignment for Google.
Paul has worked in many diverse sectors, from
natural resources, to property management
and cryogenics, providing IT reviews, due
diligence and IT project management services.
About the authors
www.drpete.co.uk
Our services
DrPete Inc provides
Consulting service in
the following
technology areas:
Our clients
www.drpete.co.uk
We use the latest cloud apps and technology paradigms.
DrPete Technology Experts:
Thought leadership
We are members of the
European Cloud Industry
body - Eurocloud, where we
have presented.
Our firm is regularly
featured as thought
leaders. We have been
featured in broadsheets
such as the Financial
Times, the Guardian, and
leading portals like the
Huffington Post.
We have regular columns in
CloudPro and Techradar.
Providing inspirational technology remedies to business challenges

More Related Content

What's hot

Compliant Dissemination of Promotional and Educational Material
Compliant Dissemination of Promotional and Educational MaterialCompliant Dissemination of Promotional and Educational Material
Compliant Dissemination of Promotional and Educational MaterialGood Promotional Practices
 
The Fast Track to Fair Lab Data
The Fast Track to Fair Lab Data The Fast Track to Fair Lab Data
The Fast Track to Fair Lab Data OSTHUS
 
Medical Device Development - Concept to Commercialization | Jahnavi Lokre | L...
Medical Device Development - Concept to Commercialization | Jahnavi Lokre | L...Medical Device Development - Concept to Commercialization | Jahnavi Lokre | L...
Medical Device Development - Concept to Commercialization | Jahnavi Lokre | L...UCICove
 
Supplier Quality Management: Best Practices and Practical Insights in 2015 LI...
Supplier Quality Management: Best Practices and Practical Insights in 2015 LI...Supplier Quality Management: Best Practices and Practical Insights in 2015 LI...
Supplier Quality Management: Best Practices and Practical Insights in 2015 LI...Thomas LaPointe
 
Speeding Towards Commercialization Gra 121808 Final
Speeding Towards Commercialization   Gra 121808 FinalSpeeding Towards Commercialization   Gra 121808 Final
Speeding Towards Commercialization Gra 121808 Finalsecurbme
 
Practical Application of the TMF Reference Model Webinar
Practical Application of the TMF Reference Model WebinarPractical Application of the TMF Reference Model Webinar
Practical Application of the TMF Reference Model WebinarParagon Solutions
 
Is Software Testing a Zero Sum Game??
Is Software Testing a Zero Sum Game??Is Software Testing a Zero Sum Game??
Is Software Testing a Zero Sum Game??Thinksoft Global
 
Building A Global Pharmaceutical Traceability Foundation
Building A Global Pharmaceutical Traceability FoundationBuilding A Global Pharmaceutical Traceability Foundation
Building A Global Pharmaceutical Traceability FoundationSupplyScape
 
E Tmf Tutorial
E Tmf TutorialE Tmf Tutorial
E Tmf Tutorialrammellel
 
Clinlogix - Improving Pharmacovigilance Outsourcing with Modern Technologies
Clinlogix - Improving Pharmacovigilance Outsourcing with Modern Technologies Clinlogix - Improving Pharmacovigilance Outsourcing with Modern Technologies
Clinlogix - Improving Pharmacovigilance Outsourcing with Modern Technologies Veeva Systems
 
IDSC Expertise Capabilities Services
IDSC Expertise Capabilities ServicesIDSC Expertise Capabilities Services
IDSC Expertise Capabilities ServicesMark Creswell
 
FDA Data Integrity: Misconceptions of 21 CFR Part 11
FDA Data Integrity: Misconceptions of 21 CFR Part 11 FDA Data Integrity: Misconceptions of 21 CFR Part 11
FDA Data Integrity: Misconceptions of 21 CFR Part 11 EduQuest, Inc.
 
Best Practices for Managing Regulatory Binders Electronically
Best Practices for Managing Regulatory Binders ElectronicallyBest Practices for Managing Regulatory Binders Electronically
Best Practices for Managing Regulatory Binders ElectronicallyVeeva Systems
 
UK FCA Sandbox Overview
UK FCA Sandbox OverviewUK FCA Sandbox Overview
UK FCA Sandbox OverviewOxbow Partners
 
Tufts Research: Strategies from Data Management Leaders to Speed Clinical Trials
Tufts Research: Strategies from Data Management Leaders to Speed Clinical TrialsTufts Research: Strategies from Data Management Leaders to Speed Clinical Trials
Tufts Research: Strategies from Data Management Leaders to Speed Clinical TrialsVeeva Systems
 
2017 Projects Kenneth Wu
2017 Projects Kenneth Wu2017 Projects Kenneth Wu
2017 Projects Kenneth WuKenneth Wu
 
Scrum and Compliance (2013)
Scrum and Compliance (2013)Scrum and Compliance (2013)
Scrum and Compliance (2013)Laszlo Szalvay
 

What's hot (20)

Compliant Dissemination of Promotional and Educational Material
Compliant Dissemination of Promotional and Educational MaterialCompliant Dissemination of Promotional and Educational Material
Compliant Dissemination of Promotional and Educational Material
 
The Fast Track to Fair Lab Data
The Fast Track to Fair Lab Data The Fast Track to Fair Lab Data
The Fast Track to Fair Lab Data
 
Medical Device Development - Concept to Commercialization | Jahnavi Lokre | L...
Medical Device Development - Concept to Commercialization | Jahnavi Lokre | L...Medical Device Development - Concept to Commercialization | Jahnavi Lokre | L...
Medical Device Development - Concept to Commercialization | Jahnavi Lokre | L...
 
Logit 2014
Logit 2014Logit 2014
Logit 2014
 
Supplier Quality Management: Best Practices and Practical Insights in 2015 LI...
Supplier Quality Management: Best Practices and Practical Insights in 2015 LI...Supplier Quality Management: Best Practices and Practical Insights in 2015 LI...
Supplier Quality Management: Best Practices and Practical Insights in 2015 LI...
 
Speeding Towards Commercialization Gra 121808 Final
Speeding Towards Commercialization   Gra 121808 FinalSpeeding Towards Commercialization   Gra 121808 Final
Speeding Towards Commercialization Gra 121808 Final
 
Practical Application of the TMF Reference Model Webinar
Practical Application of the TMF Reference Model WebinarPractical Application of the TMF Reference Model Webinar
Practical Application of the TMF Reference Model Webinar
 
Critical Processes, Critical Data... Critical Thinking
Critical Processes, Critical Data... Critical ThinkingCritical Processes, Critical Data... Critical Thinking
Critical Processes, Critical Data... Critical Thinking
 
Is Software Testing a Zero Sum Game??
Is Software Testing a Zero Sum Game??Is Software Testing a Zero Sum Game??
Is Software Testing a Zero Sum Game??
 
Building A Global Pharmaceutical Traceability Foundation
Building A Global Pharmaceutical Traceability FoundationBuilding A Global Pharmaceutical Traceability Foundation
Building A Global Pharmaceutical Traceability Foundation
 
E Tmf Tutorial
E Tmf TutorialE Tmf Tutorial
E Tmf Tutorial
 
Clinlogix - Improving Pharmacovigilance Outsourcing with Modern Technologies
Clinlogix - Improving Pharmacovigilance Outsourcing with Modern Technologies Clinlogix - Improving Pharmacovigilance Outsourcing with Modern Technologies
Clinlogix - Improving Pharmacovigilance Outsourcing with Modern Technologies
 
IDSC Expertise Capabilities Services
IDSC Expertise Capabilities ServicesIDSC Expertise Capabilities Services
IDSC Expertise Capabilities Services
 
FDA Data Integrity: Misconceptions of 21 CFR Part 11
FDA Data Integrity: Misconceptions of 21 CFR Part 11 FDA Data Integrity: Misconceptions of 21 CFR Part 11
FDA Data Integrity: Misconceptions of 21 CFR Part 11
 
Best Practices for Managing Regulatory Binders Electronically
Best Practices for Managing Regulatory Binders ElectronicallyBest Practices for Managing Regulatory Binders Electronically
Best Practices for Managing Regulatory Binders Electronically
 
Company presentation 2013
Company presentation 2013Company presentation 2013
Company presentation 2013
 
UK FCA Sandbox Overview
UK FCA Sandbox OverviewUK FCA Sandbox Overview
UK FCA Sandbox Overview
 
Tufts Research: Strategies from Data Management Leaders to Speed Clinical Trials
Tufts Research: Strategies from Data Management Leaders to Speed Clinical TrialsTufts Research: Strategies from Data Management Leaders to Speed Clinical Trials
Tufts Research: Strategies from Data Management Leaders to Speed Clinical Trials
 
2017 Projects Kenneth Wu
2017 Projects Kenneth Wu2017 Projects Kenneth Wu
2017 Projects Kenneth Wu
 
Scrum and Compliance (2013)
Scrum and Compliance (2013)Scrum and Compliance (2013)
Scrum and Compliance (2013)
 

Viewers also liked

Software assessment by example (lecture at the University of Bern)
Software assessment by example (lecture at the University of Bern)Software assessment by example (lecture at the University of Bern)
Software assessment by example (lecture at the University of Bern)Tudor Girba
 
The humane software assessment (Choose Forum 2009)
The humane software assessment (Choose Forum 2009)The humane software assessment (Choose Forum 2009)
The humane software assessment (Choose Forum 2009)Tudor Girba
 
IT due diligence and software quality for fintech startups
IT due diligence and software quality for fintech startupsIT due diligence and software quality for fintech startups
IT due diligence and software quality for fintech startupsSieuwert van Otterloo
 
Software audit for acquisition due diligence with nexB
Software audit for acquisition due diligence with nexBSoftware audit for acquisition due diligence with nexB
Software audit for acquisition due diligence with nexBnexB Inc.
 
Software assessment and audit
Software assessment and auditSoftware assessment and audit
Software assessment and auditSpoorthi Sham
 
Software assessment essentials (lecture at the University of Bern 2013)
Software assessment essentials (lecture at the University of Bern 2013)Software assessment essentials (lecture at the University of Bern 2013)
Software assessment essentials (lecture at the University of Bern 2013)Tudor Girba
 
Assessing youragility
Assessing youragilityAssessing youragility
Assessing youragilityrseniv
 
Lean, six sigma and lean six sigma
Lean, six sigma and lean six sigmaLean, six sigma and lean six sigma
Lean, six sigma and lean six sigmaSpoorthi Sham
 
nexB: Software Audit for Acquisition Due Diligence
nexB: Software Audit for Acquisition Due DiligencenexB: Software Audit for Acquisition Due Diligence
nexB: Software Audit for Acquisition Due DiligencenexB Inc.
 
Technical Due Diligence for M&A: A Perspective from Corporate Development at ...
Technical Due Diligence for M&A: A Perspective from Corporate Development at ...Technical Due Diligence for M&A: A Perspective from Corporate Development at ...
Technical Due Diligence for M&A: A Perspective from Corporate Development at ...Black Duck by Synopsys
 
Due Diligence - What You Don’t Find Out Will Hurt You
Due Diligence - What You Don’t Find Out Will Hurt YouDue Diligence - What You Don’t Find Out Will Hurt You
Due Diligence - What You Don’t Find Out Will Hurt YouNow Dentons
 
Google Apps | Automatic substitution
Google Apps | Automatic substitutionGoogle Apps | Automatic substitution
Google Apps | Automatic substitutioncloudbakers
 
Metin Örnek Dinamikler 2016
Metin Örnek Dinamikler 2016Metin Örnek Dinamikler 2016
Metin Örnek Dinamikler 2016Dinamikler
 
Finding the Right CRM
Finding the Right CRMFinding the Right CRM
Finding the Right CRMcloudbakers
 
Migrate Your Business to the Cloud
Migrate Your Business to the CloudMigrate Your Business to the Cloud
Migrate Your Business to the Cloudcloudbakers
 
Office 365 Hizmetlere Genel Bakış ve Exchange Online
Office 365 Hizmetlere Genel Bakış ve Exchange OnlineOffice 365 Hizmetlere Genel Bakış ve Exchange Online
Office 365 Hizmetlere Genel Bakış ve Exchange OnlineMustafa
 
Cloudbakers' Presentation at Jobg8's Job Board Summit 2013
Cloudbakers' Presentation at Jobg8's Job Board Summit 2013Cloudbakers' Presentation at Jobg8's Job Board Summit 2013
Cloudbakers' Presentation at Jobg8's Job Board Summit 2013cloudbakers
 
οργάνωση, διοίκηση και λειτουργία ενός γραφείου εισερχομένου τουρισμού
οργάνωση, διοίκηση και λειτουργία ενός γραφείου εισερχομένου τουρισμούοργάνωση, διοίκηση και λειτουργία ενός γραφείου εισερχομένου τουρισμού
οργάνωση, διοίκηση και λειτουργία ενός γραφείου εισερχομένου τουρισμούStamatina Kanta
 
Simple Solutions for Complex Problems - Boulder Meetup
Simple Solutions for Complex Problems - Boulder MeetupSimple Solutions for Complex Problems - Boulder Meetup
Simple Solutions for Complex Problems - Boulder MeetupApcera
 
Google Quick Tip - Spell Check
Google Quick Tip - Spell CheckGoogle Quick Tip - Spell Check
Google Quick Tip - Spell Checkcloudbakers
 

Viewers also liked (20)

Software assessment by example (lecture at the University of Bern)
Software assessment by example (lecture at the University of Bern)Software assessment by example (lecture at the University of Bern)
Software assessment by example (lecture at the University of Bern)
 
The humane software assessment (Choose Forum 2009)
The humane software assessment (Choose Forum 2009)The humane software assessment (Choose Forum 2009)
The humane software assessment (Choose Forum 2009)
 
IT due diligence and software quality for fintech startups
IT due diligence and software quality for fintech startupsIT due diligence and software quality for fintech startups
IT due diligence and software quality for fintech startups
 
Software audit for acquisition due diligence with nexB
Software audit for acquisition due diligence with nexBSoftware audit for acquisition due diligence with nexB
Software audit for acquisition due diligence with nexB
 
Software assessment and audit
Software assessment and auditSoftware assessment and audit
Software assessment and audit
 
Software assessment essentials (lecture at the University of Bern 2013)
Software assessment essentials (lecture at the University of Bern 2013)Software assessment essentials (lecture at the University of Bern 2013)
Software assessment essentials (lecture at the University of Bern 2013)
 
Assessing youragility
Assessing youragilityAssessing youragility
Assessing youragility
 
Lean, six sigma and lean six sigma
Lean, six sigma and lean six sigmaLean, six sigma and lean six sigma
Lean, six sigma and lean six sigma
 
nexB: Software Audit for Acquisition Due Diligence
nexB: Software Audit for Acquisition Due DiligencenexB: Software Audit for Acquisition Due Diligence
nexB: Software Audit for Acquisition Due Diligence
 
Technical Due Diligence for M&A: A Perspective from Corporate Development at ...
Technical Due Diligence for M&A: A Perspective from Corporate Development at ...Technical Due Diligence for M&A: A Perspective from Corporate Development at ...
Technical Due Diligence for M&A: A Perspective from Corporate Development at ...
 
Due Diligence - What You Don’t Find Out Will Hurt You
Due Diligence - What You Don’t Find Out Will Hurt YouDue Diligence - What You Don’t Find Out Will Hurt You
Due Diligence - What You Don’t Find Out Will Hurt You
 
Google Apps | Automatic substitution
Google Apps | Automatic substitutionGoogle Apps | Automatic substitution
Google Apps | Automatic substitution
 
Metin Örnek Dinamikler 2016
Metin Örnek Dinamikler 2016Metin Örnek Dinamikler 2016
Metin Örnek Dinamikler 2016
 
Finding the Right CRM
Finding the Right CRMFinding the Right CRM
Finding the Right CRM
 
Migrate Your Business to the Cloud
Migrate Your Business to the CloudMigrate Your Business to the Cloud
Migrate Your Business to the Cloud
 
Office 365 Hizmetlere Genel Bakış ve Exchange Online
Office 365 Hizmetlere Genel Bakış ve Exchange OnlineOffice 365 Hizmetlere Genel Bakış ve Exchange Online
Office 365 Hizmetlere Genel Bakış ve Exchange Online
 
Cloudbakers' Presentation at Jobg8's Job Board Summit 2013
Cloudbakers' Presentation at Jobg8's Job Board Summit 2013Cloudbakers' Presentation at Jobg8's Job Board Summit 2013
Cloudbakers' Presentation at Jobg8's Job Board Summit 2013
 
οργάνωση, διοίκηση και λειτουργία ενός γραφείου εισερχομένου τουρισμού
οργάνωση, διοίκηση και λειτουργία ενός γραφείου εισερχομένου τουρισμούοργάνωση, διοίκηση και λειτουργία ενός γραφείου εισερχομένου τουρισμού
οργάνωση, διοίκηση και λειτουργία ενός γραφείου εισερχομένου τουρισμού
 
Simple Solutions for Complex Problems - Boulder Meetup
Simple Solutions for Complex Problems - Boulder MeetupSimple Solutions for Complex Problems - Boulder Meetup
Simple Solutions for Complex Problems - Boulder Meetup
 
Google Quick Tip - Spell Check
Google Quick Tip - Spell CheckGoogle Quick Tip - Spell Check
Google Quick Tip - Spell Check
 

Similar to What is technology due diligence and why is it important © dr pete technology experts london

IT Governance for Board Members
IT Governance for Board MembersIT Governance for Board Members
IT Governance for Board MembersBill Clark
 
Logical technologist ppt 1
Logical technologist ppt 1Logical technologist ppt 1
Logical technologist ppt 1Sumair Sumair
 
BSIDES DETROIT 2015: Data breaches cost of doing business
BSIDES DETROIT 2015: Data breaches cost of doing businessBSIDES DETROIT 2015: Data breaches cost of doing business
BSIDES DETROIT 2015: Data breaches cost of doing businessJoel Cardella
 
Computer systems management lecture 03
Computer systems management lecture 03Computer systems management lecture 03
Computer systems management lecture 03RAJABU ISSA
 
Top learnings from evaluating and implementing a DLP Solution
Top learnings from evaluating and implementing a DLP Solution Top learnings from evaluating and implementing a DLP Solution
Top learnings from evaluating and implementing a DLP Solution Priyanka Aash
 
Institute for the entrepreneur v1r3
Institute for the entrepreneur v1r3Institute for the entrepreneur v1r3
Institute for the entrepreneur v1r3Dawn Simpson
 
360 IT Infra Mng&Support by Business Goals
360 IT Infra Mng&Support by Business Goals360 IT Infra Mng&Support by Business Goals
360 IT Infra Mng&Support by Business GoalsAlexandru Golosoiu
 
Temperfied 360 Infrastrucure Management & Support -- By Business Goals - web-...
Temperfied 360 Infrastrucure Management & Support -- By Business Goals - web-...Temperfied 360 Infrastrucure Management & Support -- By Business Goals - web-...
Temperfied 360 Infrastrucure Management & Support -- By Business Goals - web-...Calin DAMIAN TANASE (open to invites)
 
IDC Executive Programs Brochure
IDC Executive Programs Brochure IDC Executive Programs Brochure
IDC Executive Programs Brochure IDC Research Inc.
 
A Guide to IT Consulting- Business.com
A Guide to IT Consulting- Business.comA Guide to IT Consulting- Business.com
A Guide to IT Consulting- Business.comBusiness.com
 
Data Privacy: The Hidden Beast within Mergers & Acquisitions
Data Privacy: The Hidden Beast within Mergers & AcquisitionsData Privacy: The Hidden Beast within Mergers & Acquisitions
Data Privacy: The Hidden Beast within Mergers & AcquisitionsTrustArc
 
IllustroTech Introduction to IT Governance Principles
IllustroTech Introduction to IT Governance PrinciplesIllustroTech Introduction to IT Governance Principles
IllustroTech Introduction to IT Governance PrinciplesCraig Miller
 
Enterprise Architecture - An Introduction
Enterprise Architecture - An Introduction Enterprise Architecture - An Introduction
Enterprise Architecture - An Introduction Daljit Banger
 
IT Security: What an In-Plant Print Center Needs to Know
IT Security: What an In-Plant Print Center Needs to KnowIT Security: What an In-Plant Print Center Needs to Know
IT Security: What an In-Plant Print Center Needs to KnowRochester Software Associates
 
IC-SDV 2018: Srin Achanta (SciTech Patent Art) Global Competitive Technology ...
IC-SDV 2018: Srin Achanta (SciTech Patent Art) Global Competitive Technology ...IC-SDV 2018: Srin Achanta (SciTech Patent Art) Global Competitive Technology ...
IC-SDV 2018: Srin Achanta (SciTech Patent Art) Global Competitive Technology ...Dr. Haxel Consult
 
Key drivers that influence a Tech Startup’s Software Outsourcing Decision
Key drivers that influence a Tech Startup’s Software Outsourcing DecisionKey drivers that influence a Tech Startup’s Software Outsourcing Decision
Key drivers that influence a Tech Startup’s Software Outsourcing DecisionMindfire LLC
 
Considerations When Building e-Discovery
Considerations When Building e-Discovery Considerations When Building e-Discovery
Considerations When Building e-Discovery David Kearney
 

Similar to What is technology due diligence and why is it important © dr pete technology experts london (20)

IT Governance for Board Members
IT Governance for Board MembersIT Governance for Board Members
IT Governance for Board Members
 
Logical technologist ppt 1
Logical technologist ppt 1Logical technologist ppt 1
Logical technologist ppt 1
 
BSIDES DETROIT 2015: Data breaches cost of doing business
BSIDES DETROIT 2015: Data breaches cost of doing businessBSIDES DETROIT 2015: Data breaches cost of doing business
BSIDES DETROIT 2015: Data breaches cost of doing business
 
Computer systems management lecture 03
Computer systems management lecture 03Computer systems management lecture 03
Computer systems management lecture 03
 
Top learnings from evaluating and implementing a DLP Solution
Top learnings from evaluating and implementing a DLP Solution Top learnings from evaluating and implementing a DLP Solution
Top learnings from evaluating and implementing a DLP Solution
 
Institute for the entrepreneur v1r3
Institute for the entrepreneur v1r3Institute for the entrepreneur v1r3
Institute for the entrepreneur v1r3
 
Outsourcing presentation
Outsourcing presentation Outsourcing presentation
Outsourcing presentation
 
360 IT Infra Mng&Support by Business Goals
360 IT Infra Mng&Support by Business Goals360 IT Infra Mng&Support by Business Goals
360 IT Infra Mng&Support by Business Goals
 
Temperfied 360 Infrastrucure Management & Support -- By Business Goals - web-...
Temperfied 360 Infrastrucure Management & Support -- By Business Goals - web-...Temperfied 360 Infrastrucure Management & Support -- By Business Goals - web-...
Temperfied 360 Infrastrucure Management & Support -- By Business Goals - web-...
 
Bigradap Digital Profile
Bigradap Digital ProfileBigradap Digital Profile
Bigradap Digital Profile
 
IDC Executive Programs Brochure
IDC Executive Programs Brochure IDC Executive Programs Brochure
IDC Executive Programs Brochure
 
A Guide to IT Consulting- Business.com
A Guide to IT Consulting- Business.comA Guide to IT Consulting- Business.com
A Guide to IT Consulting- Business.com
 
Data Privacy: The Hidden Beast within Mergers & Acquisitions
Data Privacy: The Hidden Beast within Mergers & AcquisitionsData Privacy: The Hidden Beast within Mergers & Acquisitions
Data Privacy: The Hidden Beast within Mergers & Acquisitions
 
IllustroTech Introduction to IT Governance Principles
IllustroTech Introduction to IT Governance PrinciplesIllustroTech Introduction to IT Governance Principles
IllustroTech Introduction to IT Governance Principles
 
Enterprise Architecture - An Introduction
Enterprise Architecture - An Introduction Enterprise Architecture - An Introduction
Enterprise Architecture - An Introduction
 
IT Security: What an In-Plant Print Center Needs to Know
IT Security: What an In-Plant Print Center Needs to KnowIT Security: What an In-Plant Print Center Needs to Know
IT Security: What an In-Plant Print Center Needs to Know
 
IC-SDV 2018: Srin Achanta (SciTech Patent Art) Global Competitive Technology ...
IC-SDV 2018: Srin Achanta (SciTech Patent Art) Global Competitive Technology ...IC-SDV 2018: Srin Achanta (SciTech Patent Art) Global Competitive Technology ...
IC-SDV 2018: Srin Achanta (SciTech Patent Art) Global Competitive Technology ...
 
Key drivers that influence a Tech Startup’s Software Outsourcing Decision
Key drivers that influence a Tech Startup’s Software Outsourcing DecisionKey drivers that influence a Tech Startup’s Software Outsourcing Decision
Key drivers that influence a Tech Startup’s Software Outsourcing Decision
 
How to build an IT strategy
How to build an IT strategyHow to build an IT strategy
How to build an IT strategy
 
Considerations When Building e-Discovery
Considerations When Building e-Discovery Considerations When Building e-Discovery
Considerations When Building e-Discovery
 

Recently uploaded

High Profile Call Girls in Lucknow | Whatsapp No 🧑🏼‍❤️‍💋‍🧑🏽 8923113531 𓀇 VIP ...
High Profile Call Girls in Lucknow | Whatsapp No 🧑🏼‍❤️‍💋‍🧑🏽 8923113531 𓀇 VIP ...High Profile Call Girls in Lucknow | Whatsapp No 🧑🏼‍❤️‍💋‍🧑🏽 8923113531 𓀇 VIP ...
High Profile Call Girls in Lucknow | Whatsapp No 🧑🏼‍❤️‍💋‍🧑🏽 8923113531 𓀇 VIP ...gurkirankumar98700
 
Delhi Munirka 🔝 Call Girls Service 🔝 ( 8264348440 ) unlimited hard sex call girl
Delhi Munirka 🔝 Call Girls Service 🔝 ( 8264348440 ) unlimited hard sex call girlDelhi Munirka 🔝 Call Girls Service 🔝 ( 8264348440 ) unlimited hard sex call girl
Delhi Munirka 🔝 Call Girls Service 🔝 ( 8264348440 ) unlimited hard sex call girlsoniya singh
 
(8264348440) 🔝 Call Girls In Sriniwaspuri 🔝 Delhi NCR
(8264348440) 🔝 Call Girls In Sriniwaspuri 🔝 Delhi NCR(8264348440) 🔝 Call Girls In Sriniwaspuri 🔝 Delhi NCR
(8264348440) 🔝 Call Girls In Sriniwaspuri 🔝 Delhi NCRsoniya singh
 
TDC Health Limited Nigeria Business Plan Opportunity Presentation 2024
TDC Health Limited Nigeria Business Plan Opportunity Presentation 2024TDC Health Limited Nigeria Business Plan Opportunity Presentation 2024
TDC Health Limited Nigeria Business Plan Opportunity Presentation 2024Fikrie Omar
 
Model Call Girl in Bawana Delhi reach out to us at 🔝8264348440🔝
Model Call Girl in Bawana Delhi reach out to us at 🔝8264348440🔝Model Call Girl in Bawana Delhi reach out to us at 🔝8264348440🔝
Model Call Girl in Bawana Delhi reach out to us at 🔝8264348440🔝soniya singh
 
VIP 7001035870 Find & Meet Hyderabad Call Girls Secunderabad high-profile Cal...
VIP 7001035870 Find & Meet Hyderabad Call Girls Secunderabad high-profile Cal...VIP 7001035870 Find & Meet Hyderabad Call Girls Secunderabad high-profile Cal...
VIP 7001035870 Find & Meet Hyderabad Call Girls Secunderabad high-profile Cal...aditipandeya
 
(8264348440) 🔝 Call Girls In Babarpur 🔝 Delhi NCR
(8264348440) 🔝 Call Girls In Babarpur 🔝 Delhi NCR(8264348440) 🔝 Call Girls In Babarpur 🔝 Delhi NCR
(8264348440) 🔝 Call Girls In Babarpur 🔝 Delhi NCRsoniya singh
 
VIP 7001035870 Find & Meet Hyderabad Call Girls Jubilee Hills high-profile Ca...
VIP 7001035870 Find & Meet Hyderabad Call Girls Jubilee Hills high-profile Ca...VIP 7001035870 Find & Meet Hyderabad Call Girls Jubilee Hills high-profile Ca...
VIP 7001035870 Find & Meet Hyderabad Call Girls Jubilee Hills high-profile Ca...aditipandeya
 
(8264348440) 🔝 Call Girls In Khanpur 🔝 Delhi NCR
(8264348440) 🔝 Call Girls In Khanpur 🔝 Delhi NCR(8264348440) 🔝 Call Girls In Khanpur 🔝 Delhi NCR
(8264348440) 🔝 Call Girls In Khanpur 🔝 Delhi NCRsoniya singh
 
(8264348440) 🔝 Call Girls In Tikri Kalan 🔝 Delhi NCR
(8264348440) 🔝 Call Girls In Tikri Kalan 🔝 Delhi NCR(8264348440) 🔝 Call Girls In Tikri Kalan 🔝 Delhi NCR
(8264348440) 🔝 Call Girls In Tikri Kalan 🔝 Delhi NCRsoniya singh
 
(8264348440) 🔝 Call Girls In Siri Fort 🔝 Delhi NCR
(8264348440) 🔝 Call Girls In Siri Fort 🔝 Delhi NCR(8264348440) 🔝 Call Girls In Siri Fort 🔝 Delhi NCR
(8264348440) 🔝 Call Girls In Siri Fort 🔝 Delhi NCRsoniya singh
 
Call Girls At-( Nearby )-Bhikaji Cama Place, Delhi | ⑧③77⓿⑧76⓿7
Call Girls At-( Nearby )-Bhikaji Cama Place, Delhi | ⑧③77⓿⑧76⓿7Call Girls At-( Nearby )-Bhikaji Cama Place, Delhi | ⑧③77⓿⑧76⓿7
Call Girls At-( Nearby )-Bhikaji Cama Place, Delhi | ⑧③77⓿⑧76⓿7dollysharma2066
 
(8264348440) 🔝 Call Girls In Safdarjung Enclave 🔝 Delhi NCR
(8264348440) 🔝 Call Girls In Safdarjung Enclave 🔝 Delhi NCR(8264348440) 🔝 Call Girls In Safdarjung Enclave 🔝 Delhi NCR
(8264348440) 🔝 Call Girls In Safdarjung Enclave 🔝 Delhi NCRsoniya singh
 
办昆士兰大学UQ毕业证书/成绩单GPA修改 - 留学买假毕业证
办昆士兰大学UQ毕业证书/成绩单GPA修改 - 留学买假毕业证办昆士兰大学UQ毕业证书/成绩单GPA修改 - 留学买假毕业证
办昆士兰大学UQ毕业证书/成绩单GPA修改 - 留学买假毕业证0622mpom
 
Gurgaon Rajiv Chowk 🔝 Call Girls Service 🔝 ( 8264348440 ) unlimited hard sex ...
Gurgaon Rajiv Chowk 🔝 Call Girls Service 🔝 ( 8264348440 ) unlimited hard sex ...Gurgaon Rajiv Chowk 🔝 Call Girls Service 🔝 ( 8264348440 ) unlimited hard sex ...
Gurgaon Rajiv Chowk 🔝 Call Girls Service 🔝 ( 8264348440 ) unlimited hard sex ...soniya singh
 
Authentic No 1 Amil Baba In Pakistan Amil Baba In Faisalabad Amil Baba In Kar...
Authentic No 1 Amil Baba In Pakistan Amil Baba In Faisalabad Amil Baba In Kar...Authentic No 1 Amil Baba In Pakistan Amil Baba In Faisalabad Amil Baba In Kar...
Authentic No 1 Amil Baba In Pakistan Amil Baba In Faisalabad Amil Baba In Kar...Authentic No 1 Amil Baba In Pakistan
 
Product Catalog Bandung Home Decor Design Furniture
Product Catalog Bandung Home Decor Design FurnitureProduct Catalog Bandung Home Decor Design Furniture
Product Catalog Bandung Home Decor Design Furniturem3resolve
 

Recently uploaded (20)

High Profile Call Girls in Lucknow | Whatsapp No 🧑🏼‍❤️‍💋‍🧑🏽 8923113531 𓀇 VIP ...
High Profile Call Girls in Lucknow | Whatsapp No 🧑🏼‍❤️‍💋‍🧑🏽 8923113531 𓀇 VIP ...High Profile Call Girls in Lucknow | Whatsapp No 🧑🏼‍❤️‍💋‍🧑🏽 8923113531 𓀇 VIP ...
High Profile Call Girls in Lucknow | Whatsapp No 🧑🏼‍❤️‍💋‍🧑🏽 8923113531 𓀇 VIP ...
 
Delhi Munirka 🔝 Call Girls Service 🔝 ( 8264348440 ) unlimited hard sex call girl
Delhi Munirka 🔝 Call Girls Service 🔝 ( 8264348440 ) unlimited hard sex call girlDelhi Munirka 🔝 Call Girls Service 🔝 ( 8264348440 ) unlimited hard sex call girl
Delhi Munirka 🔝 Call Girls Service 🔝 ( 8264348440 ) unlimited hard sex call girl
 
(8264348440) 🔝 Call Girls In Sriniwaspuri 🔝 Delhi NCR
(8264348440) 🔝 Call Girls In Sriniwaspuri 🔝 Delhi NCR(8264348440) 🔝 Call Girls In Sriniwaspuri 🔝 Delhi NCR
(8264348440) 🔝 Call Girls In Sriniwaspuri 🔝 Delhi NCR
 
TDC Health Limited Nigeria Business Plan Opportunity Presentation 2024
TDC Health Limited Nigeria Business Plan Opportunity Presentation 2024TDC Health Limited Nigeria Business Plan Opportunity Presentation 2024
TDC Health Limited Nigeria Business Plan Opportunity Presentation 2024
 
Pakistani Jumeirah Call Girls # +971559085003 # Pakistani Call Girls In Jumei...
Pakistani Jumeirah Call Girls # +971559085003 # Pakistani Call Girls In Jumei...Pakistani Jumeirah Call Girls # +971559085003 # Pakistani Call Girls In Jumei...
Pakistani Jumeirah Call Girls # +971559085003 # Pakistani Call Girls In Jumei...
 
Model Call Girl in Bawana Delhi reach out to us at 🔝8264348440🔝
Model Call Girl in Bawana Delhi reach out to us at 🔝8264348440🔝Model Call Girl in Bawana Delhi reach out to us at 🔝8264348440🔝
Model Call Girl in Bawana Delhi reach out to us at 🔝8264348440🔝
 
VIP 7001035870 Find & Meet Hyderabad Call Girls Secunderabad high-profile Cal...
VIP 7001035870 Find & Meet Hyderabad Call Girls Secunderabad high-profile Cal...VIP 7001035870 Find & Meet Hyderabad Call Girls Secunderabad high-profile Cal...
VIP 7001035870 Find & Meet Hyderabad Call Girls Secunderabad high-profile Cal...
 
(8264348440) 🔝 Call Girls In Babarpur 🔝 Delhi NCR
(8264348440) 🔝 Call Girls In Babarpur 🔝 Delhi NCR(8264348440) 🔝 Call Girls In Babarpur 🔝 Delhi NCR
(8264348440) 🔝 Call Girls In Babarpur 🔝 Delhi NCR
 
Cheap Rate ➥8448380779 ▻Call Girls In Sector 56 Gurgaon
Cheap Rate ➥8448380779 ▻Call Girls In Sector 56 GurgaonCheap Rate ➥8448380779 ▻Call Girls In Sector 56 Gurgaon
Cheap Rate ➥8448380779 ▻Call Girls In Sector 56 Gurgaon
 
VIP 7001035870 Find & Meet Hyderabad Call Girls Jubilee Hills high-profile Ca...
VIP 7001035870 Find & Meet Hyderabad Call Girls Jubilee Hills high-profile Ca...VIP 7001035870 Find & Meet Hyderabad Call Girls Jubilee Hills high-profile Ca...
VIP 7001035870 Find & Meet Hyderabad Call Girls Jubilee Hills high-profile Ca...
 
(8264348440) 🔝 Call Girls In Khanpur 🔝 Delhi NCR
(8264348440) 🔝 Call Girls In Khanpur 🔝 Delhi NCR(8264348440) 🔝 Call Girls In Khanpur 🔝 Delhi NCR
(8264348440) 🔝 Call Girls In Khanpur 🔝 Delhi NCR
 
(8264348440) 🔝 Call Girls In Tikri Kalan 🔝 Delhi NCR
(8264348440) 🔝 Call Girls In Tikri Kalan 🔝 Delhi NCR(8264348440) 🔝 Call Girls In Tikri Kalan 🔝 Delhi NCR
(8264348440) 🔝 Call Girls In Tikri Kalan 🔝 Delhi NCR
 
(8264348440) 🔝 Call Girls In Siri Fort 🔝 Delhi NCR
(8264348440) 🔝 Call Girls In Siri Fort 🔝 Delhi NCR(8264348440) 🔝 Call Girls In Siri Fort 🔝 Delhi NCR
(8264348440) 🔝 Call Girls In Siri Fort 🔝 Delhi NCR
 
Call Girls At-( Nearby )-Bhikaji Cama Place, Delhi | ⑧③77⓿⑧76⓿7
Call Girls At-( Nearby )-Bhikaji Cama Place, Delhi | ⑧③77⓿⑧76⓿7Call Girls At-( Nearby )-Bhikaji Cama Place, Delhi | ⑧③77⓿⑧76⓿7
Call Girls At-( Nearby )-Bhikaji Cama Place, Delhi | ⑧③77⓿⑧76⓿7
 
(8264348440) 🔝 Call Girls In Safdarjung Enclave 🔝 Delhi NCR
(8264348440) 🔝 Call Girls In Safdarjung Enclave 🔝 Delhi NCR(8264348440) 🔝 Call Girls In Safdarjung Enclave 🔝 Delhi NCR
(8264348440) 🔝 Call Girls In Safdarjung Enclave 🔝 Delhi NCR
 
办昆士兰大学UQ毕业证书/成绩单GPA修改 - 留学买假毕业证
办昆士兰大学UQ毕业证书/成绩单GPA修改 - 留学买假毕业证办昆士兰大学UQ毕业证书/成绩单GPA修改 - 留学买假毕业证
办昆士兰大学UQ毕业证书/成绩单GPA修改 - 留学买假毕业证
 
Gurgaon Rajiv Chowk 🔝 Call Girls Service 🔝 ( 8264348440 ) unlimited hard sex ...
Gurgaon Rajiv Chowk 🔝 Call Girls Service 🔝 ( 8264348440 ) unlimited hard sex ...Gurgaon Rajiv Chowk 🔝 Call Girls Service 🔝 ( 8264348440 ) unlimited hard sex ...
Gurgaon Rajiv Chowk 🔝 Call Girls Service 🔝 ( 8264348440 ) unlimited hard sex ...
 
🔝9953056974🔝!!-YOUNG BOOK model Call Girls In New friends colony Delhi Escort...
🔝9953056974🔝!!-YOUNG BOOK model Call Girls In New friends colony Delhi Escort...🔝9953056974🔝!!-YOUNG BOOK model Call Girls In New friends colony Delhi Escort...
🔝9953056974🔝!!-YOUNG BOOK model Call Girls In New friends colony Delhi Escort...
 
Authentic No 1 Amil Baba In Pakistan Amil Baba In Faisalabad Amil Baba In Kar...
Authentic No 1 Amil Baba In Pakistan Amil Baba In Faisalabad Amil Baba In Kar...Authentic No 1 Amil Baba In Pakistan Amil Baba In Faisalabad Amil Baba In Kar...
Authentic No 1 Amil Baba In Pakistan Amil Baba In Faisalabad Amil Baba In Kar...
 
Product Catalog Bandung Home Decor Design Furniture
Product Catalog Bandung Home Decor Design FurnitureProduct Catalog Bandung Home Decor Design Furniture
Product Catalog Bandung Home Decor Design Furniture
 

What is technology due diligence and why is it important © dr pete technology experts london

  • 1. www.drpete.co.ukwww.drpete.co.uk What is IT (Technology) Due Diligence? A high level checklist Roelof Iball & Paul McCormack Senior Consultants, Dr Pete Technology Experts
  • 2. www.drpete.co.ukwww.drpete.co.uk Contents 1. What is IT Due Diligence? 2. Why bother with ITDD? 3. Who undertakes the ITDD? 4. Understand the process of ITDD 5. People 6. Infrastructure 7. Software 8. Processes and controls 9. Documentation 10. Strategy and Management 11. Need help?
  • 3. www.drpete.co.ukwww.drpete.co.uk Due diligence is the name given to an investigation to provide reassurance that a transaction is fair and true, before completion. The concept has been in place for many years and is important for IT systems in particular, as they affect the smooth running and efficiency of the business. It is commonly performed in the following circumstances: ● A company (Acquirer) is buying another company (Target), whole or in part. ● A company is raising money, either via loan or equity, and the lender (e.g. bank or prospective shareholder) wants assurance that IT is effective and is value for money. ● Owners/shareholders wants to demonstrate that systems are fit before selling part or all of the business, or receiving an investment. (Vendor ITDD) What is IT Due Diligence (ITDD)?
  • 4. www.drpete.co.ukwww.drpete.co.uk ● Imagine buying a house without a survey - you would ask a surveyor to assess the house to make sure it is in good condition and to avoid expensive repair bills and to strengthen your bargaining position. ● All businesses now rely on technology (even if it is only a smartphone), it is imperative to ensure systems are adequate. ● For example, a failure in key business systems (e.g. eCommerce, warehousing, communications, manufacturing, logistics) could be expensive and damage your reputation. ● Businesses experiencing a disaster scenario have a high failure rate; the business could effectively be worthless. Why bother with ITDD?
  • 5. www.drpete.co.ukwww.drpete.co.uk An ITDD may be performed internally or externally: ● An IT director or chief technology officer from the Acquirer may investigate the Targets technology setup. ● However, a preferred approach for both parties would be to undertake an independent IT DD to: o Ensure impartiality for both vendor and acquirer. o Offer transaction experience. o Bring additional resource that may not be available internally. Who undertakes the ITDD?
  • 6. www.drpete.co.ukwww.drpete.co.uk To complete the assessment, the independent ITDD assessor will need information from the IT Team. ● Staffing - skills, expertise, key-person dependency issues. ● Technology - architecture and extensibility, scalability, robustness, security. ● Processes & procedures - policies, governance, documentation (systems and strategic papers), suppliers and contracts. ● Strategy and management - a review of strategic plans and management information. A formal report on findings and recommendations will provide a clear snapshot of the current IT situation and its capability to support the business strategy. Understand the process of ITDD
  • 9. www.drpete.co.ukwww.drpete.co.uk People ☐ Do IT staff have the right skills available to support the systems? ☐ Check there are no key-person dependencies (especially in critical system support and/or software development). ☐ Is there staff cover for service availability demanded by the business? ☐ Is there reporting on analysis of staff turnover, appraisal processes, development and training plans? ☐ Are procedures/processes documented including a staff guide? ☐ Does everyone have a current job description and how do salaries compare to the market rates? People are often the biggest risk and cost; it’s important that the right capabilities exist and are appropriately deployed.
  • 10. www.drpete.co.ukwww.drpete.co.uk Infrastructure ☐ Is the hardware old and in need of imminent replacement? ☐ Is the current hardware (and firmware) appropriate, supported and scaleable? ☐ Are systems robust, reliable and resilient - including infrastructure such as data centres and internet provision? ☐ Do reports exist for security breaches (virus outbreak, network hacks, data loss, physical impediment such as fire or flood)? ☐ Have the systems been tested for vulnerabilities? ☐ Is there an up-to-date record of all IT assets, including equipment and licenses? ☐ Is there a backup regime; has a data restore been recently tested? ☐ Are plans in place for business continuity and disaster recovery? Are the current hardware/infrasture systems capable of supporting the business strategy?
  • 11. www.drpete.co.ukwww.drpete.co.uk Software ☐ Is the software very old and in need of imminent replacement? ☐ Is the software current and supported? ☐ Are there any proprietary/ bespoke systems? ☐ Is any software developed in-house, and if so, is it developed using a recognised software development framework (SDLC)? ☐ Is the source code carefully maintained? ☐ Understand the ownership of any IP (intellectual property). ☐ Does the helpdesk/service desk system fulfil its requirements to provide (and report) IT support to the business? ☐ Is licensing adequately controlled and managed? Understand the software utilised in the business, its effectiveness and ownership.
  • 12. www.drpete.co.ukwww.drpete.co.uk Processes and controls ☐ Key IT suppliers: Understand contracts & exit plans. Identify alternative suppliers and any mitigation plans. ☐ Are key supplier performance metrics reviewed regularly? Benchmark costs to ensure value for money and hold regular reviews (quarterly). ☐ Are Access Control measures in place, including password policy and “break- glass” measures? ☐ Is there a policy for BYOD (bring your own device)? ☐ If WiFi is available, is there segregation between staff and guests? ☐ Has the business gained any assessment certification, such as ISO 27001? ☐ Are helpdesk and ITIL / Cobit adopted? Understand procedures and authority to carry out the BAU (business as usual).
  • 13. www.drpete.co.ukwww.drpete.co.uk Documentation ☐ Is there a published SOP (standard operating procedures) guide? ☐ Are documents up-to-date and version controlled? ☐ Is there an IT standard product catalogue that’s published and known across the business? ☐ Do documents exist relating to service level agreements (SLA) with suppliers and internal business groups? ☐ Are bespoke software systems adequately documented? ☐ Is documentation available for IT strategy, project management and change control? Understand how documentation supports the IT operation.
  • 14. www.drpete.co.ukwww.drpete.co.uk Strategy and Management ☐ Is the IT strategy planning process in place? ☐ How is the strategy or roadmap documented? ☐ Is the IT budgeting reasonable and adequate? ☐ To what extent does technology feature at the Board level? ☐ Is the IT strategy aligned with the business strategy? IT is critical to efficiency and staying ahead of the competition. IT DD should address the following questions:
  • 15. www.drpete.co.ukwww.drpete.co.uk ● Our checklist is a simplified snapshot/highlight of typical questions, to provide food for thought. ● In reality, every business will be different - for example, online gaming will be different to eCommerce - in terms of types of systems and peak usage and security. ● We have over 30 experts, many from the Big 4 IT audit practices, who have undertaken technology ITDD. ● We can tailor a cost effective plan based on your requirements in the UK or around the world. Need help?
  • 16. www.drpete.co.uk Roelof Iball Senior Consultant Roelof is a seasoned IT professional, corporate (BP, Ernst & Young, Rentokil Initial, BDO) IT problem solver, experienced across a range of industries encompassing both mid-size and enterprise organisations. Reporting on IT investment and performance issues for private equity and corporate finance due diligence. Paul McCormack Senior Consultant Paul is a seasoned IT professional, having served as a Head of IT for a variety of corporates. Prior to joining DrPete, Paul was an an IT Consultant advising clients of BDO LLP. He also undertook a discrete project assignment for Google. Paul has worked in many diverse sectors, from natural resources, to property management and cryogenics, providing IT reviews, due diligence and IT project management services. About the authors
  • 17. www.drpete.co.uk Our services DrPete Inc provides Consulting service in the following technology areas:
  • 19. www.drpete.co.uk We use the latest cloud apps and technology paradigms. DrPete Technology Experts: Thought leadership We are members of the European Cloud Industry body - Eurocloud, where we have presented. Our firm is regularly featured as thought leaders. We have been featured in broadsheets such as the Financial Times, the Guardian, and leading portals like the Huffington Post. We have regular columns in CloudPro and Techradar.
  • 20. Providing inspirational technology remedies to business challenges