IT Security Project Management Handbook

If you re an experienced project manager, you ve learned that a security project team makes or breaks a project. A security project plan is nothing but a to do list until you have a security project team compiled of competent people who can actually do the work and deliver the results. Therefore, if you don t spend time planning and organizing your security project team, you re missing a huge opportunity, and simultaneously creating a big problem for yourself as project manager. In this chapter, we re going to talk about how to go about forming a security project team for an Information Technology (IT) security project. The material in this chapter intersects with much of the other data presented throughout the book, because the security project team touches all aspects of the project. Even if you re an experienced project manager (which we re assuming you are), you ll gain valuable insight and knowledge from looking at your security project team through the security perspective presented in this chapter.
An IT security project team is not a static group of people; its membership should shift and change as you move through the various stages of a project. There will be some people who need to be involved in the initial planning stages to ensure various stakeholder needs are met. However, that same group may not be needed again until the project is in its final stages and you re ready to define standard operating procedures to maintain security in daily...