Snežienkova 1/A, 971 01 Prievidza SR
SK
CS
EN

Why implement and certify an IT service management system according to the ISO/IEC 20000-1 standard?

CATEGORY

 

The present is marked by bringing increasing demands on the practical application of IT solutions to companies. This trend is so strong that even small companies operating in various industries are trying to keep up with the times. Thanks to unique IT solutions and applications, they can be closer to clients and at the same time it is possible to simplify the order execution process. It is an expanding market in which growing competition is gradually emerging. The ISO / IEC 20000-1 standard is a suitable tool for standardizing and improving the provided services and at the same time credibly prove to the customer the level of provided services.

What is the purpose of the ISO/IEC 20000-1 standard?
 

This standard specifies the requirements for the service provider, which are focused on the planning, implementation, operation, monitoring, control, maintenance and improvement of the service management system.


The requirements of the standard are designed to be applicable to service providers of all sizes and specializations. It primarily serves to set up services and the processes of their establishment in accordance with an internationally verified standard. These processes are based on the ITIL library. This standard may be applied by an IT department or an external IT service provider.


The standard focuses on service delivery processes and not on delivered products such as hardware or software, which are the focus of the ISO 9001 standard. The service management system is designed specifically for services related to the installation, use, operation and service of information systems.
 

Basic requirements of ISO/IEC 20000-1 standard and its classification

The ISO / IEC 20000-1 standard consists of 10 basic points and its structure is adapted for integration with the ISO 9001:2015 and ISO / IEC 27001:2013 management systems. The structure of the standard is as follows:

  1. Object and use - the purpose of the standard is to create a set of unified processes for the effective provision of managed services. The standard defines the requirements for a service provider who provides services to the customer in an acceptable quality.
  2. Terms and their definitions - contains a link to related documents. It also clarifies the terms used in the standard.
  3. Management system requirements - contains basic requirements for management, documentation and competencies of employees.
  4. Planning and implementation - this section is described and the PDCA cycle should follow. Initially, service delivery and management planning is needed, followed by service management implementation, then measurement and analysis, and finally improvement.
  5. New services and changes - must be delivered and managed at the agreed cost and quality. An estimate of costs and commercial impacts is also needed.
  6. Service delivery processes - defines requirements for service level management, service reporting, continuity and availability management, budgeting and accounting, capacity management, capacity management, information security management.
  7. Relationship Processes - Defines requirements for Business Relationship Management and Supplier Management.
  8. Recovery Processes - defines the requirements for Incident Management and Problem Management.
  9. Control processes - defines requirements for Configuration Management and Change Management.
  10. Deployment Process - Includes a release management process that defines how to deliver, distribute, and track changes made to the releases that are deployed.

 

 

Related standards with ISO/IEC 20000-1

The ISO/IEC 20000-1 standard follows in its content and is related to several standards. One starting point is the ITIL requirements, which provide a suitable basis for the development of ISO/IEC 20000-1 compliant processes, but there is still no formal relationship between the standards. We recommend implementing the requirements of the ISO/IEC 20000-1 standard together with the related ISO 9001:2015 and ISO/IEC 27001:2013 standards. The points of the mentioned standards are unified and thus prepared for better integration. In addition, the standard includes references to related standards that specify the requirements. These are the standards:

  • ISO/IEC 20000-2 - Guidelines for the use of the service management system
  • ISO/IEC TR 20000-3 - Provides guidance on defining the scope and applicability of ISO/IEC 20000-1
  • ISO 31000:2018 - Risk management system
  • ISO 19011:2018 - Guidance on auditing

We recommend implementing and certifying the ISO/IEC 20000-1 standard in companies that are interested in standardizing and improving the services provided. At the same time, it is suitable for all companies that provide IT services and are interested in providing customers with services in accordance with international standards.

 

Sources:

https://www.iso.org/standard/70636.html

EN ISO/IEC 20000-1

 

Similar articles

What changes does the current version 6 of MMOG/LE bring to the automotive supply chain?

What changes does the current version 6 of MMOG/LE bring to the automotive supply chain?

AIAG members and Odette - together with established industry partners and stakeholders have decided to release a new version of MMOG/LE, in order to support the following objectives for a more stable and predictable supply chain.

More
The ISO / IEC 17025 standard ensures exclusivity for your laboratory!

The ISO / IEC 17025 standard ensures exclusivity for your laboratory!

CATEGORY

ISO / IEC 17025 is a standard that applies to laboratories in various industries and ensures that standards for laboratory testing and calibration are followed in practice.

More
ISO 22301 - Systematic approach to protection, including your business

ISO 22301 - Systematic approach to protection, including your business

Recently, we have begun to accumulate events that we are not used to in our latitudes. Apart from the pandemic, we have certainly all caught a tornado in Moravia and other extreme weather events. ISO 22301 specifies business continuity requirements and rules and helps companies recover quickly from unforeseen events. Its aim is to prepare companies and protect them in the event of such an exceptional unforeseen event.

More
The PSCR has replaced and supplemented the PSB

The PSCR has replaced and supplemented the PSB

What is the difference between PSB and PSCR? Why is PSB no longer enough and what has changed? What training should you undergo?

More

Newsletter