Skip to content

Services

Services

Subject matter experience in various domains

Below follows an overview of all competence, pointing into additional details on Information Technology advice, Project Management practices, Quality Care, Governance, Risk Management, Compliance,  Information Security and Privacy.

Select your topic

Services T & C’s: Services Terms & Conditions 

ICT specific competence

– Technology Advice
– Project Management
– Interim Management
– Organisational Advice
– Quality Care
– Information Governance & Security

References of international ICT and Organisational related implementation work, training and consulting are available upon request. Please provide your more detailed query through the contact form available here. Thank you!

Governance, Risk Management and Compliance related competence

– Advise best practice for auditing & risk management (maturity based) and coach the practical implementation
– Support structuring of the universe with it’s assessment components and related mathematical assessment logic
– Implementation of working templates and management reporting
– Design of decision systems based on measurements values combined with bridging to & from ICT systems
– Questionnaire redaction for management in support of assessing high-level compliance obligations on the work floor
– Development and maintenance of self-assessment working documents for several industry accepted standards
– Development and maintenance of several legally required documents in several languages

References of international GRC and Privacy related implementation work, training and consulting is available he

Information & Communication Technology

IT Auditing
Perform IT Control Diagnostics in terms of performance, risk, responsibilities and service level agreements.

Engagement Scoping
Analyse fitness of IT governance processes and associated controls, including identification of minimum controls.


Resource Assessment
Assess resource balancing versus management control objectives.


Risk Assessment
Evaluation of IT domain risk factors in terms of Technology Concerns to Management as defined by Gartner Group.


We can help you

1 – To assess your current performance in dealing with

Office Work

Internal team collaboration
Client Relationship Management
Use of website communication technology
Electronic order and invoice processing


Mobile Efficiency

Your capability to deal with your business activity while people are away from the office


Business continuity & security

Your capability to deal with
Information backup and restore practices
Information loss protection against physical, logical and human error threats
Capability to survive without ICT


ICT strategy

Your vision on efficiency, competitivity, cost & time savings
Maintenance and IT related work; suppliers and ( out )sourcing
Long-term vision and budget to get there


2 – To choose the pragmatic way forward in function of your actual level of maturity

3 – With provision of the appropriate support to implement the desired course of action


Some of the above services are performed using CobiT™ Framework based methodology.

Executive CobiT™ information and IT Governance reference materials are available from the Information Systems Audit & Control Association
Process set-up, analysis and remodedeling activities are performed using SAP’s Solution Composer. Click here for a sample. (Functions correctly only with older browsers). Alternatively we use ARIS BPM. 
CobiT™ is a TradeMark of the Information Systems Audit and Control Foundation.

Back to Services overview

Interim Management

Management Approach

QPMC has adopted a methodology based on joint experience of subject matter experts it encountered long before QPMC was established as a company.
The specific techniques are documented in PRAGMA which stands for “Pragmatic and Rational Approach to Governance Management Advice”.

Governance gets defined in the encyclopaedia as “The action of developing and managing consistent, cohesive policies, processes and decision rights for a given area of responsibility”. Pragmatic means “The compromising of one’s ideals to better deal with the specifics of a situation”, and rational is as simple as ”characterized by truth or logic”.

The focus of the Pragma approach is aimed at assisting Decision Makers in implementing governance systems in a practical way in their the day-to-day operations, using the POLICE approach of Plan, Organize, Lead, Inform, Control, Evaluate

Other disciplines and competencies built on the same foundations
 
Crisis management

Bridging people management gaps

IS/IT Competence management

Change management

Back to Services overview

Project & Programme Management

Core focus for managing projects
– Large project orientation
– Concentrated on methodological approach
– Including organizational advice
– Project Office know-how

Q-Project applies knowledge, skills, tools and techniques to project activities to meet or exceed stakeholder needs and expectations from a project.

This involves balancing competing demands among:
– Scope, time, cost & quality;
– Stakeholders with differing needs and expectations;
– Identified requirements (needs) and unidentified requirements (expectations).

Q-Project practices Industry recognised approaches for Integration, Scoping, Timing, Costing, Quality Control, Resourcing, Communications, Risk Management and Procurement.

Q-Project understands the relationship of Project Management and Practice to General Management Knowledge and Practice and Application Area Knowledge and Practice.

Back to Services overview

Organization

Organizational advice focus

– Vast experience with operational issues in different business sectors
– Concentrated around organizational assessment and guidance for implementation of adequate solutions

 

Objectives:

– Analyse presumed problem area processes and practices and identify actions required to resolve unveiled anomalies.

– Provide a simple follow through mechanism for Management to monitor Improvement Action Plan implementation progress.

Quality Care


Quality Care Focus

Generic processes
– Implementation of basic “conformance to requirements” systems like “Zero Defects”, Phil Crosby approach
– Extension of basic systems with benchmarking and loop-back
– Up to assessment and business improvement based on the Baldridge Quality Criteria 

 

Governance, Risk Management & Compliance

GRC related Competence

– Advise best practice for auditing & risk management (maturity based) and coach the practical implementation
– Support structuring of the universe with it’s assessment components and related mathematical assessment logic
– Implementation of working templates and management reporting
– Design of decision systems based on measurements and bridging with ICT systems (both ways)

QPMC & Partners are convinced, by experience, that the foundation for any kind of improvement in the Governance, Risk Management, or Compliance related domains is based on the right skills to manage and mix the Risk & Opportunity balance.

References of international GRC and Privacy related implementation work, training and consulting is available here.

 

Information Security & Privacy

Information Security expertise 

– Built within several domains over time
Consult the overview of services here

– Continued development of techniques to counter threats relating to new practices, i.e Artificial Intelligence
Consult the GRC related overview

Go straight to Privacy Protection expertise

At the end of 2024, a summary quote was released by the ISO International Organisation for Standardisation about why the Security of Information has become a matter of business  survival.

If you are you wondering whether your organisation is ready to implement an information security standard, and whether the effort is worth it? Then read on!
The full article is available here.
 
Article headlines:
– Why you need a structured approach to protect your valuable, commercially sensitive and private information from the current exploding range of risks and threats

– How to check your Information Security maturity related to
     . Business context
     . Management leadership and commitment
     . Risk assessment and risk treatment
     . Competence, awareness and training
     . Performance evaluation

– What actions you need to take
     . Identify gaps based on the available guidelines
     . Implement protection of your information assets from threats and vulnerabilities

Privacy Protection

Privacy Protection expertise 

– Built within several domains over time
Consult the overview of services here

– Continued development of techniques to counter threats relating to new practices, i.e Artificial Intelligence
Consult the GRC related overview

Go back to Information Security expertise

Mission & Vision