SHARE
Follow this article on Twitter Facebook LinkedIn Bookmark and Share
Home >> Integrating IT >> Project Management

Managing the legacy portfolio

Managing the legacy portfolio

By:  Andy Rowsell-Jones  On: 30 Apr 2007 For: CIO Canada Creator

High-value, high-risk systems present the CIO with special problems assessing business value and risk together gives advanced warning of looming problems in time to avoid them.

High-value, high-risk systems present the CIO with special problems assessing business value and risk together gives advanced warning of looming problems in time to avoid them.

As one of the contributors to recent Gartner EXP research on legacy systems said: “A legacy system is a hindrance that fills a business need, so you can’t just get rid of it.”

The sad truth is that most of today’s applications will end up as tomorrow’s legacy systems. The good news is that not all legacy systems are equal in terms of the difficult choices they represent to the business. Systems with low risk and low value can easily be tolerated, or eliminated when they can’t. High-risk, low-value systems too can easily be eliminated. Low-risk, high-value systems are what every CIO and business executive wants in the application portfolio. It’s the high-risk, high-value ones that are the problem.

To start the process of addressing your legacy systems, you have to know as much about them as possible. The most valuable tool to aid in this process is the IT asset management (ITAM) repository, which tracks and cross-references procurement, contract, inventory, maintenance, entitlement management and retirement information for the software and hardware that a company owns.

Once you have them listed, now deduce today’s business risks: the likelihood and potential business impact of a specific application failure, from the inability to support business requirements to a catastrophic shutdown of the business process.

The other half of the story involves determining business value. The best way to do this is to take a process-by-process approach that looks at the business value delivered by each of a business’s key processes and then apportions this value to the application, or applications, that support it. Overlaying the value and risk of a given application ultimately helps show when and why the business must migrate from its legacy systems, and how much time remains to do so or reduce the risk to acceptable levels. But the business case can’t be completed until the CIO knows how to migrate a particular system.

CIOs have multiple options for migration. From live with it, to using newer tools and technologies to add missing functionality while leaving the core in place, to a complete replacement, or some combination of all three.

The key goal is to avoid digging a new legacy-systems hole in an attempt to fix the old one. In other words, migration should enhance business value while reducing risk. To this end, aligning plans and designs with architecture standards helps to future-proof the new environment. Which brings us to the final step for the CIO: put in place mechanisms to reduce the chances that high-risk systems will return to the portfolio.

Stop risk creeping back in by following a couple of simple steps.

Conduct annual reviews of your application portfolio – and do them following business strategy discussions and architecture planning, and before budgeting and project planning. This allows the CIO to track changes in value and risk over time, build consensus for change gradually, and spot trends in value and risk early enough to avoid sudden surprises and disruptions to the business.


Sign up for our Newsletters
Tags:












Print |  Views: 794   |   Rating:offoffoffoffoff  (0 votes)
Rate this article on a scale of
1 to 5 stars,5 being the best.




Andy Rowsell-Jones Andy Rowsell-Jones is a contributor to the International Data Group (IDG) News Service, which publishes global technology stories from bureaus around the world to more than 300 publications in more than 60 countries.

Related Content

Rethinking project management
Rethinking project managementSaddled with an ineffective project planning process, Hess Corp. CIO Jeff Steinhorn implemented a three-pronged IT strategic planning structure. Thomas Hoffman explains how he did it.
Basel II work opens customer service opportunities
Basel II work opens customer service opportunitiesThe Canadian financial industry has slowly managed to overcome the latest regulatory hurdle, but analysts suggest the projects aren't just about compliance. TD Bank explains its approach
'The biggest risk I ever took ...'
'The biggest risk I ever took ...'IT professionals tell us about career gambles they've taken, the payoffs -- and that risk-taking can become a habit
Is Vendor Management Risk Governance: "keeping you awake at night"?
vendor melt-down, the unexpected failure of an outsourcing service provider, is a troubling aspect of the slowing economy and tight credit conditions. is it one of those "what keeps you awake at night?" issues.according to george westerman, research scientist at mit's sloan center for information management research "enterprises t
CEO edict: Pay attention to third party risk management
turning on the news isn't much fun these days. companies are failing, fraud abounds, data breaches and identify theft are daily news items. business leaders everywhere are waking up to the importance of sound risk management and good governance. don't let unexpected bad news about critical third party relationships catch you asleep at the helm. 

Comments (0)

No Comments!
Name: (required) eMail: (optional)

Your email address will not appear online and will be used only if the editor wishes to contact you personally for additional comments.