ISO/IEC Systems and software engineering Systems and software Quality Requirements and Evaluation (SQuaRE) Planning and management

Similar documents
INTERNATIONAL STANDARD

This document is a preview generated by EVS

Software engineering Guidelines for the application of ISO 9001:2008 to computer software

ISO/IEC INTERNATIONAL STANDARD

Information technology Guidelines for the application of ISO 9001:2008 to IT service management and its integration with ISO/IEC :2011

ISO/IEC Information technology Security techniques Network security. Part 5:

ISO/IEC INTERNATIONAL STANDARD

ISO/IEC INTERNATIONAL STANDARD. Information technology Security techniques Information security management system implementation guidance

ISO/IEC First edition Reference number ISO/IEC 20005:2013(E) ISO/IEC 2013

INTERNATIONAL STANDARD

ISO/IEC INTERNATIONAL STANDARD. Information technology Cloud computing Reference architecture

ISO/IEC INTERNATIONAL STANDARD. Information technology MPEG extensible middleware (MXM) Part 3: MXM reference software

ISO/IEC INTERNATIONAL STANDARD. Information technology Systems and software engineering FiSMA 1.1 functional size measurement method

ISO/IEC INTERNATIONAL STANDARD. Information technology Security techniques Information security incident management

Information technology Process assessment Process measurement framework for assessment of process capability

ISO/IEC INTERNATIONAL STANDARD

ISO/IEC INTERNATIONAL STANDARD. Software engineering Product evaluation Part 3: Process for developers

ISO/IEC INTERNATIONAL STANDARD. Information technology Security techniques Information security risk management

ISO/IEC INTERNATIONAL STANDARD. Systems and software engineering Measurement process. Ingénierie des systèmes et du logiciel Processus de mesure

This document is a preview generated by EVS

ISO/IEC INTERNATIONAL STANDARD. Information technology Cloud computing Overview and vocabulary

This document is a preview generated by EVS

ISO/IEC 1001 INTERNATIONAL STANDARD. Information technology File structure and labelling of magnetic tapes for information interchange

ISO/IEC INTERNATIONAL STANDARD. Information technology Multimedia service platform technologies Part 2: MPEG extensible middleware (MXM) API

ISO/IEC INTERNATIONAL STANDARD. Software engineering Software measurement process. Ingénierie du logiciel Méthode de mesure des logiciels

ISO/IEC INTERNATIONAL STANDARD. Information technology Keyboard layouts for text and office systems Part 2: Alphanumeric section

ISO/IEC Conformity assessment Fundamentals of product certification and guidelines for product certification schemes

ISO/IEC INTERNATIONAL STANDARD. Information technology Multimedia service platform technologies Part 3: Conformance and reference software

ISO/IEC TS Conformity assessment Guidelines for determining the duration of management system certification audits

Sýnishorn ISO/IEC INTERNATIONAL STANDARD. Information technology Security techniques Information security risk management

ISO/IEC INTERNATIONAL STANDARD. Information technology Dynamic adaptive streaming over HTTP (DASH) Part 2: Conformance and reference software

Information technology Security techniques Mapping the revised editions of ISO/IEC and ISO/IEC 27002

ISO/IEC INTERNATIONAL STANDARD

This document is a preview generated by EVS

Information technology Process assessment Concepts and terminology

Information technology IT asset management Overview and vocabulary

ISO/IEC INTERNATIONAL STANDARD. Information technology Learning, education, and training Content packaging Part 2: XML binding

ISO/IEC INTERNATIONAL STANDARD

ISO/IEC INTERNATIONAL STANDARD. Information technology EAN/UCC Application Identifiers and Fact Data Identifiers and Maintenance

ISO/IEC This is a preview - click here to buy the full publication INTERNATIONAL STANDARD. First edition

This document is a preview generated by EVS

ISO/IEC INTERNATIONAL STANDARD. Information technology Guideline for the evaluation and selection of CASE tools

ISO/IEC INTERNATIONAL STANDARD. Information technology Mobile item identification and management Mobile AIDC application programming interface

ISO/IEC INTERNATIONAL STANDARD

ISO/IEC INTERNATIONAL STANDARD

ISO/IEC INTERNATIONAL STANDARD. Information technology Security techniques Governance of information security

ISO/IEC Information technology Icon symbols and functions for controlling multimedia software applications

ISO/IEC INTERNATIONAL STANDARD. Colour test pages for measurement of office equipment consumable yield

Systems and software engineering Framework for categorization of IT systems and software, and guide for applying it

ISO/IEC INTERNATIONAL STANDARD. Information technology Security techniques Hash-functions Part 2: Hash-functions using an n-bit block cipher

ISO/IEC INTERNATIONAL STANDARD

ISO/IEC INTERNATIONAL STANDARD. Information technology Security techniques Modes of operation for an n-bit block cipher

ISO/IEC TR TECHNICAL REPORT

Information technology Security techniques Sector-specific application of ISO/IEC Requirements

ISO/IEC INTERNATIONAL STANDARD. Information technology Security techniques Information security risk management

This document is a preview generated by EVS

Information technology Office equipment Method for Measuring Scanning Productivity of Digital Multifunctional Devices

ISO/IEC INTERNATIONAL STANDARD

ISO/IEC TR TECHNICAL REPORT. Systems and software engineering Life cycle management Part 1: Guide for life cycle management

Information technology Identification cards Biometric System-on-Card. Part 3: Logical information interchange mechanism

ISO INTERNATIONAL STANDARD. Information and documentation International standard name identifier (ISNI)

INTERNATIONAL STANDARD

ISO/IEC INTERNATIONAL STANDARD

ISO/IEC INTERNATIONAL STANDARD

Part 1: Numbering system

ISO/IEC Information technology Automatic identification and data capture techniques Bar code scanner and decoder performance testing

ISO/IEC INTERNATIONAL STANDARD. Information technology Security techniques Information security management systems Overview and vocabulary

ISO/IEC INTERNATIONAL STANDARD. Information technology Multimedia Middleware Part 6: Fault management

ISO/IEC INTERNATIONAL STANDARD. Information technology Icon symbols and functions for controlling multimedia software applications

This document is a preview generated by EVS

Part 5: Face image data

ISO/IEC INTERNATIONAL STANDARD. Information technology Biometric data interchange formats Part 2: Finger minutiae data

ISO/IEC Information technology Sensor networks: Sensor Network Reference Architecture (SNRA) Part 2: Vocabulary and terminology

This document is a preview generated by EVS

Conformity assessment Requirements for bodies providing audit and certification of management systems. Part 6:

ISO/IEC INTERNATIONAL STANDARD

ISO/IEC INTERNATIONAL STANDARD

This document is a preview generated by EVS

Systems and software engineering Information technology project performance benchmarking framework. Part 4:

ISO/IEC INTERNATIONAL STANDARD. Information technology Multimedia framework (MPEG-21) Part 21: Media Contract Ontology

This document is a preview generated by EVS

ISO/IEC INTERNATIONAL STANDARD. Information technology Open distributed processing Reference model: Foundations

Identification cards Optical memory cards Holographic recording method. Part 2: Dimensions and location of accessible optical area

ISO/IEC INTERNATIONAL STANDARD

Transcription:

INTERNATIONAL STANDARD ISO/IEC 25001 Second edition 2014-03-15 Systems and software engineering Systems and software Quality Requirements and Evaluation (SQuaRE) Planning and management Ingénierie des systèmes et du logiciel Exigences de qualité et évaluation des systèmes et du logiciel (SQuaRE) Planification et gestion Reference number ISO/IEC 25001:2014(E) ISO/IEC 2014

ISO/IEC 25001:2014(E) COPYRIGHT PROTECTED DOCUMENT ISO/IEC 2014 All rights reserved. Unless otherwise specified, no part of this publication may be reproduced or utilized otherwise in any form or by any means, electronic or mechanical, including photocopying, or posting on the internet or an intranet, without prior written permission. Permission can be requested from either ISO at the address below or ISO s member body in the country of the requester. ISO copyright office Case postale 56 CH-1211 Geneva 20 Tel. + 41 22 749 01 11 Fax + 41 22 749 09 47 E-mail copyright@iso.org Web www.iso.org Published in Switzerland ii ISO/IEC 2014 All rights reserved

ISO/IEC 25001:2014(E) Contents Page Foreword...iv Introduction...v 1 Scope... 1 2 Conformance... 1 3 Normative references... 1 4 Terms and definitions... 2 5 Evaluation management concepts... 3 6 Requirements and recommendations for systems and software quality requirements specification and quality evaluation... 4 6.1 General... 4 6.2 Organisation level activities... 4 6.3 Project Management level activities... 7 6.4 Analysis and use of evaluation results... 8 Annex A (informative) Quality Evaluation Project Plan Template...10 Bibliography...13 ISO/IEC 2014 All rights reserved iii

ISO/IEC 25001:2014(E) Foreword ISO (the International Organization for Standardization) and IEC (the International Electrotechnical Commission) form the specialized system for worldwide standardization. National bodies that are members of ISO or IEC participate in the development of International Standards through technical committees established by the respective organization to deal with particular fields of technical activity. ISO and IEC technical committees collaborate in fields of mutual interest. Other international organizations, governmental and non-governmental, in liaison with ISO and IEC, also take part in the work. In the field of information technology, ISO and IEC have established a joint technical committee, ISO/IEC JTC 1. International Standards are drafted in accordance with the rules given in the ISO/IEC Directives, Part 2. The main task of the joint technical committee is to prepare International Standards. Draft International Standards adopted by the joint technical committee are circulated to national bodies for voting. Publication as an International Standard requires approval by at least 75 % of the national bodies casting a vote. Attention is drawn to the possibility that some of the elements of this document may be the subject of patent rights. ISO and IEC shall not be held responsible for identifying any or all such patent rights. ISO/IEC 25001 was prepared by Joint Technical Committee ISO/IEC JTC 1, Information technology, Subcommittee SC 7, Systems and software engineering. This second edition cancels and replaces the first edition (ISO/IEC 25001:2007), of which it constitutes a minor revision. The SQuaRE series of standards consists of the following divisions under the general title Systems and Software Quality Requirements and Evaluation (SQuaRE): ISO/IEC 2500n, Quality Management Division, ISO/IEC 2501n, Quality Model Division, ISO/IEC 2502n, Quality Measurement Division, ISO/IEC 2503n, Quality Requirements Division, and ISO/IEC 2504n, Quality Evaluation Division. ISO/IEC 25050 to ISO/IEC 25099 are reserved to be used for SQuaRE extension International Standards and/or Technical Reports. iv ISO/IEC 2014 All rights reserved

ISO/IEC 25001:2014(E) Introduction This International Standard provides details about the planning and management requirements associated with systems and software product quality requirements and evaluation. While this International Standard is mainly concerned with systems and software product quality requirements and evaluation, wherever it is relevant the corresponding process requirements and evaluation activities are also discussed. This International Standard aims to clarify the requirements, which should be identified by the organisation in order to ensure the success of specifying systems and software quality requirements and executing the evaluation. This International Standard is intended to be used in conjunction with the other documents of the ISO/IEC 25000 SQuaRE series of standards. The ISO/IEC 25000 SQuaRE series replaces the ISO/IEC 9126 series and the ISO/IEC 14598 series. This International Standard complies with the technical processes identified in ISO/IEC 15288:2008 and ISO/IEC 12207:2008 related to quality requirements definition and analysis. Figure 1 Organization of SQuaRE series of standards Figure 1 (quoted after ISO/IEC 25000) illustrates the organisation of the SQuaRE series representing families of standards, further called Divisions. The Divisions within SQuaRE model are: ISO/IEC 2500n - Quality Management Division. The International Standards that form this division define all common models, terms and definitions referred to by all other standards from the SQuaRE series. Referring paths (guidance through SQuaRE documents) and high level practical suggestions in applying proper standards to specific application cases offer help to all types of users. The division also provides requirements and guidance for a supporting function, which is responsible for the management of product requirements specification and evaluation. ISO/IEC 2014 All rights reserved v

ISO/IEC 25001:2014(E) ISO/IEC 2501n - Quality Model Division. The International Standards that form this division present detailed quality models for systems and software product, quality in use and data. Practical guidance on the use of the quality model is also provided. ISO/IEC 2502n - Quality Measurement Division. The International Standards that form this division include a system and software product quality measurement reference model, mathematical definitions of quality measures, and practical guidance for their application. This division presents internal measures of software quality, external measures of system or software product quality and quality in use measures. Quality measure elements forming foundations for the latter measures are defined and presented. ISO/IEC 2503n - Quality Requirements Division. The International Standard that forms this division helps specifying quality requirements. These quality requirements can be used in the process of quality requirements elicitation for a product to be developed or as inputs for an evaluation process. The requirements definition process is mapped to Stakeholder Requirements Definition Process in Technical Processes defined in ISO/IEC 15288:2008 and ISO/IEC 12207:2008. ISO/IEC 2504n - Quality Evaluation Division. The International Standards that form this division provide requirements, recommendations and guidelines for product evaluation, whether performed by independent evaluators, acquirers or developers. The support for documenting a measure as an Evaluation Module is also presented. ISO/IEC 25050 25099 - Extension Division. SQuaRE extension (ISO/IEC 25050 to ISO/IEC 25099) is designated to contain system or software product quality International Standards and/or Technical Reports that address specific application domains or that can be used to complement one or more SQuaRE International Standards. vi ISO/IEC 2014 All rights reserved

INTERNATIONAL STANDARD ISO/IEC 25001:2014(E) Systems and software engineering Systems and software Quality Requirements and Evaluation (SQuaRE) Planning and management 1 Scope This International Standard provides requirements and recommendations for an organization responsible for implementing and managing the systems and software product quality requirements specification and evaluation activities through the provision of technology, tools, experiences, and management skills. The role of the evaluation group includes motivating employees and training them for the requirements specification and the evaluation activities, preparing appropriate documents, identification or development of required methods, and responding to queries on relevant technologies. Technology management is related to the planning and management of a systems and software quality requirements specification and evaluation process, measurements and tools. This includes the management of development, acquisition, standardisation, control, transfer and feedback of requirements specification and evaluation technology experiences within the organisation. The intended users of this International Standard are those responsible for: managing technologies used for requirements specification and evaluation execution, specifying systems and software product quality requirements, supporting systems and software product quality evaluation, managing systems and software development organisations, as well as those in a quality assurance function. However, it is also applicable to managers involved in other systems or software related activities. 2 Conformance In order to conform to this International Standard, an organisation shall apply requirements from clause 6 giving the reasons for any exclusion, or describe its own recommendations and provide a mapping to the original requirements. 3 Normative references The following documents, in whole or in part, are normatively referenced in this document and are indispensable for its application. For dated references, only the edition cited applies. For undated references, the latest edition of the referenced document (including any amendments) applies. ISO/IEC 25000:2014, Software Engineering Software product Quality Requirements and Evaluation (SQuaRE) Guide to SQuaRE ISO/IEC 25010:2011, Systems and software engineering Systems and software Quality Requirements and Evaluation (SQuaRE) System and software quality models ISO/IEC 25020:2007, Software engineering Software product Quality Requirements and Evaluation (SQuaRE) Measurement reference model and guide ISO/IEC 2014 All rights reserved 1

ISO/IEC 25001:2014(E) ISO/IEC 25021:2012, Systems and software engineering Systems and software Quality Requirements and Evaluation (SQuaRE) Quality measure elements ISO/IEC 25022, Systems and software engineering - Systems and software Quality Requirements and Evaluation (SQuaRE) Measurement of quality in use 1) ISO/IEC 25023, Systems and software engineering: Systems and software Quality Requirements and Evaluation (SQuaRE) Measurement of system and software product quality 2) ISO/IEC 25024, Systems and software engineering: Systems and software Quality Requirements and Evaluation (SQuaRE) Measurement of data quality 3) ISO/IEC 25030:2007, Software engineering Software product Quality Requirements and Evaluation (SQuaRE) Quality requirements ISO/IEC 25040:2011, Systems and software engineering - Systems and software Quality Requirements and Evaluation (SQuaRE) Evaluation process ISO/IEC 25041:2012, Systems and software engineering Systems and software Quality Requirements and Evaluation (SQuaRE) Evaluation guide for developers, acquirers and independent evaluators ISO/IEC 25045:2010, Systems and software engineering Systems and software Quality Requirements and Evaluation (SQuaRE) Evaluation module for recoverability ISO/IEC 25051, Software engineering Systems and software Quality Requirements and Evaluation (SQuaRE) Requirements for quality of Ready to Use Software Product (RUSP) and instructions for testing ISO/IEC 15288:2008, Systems and software engineering System life cycle processes ISO/IEC 12207:2008, Systems and software engineering Software life cycle processes 1) To be published. 2) To be published. 3) To be published. 2 ISO/IEC 2014 All rights reserved