App Development Strategy Cuts Costs, Ensures ComplianceBy Mark Pfefferman | Posted 2011-10-03 Email Print
Re-Thinking HR: What Every CIO Needs to Know About Tomorrow's Workforce REGISTER >
Standardizing its software processes has improved Western & Southern’s efficiency, compliance, and security.
Western & Southern Financial Group’s software development and implementation processes were inefficient, costly and less secure than they could be. To address these concerns, the Cincinnati-based Fortune 500 financial services corporation embarked on an aggressive program to revamp these critical processes. Mark Pfefferman, with the help of his colleagues, explains how the company adopted its current application development strategy to reduce costs, improve efficiency and security, and better meet compliance requirements.
Western & Southern Financial Group is one of the eight highest-rated life insurance groups in the world, according to Standard & Poor’s, and we have a history of providing security and peace of mind to our clients since 1888. As a result of our diverse financial services offerings and the back office required to support those offerings, our Information Services department supports multiple IBM mainframe platforms running a variety of operating systems and open-systems platforms, including AIX, Linux, Windows and NetWare. These platforms administer millions of client policies and contracts.
Along with the diversity of financial services offerings are a plethora of state and federal regulations that may have their own set of IT-related requirements. One recent example is the National Association of Insurance Commissioners’ (NAIC) Model Audit Rule regulation, which requires strong controls over software development, access rights and system security.
To respond to these requirements, we looked for ways to improve our software and optimize our document and print processes. We focused on becoming compliant with the new Model Audit Rule requirements, while becoming more agile and resilient in our development processes.
A key step involved implementing Serena Software’s ChangeMan mainframe source code control system, as many of our key policy and contract administration systems are mainframe-based. ChangeMan standardized our entire software release process by providing a consistent set of steps for code promotion, package approval and moving from implementation into production.
Next, we started a project to improve portfolio management for the IS work plan. We wanted better visibility into our work program, right down to the individual programming resource.
By implementing a project and portfolio management (PPM) tool, we’ve been able to track our work portfolio more effectively and extend use of the tool to time tracking for projects, work orders and administrative tasks, such as those involving training, time off and meetings.
Our PPM platform allows our application developers to enter all their project and nonproject times into one system to maintain consistency. It also enables our management to see all times in a single application.
TOOLS FOR OPEN SYSTEMS
After our success in migrating our mainframe systems to a standardized source code control and configuration management platform, we evaluated tools for our open-systems platforms. Our open-systems applications span a variety of platforms and development languages, including PHP, .Net and Java.
We selected Serena’s Dimensions product because of its scalability; its integration with our development environments, such as Eclipse and Visual Studio; its rich feature set; and its ability to integrate with the vendor’s workflow product, Business Manager, which we use to “glue” various pieces into an integrated environment. This allows a business user request to be submitted through a custom mashup application, which then flows to an application team manager for acceptance.
If the request is accepted, it flows into our PPM system to be included in the application team’s work portfolio. Because the request system is integrated with the PPM system via Business Manager, status information is fed back to the request portal, giving the requester information that wasn’t available in the past. The system has been well-received by business users and IS.