From 459a42234d9d8ec76277a87cfb44161510755103 Mon Sep 17 00:00:00 2001 From: Thanakorn Date: Mon, 5 Oct 2026 08:20:58 +0700 Subject: [PATCH] docs(sdlc): audit storytelling for PM and SA only --- sdlc/ISO29110-audit-prep.md | 2 +- sdlc/ISO29110-audit-storytelling.md | 25 +++++++++++++++---------- 2 files changed, 16 insertions(+), 11 deletions(-) diff --git a/sdlc/ISO29110-audit-prep.md b/sdlc/ISO29110-audit-prep.md index 06694ad..f65b84f 100644 --- a/sdlc/ISO29110-audit-prep.md +++ b/sdlc/ISO29110-audit-prep.md @@ -35,4 +35,4 @@ | Open defects at acceptance | Test Report: TC-UN04.006, TC-UN08.002, TC-UN11.001, TC-UN12.001, TC-UN12.004 failed, TC-UN13.002–003 not tested; Correction Register ISS-029–032; Acceptance Report conditions; Minutes 24 Aug actions | "The run found four high-severity defects. We recorded them, told the sponsor, and acceptance was conditional on fixing them under corrective maintenance." Be ready to show the fix plan and its status. Do not claim they were fixed before 24 Aug | | UAT ran alongside the system test | Validation Results (test order row); Minutes of Meeting 10 Aug | "The entry criterion said UAT after 100% pass. The sponsor approved running both in 10–14 Aug at the 10 Aug meeting, and the deviation is recorded in Validation Results." | | Risks never re-rated | Software Project Plan R1–R8; risk table in every Progress Status Record | Pick 1–2 risks that actually occurred (R1 → Rack/Bin decision; R7 → evidence prepared before UAT) and show where they were handled. Do not change ratings in the records now | -| Interviews must match the documents | One rehearsal session with the three people | Developer: a fixed defect (ISS-002 → commit `92d116f` → TC-UN04.002) and an open one (ISS-030 → TC-UN08.002, GL posting outside the document transaction). QA: run TC-UN04.002 and show the TC-UN08.002 failure. PM: trace CR13:001 → SR09:003 → UN08.002 → TC-UN08.002 → Failed → ISS-030 → acceptance condition | +| Interviews must match the documents (only PM and SA attend) | One rehearsal with PM (ApS) and SA (NoC), using ISO29110-audit-storytelling.md | SA: a fixed defect (ISS-002 → commit `92d116f` → TC-UN04.002) and an open one (ISS-030 → TC-UN08.002, GL posting outside the document transaction), quoting the developer's and QA's records by name. PM: trace CR13:001 → TC-UN08.002 → Failed → ISS-030 → acceptance condition. Questions on work done by others: answer from the record or say you will check with the owner | diff --git a/sdlc/ISO29110-audit-storytelling.md b/sdlc/ISO29110-audit-storytelling.md index ffe04b4..f9318a3 100644 --- a/sdlc/ISO29110-audit-storytelling.md +++ b/sdlc/ISO29110-audit-storytelling.md @@ -7,7 +7,10 @@ - เล่าตามลำดับบทที่ 1–8 ใช้เวลารวมประมาณ 25–30 นาที แล้วเปิดให้ผู้ตรวจเลือกเส้นสอบกลับเอง - แต่ละบทมี **ผู้เล่า** **เอกสารที่เปิด** และ **ประโยคหลัก** ให้เปิดเอกสารบนจอก่อนพูดทุกครั้ง -- ผู้เล่า: ApS = Project Manager, NoC = System Analyst, ThS = Developer, PaNg = QA/Tester, YaB = Document Control, SeV = Project Sponsor +- ผู้เข้าตรวจมี 2 คน: **PM (ApS)** เล่ากระบวนการบริหารโครงการ (PM) และ **SA (NoC)** เล่ากระบวนการพัฒนา (SI) +- งานของ Developer (ThS), QA (PaNg), Document Control (YaB) และ Project Sponsor (SeV) ให้เล่าจากบันทึก โดยอ้างชื่อผู้รับผิดชอบตามเอกสาร + เช่น "ตาม Test Report ที่คุณปริญ (PaNg) บันทึก…" ห้ามตอบแทนในเรื่องที่บันทึกไม่ได้ระบุ ให้ตอบว่าจะประสานผู้รับผิดชอบ +- แบ่งงานตอนผู้ตรวจถาม: คำถามเรื่องแผน ความก้าวหน้า ความเสี่ยง การเปลี่ยนแปลง การตรวจรับ → PM; ความต้องการ การออกแบบ Code การทดสอบ การสอบกลับ → SA ## โครงเรื่องในหนึ่งย่อหน้า @@ -37,7 +40,7 @@ ## บทที่ 1 — ทำไมต้องมีโครงการนี้ และใครเกี่ยวข้อง -**ผู้เล่า:** ApS (เปิด) และ SeV (ยืนยันมุมลูกค้า) +**ผู้เล่า:** PM (ApS) **เปิด:** Statement of Work → Project Charter Report → Stakeholder Register → Software Project Plan §5 **ประโยคหลัก** @@ -45,11 +48,11 @@ - "ผู้มีส่วนได้ส่วนเสียมี 10 กลุ่ม คือทีม 6 คน และผู้ใช้ 4 กลุ่ม — ฝ่ายคลัง ฝ่ายขาย/จัดซื้อ ฝ่ายบัญชี และผู้ดูแลระบบ รายชื่อชุดเดียวกันอยู่ทั้งใน Stakeholder Register และ Software Project Plan §5.1–5.2" -**ถ้าถูกถาม:** "ใครอนุมัติขอบเขต?" → SeV อนุมัติกฎบัตรในการประชุม 23 ม.ค. 69 +**ถ้าถูกถาม:** "ใครอนุมัติขอบเขต?" → Project Sponsor (SeV) อนุมัติกฎบัตรในการประชุม 23 ม.ค. 69 เปิด Project Charter หน้าลงนามและ MoM 23 ม.ค. ## บทที่ 2 — วางแผนและตั้ง Baseline ก่อนลงมือ -**ผู้เล่า:** NoC (ความต้องการ) และ ApS (แผน) +**ผู้เล่า:** SA (NoC) เล่าความต้องการ แล้วส่งต่อ PM (ApS) เล่าแผนและความเสี่ยง **เปิด:** Customer Requirements → Software Project Plan §6–§9 → Work Schedule → MoM 18 ก.พ. **ประโยคหลัก** @@ -61,7 +64,7 @@ ## บทที่ 3 — พัฒนาและควบคุมงาน -**ผู้เล่า:** ApS (ติดตามงาน) และ ThS (การพัฒนา) +**ผู้เล่า:** PM (ApS) เล่าการติดตามงาน แล้วส่งต่อ SA (NoC) เล่าการพัฒนาและการควบคุม Source Code **เปิด:** Progress Status Record (เลือก 1 งวด) → Minutes of Meeting ที่แนบ → Correction Register → Software Configuration **ประโยคหลัก** @@ -74,7 +77,7 @@ ## บทที่ 4 — การควบคุมการเปลี่ยนแปลง -**ผู้เล่า:** ApS +**ผู้เล่า:** PM (ApS) **เปิด:** Change Report ส่วนที่ 1–3 → MoM 18 พ.ค. → Correction Register ISS-023 **ประโยคหลัก** @@ -87,7 +90,7 @@ ## บทที่ 5 — ตรวจสอบเอกสาร (Verification) -**ผู้เล่า:** PaNg และ YaB +**ผู้เล่า:** SA (NoC) — ผู้ตรวจในบันทึกคือ PaNg และ NoC ส่วน YaB ควบคุมเอกสาร **เปิด:** Software Project Plan §8.1 → Verification Results V0.1, V0.2, V0.3, V1.0 **ประโยคหลัก** @@ -96,7 +99,7 @@ ## บทที่ 6 — ทดสอบระบบและทดสอบการยอมรับ -**ผู้เล่า:** PaNg (ทดสอบระบบ) และ SeV (UAT) +**ผู้เล่า:** SA (NoC) — ผู้ทดสอบในบันทึกคือ PaNg (ทดสอบระบบ) และ SeV (UAT) **เปิด:** Test Case and Test Procedures → Traceability Record → Test Report → Validation Results → Correction Register ISS-029–032 **ประโยคหลัก** @@ -114,7 +117,7 @@ ## บทที่ 7 — ส่งมอบ ตรวจรับ และปิดโครงการ -**ผู้เล่า:** SeV (การตัดสินใจตรวจรับ) และ ApS +**ผู้เล่า:** PM (ApS) — การตัดสินใจตรวจรับเป็นของ SeV ให้เล่าตามที่บันทึกใน Acceptance Report และ MoM 24 ส.ค. **เปิด:** MoM 19 ส.ค. → Training Report → Product Operation Guide (OP-001/OP-002) → Acceptance Report → MoM 24 ส.ค. → List of Evidence **ประโยคหลัก** @@ -127,7 +130,7 @@ ## บทที่ 8 — สิ่งที่เราเรียนรู้ -**ผู้เล่า:** ApS +**ผู้เล่า:** PM (ApS) **เปิด:** Correction Register ส่วน Lessons Learned **ประโยคหลัก** @@ -139,6 +142,8 @@ ## เส้นสอบกลับสำหรับสาธิต (ซ้อมให้คล่อง) +**ผู้เล่า:** SA (NoC) เปิดเอกสารตามลำดับในตาราง PM (ApS) เสริมเฉพาะขั้นการยอมรับและเงื่อนไขการตรวจรับ + **เส้นที่ผ่าน — สต๊อกต้องไม่ติดลบ** | ขั้น | รายการ | เอกสาร |