* Required information |
Phase |
| |||
|---|---|---|---|---|
Status | | |||
(PMO : next date in Accolade 'Execution')) | ||||
Initiative name ID Provided by DT PMO | GOOGLE ANALYTICS - GDPR non-compliance decision 11788 | |||
Description of the initiative | Project “Insight” (Replace Website Usage Analysis System) Need: To support the Solvay vision of world-class digital customer intimacy, we need a solution to analyse usage of our websites, (clickthroughs, flow, response time of site itself…). We currently use Google Analysis (GA) which has been ruled non-compliant with EU GDPR. Draft budget (as per Accolade: TBC : 101 + 8K€ PO2 impact (additional configuration)) | |||
Domain & Product | ||||
Requested Domain Journey / Platform |
| |||
| Involved Domain Journey/ Platform |
| |||
Initiative Ownership | ||||
Digital Technology Partner | ||||
Product Manager / Service Delivery | Kee, Benard (TBC) | |||
Roadmap & Key objectives | ||||
Roadmap |
| |||
2023 Digital Technology Key objective | Operate Safely (compliance) | |||
Priority | P1 Prioritize & Protect, Digital Tech, Cybersecurity | |||
Understand: Why is this initiative proposed? What are the consequences if not done? What are the new capabilities expected?
|
|
* Why is this initiative proposed today?
To understand who & how internal and external customers use Solvay web resources, and also the web applications performance (availability, response time…), it is necessary to have a system that collects and analyses this data. See detailed problem statement here: |
What are the new capabilities expected?
To understand how internal and external customers use Solvay web resources, and also the web applications performance (availability, response time…), it is necessary to have a system that collects and analyses this data. The current solution – Google Analytics – has been ruled non-compliant with EU (GDPR) and local (e.g. France, CNIL) data-protection legislation. It is necessary to replace this system in order to continue to manage and optimise these web resources (which are deemed essential for external & internal digital communication mgmt.) Value creation and KPIs (a) Value to business is ability to measure effectiveness of communication (either specific campaigns or BAU) plus (b) also service levels (Solvay One site response time) |
What will it replace? Is it a new solution or an existing one?
Who are the future users?
Identify the future users (BU, sites...) and population concerned
What is the number of users impacted?
| 50+ across the business |
What about the Business Needs?
What is the value of the initiative?
Financial Business expectation (ROI, benefits, savings,...) + Qualitative Business expectation (business value, market fit, visibility,...)
Opportunity cost avoidance: potential fines for non-compliance are in the millions of Euros: see here: If the decision is taken to replace OneTrust (functionality that is included in the cost of proposed Piwik solution) then project will essentially be cost-neutral. |
How does the product / deliverable align with the business goals?
(a) It enables all of our digital initiatives (b) It avoids the risk of massive fines and reputational damage. |
Are there any challenges in developing the product?
| No, it's a proven solution and has already been validated by Solvay cybersecurity, architects and users, and is EU-compliant. |
How will we measure success?
See here: |
Please duplicate this template in this folder. Then, for the envision phase, answerto the initiative card tab and to the 7 high-level questions in the "Security Scoring" tab. These questions will help the SIP team to determine the level of cybersecurity & compliance support you will need. Please contact the team by email: @SIP_team@solvay.com
If not able to answer yet, explain it at the Envision gate and it will be the DTLT to decide if green light or not considering with the high level of uncertainty
Cybersecurity audit was previously completed in 2022, reviewed by Benjamin POISSONNET and was passed. Subsequently a new version of SIP was created (2023) and has been completed here: |
Estimated Delivery phase start date*
| Estimated Delivered end Quarter* Q2 2023 (Phase 1) then Q4 for PO2 impacts. Deadline for Phase 1 is June 2023 |
What is the coherent money to commit on the initiative?*
| 2023 (in K€)* | 2024 (in K€)* | 2025 (in K€) | |
|---|---|---|---|
Estimated size of investment (high level) | 101 K€ (as per Accolade) covering both external & internal costs + 8K€ for PO2 impact | 10K€ (support) | 10 K€ (support) |
What is the coherent run and build commit on the initiative?
Only run cost impact - TCO over 10Y will be finalized during the strategize phaseEstimated run costs (estimation high level) - on 10Y (if already known) 10K€ (support after 2023) | Type of savings expected /year for DT (Ex: Contracts, FTE, ...) Potentially >20K€ per year if we opt to replace "OneTrust" |
What skills and talents do we need?
1.11. Methodology to apply (refer for Accolade)
Do you think if your initiative is compatible with a waterfall approach or with an agile approach?
|
If the initiative will be done in Agile methodology, please contact during the strategize phase Nicolas LOVAGNINI (done)
Understand: How this bring value? Which pain points will it removes? Will it be delivered in Agile or Waterfall?
|
|
Now, we can move on to the Solution space
What is your list of scope if waterfall initiatives (technical, functional & organizational) / deliverables foreseen? What are your list of Epics if Agile initiatives?
| Mandatory actions * (please contact them together if possible) | ||
|---|---|---|
Description of the action / task | Contact | Document & examples (please make your own copy and insert new link here) |
Contact each relevant pool lead to book resources in the capacity planning tool
| Complete Capacity planning tool | |
Complete Accolade
| dominique.degouberville@solvay.com | Complete Accolade (draft is done; planning & scope will require update after kickoff) |
Review with Enterprise Architect the actual solution answering the objective
| Complete Architecture Impact Analysis (AIA) See here: | |
Check you have confirmed the involvement of each platform | Revert to SDM of each Platform | |
Identify security needs (Confidentiality, Integrity, Availability) and define security measures to be implemented by the initiative team
| ||
Support for budget estimation (via the Workload & Cost), Financial evaluation (Total Cost of Ownership over 10Y), saving validation
| W&C: to be filled in to Accolade in preparation phase TCO over 10Y: | |
| Optional | ||
If any relation needed with a supplier
| Julien Rankin is managing the supplier relationship | |
If it concerns a key supplier, a sourcing strategy has to be defined
| ||
If conformity by design is required
| GMP (pharma), ISO | |
If Data Governance is required: identify the business objects
| ||
What do users dislike about the current solution?
Applicable when a new solution is developed
| That it's not compliant and can be deleted at any time. |
What tools or features do your users wish to have?
| Same as existing, but EU-compliant. |
What value will it add to the user´s lives?
| As per current; ability to measure efficiency and effectiveness of all our web design & implementation activities. |
What alternative do we have?
| Other web solutions to PiwikPro have been evaluated, and rejected. Business has stated that NOT having web analytics would be a disaster. |
What are the risks (refer to Risk analysis matrix in Accolade)?
Are there any internal / external constraints and what are the preventive actions associated?
Identify risks and mitigation plans
| Risk is considered very low; proven solution and implementation team. Usual caveat regarding Solvay team resource ability apply. |
What is the qualitative assessment of Hardware/ Data processing/ Project’s contribution to Solvay One Planet?
- Is the business ambition you will support improving or not sustainability? Yes, it will optimise both our web efforts and the ability of our customers to find, understand and ultimately benefit from our sustainability solutions. - Will you increase or decrease the number of hardware we need to operate? How much ? Hard to estimate, but web optimisation should decrease waste, but may increase page hits and hence server load, but we want this. - Will you generate or transfer an important amount of data, especially videos? How much? No. |