1. Define the business objective
We clarify the business outcome behind the technical request, affected users and services, time pressure, acceptable risk and definition of success. Exclusions are documented with the same clarity.
- Problem and business impact
- Baseline
- Success and acceptance criteria
- Scope, assumptions and constraints
2. Make the current state visible
We map assets, data flows, integrations, identity and network paths, cost, contracts, risk and day-to-day ownership. Unknowns remain explicit questions rather than hidden assumptions.
- Inventory and dependencies
- Technical debt and control gaps
- Service and supplier ownership
- Data, security and continuity requirements
3. Target architecture and roadmap
Technology decisions are made alongside security, data, integration, operational and exit requirements. The target state is divided into practical transition waves based on dependency and value rather than imposed in one step.
- Architecture decisions and alternatives
- Transition waves
- Testing, acceptance and rollback
- Cost, risk and ownership
4. Controlled transition and managed services
Pilots and initial transitions are tested under production-like conditions. Delivery is not considered complete until observability, backup, security and support are operational. Evidence from running the service feeds the improvement plan.
- Small, reversible changes
- Evidence-based acceptance
- Runbooks and responsibility matrix
- Service reviews and improvement