Scope matrix
Four workstreams to check for a project in Al Warsan 4.
For Al Warsan 4, this planning route connects Security controls, Surveillance design, Business computing and backup and recovery. It is not a fixed package: the final quotation follows the real site, users, existing systems, access constraints, timing and support responsibility.
01Security controls
Map internet exposure, user groups, privileged access, endpoints, remote access, firewall policy, logging and the systems that would create the highest business impact if unavailable. The scope should connect preventive controls with monitoring, incident response and ownership instead of buying independent security products without an operating model. Compatibility readiness: Check interfaces, licences, firmware, rack and power constraints, network standards and vendor dependencies before approving replacement or expansion equipment.
Review cybersecurity →02Surveillance design
Define camera purpose, field of view, recording duration, storage, monitoring points, network connectivity, power, access permissions and evidence-retention expectations. The design should distinguish operational visibility from security monitoring and state who will review footage, manage user access and maintain the recording platform after handover. Multi-site readiness: Separate standards that should remain consistent across sites from elements that may vary, then document naming, addressing, security and support conventions for repeatable delivery.
Review cctv & surveillance →03Business computing
List user roles, required applications, processor and memory needs, display setup, mobility, docking, warranty expectations, operating-system requirements and lifecycle timing. This keeps device sourcing tied to real workloads and makes it easier to compare current models, approved alternatives and selected pre-owned options where appropriate. Handover readiness: Define the diagrams, configuration records, asset list, warranty documents, test evidence and credential-transfer method required at completion.
Review business computing →04Backup and recovery
Classify critical data and applications, current backup method, recovery-point and recovery-time expectations, retention, offsite or immutable copy needs, restore testing and escalation ownership. Capacity alone is not a recovery plan; the scope should state what must be restorable, how quickly and how recovery will be verified. Continuity readiness: Record current backups, rollback options, communication needs and the safest sequence of changes so business-critical services remain protected during implementation.
Review backup & recovery →