Scope Management Plan

A section of the overall project or program management plan that explains how project scope will be determined, elaborated, tracked, controlled, and formally accepted.

Key Points

  • Defines how requirements are gathered, the scope statement and WBS are developed, and the scope baseline is set.
  • Specifies roles and authority for scope decisions, including who approves scope changes.
  • Details how scope performance is measured and reported, with variance thresholds and acceptance criteria.
  • Outlines the process for requesting, evaluating, approving, and implementing scope changes and for verifying deliverables.

Example

On a website redesign project, the scope management plan states that requirements workshops will produce the scope statement and WBS, any new feature requests must go through change control with impact analysis on cost and schedule, and each completed page will be inspected against acceptance criteria before sponsor sign-off.

PMP Example Question

Which document guides the team on how to define the scope, handle scope changes, monitor scope performance, and accept completed deliverables?

  1. Scope Management Plan
  2. Scope Baseline
  3. Project Charter
  4. WBS Dictionary

Correct Answer: A — Scope Management Plan

Explanation: The scope management plan describes the processes for defining, controlling, monitoring, and validating scope. The scope baseline is the approved scope (scope statement, WBS, and WBS dictionary), not the process for managing it.

ICS/OT Cybersecurity Fundamentals — Security Built for Industrial Systems

Industrial control systems cannot be secured like ordinary IT. A forced reboot, aggressive scan, or incompatible patch can interrupt production and create real safety consequences. Effective OT security begins with understanding the systems, constraints, and risks unique to industrial environments.

This course gives IT professionals, engineers, operators, and security practitioners a practical foundation in ICS threats, zone and conduit design, risk assessment, passive asset visibility, and vendor evaluation. You will learn how IEC 62443, NIST CSF, and MITRE ATT&CK for ICS apply where availability and safety come first.

Eight reconstructed incidents—including Stuxnet, Triton, Ukraine 2015, Colonial Pipeline, and PIPEDREAM—show how attackers move through OT environments, what they target, and which defenses could have changed the outcome.

Watch the course preview, then build the vocabulary, frameworks, and judgment needed to take credible first steps in ICS/OT cybersecurity.

Explore the Course


ICS/OT Cybersecurity Fundamentals course preview

Launch your Agile career!

HK School of Management helps you master Agile and Scrum—faster. Learn practical playbooks, AI-powered prompts, and real-world workflows to plan smarter, deliver sooner, and keep stakeholders aligned. For the price of lunch, you’ll get templates, tools, and step-by-step guidance to level up your projects. Backed by our 30-day money-back guarantee—zero risk, clear path to results.

Learn More