Plan-Driven Approach

A delivery method that emphasizes thorough upfront planning with baselined scope, schedule, and cost; work proceeds in structured phases, requirements are expected to remain stable, and changes are handled through formal change control. Also called the predictive approach.

Key Points

  • Extensive upfront planning and documentation establish scope, schedule, and cost baselines.
  • Best suited to projects with stable, well-understood requirements and low uncertainty.
  • Work typically follows sequential or phase-gate stages (e.g., waterfall).
  • Changes are evaluated and approved through formal change control processes.

Example

A state-funded highway project uses a design-bid-build approach. The team finalizes detailed requirements and designs before construction, tracks progress against baselines, and routes any scope change through a change control board for approval.

PMP Example Question

Which situation most strongly favors using a plan-driven (predictive) approach?

  1. A startup building an MVP where requirements evolve weekly.
  2. An infrastructure project with stable requirements and strict regulatory standards.
  3. A research initiative exploring unknown technologies with high uncertainty.
  4. A product team releasing small features on a continuous delivery pipeline.

Correct Answer: B — Stable, regulated infrastructure project

Explanation: Plan-driven approaches work best when requirements are well-defined, uncertainty is low, and compliance and documentation needs are high.

ICS/OT Cybersecurity Fundamentals — Security Built for Industrial Systems

Industrial control systems cannot be secured like ordinary IT. A forced reboot, aggressive scan, or incompatible patch can interrupt production and create real safety consequences. Effective OT security begins with understanding the systems, constraints, and risks unique to industrial environments.

This course gives IT professionals, engineers, operators, and security practitioners a practical foundation in ICS threats, zone and conduit design, risk assessment, passive asset visibility, and vendor evaluation. You will learn how IEC 62443, NIST CSF, and MITRE ATT&CK for ICS apply where availability and safety come first.

Eight reconstructed incidents—including Stuxnet, Triton, Ukraine 2015, Colonial Pipeline, and PIPEDREAM—show how attackers move through OT environments, what they target, and which defenses could have changed the outcome.

Watch the course preview, then build the vocabulary, frameworks, and judgment needed to take credible first steps in ICS/OT cybersecurity.

Explore the Course


ICS/OT Cybersecurity Fundamentals course preview

Build complete project plans in minutes with AI

Learn how to use AI to create charters, WBSs, schedules, risk registers, and executive reports while staying in control. This course gives you prompt templates and practical workflows based on real project work. Practical skills, tools, and guidance you can apply right away. Covered by Udemy's 30-day refund policy.

Learn More