2025
Carlos Fraga, Antônio Jorge Gomes Abelém, Vinicius Cunha Martins Borges, Jéferson Campos Nobre, Juliano Araujo Wickboldt, Glauber Dias Gonçalves
ContAudIT: Uma Proposta Fim-a-Fim para Auditoria Contínua de Gerência de Mudanças em TI usando Blockchain Inproceedings
In: 43º Simpósio Brasileiro de Redes de Computadores e Sistemas Distribuídos, SBRC 2025, Natal, RN, Brazil, May 19-23, 2025, pp. 602–615, SBC, 2025, ISSN: 2177-9384, (In portuguese).
Abstract Links BibTeX Tags: Auditing Change Management ITIL
@inproceedings{conf/sbrc/FragaAudit25,
title = {ContAudIT: Uma Proposta Fim-a-Fim para Auditoria Contínua de Gerência de Mudanças em TI usando Blockchain},
author = {Carlos Fraga and Antônio Jorge Gomes Abelém and Vinicius Cunha Martins Borges and Jéferson Campos Nobre and Juliano Araujo Wickboldt and Glauber Dias Gonçalves},
url = {https://sol.sbc.org.br/index.php/sbrc/article/view/35161},
doi = {10.5753/sbrc.2025.6327},
issn = {2177-9384},
year = {2025},
date = {2025-05-19},
urldate = {2025-05-19},
booktitle = {43º Simpósio Brasileiro de Redes de Computadores e Sistemas Distribuídos, SBRC 2025, Natal, RN, Brazil, May 19-23, 2025},
pages = {602--615},
publisher = {SBC},
abstract = {IT changes are essential to the ongoing operation of modern organizations, but inadequate change management can pose significant risks to business continuity. In this context, auditors play a key role in ensuring change management is carried out according to approved procedures. Traditionally, audit firms perform periodic inspections of IT systems and change logs. However, the increasing volume, complexity, and automation of changes makes it necessary to ensure compliance between audit inspections. This paper proposes ContAudIT, a blockchain-based approach to continuous IT change audits. An integrated solution for a change orchestration framework with a blockchain ledger that certifies and records each innovative change. The change chain between inspection events allows auditors to verify that only certified changes have been made to the infrastructure.},
note = {In portuguese},
keywords = {Auditing, Change Management, ITIL},
pubstate = {published},
tppubtype = {inproceedings}
}
IT changes are essential to the ongoing operation of modern organizations, but inadequate change management can pose significant risks to business continuity. In this context, auditors play a key role in ensuring change management is carried out according to approved procedures. Traditionally, audit firms perform periodic inspections of IT systems and change logs. However, the increasing volume, complexity, and automation of changes makes it necessary to ensure compliance between audit inspections. This paper proposes ContAudIT, a blockchain-based approach to continuous IT change audits. An integrated solution for a change orchestration framework with a blockchain ledger that certifies and records each innovative change. The change chain between inspection events allows auditors to verify that only certified changes have been made to the infrastructure.