A solution to support risk analysis on IT Change Management

The growing necessity of organizations in using technologies to support to their operations implies that managing IT resources became a mission-critical issue for the health of the primary companies' businesses. Thus, in order to minimize problems in the IT infrastructure, possibly affecting the daily business operations, risks intrinsic to the change process have to be analyzed and assessed. Risk Management is a widely discussed subject in several areas, although for IT Change Management it is quite a new discipline. The Information Technology Infrastructure Library (ITIL) introduces a set of best practices to conduct the management of IT infrastructures. According to ITIL, risks should be investigated, measured, and mitigated before any change is approved. Even with these guidelines, there is no default automatic method for risk assessment in IT Change Management. In this paper we introduce a risk analysis method based on the execution history of past changes. In addition, we propose a failure representation model to capture the feedback of the execution of changes over IT infrastructures.

[1]  David McPhee,et al.  Information Technology Infrastructure Library (ITIL®) , 2011, Encyclopedia of Information Assurance.

[2]  Lisandro Zambenedetti Granville,et al.  Enabling rollback support in IT change management systems , 2008, NOMS 2008 - 2008 IEEE Network Operations and Management Symposium.

[3]  M. Marques,et al.  Risk Assessment to Support Decision on Complex Manufacturing and Assembly Lines , 2007, 2007 5th IEEE International Conference on Industrial Informatics.

[4]  James A. Fulton,et al.  Common Information Model , 2005, Encyclopedia of Database Technologies and Applications.

[5]  Jacques Philippe Sauvé,et al.  On the Risk Exposure and Priority Determination of Changes in IT Service Management , 2007, DSOM.

[6]  C. Fuller The Philosophy of Risk , 1999 .

[7]  Lisandro Zambenedetti Granville,et al.  A template-based solution to support knowledge reuse in IT change design , 2008, NOMS 2008 - 2008 IEEE Network Operations and Management Symposium.

[8]  Claudio Bartolini,et al.  A decision support tool to optimize scheduling of IT changes , 2007, 2007 10th IFIP/IEEE International Symposium on Integrated Network Management.

[9]  Emilia Mendes,et al.  Measurement, prediction and risk analysis for Web applications , 2001, Proceedings Seventh International Software Metrics Symposium.

[10]  Akhil Sahai,et al.  A Model-based Simulation Approach to Error Analysis of IT Services , 2007, 2007 10th IFIP/IEEE International Symposium on Integrated Network Management.