Authors:
Edna Dias Canedo
1
;
Ana Paula Morais do Vale
2
;
Rogério Machado Gravina
2
;
Rafael Leite Patrão
2
;
Leomar Camargo de Souza
1
;
Vinicius Eloy dos Reis
3
;
Fábio Lúcio Lopes Mendonça
2
and
Rafael T. de Sousa Jr.
2
Affiliations:
1
Department of Computer Science, University of Brasília (UnB), Brasília, DF, Brazil
;
2
National Science and Technology Institute on Cyber Security, Electrical Engineering Department, University of Brasília (UnB), Brasília, DF, Brazil
;
3
General Coordination of Information Technology (CGTI), Administrative Council for Economic Defense (CADE), Brasília, DF, Brazil
Keyword(s):
Macroprocesses of ICT Management and Governance, Risk Identification, Provide ICT Governance, Provide ICT Infrastructure, Tools and Techniques.
Abstract:
Risk management is of great importance, both in the risk management of private organizations and in public administration organizations. Thus, in order to guarantee effective risk management and properly aligned with the organizational objectives, it is necessary to map and continuously evaluate the possible risks that may impact the organization’s service provision. This work presents the identification of the risks of the Macroprocesses of Management and Governance of Information and Communication Technology (ICT) of a federal public administration agency. The identification and classification of risks were carried out using the integrity and risk management support system (AGIR). The classification of ICT risks carried out will support stakeholders in decision making, allowing for a better assessment and quality of ICT services provided by the organization to its users.