<?xml version="1.0" encoding="UTF-8" standalone="yes"?>
<!--Web 2.0 Content Powered by MyST Blogsite® (http://blogsite.com)-->
<!--A service of MyST Technology Partners, Inc. (http://myst-technology.com)-->
<?xml-stylesheet href="http://blog.solidcore.com/public/styles/etc/object.xsl" type="text/xsl"?>

<?myst-baseUrl http://blog.solidcore.com/public/?>

<MySmartChannels Public="true" UserID="183000" dT="95" t0="1231340016127">
     <GetChannelItem_Result>
      <Item>
       <Resource>
        <ObjectID>183937</ObjectID>
        <ObjectClass>Resource</ObjectClass>
        <OwnerID ObjectClass="Domain" Title="[Weblog] ITIL">183011</OwnerID>
        <CreatedByID ObjectClass="User" Title="erinswanson">183122</CreatedByID>
        <ModifiedByID ObjectClass="User" Title="erinswanson">183122</ModifiedByID>
        <CreateTime Title="2007-09-21 17:08:14 EDT">1190408894061</CreateTime>
        <ModifyTime Title="2007-09-21 17:15:53 EDT">1190409353597</ModifyTime>
        <SecurityModel>Controlled</SecurityModel>
        <Name>Are Detective Controls Sufficient in Change Management?</Name>
        <Summary>Going beyond detective controls for change management</Summary>
        <Description>&lt;p&gt;Recently I came across an article &lt;a href="http://searchwinit.techtarget.com/tip/0,289483,sid1_gci1271952,00.html"&gt;&lt;strong&gt;&lt;u&gt;&amp;ldquo;Why detective controls are important in change management?&amp;rdquo;.&lt;/u&gt;&lt;/strong&gt;&lt;/a&gt;&amp;nbsp; This is a &lt;strong&gt;great article&lt;/strong&gt; which sets the stage for talking about the&amp;nbsp;importance of controls in Change Management.&amp;nbsp; I strongly agree with the author and want to extend the idea. &lt;/p&gt;&lt;p&gt;&lt;strong&gt;The presence of detective controls based on a scanning approach can lead to gaps where the change was performed and then reverted before the next scan was executed.&lt;/strong&gt; &lt;/p&gt;&lt;p&gt;Consider the scenario where a user performs a change and quickly reverts it.&amp;nbsp; With &lt;strong&gt;scan-based solutions, there is no way to detect such changes&lt;/strong&gt; and such changes can cause outages and violate various Service Level Agreements that a business owner might be accountable to.&amp;nbsp; Wouldn&amp;rsquo;t it be more effective to have detective controls detect changes in realtime and capture the five dimensions of change &amp;ndash; who, what, where, when and why?&amp;nbsp; This reminds me of a customer quote after an outage caused by a change &lt;strong&gt;&amp;ldquo;Who changed what, when and my god WHY?&amp;rdquo;&lt;/strong&gt;&lt;/p&gt;&lt;p&gt;Extending&amp;nbsp;the concept of controls, the next thing that IT staff is now looking for is &amp;ldquo;preventative controls&amp;rdquo;. &amp;nbsp;Would it not be great to prevent change from being executed if the change was not approved?&lt;/p&gt;&lt;p&gt;by &lt;br /&gt;&lt;strong&gt;Rishi Bhargava&lt;br /&gt;&lt;/strong&gt;Director, Product Management&lt;br /&gt;&lt;a href="mailto:rishi@solidcore.com"&gt;&lt;strong&gt;&lt;u&gt;rishi@solidcore.com&lt;/u&gt;&lt;/strong&gt;&lt;/a&gt; &lt;/p&gt;</Description>
        <ResourceTypeID ObjectClass="ResourceType" Title="Item:Link">9</ResourceTypeID>
        <ContentType>application/xml</ContentType>
        <ContentDocument>
         <ItemProperties>
               <CommonProperties>
                <Hidden>false</Hidden>

                <Keywords>
                 <Keyword>change management</Keyword>

                 <Keyword>detective controls</Keyword>

       </Keywords>

                <Links>
                 <Link>
                  <Title>Why detective controls are important in change management?</Title>

                  <Synopsis>Read this original article by George Spafford published on TechTarget's WinIT</Synopsis>

                  <URL>http://searchwinit.techtarget.com/tip/0,289483,sid1_gci1271952,00.html</URL>

        </Link>

       </Links>

      </CommonProperties>

               <RemoteInfo>
                <UserAgent>Mozilla/4.0 (compatible; MSIE 6.0; Windows NT 5.1; SV1; .NET CLR 2.0.50727)</UserAgent>

                <RemoteHost>127.0.0.1</RemoteHost>

                <RemoteAddr>127.0.0.1</RemoteAddr>

                <RemoteUser>erinswanson</RemoteUser>

      </RemoteInfo>

     </ItemProperties>
        </ContentDocument>
       </Resource>
       <Shares/>
       <Subjects/>
       <UserPermissions>
        <CanDelete>false</CanDelete>
        <CanDiscover>true</CanDiscover>
        <CanEdit>false</CanEdit>
        <CanEditPermissions>false</CanEditPermissions>
        <CanRead>true</CanRead>
       </UserPermissions>
       <CommentInfo>
        <CommentChannelRef AllowAnonymous="true" Inherited="true">
         <ChannelID ObjectClass="Channel" Title="[Public] Public Comments">183020</ChannelID>
         <UserPermissions>
          <CanCreateChannelItem>false</CanCreateChannelItem>
          <CanDelete>false</CanDelete>
          <CanDiscover>true</CanDiscover>
          <CanEdit>false</CanEdit>
          <CanEditPermissions>false</CanEditPermissions>
          <CanPublish>false</CanPublish>
          <CanRead>true</CanRead>
         </UserPermissions>
        </CommentChannelRef>
        <Comments/>
       </CommentInfo>
       <Views>
        <SourceID ObjectClass="Channel" Title="[Weblog] ITIL">183011</SourceID>

               <View>
                <Name>blog</Name>

                <Model>blogsite/SolidCore/web</Model>

                <Style/>

                <Scheme/>

       </View>

      </Views>
        <Views>
         <SourceID ObjectClass="Channel" Shared="true" Title="[Public] What's New">183014</SourceID>

                <View>
                 <Name>blog</Name>

                 <Model>blogsite/SolidCore/whatsnew</Model>

                 <Style/>

                 <Scheme/>

       </View>

      </Views>
        </Item>
       </GetChannelItem_Result>
      </MySmartChannels>
