Submit your papersSubmit Now
For Enquiries: [email protected]
IIARD LogoIIARD

Design and Implementation of a Role Management and Decision-Support Audit System for Secure Enterprise Information Systems

Nwaoha Stephen Ochiabuto

Abstract

Enterprise information systems require secure and accountable access-management mechanisms to handle increasing cybersecurity threats and dynamic user behaviors demands. Traditional Role-Based Access Control (RBAC) models remain largely static, relying on manual configuration and offering limited visibility into user actions. This study presents the design and implementation of an intelligent Role Management and Decision-Support Audit System for secure enterprise information systems. The proposed model integrates AI-driven role assignment, real-time anomaly detection, and a decision-support audit module to enhance accuracy, transparency, and security in access management. The system was developed using ASP.NET (C#) and MS SQL Server, with machine-learning components applied to historical access logs from a simulated enterprise dataset comprising 1,000 users across 10 functional modules. The decision-support audit layer captures, analyzes, and visualizes user activities to support administrative decision-making, incident investigation, and compliance reporting. Performance evaluation focused on role-assignment accuracy, audit-trail completeness, anomaly-detection effectiveness, and administrative efficiency. Results show improvements in role-assignment accuracy (93.5%), audit completeness (98%), anomaly-detection performance, and a 77% reduction in administrative workload compared to traditional RBAC systems. The findings demonstrate that integrating AI, dynamic role management, and decision-support audit analytics provides a scalable and adaptive framework that significantly enhances enterprise security, accountability, and operational efficiency. The study contributes to the advancement of intelligent access-control models and offers practical implications for secure enterprise systems in modern organizational environments.

Keywords

AIRole-Based Access ControlAudit TrailDecision-Support SystemEnterprise Information SystemsAnomaly DetectionCybersecurity

References

Ahmed, S. N., Sajib, M. S. I., Ahmed, N., Ali, U. S., Fariha, L. T. J., Afroz, A., & Ahsan, M. S. (2024, October). AI and RBAC Enhanced Security System for Hospitals in Bangladesh. In Proceedings of the 3rd International Conference on Computing Advancements (pp. 169-176). https://doi.org/10.1145/3723178.3723201 Blundo, C., Cimato, S., & Siniscalchi, L. (2020). Managing constraints in role-based access control. IEEE Access, 8, 140497-140511. Carcary, M. (2020). The research audit trail: Methodological guidance for application in practice. Electronic Journal of Business Research Methods, 18(2), 166-177. Castka, P., Searcy, C., & Fischer, S. (2020). Technology-enhanced auditing in voluntary sustainability standards: The impact of COVID-19. Sustainability, 12(11), 4740. Charbuty, B., & Abdulazeez, A. (2021). Classification based on decision tree algorithm for machine learning. Journal of Applied Science and Technology Trends, 2(01), 20-28. Docsvault. (n.d.). Audit trail. Retrieved November 15, 2025, from https://docsvault.com/features/classic/audit-trail/ DrawSQL. (n.d.). Role-based access control (RBAC) diagram. https://drawsql.app GeeksforGeeks. (n.d.). Role-based access control. Retrieved from https://www.geeksforgeeks.org/computer-networks/role-based-access-control/ Ghaffar, A., Arshad, A., Abbas, S., & Tahir, M. (2024). Artificial intelligence in information technology: Enhancing efficiency, security, and innovation a descriptive review. Spectrum of Engineering Sciences, 2(3), 289-309. Goswami, D. (2025). Advancing threat detection through artificial intelligence and machine learning enhanced cybersecurity audits. American Journal of Scholarly Research and Innovation, 4(01), 428-457. Harnal, S., & Chauhan, R. K. (2020). Efficient and flexible role-based access control (EF-RBAC) mechanism for cloud. EAI Endorsed Transactions on Scalable Information Systems, 7(26). Juyal, P., Manukonda, P., Saratchandran, D., Trehan, A., Shah, K. N., & Rao, C. (2024). The role of artificial intelligence in enhancing decision-making in enterprise information systems. Kandolo, W. (2024). Ensuring AI Data Access Control in RDBMS: A Comprehensive Review. In Proceedings of the IEEE/CVF Conference on Computer Vision and Pattern Recognition (CVPR) Workshops (pp. 8400-8407). Open access version: PDF available. Kumar, G. (2023). Critical success factors of adopting an enterprise system for pharmaceutical drug traceability. Universal Journal of Pharmacy and Pharmacology, 2(1), 3-10. Leocádio, D., Malheiro, L., & Reis, J. (2024). Artificial Intelligence in Auditing: A Conceptual Framework for Auditing Practices. Administrative Sciences, 14(10), 238. https://doi.org/10.3390/admsci14100238 Maddukuri, N. (2021). Trust in the cloud: Ensuring data integrity and auditability in BPM systems. International Journal of Information Technology and Management Information Systems, 12(1), 144-160. Nolgren, G. (2024). Investigating WordPress's cybersecurity through a secure by design methodology. Nyame, G., & Qin, Z. (2020). Precursors of role-based access control design in KMS: A conceptual framework. Information, 11(6), 334. Nwaoha, S. O., & Okeke, O. C. (2025). Machine learning-based detection and mitigation of DDoS attacks in smart grid systems. International Journal of Computer Applications Technology and Research, 14(2), 293-305. https://doi.org/10.7753/IJCATR1402.1021 Ochiabuto, N. S., & Chimaobi, E. N. (2025). Hybrid machine learning models for enhancing cybersecurity in smart grid infrastructures. International Journal of Research and Innovation in Social Science, 9(4), 4344-4351. Onyenahazi, O. B. Integrating artificial intelligence in financial auditing to enhance accuracy, efficiency, and regulatory compliance outcomes. Onyeashie, B. I., Leimich, P., McKeown, S., & Russell, G. (2023, October). An Auditable Framework for Evidence Sharing and Management Using Smart Lockers and Distributed Technologies: Law Enforcement Use Case. In International Conference on Big Data Technologies and Applications (pp. 156-167). Springer Nature Switzerland. https://doi.org/10.1007/978-3-031-52265-9_11 Paul, J. (2025). Audit trails and logging mechanisms as a control method in database security. Penelova, M. (2021). Access control models. Cybernetics and Information Technologies, 21(4), 77-104. Pinto, A. R. O. (2024). A Framework for Leveraging IT Audit Using Artificial Intelligence (Master's thesis, Universidade NOVA de Lisboa, Portugal). Available at: https://run.unl.pt/handle/10362/174043 Rahmani, A. M., Azhir, E., Ali, S., Mohammadi, M., Ahmed, O. H., Ghafour, M. Y., ... & Hosseinzadeh, M. (2021). Artificial intelligence approaches and mechanisms for big data analytics: A systematic study. PeerJ Computer Science, 7, e488. Rjoub, G., Bentahar, J., Abdel Wahab, O., & Saleh Bataineh, A. (2021). Deep and reinforcement learning for automated task scheduling in large-scale cloud computing systems. Concurrency and Computation: Practice and Experience, 33(23), e5919. Shi, W. (2024). Extended role-based access control model for enterprise systems and web services (Doctoral dissertation, RMIT University). Singh, K., Bojilova, M., & Besta, P. (2025). Implementing AI in auditing in organizations. Journal of Accounting and Management Information Systems, 24(3), 456-478. Stutz, D., de Assis, J. T., Laghari, A. A., Khan, A. A., Andreopoulos, N., Terziev, A., ... & Grata, E. G. (2024). Enhancing security in cloud computing using artificial intelligence (AI). Applying Artificial Intelligence in Cybersecurity Analytics and Cyber Threat Detection, 179-220. Subramanyam, S. V. (2022). AI-powered process automation: Unlocking cost efficiency and operational excellence in healthcare systems. International Journal of Advanced Research in Engineering and Technology (IJARET), 13(1), 86-102. Vegas, J., & Llamas, C. (2024). Opportunities and challenges of artificial intelligence applied to identity and access management in industrial environments. Future Internet, 16(12), 469. Wallarm. (n.d.). What exactly is role-based access control (RBAC)? Retrieved November 15, 2025, from https://www.wallarm.com/what/what-exactly-is-role-based-access-control-rbac Yao, L. (2024, February). Application of artificial intelligence technology in enterprise financial audit. In 2024 International Conference on Integrated Circuits and Communication Systems (ICICACS) (pp. 1-5). IEEE.

More Articles from INTERNATIONAL JOURNAL OF COMPUTER SCIENCE AND MATHEMATICAL THEORY

Advances in Algorithmic Contract Scoring for Pre-Negotiation Yield Optimization and Risk Retention

Author: Ngozi Samuel Uzougbo, Michael Ominyi, Cyril Chimelie Anichukwueze, Blessing, Chika Jones

DevTest flow: Designing a Scalable Continuous Testing Pipeline for High-Velocity Software Delivery

Author: Lawal Ahmed Oladimeji, Achori Busayo, Akeju BusayoZainab, Saka Samson, Damilare, Mbah Demian Chidi, Runsewe Similoluwa Mayowa, Oladiti Luqman, Abiodun