Maturity model for evaluating integrity management in public procurement

Main Article Content

Rodrigo Márcio Medeiros Paiva
https://orcid.org/0000-0003-3589-0552
James Batista Vieira
https://orcid.org/0000-0002-3564-3677

Abstract

This article presents the maturity model for evaluating integrity management in public procurement developed from national and international practices for identifying, assessing, and mitigating integrity risks. The model consists of 30 assessment questions weighed across four maturity levels. It was formulated through a comprehensive literature review and validated in four Brazilian public agencies at municipal, state, and federal levels. This model allows for self-assessment of key weaknesses and strengths in contractual risk management and supports the continuous improvement process of internal controls to preserve public value.

Downloads

Download data is not yet available.

Article Details

How to Cite
MÁRCIO MEDEIROS PAIVA, R.; BATISTA VIEIRA, J. Maturity model for evaluating integrity management in public procurement. Cadernos Gestão Pública e Cidadania, São Paulo, v. 29, p. e91099, 2024. DOI: 10.12660/cgpc.v29.91099. Disponível em: https://periodicos.fgv.br/cgpc/article/view/91099. Acesso em: 10 oct. 2025.
Section
Forum: Ethics and integrity in the Brazilian public administration: Conceptual challenges, trajectories, and new horizons

References

American Institute of Certified Public Accountants. (2022). Statement on Auditing Standards n°. 99: Consideration of fraud. New York.

Araújo, A., & Vieira, J. (2020). Risk management in the Brazilian federal government: A ministerial analysis. Revista do Serviço Público, 71(C), 404-437. https://doi.org/10.21874/rsp.v71ic.4466 DOI: https://doi.org/10.21874/rsp.v71ic.4466

Aulia, D., & Isvara, W. (2021). Strategies to increase procurement maturity level using procurement maturity model to improve procurement performance. International Journal of Scientific and Research Publications, 11(6), 489-501. http://dx.doi.org/10.29322/IJSRP.11.06.2021.p11465 DOI: https://doi.org/10.29322/IJSRP.11.06.2021.p11465

Azevedo, R., Aquino, A., Lino, A., & Cavelmoretti, G. (2019). A precariedade do conteúdo informacional dos anexos de riscos fiscais de municípios brasileiros. Advances in Scientific and Applied Accounting, 12(2), 4-22. https://doi.org/10.14392/ASAA.2019120201 DOI: https://doi.org/10.14392/ASAA.2019120201

Banco do Brasil. (2016). Programa de integridade do Banco do Brasil. Brasília, DF.

Barreto, R., & Vieira, J. (2021). Public integrity programs in Brazil: Indicators and challenges. Cadernos EBAPE.BR, 19(3), 442-463. https://doi.org/10.1590/1679-395120200069 DOI: https://doi.org/10.1590/1679-395120200069

Becker, J., Knackstedt, R., & Pöppelbuß, J. (2009). Developing maturity models for IT management: A procedure model and its application. Business & Information Systems Engineering, 1(3), 213-222. https://doi.org/10.1007/s12599-009-0044-5 DOI: https://doi.org/10.1007/s12599-009-0044-5

Blaikie, N. (2000). Designing social research. Cambridge.

Bono, F. (2021). Anti-corruption in government contracting: Red flag monitoring in national e-procurement systems (Master’s thesis, Hertie School).

Bryman, A., Clark, T., Foster, L., & Sloan L. (2021). Bryman’s social research methods. Oxford.

Caixa. (2024). Política de controle interno, compliance e integridade. Brasília, DF.

Campos, A. C. S. M. (2013). Modelos de decisão multicritério para problemas de classificação relativos a BPM – Business Process Managment (P.h.D. thesis, UFPE).

Cingolani, L., & Fazekas, M. (2017). Administrative capacities that matter: Organizational drivers of public procurement competitiveness in 32 European countries.

Comissão Nacional de Energia Nuclear. (2019). Plano de integridade da CNEN. Brasília, DF.

Committee of Sponsoring Organizations of the Treadway Commission. (2007). Gerenciamento de riscos corporativos: Estrutura integrada – Sumário executivo e estrutura. São Paulo, SP.

Controladoria-Geral da União. (2017). Manual para implementação de programas de integridade. Brasília, DF.

Controladoria-Geral da União. (2018). Guia prático de gestão de riscos de integridade: Orientações para a administração pública federal direta, autárquica e fundacional. Brasília, DF.

Controladoria-Geral da União. (2022). Painel de integridade pública [Webpage]. http://paineis.cgu.gov.br/integridadepublica

Costa, A. T., & Piana, J. (2020). Modelos de Maturidade em Gestão de Processos: Uma revisão sistemática da literatura. Congresso Internacional de Administração. Ponta Grossa, Brazil.

Decreto nº 9.203/2017. (2017). Brasília, DF.

Decreto nº 10.756/2021. (2021). Brasília, DF.

Eletrobrás. (2024). Programa de compliance da Eletrobras. Brasília, DF.

Europa. (2024). Access to public procurement. https://single-market-scoreboard.ec.europa.eu/business-framework-conditions/public-procurement_en

Gomide, A., Machado, R. A., & Lins, R. (2022). The variation of bureaucratic capacities in the Brazilian federal public administration: An analysis with survey data. Organizações & Sociedade, 29(100), 217-247. https://doi.org/10.1590/1984-92302022v29n0009EN DOI: https://doi.org/10.1590/1984-92302022v29n0009en

Institute of Internal Auditors. (2020). Modelo das três linhas do IIA 2020.

Institute of Internal Auditors Research Foundation. (2009). Internal audit capability model for the public sector.

Instrução Normativa Conjunta MP/CGU nº 1/2016. (2016). Brasília, DF.

Instrução Normativa MP nº 5/2017. (2017). Brasília, DF.

Lasrado, L., Vatrapu, R., & Andersen, K. (2016). A set theoretical approach to maturity models: Duidelines and demonstration. 37th ICIS Proceedings. Dublin, Ireland.

Lei de Licitações e Contratos Administrativos. (2021). Brasília, DF.

Looy, A. Van, Poels, G., & Snoeck, M. (2017). Evaluating business process maturity models. Journal of Association for Information Systems, 18(6), 461-486. https://doi.org/10.17705/1jais.00460 DOI: https://doi.org/10.17705/1jais.00460

Maijoor, S. (2000). The internal control explosion. International Journal of Auditing, 4(1), 101-109. https://doi.org/10.1111/1099-1123.00305 DOI: https://doi.org/10.1111/1099-1123.00305

Mettle, T., & Ballester, O. (2021). Maturity Models in information systems: A review and extension of existing guidelines. Forty-Second International Conference on Information Systems. Austin.

Modelo de Maturidade em Integridade Pública – MMIP: Referencial técnico. (2023). Brasília, DF.

Nogueira, V., & Fuscaldi, K. (2018). Painel de especialistas e Delphi: Métodos complementares na elaboração de estudos de futuro. Brasília, DF.

Oliveira, J. A. (2023). Evolution of the Brazilian public administration. Public Administration Issues, 6, 30-43. https://doi.org/10.17323/1999-5431-2023-0-6-30-43 DOI: https://doi.org/10.17323/1999-5431-2023-0-6-30-43

Open Contract Partnership. (2013). Developing data standards for open contracting. Washington, DC.

Open Contract Partnership. (2019). The open contracting playbook. Washington, DC.

Open Contract Partnership. (2020). Indicators to diagnose the performance of a procurement market. Washington, DC.

Organisation for Economic Co-operation and Development. (2011). Avaliação da OCDE sobre o Sistema de Integridade da administração pública brasileira: Gerenciando riscos por uma administração pública mais íntegra. Paris, France.

Organisation for Economic Co-operation and Development. (2017). Recomendação do Conselho da OCDE sobre Integridade Pública. Paris, France.

Organisation for Economic Co-operation and Development. (2018). Methodology for Assessing Procurement Systems – MAPS. Paris, France.

Organisation for Economic Co-operation and Development. (2021a). Combate a cartéis em licitações no Brasil: Uma revisão das compras públicas federais. Paris, France.

Organisation for Economic Co-operation and Development. (2024). OECD Public Integrity Maturity Models. https://www.oecd.org/governance/ethics/public-integrity-maturity-models.htm

Oulasvirta, L., & Anttiroiko, A. V. (2017). Adoption of comprehensive risk management in local government. Local Government Studies, 43(3), 1-26. https://doi.org/10.1080/03003930.2017.1294071 DOI: https://doi.org/10.1080/03003930.2017.1294071

Paiva, R. & Vieira, J. (2024). Dataset [Webpage]. https://github.com/vieirajames/CGPC

Painel de integridade pública. (2022). http://paineis.cgu.gov.br/integridadepublica

Petrobrás. (2015). Programa PETROBRAS de prevenção à corrupção. Brasília, DF.

Petrobrás. (2024). Programa de compliance da Petrobras. Brasília, DF.

Pöppelbuß, J., & Röglinger, M. (2011). What makes a useful Maturity Model? ECIS 2011 Proceedings. Helsinki, Finland.

Portaria CGU nº 57/2019. (2019). Brasília, DF.

Portaria CGU nº 581/2021. (2021). Brasília, DF.

Portaria SEGES/ME nº 8.678/2021. (2021). Brasília, DF.

Reis, T., Mathias, M. A., & Oliveira, O. (2017). Maturity models: Identifying the state-of-the-art and the scientific gaps from a bibliometric study. Scientometrics, 110, 643-672. https://doi.org/10.1007/s11192-016-2182-0 DOI: https://doi.org/10.1007/s11192-016-2182-0

Rendon, R. (2015). Benchmarking contract management process maturity: A case study of the US Navy. Benchmarking: An International Journal, 22(7), 1481-1508. http://dx.doi.org/10.1108/BIJ-10-2014-0096 DOI: https://doi.org/10.1108/BIJ-10-2014-0096

Souza, F., Braga, M., Cunha, A., & Sales, P. (2020). Incorporation of international risk management standards into federal regulations. Revista de Administração Pública, 54(1), 59-78. https://doi.org/10.1590/0034-761220180117x DOI: https://doi.org/10.1590/0034-761220180117x

Stoiber, C., Stoter, M., Englbrecht, L., Schonig, S., & Hackel, B. (2023). Keeping your maturity assessment alive: A method for the continuous tracking and assessment of organizational capabilities and maturity. Bus Inf Syst Eng., 65(6), 703-721. https://doi.org/10.1007/s12599-023-00805-y DOI: https://doi.org/10.1007/s12599-023-00805-y

Transparency International. (2022). Annual report 2022. Berlin, Germany.

Tribunal de Contas da União. (2014). Referencial básico de governança aplicável a órgãos e entidades da administração pública. Brasília, DF.

Tribunal de Contas da União. (2018). Perfil Integrado de Governança Organizacional e Gestão Públicas: IGG – Resultados. Brasília, DF.

Tribunal de Contas da União. (2020). Referencial básico de governança aplicável a organizações públicas e outros entes jurisdicionados ao TCU. Brasília, DF.

Tribunal de Contas da União. (2021a). Dez passos para a boa governança. Brasília, DF.

Tribunal de Contas da União. (2021b). Perfil Integrado de Governança Organizacional e Gestão Públicas: IGG – Questionário. Brasília, DF.

Tribunal de Contas da União. (2021c). Perfil Integrado de Governança Organizacional e Gestão Públicas: IGG – Resultados. Brasília, DF.

Tribunal de Contas da União. (2024) Perfil Integrado de Governança Organizacional e Gestão Públicas: IGG – Questionário. Brasília, DF.

Vieira, J. (2019). Risks and compliance – Brazil. Global Encyclopedia of Public Administration. https://doi.org/10.1007/978-3-319-31816-5_3778-1 DOI: https://doi.org/10.1007/978-3-319-31816-5_3778-1

Wendler, R. (2012). The maturity of maturity model research: A systematic mapping study. Information and Software Technology, 54, 1317-1339. https://doi.org/10.1016/j.infsof.2012.07.007 DOI: https://doi.org/10.1016/j.infsof.2012.07.007

World Bank Group. (2017). World Bank Group integrity compliance guidelines. Washington, DC.