Evaluasi Tingkat Capability Keamanan Sistem Informasi PT. CPPI Menggunakan Framework COBIT 2019
Abstract:
Purpose: This study aims to determine the capability level of information system security in PT. CPPI. In addition, it provides recommendations for enhancing IS security.
Methodology: This study used a qualitative approach. The objective of this study was PT. The CPPI, a company in Batam, operates in the fields of Forwarding, Transportation, and warehousing. The interviews were directed to personnel in the IT department. Framework for evaluation using the COBIT 2019 framework.
Results: The study results show that the capability level value in the APO12 process reaches level 2 with an average value of 67%, which is the fully achieved level. In addition, in the APO13 process, the capability level reached level 2, with a value of 64%. In the DSS05 process, the capability level is at level 2, with a value of 71%. Finally, in the DSS06 process, the capability level was level 3, with a value of 86%.
Limitations: Some management practices and activities from each process domain were not used as questionnaire material. For example, in the APO12 process, only one management practice is revealed, namely APO12.01, Collect Data. Meanwhile, other practices were not disclosed, such as APO12.02 - Analyze Risk, APO12.03 - Maintain a Risk Profile, etc. The author suggests that other research reveals these management practices.
Contribution: This study can help companies increase their level of capability in IT governance, especially in the area of information technology security. Achievement targets for capability levels can be realized according to COBIT 2019 standards.
Downloads
Angelina, A., & Fianty, M. (2024). Capability Level Assessments Of Information Security Controls: An Empirical Analysis Of Practitioners Assessment Capabilities. G-Tech: Jurnal Teknologi Terapan, 8(1), 91-103.
Aritonang, I. J., Udayanti, E. D., & Iksan, N. (2018). Audit Keamanan Sistem Informasi Menggunakan Framework Cobit 5 (Apo13). Itej (Information Technology Engineering Journals), 3(2), 6-10.
Baisholan, N., Kubayev, K., & Baisholanov, T. (2021). Modern Tools For Information Security Systems. ???????? ??? ??. ????? ??????-??????????????(1), 14-18.
Christiadi, R. N., & Sutomo, R. (2023). Measurement Of It Security Governance Capabilities Using Cobit 2019 At Indonesian Business Sector. G-Tech: Jurnal Teknologi Terapan, 7(4), 1498-1508.
Christopher Anoruo, C., & Cgeit, C. (2019). Employing Cobit 2019 For Enterprise Governance Strategy.
Cisco. (2021). What Is It Security? Retrieved From Https://Www.Cisco.Com/C/En/Us/Products/Security/What-Is-It-Security.Html
Djapandjatay, J. R., Tanaamah, A. R., & Tanaem, P. F. (2019). Evaluasi Kinerja Sistem Informasi Cuti Elektronik (Sicute) Menggunakan Framework Cobit 5 Pada Badan Kepegawaian, Pendidikan Dan Pelatihan Daerah Kota Salatiga. Sebatik, 23(2), 367-373.
Elue, E. (2020). Effective Capability And Maturity Assessment Using Cobit 2019. Retrieved From Https://Www.Isaca.Org/Resources/News-And-Trends/Industry-News/2020/Effective-Capability-And-Maturity-Assessment-Using-Cobit-2019
Geovaldo, I. P. H., Suarjaya, I. M. A. D., & Pratama, I. P. A. E. Evaluasi Keamanan Ti Pada Pt. Bumi Lestari Bali (Ecobali Recycling). Jurnal Ilmiah Teknologi Dan Komputer, 3(1), 794-801.
Gusni, R. S. A., Kraugusteeliana, K., & Pradnyana, I. W. W. (2021). Analisis Tata Kelola Keamanan Sistem Informasi Rumah Sakit Bhayangkara Sespima Polri Jakarta Menggunakan Cobit 2019. Paper Presented At The Prosiding Seminar Nasional Mahasiswa Bidang Ilmu Komputer Dan Aplikasinya.
Handayani, D., Rusmana, O., & Warsidi, W. (2023). Pengaruh Perkembangan E-Commerce, Modal Usaha, Pengetahuan Kewirausahaan, Dan Penggunaan Sistem Informasi Akuntansi Terhadap Pengambilan Keputusan Berwirausaha. Jurnal Bisnis Dan Pemasaran Digital, 2(2), 95-104.
Irwin, L. (2021). 6 Reasons Why Information Security Is Important. Retrieved From Https://Vigilantsoftware.Co.Uk/Blog/The-Importance-Of-Information-Security
Kesuma, I. N. R. W., Hermadi, I., & Nurhadryani, Y. (2023). Evaluasi Tata Kelola Teknologi Informasi Di Dinas Pertanian Gianyar Menggunakan Cobit 2019. Jurnal Teknologi Informasi Dan Ilmu Komputer, 10(3), 513-522.
Kizza, J. M., Kizza, W., & Wheeler. (2013). Guide To Computer Network Security (Vol. 8): Springer.
Kostic, L. (2021). Cobit Focus Area: Information And Technology Risk—A Model For Internal Audit Analysis. Retrieved From Https://Www.Isaca.Org/Resources/News-And-Trends/Industry-News/2021/Cobit-Focus-Area-Information-And-Technology-Risk-A-Model-For-Internal-Audit-Analysis
Neto, J., Almeida, R., & Silva, M. (2019). Defining Target Capability Levels In Cobit 2019: A Proposal For Refinement. Universidade Católica De Brasília.
Nisri, A. (2023). Evaluasi Tingkat Kapabilitas Keamanan Sistem Informasi Menggunakan Kerangka Kerja Cobit 2019. Jurnal Tata Kelola Dan Kerangka Kerja Teknologi Informasi, 9(1), 34-41.
Owens, D. (2023). Managing Data Privacy And Information Security With It Audits. Retrieved From Https://Www.Isaca.Org/Resources/News-And-Trends/Industry-News/2023/Managing-Data-Privacy-And-Information-Security-With-It-Audits
Riesna, D. M. R., Pujianto, D. E., Efendi, A. J. I., Nugroho, B. A., & Saputra, D. I. S. (2023). Identifikasi Platform Dan Faktor Sukses Dalam Manajemen Proyek Teknologi Informasi. Jurnal Teknologi Riset Terapan, 1(1), 1-9.
Suroto, S., & Friadi, J. (2023). Manajemen Risiko Teknologi Informasi Pada Aplikasi Cms Di Pt. Sarana Citranusa Kabil-Batam Menggunakan Iso31000: 2018. Jurnal Ilmu Siber Dan Teknologi Digital, 1(2), 135-148.
Viamianni, A., Mulyana, R., & Dewi, F. (2023). Cobit 2019 Information Security Focus Area Implementation For Reinsurco Digital Transformation. Jiko (Jurnal Informatika Dan Komputer), 6(2).
- Angelina, A., & Fianty, M. (2024). Capability Level Assessments Of Information Security Controls: An Empirical Analysis Of Practitioners Assessment Capabilities. G-Tech: Jurnal Teknologi Terapan, 8(1), 91-103.
- Aritonang, I. J., Udayanti, E. D., & Iksan, N. (2018). Audit Keamanan Sistem Informasi Menggunakan Framework Cobit 5 (Apo13). Itej (Information Technology Engineering Journals), 3(2), 6-10.
- Baisholan, N., Kubayev, K., & Baisholanov, T. (2021). Modern Tools For Information Security Systems. ???????? ??? ??. ????? ??????-??????????????(1), 14-18.
- Christiadi, R. N., & Sutomo, R. (2023). Measurement Of It Security Governance Capabilities Using Cobit 2019 At Indonesian Business Sector. G-Tech: Jurnal Teknologi Terapan, 7(4), 1498-1508.
- Christopher Anoruo, C., & Cgeit, C. (2019). Employing Cobit 2019 For Enterprise Governance Strategy.
- Cisco. (2021). What Is It Security? Retrieved From Https://Www.Cisco.Com/C/En/Us/Products/Security/What-Is-It-Security.Html
- Djapandjatay, J. R., Tanaamah, A. R., & Tanaem, P. F. (2019). Evaluasi Kinerja Sistem Informasi Cuti Elektronik (Sicute) Menggunakan Framework Cobit 5 Pada Badan Kepegawaian, Pendidikan Dan Pelatihan Daerah Kota Salatiga. Sebatik, 23(2), 367-373.
- Elue, E. (2020). Effective Capability And Maturity Assessment Using Cobit 2019. Retrieved From Https://Www.Isaca.Org/Resources/News-And-Trends/Industry-News/2020/Effective-Capability-And-Maturity-Assessment-Using-Cobit-2019
- Geovaldo, I. P. H., Suarjaya, I. M. A. D., & Pratama, I. P. A. E. Evaluasi Keamanan Ti Pada Pt. Bumi Lestari Bali (Ecobali Recycling). Jurnal Ilmiah Teknologi Dan Komputer, 3(1), 794-801.
- Gusni, R. S. A., Kraugusteeliana, K., & Pradnyana, I. W. W. (2021). Analisis Tata Kelola Keamanan Sistem Informasi Rumah Sakit Bhayangkara Sespima Polri Jakarta Menggunakan Cobit 2019. Paper Presented At The Prosiding Seminar Nasional Mahasiswa Bidang Ilmu Komputer Dan Aplikasinya.
- Handayani, D., Rusmana, O., & Warsidi, W. (2023). Pengaruh Perkembangan E-Commerce, Modal Usaha, Pengetahuan Kewirausahaan, Dan Penggunaan Sistem Informasi Akuntansi Terhadap Pengambilan Keputusan Berwirausaha. Jurnal Bisnis Dan Pemasaran Digital, 2(2), 95-104.
- Irwin, L. (2021). 6 Reasons Why Information Security Is Important. Retrieved From Https://Vigilantsoftware.Co.Uk/Blog/The-Importance-Of-Information-Security
- Kesuma, I. N. R. W., Hermadi, I., & Nurhadryani, Y. (2023). Evaluasi Tata Kelola Teknologi Informasi Di Dinas Pertanian Gianyar Menggunakan Cobit 2019. Jurnal Teknologi Informasi Dan Ilmu Komputer, 10(3), 513-522.
- Kizza, J. M., Kizza, W., & Wheeler. (2013). Guide To Computer Network Security (Vol. 8): Springer.
- Kostic, L. (2021). Cobit Focus Area: Information And Technology Risk—A Model For Internal Audit Analysis. Retrieved From Https://Www.Isaca.Org/Resources/News-And-Trends/Industry-News/2021/Cobit-Focus-Area-Information-And-Technology-Risk-A-Model-For-Internal-Audit-Analysis
- Neto, J., Almeida, R., & Silva, M. (2019). Defining Target Capability Levels In Cobit 2019: A Proposal For Refinement. Universidade Católica De Brasília.
- Nisri, A. (2023). Evaluasi Tingkat Kapabilitas Keamanan Sistem Informasi Menggunakan Kerangka Kerja Cobit 2019. Jurnal Tata Kelola Dan Kerangka Kerja Teknologi Informasi, 9(1), 34-41.
- Owens, D. (2023). Managing Data Privacy And Information Security With It Audits. Retrieved From Https://Www.Isaca.Org/Resources/News-And-Trends/Industry-News/2023/Managing-Data-Privacy-And-Information-Security-With-It-Audits
- Riesna, D. M. R., Pujianto, D. E., Efendi, A. J. I., Nugroho, B. A., & Saputra, D. I. S. (2023). Identifikasi Platform Dan Faktor Sukses Dalam Manajemen Proyek Teknologi Informasi. Jurnal Teknologi Riset Terapan, 1(1), 1-9.
- Suroto, S., & Friadi, J. (2023). Manajemen Risiko Teknologi Informasi Pada Aplikasi Cms Di Pt. Sarana Citranusa Kabil-Batam Menggunakan Iso31000: 2018. Jurnal Ilmu Siber Dan Teknologi Digital, 1(2), 135-148.
- Viamianni, A., Mulyana, R., & Dewi, F. (2023). Cobit 2019 Information Security Focus Area Implementation For Reinsurco Digital Transformation. Jiko (Jurnal Informatika Dan Komputer), 6(2).