Claim Missing Document
Check
Articles

Found 30 Documents
Search

ANALISIS ANCAMAN PHISHING DALAM LAYANAN ONLINE BANKING Radiansyah, Ikhsan; Rusdjan, Candiwan; Priyadi, Yudi
Journal of Innovation in Business and Economics Vol 7, No 1 (2016)
Publisher : Faculty of Economics and Business, University of Muhammadiyah Malang

Show Abstract | Download Original | Original Source | Check in Google Scholar | Full PDF (351.317 KB) | DOI: 10.22219/jibe.v7i1.3083

Abstract

The purpose of this study was to determine the factors that cause the emergence of phishing and prevention against phishing threats. Systematic Literature Review methods used to find answers to the research questions by searching for studies related to the threat of phishing in online banking services and perform narrative synthesis on the findings. Minimal knowledge of the user, and the user's psychological privacy of users of social networking services considered as factors that cause phishing. Educating users about the threat of cyber crime, prevention at the level of e-mail, the use of anti-phishing software, and system implementation disposable password in banking services is an effective deterrent to the threat of phishing. Users must have a good knowledge of the threat of crime, especially phishing, and the Bank has the responsibility to provide education related to threats that can harm the user.
Analisis dan Pengukuran Kualitas Informasi Pada Website Menggunakan Pendekatan Six Sigma Faisal, Bagus; Candiwan, Candiwan; Priyadi, Yudi
JSINBIS (Jurnal Sistem Informasi Bisnis) Vol 8, No 1 (2018): Volume 8 Nomor 1 Tahun 2018
Publisher : Universitas Diponegoro

Show Abstract | Download Original | Original Source | Check in Google Scholar | Full PDF (214.837 KB) | DOI: 10.21456/vol8iss1pp84-91

Abstract

Information held by a company is one of the important factors for its success. Nowadays with rapid development of usage of internet and social media, bad information can also have a significantly negative impact on every element / level that exists in the company or in the community. Sometimes it can lead to public unrest. Bad or good information has correlation with the quality of information. The aim of this research  is to assest and analyze  the quality of information using Six Sigma approach and we choose Kaskus website as a case study. Kaskus is the largest community online in Indonesia. It provided various kinds of information to its user. By using its approach, this research consists of 5 stages, they are “define”, “measure”, “analysis”, “improve”, and “control”. Each phase/stage using different tools to assess the current Information Quality, such as questionnaires for define phase, “Expert Choice”(Analytic Hierarchy Process) for measure phase, and quality function deployment (QFD) for analysis stage. Questionnaires used for defining customer specifications and identify information quality problem, meanwhile software “Expert Choice” used to measure the importance each quality information dimensions and then to validate/analyzise the problem of the data. And lastly, QFD used to determine the mutual relationships of information quality dimensions and critical to Information Quality factors. Output of “Analyze” stage shows that Accuracy, Relevancy, and Objectivity dimension on Kaskus website need to be improved immediately because it reaches unacceptable point.
Analisis Sistem Manajemen Keamanan Informasi Menggunakan ISO/IEC 27001 : 2013 Serta Rekomendasi Model Sistem Menggunakan Data Flow Diagram pada Direktorat Sistem Informasi Perguruan Tinggi Yuze, Yuni Cintia; Priyadi, Yudi; Candiwan, Candiwan
JSINBIS (Jurnal Sistem Informasi Bisnis) Vol 6, No 1 (2016): Volume 6 Nomor 1 Tahun 2016
Publisher : Universitas Diponegoro

Show Abstract | Download Original | Original Source | Check in Google Scholar | Full PDF (725.713 KB) | DOI: 10.21456/vol6iss1pp38-45

Abstract

The importance of information and the possible risk of disruption, therefore the universities need to designed and implemented of the information security.  One of the standards that can be used to analyze the level of information security in the organization is ISO/IEC 27001 : 2013 and this standard has been prepared to provide requirements for establishing, implementing, maintaining and continually improving an information security management system. The objective of this research is to measure the level of information security based on standard ISO/IEC 27001: 2013 and modeling systems for information security management. This research uses descriptive qualitative approach, data collection and validation techniques with tringulasi (interview, observation and documentation). Data was analyzed using gap analysis and to measure the level of maturity this research uses SSE-CMM (Systems Security Engineering Capability Maturity Model). Based on the research results, Maturity level clause Information Security Policy reaches level 1 (Performed-Informally), clause Asset Management reaches level 3 (Well-Defined), clause Access Control reaches level 3 (Well-Defined), clause Physical and Environmental Security reaches level 3 (Well-Defined), clause Operational Security reaches level 3 (Well-Defined), Communication Security clause reaches the level 2 (Planned and Tracked). Based on the results of maturity level discovery of some weakness in asset management in implementing the policy. Therefore, the modeling system using the flow map and CD / DFD focused on Asset Management System.
Pengukuran Kesadaran Keamanan Informasi Dan Privasi Pada Pengguna Smartphone Android Di Indonesia Akraman, Robbi; Candiwan, Candiwan; Priyadi, Yudi
JSINBIS (Jurnal Sistem Informasi Bisnis) Vol 8, No 2 (2018): Volume 8 Nomor 2 Tahun 2018
Publisher : Universitas Diponegoro

Show Abstract | Download Original | Original Source | Check in Google Scholar | Full PDF (342.194 KB) | DOI: 10.21456/vol8iss2pp115-122

Abstract

Based on statistical data, it is known that Android is the most popular smartphone with the largest number of users in the world, which is about 1.8 billion users. The high number of users also invite the many cases of information security and privacy caused by the lack of awareness of the user such as : spam, spoofing/phising, network incident, malware, uploading something personal data such as photos, phone numbers, addresses or having no antivirus. This study aims to find out about the awareness of the security of information and privacy of Android smartphone users by doing measurement of problem. The awareness has  some dimensions such as attitude, knowledge and behavior with the seven focus areas of information security namely trust in app repository, misconception about app testing, security and agreement message, pirated application, adoption Security control, spam sms and report of security incidents and three focus areas of privacy are perceived surveillance, perceived intrusion, secondary use of information. This research uses analytical hierarchy process (AHP) to measure the level of awareness of information security and privacy of smartphone users. Overall, the results of the research show that information security has an average level of awareness (71%) but the focus area of report for security incidents has a poor level of awareness (37%) this occur because users prefer to solve their own information security issues experienced and privacy has an average level of awareness (76%). However, for secondary use of information in attitude dimension has low awareness level (66%). Based on the results of this study, it can be concluded that smartphone users in Indonesia have a poor awareness level in maintaining security and privacy of their information. 
ASESMEN KEAMANAN INFORMASI MENGGUNAKAN INDEKS KEAMANAN INFORMASI (KAMI) PADA INSTITUSI XYZ Manullang, Astri F.; Candiwan, Candiwan; Harsono, Listyo Dwi
JIEET (Journal of Information Engineering and Educational Technology) Vol 1, No 2 (2017)
Publisher : Universitas Negeri Surabaya

Show Abstract | Download Original | Original Source | Check in Google Scholar | DOI: 10.26740/jieet.v1n2.p73-82

Abstract

Abstrak? Perkembangan teknologi informasi memberikan kemudahan bagi setiap institusi dalam menjalankan tugas dan fungsinya. Institusi yang menerapkan teknologi informasi harus menjaga keamanan informasi yang dimiliki agar pengelolaanya dapat dilakukan dengan cepat dan akurat sehingga dapat menghindari terjadinya kegagalan atau pelanggaran. Institusi XYZ pada saat ini telah menerapkan teknologi informasi, tetapi informasi yang dimiliki belum dilindungi dengan baik. Pada institusi XYZ terdapat akses kontrol yang belum dilaksanakan dengan baik diantaranya kurang keamanan atau pengawasan lokasi kerja penting (ruang server, ruang arsip) sehingga siapa saja bebas untuk melakukan akses, kemudian pada institusi XYZ belum menerapkan pengamanan untuk mendeteksi dan mencegah penggunaan akses jaringan (termasuk jaringan nirkabel). Oleh karena itu penting melakukan asesmen terhadap institusi XYZ untuk mengetahui tingkat kematangan dan kelengkapan keamanan informasinya. Asesmen dilakukan menggunakan Indeks Keamanan Informasi (KAMI) yang dikeluarkan oleh Departemen Komunikasi dan Informasi yang telah memenuhi syarat dan aspek keamanan informasi yang mengacu pada ISO 27001. Metode yang digunakan adalah metode kualitatif yaitu Indeks KAMI sebagai alat ukur untuk menilai sistem manajemen keamanan informasi institusi XYZ. Hasil penilaian Indeks KAMI pada Institusi XYZ menunjukkan tingkat ketergantungan terhadap Sistem Elektronik tergolong tinggi dan status kesiapan dalam manajemen keamanan informasi tidak layak dan berada pada level I-I+ dimana level ini masih berada pada kondisi awal penerapan keamanan informasi. Sehingga Institusi XYZ harus melakukan perbaikan dan peningkatan kontrol keamanan dengan pembuatan kebijakan dan prosedur keamanan informasi yang sesuai dengan kondisi TI/SI  dengan memperhatikan kesiapan, sumber daya yang dimiliki untuk mendapatkan penerapan sistem manajemen keamanan informasi yang efektif dan efisien. 
Kesadaran Keamanan Informasi pada Pegawai Bank x di Bandung Indonesia Islami, Dian Chisva; I.H, Khodijah Bunga; Candiwan, Candiwan
INKOM Journal Vol 10, No 1 (2016)
Publisher : Pusat Penelitian Informatika - LIPI

Show Abstract | Download Original | Original Source | Check in Google Scholar | Full PDF (251.508 KB) | DOI: 10.14203/j.inkom.428

Abstract

Berkembangnya teknologi diiringi dengan semakin meningkatnya jumlah pengguna internet di Indonesia, hal inilah yang membuat jumlah kejahatan di dunia maya bertambah. Rendahnya tingkat keamanan informasi di bidang perbankan, seperti adanya pembobolan ATM, skimming, phising dan malware juga dialami oleh Bank X yang merupakan Bank internasional dan berlokasi di Bandung. Sehingga perlu adanya tindakan kesadaran keamanan informasi (information security awareness). Kesadaran akan pentingnya menjaga keamanan informasi di Bank dipengaruhi oleh beberapa faktor yakni kepatuhan hukum (regulasi) danpenjagaan integritas data bank. Dalam meningkatkan kesadaran pegawai Bank X tersebut, peneliti menggunakan pendekatan teori verifikasi yang meliputi tiga hal perilaku pegawai dalam bekerja. Hal ini untuk mengukur pemahaman pegawai tentang kesadaran keamanan informasi melalui pengetahuan, sikap dan perilaku. Peneliti menggunakan metode penelitian kualitatif secara deskriptif dengan teknik purposive sampling, dimana pengumpulan datanya melalui wawancara. Hasil penelitian ini menunjukan bahwa pelaksanaan kebijakan keamanan informasi pada Bank X Bandung berjalan dengan baik, serta pegawai Bank X Bandung rata-rata telah mempunyai tingkat kesadaran yang tinggi terhadap keamanan informasi. 
Analysis and Design of Sales Information System on Web-Based E-Commerce in Yoga Farm Catfish Breeding Business Using UML Cahyo, Muhamad Ridho Dwi; Candiwan, Candiwan
JURNAL MEDIA INFORMATIKA BUDIDARMA Vol 4, No 3 (2020): Juli 2020
Publisher : STMIK Budi Darma

Show Abstract | Download Original | Original Source | Check in Google Scholar | DOI: 10.30865/mib.v4i3.2106

Abstract

Yoga Farm is a Micro, Small, and Medium Enterprises (MSME) that focuses on catfish breeding that is still doing business processes manually. With this process, information received by related parties is very difficult to obtain quickly. Therefore, the product is still not widely known, and customers are still few because the system used in sales and promotions still uses a manual system. The research method used is qualitative. This study aims to create a sales information system recommended at Yoga Farm and design using Unified modeling language (UML) for the recommended business processes. Customers will get product information in real-time, products can be widely recognized, and the number of Yoga Farm customers can increase. Based on the results of this study, adoption of a web-based sales information system can certainly make it easier to get the latest information quickly, can expand the market and can also facilitate customers in the transaction. For future research, this research can be used as a reference for conducting similar studies at other MSMEs to increase sales
Measuring Information Security Awareness of Indonesian Smartphone Users Puspita Kencana Sari; Candiwan Candiwan
TELKOMNIKA (Telecommunication Computing Electronics and Control) Vol 12, No 2: June 2014
Publisher : Universitas Ahmad Dahlan

Show Abstract | Download Original | Original Source | Check in Google Scholar | DOI: 10.12928/telkomnika.v12i2.64

Abstract

One of information security management elements is information security awareness program. Usually, this programs only involve the employees within the organization. Some organizations also consider security awareness for some parties outside the organization like providers, vendors, and contractors. This paper add consumers as variable to be considered in information security awareness program as there are also some threats for organization through them. Information security awareness will be measured from user’s knowledge, behavior, and attitude of five information security focus areas in telecommunication, especially related with smartphone users as one segment of telecommunication provider. For smartphone users, information security threats not only from Internet, but also by phone call or texting. Therefore, focus area in this research consist of adhere to security policy, protect personal data, fraud/spam SMS, mobile application, and report for security incident. This research use analytic hierarcy process (AHP) method to measure the information security awareness level from smartphone users. In total, the result indicated that awareness level is good (80%). Although knowledge and attitude dimension are in good criteria of awareness level, but behaviour dimension is average. It can be a reason why there are still many information security breach against smartphone user despite good awareness level.
Analysis of College Students’ Cybersecurity Awareness In Indonesia Balqis Rofiqoh Chasanah; Candiwan Candiwan
SISFORMA Vol 7, No 2: November 2020
Publisher : Soegijapranata Catholic University

Show Abstract | Download Original | Original Source | Check in Google Scholar | Full PDF (521.663 KB) | DOI: 10.24167/sisforma.v7i2.2706

Abstract

Internet-based attacks have become common and are expected to happen continuously with the development of technology. Therefore, cybersecurity emerged as an important concept in everyday life. It is defined as the protection of cyberspace. Cybersecurity Awareness (CSA) exists as a major defense key in protecting users and systems from internet-based attacks. The research presented in this study aims to assess the level of CSA among college students in Indonesia. This study uses the Analytic Hierarchy Process (AHP) method to test students in three dimensions, including attitudes, knowledge, and behavior. To measure this dimension, six focus areas in the topic of cybersecurity were taken and developed from previous studies on the same topic. The six focus areas are password security, cyberbullying, phishing, malware, identity theft, and the last is downloading, sharing and use of pirated content. The results showed that the total level of CSA for college students in Indonesia was in the good criteria. This is indicated by a total percentage of awareness around 80%. Nevertheless there are some focus areas that can be improved to increase the percentage.
Kesadaran Keamanan Informasi pada Pegawai Bank x di Bandung Indonesia Dian Chisva Islami; Khodijah Bunga I.H; Candiwan Candiwan
INKOM Journal Vol 10, No 1 (2016)
Publisher : Pusat Penelitian Informatika - LIPI

Show Abstract | Download Original | Original Source | Check in Google Scholar | DOI: 10.14203/j.inkom.428

Abstract

Berkembangnya teknologi diiringi dengan semakin meningkatnya jumlah pengguna internet di Indonesia, hal inilah yang membuat jumlah kejahatan di dunia maya bertambah. Rendahnya tingkat keamanan informasi di bidang perbankan, seperti adanya pembobolan ATM, skimming, phising dan malware juga dialami oleh Bank X yang merupakan Bank internasional dan berlokasi di Bandung. Sehingga perlu adanya tindakan kesadaran keamanan informasi (information security awareness). Kesadaran akan pentingnya menjaga keamanan informasi di Bank dipengaruhi oleh beberapa faktor yakni kepatuhan hukum (regulasi) danpenjagaan integritas data bank. Dalam meningkatkan kesadaran pegawai Bank X tersebut, peneliti menggunakan pendekatan teori verifikasi yang meliputi tiga hal perilaku pegawai dalam bekerja. Hal ini untuk mengukur pemahaman pegawai tentang kesadaran keamanan informasi melalui pengetahuan, sikap dan perilaku. Peneliti menggunakan metode penelitian kualitatif secara deskriptif dengan teknik purposive sampling, dimana pengumpulan datanya melalui wawancara. Hasil penelitian ini menunjukan bahwa pelaksanaan kebijakan keamanan informasi pada Bank X Bandung berjalan dengan baik, serta pegawai Bank X Bandung rata-rata telah mempunyai tingkat kesadaran yang tinggi terhadap keamanan informasi.Â