Claim Missing Document
Check
Articles

Found 22 Documents
Search

Information Technology Risk Management Using ISO 31000 Based on the ISSAF Penetration Testing Framework Mgs Afriyan Firdaus; Muhammad Egi Perdianza; Dwi Rosa Indah
INOVTEK Polbeng - Seri Informatika Vol. 9 No. 2 (2024): November
Publisher : P3M Politeknik Negeri Bengkalis

Show Abstract | Download Original | Original Source | Check in Google Scholar | DOI: 10.35314/1tq72v53

Abstract

Information security is critical for higher education institutions, which manage large amounts of sensitive data in the digital age. Data breach incidents in Indonesia's academic sector reached 2,217 in 2021. A university website with 36 web-based information system services was found to have been defaced.  SQL injection and XSS attacks, which can lead to data breaches, system manipulation, and disruption of academic services, are also common. These attacks underscore the importance of strong security measures to protect data and preserve the reputation of education. This research assesses the security risk of the XYZ University website using the ISSAF and ISO 31000. ISSAF was applied in four stages: information gathering, network mapping, vulnerability identification, and penetration testing with customization for university web systems. ISO 31000 was used to assess risk severity, resulting in classifications of two high, six medium, and twelve low risks. Security recommendations were developed to address the key risks and can be applied to other universities facing similar threats. The findings provide great insight for educational institutions to strengthen their cybersecurity. Implementing appropriate measures not only improves privacy, but also builds trust and reputation. Proactive information security is becoming a critical asset for the sustainability and credibility of higher education institutions in this vulnerable digital age    
ANALISIS NIAT DAN PERILAKU PENGGUNAAN SIMRS RSUD AHMAD RIPIN MENGGUNAKAN UTAUT Syahnel, Ahmad Hidayat; Indah, Dwi Rosa; Ruskan, Endang Lestari; Firdaus, Mgs. Afriyan
TEKNOKOM Vol. 7 No. 1 (2024): TEKNOKOM
Publisher : Department of Computer Engineering, Universitas Wiralodra

Show Abstract | Download Original | Original Source | Check in Google Scholar | DOI: 10.31943/teknokom.v7i1.203

Abstract

Penelitian ini bertujuan untuk menganalisis factor-faktor yang mempengaruhi Niat Penggunaan dan Perilaku Penggunaan dari pegawai rumah sakit yang menggunakan SIMRS dalam pekerjaan dengan menggunakan Unified Theory of Acceptance and Use of Technology (UTAUT). Penelitian ini dilakukan di RSUD Ahmad Ripin Kabupaten Muaro Jambi, beberapa pegawai masih belum bisa menggunakan SIMRS karena mengalami kesulitan dalam mengoperasikan SIMRS. Artikel ini bertujuan untuk mengetahui bagaimana penerimaan penggunaan SIMRS diantara pegawai rumah sakit. Metode penelitian menggunakan pendekatan kuantitatif dengan teknik probability sampling. Jumlah data sebanyak 143 responden yang dikumpulkan dengan survei menggunakan kuesioner. Pengolahan data dilakukan dengan menggunakan software SmartPLS 3.0 untuk menguji instrumen dan model penelitian kemudian mengevaluasi hipotesis penelitian. Berdasarkan hasil yang diperoleh, uji hipotesis menunjukkan bahwa variabel Ekspektasi Usaha tidak berpengaruh positf terhadap Niat Penggunaan para pegawai, lalu variabel Ekspektasi Kinerja dan Pengaruh Sosial berpengaruh positif terhadap Niat Penggunaan para pegawai, kemudian variabel Kondisi yang Memfasilitasi dan Niat Penggunaan berpengaruh positif terhadap variabel Perilaku Penggunaan para pegawai.