Claim Missing Document
Check
Articles

Found 2 Documents
Search
Journal : J-SAKTI (Jurnal Sains Komputer dan Informatika)

Analisis Manajemen Risiko Keamanan Sistem Pengolahan Data Accurate Menggunakan Metode OCTAVE-S Butar, Fajar Rido Butar; Saputra, Eki; Marsal, Arif; Hamzah, Muhammad Luthfi; Fronita, Mona
J-SAKTI (Jurnal Sains Komputer dan Informatika) Vol 7, No 2 (2023): EDISI SEPTEMBER
Publisher : STIKOM Tunas Bangsa Pematangsiantar

Show Abstract | Download Original | Original Source | Check in Google Scholar | DOI: 10.30645/j-sakti.v7i2.676

Abstract

PT.XYZ is a palm oil company currently implementing the Accurate data processing system to manage data at its factory. This system is utilized for weighing incoming palm fruit, processing palm fruit within the factory, and generating various reports. However, during the implementation process, the system has encountered several threats that have had an impact on the company. These threats include connection errors, human errors, and server downtime. To address these issues, a threat risk analysis is necessary to minimize the likelihood of similar problems occurring in the future. In this study, the OCTAVE-S method is employed as it offers solutions for managing other threats. The risk analysis results indicate that there are six security practices that pose a high risk to the company's system security. These practices are IT Security Monitoring and Audit, Authorization and Authentication, Vulnerability Management, Encryption, Security Planning and Architecture, and Incident Management. Based on these findings, it is recommended that the company conducts a review of its security practices to prevent the emergence of new risks that may affect its business processes.
Analisis Manajemen Risiko IT Pada Sistem Informasi Akademik Menggunakan ISO 31000 Fahlepi, Ridho; Fronita, Mona; Saputra, Eki; Hamzah, Muhammad Luthfi; Marsal, Arif; Daulay, Suandi
J-SAKTI (Jurnal Sains Komputer dan Informatika) Vol 7, No 2 (2023): EDISI SEPTEMBER
Publisher : STIKOM Tunas Bangsa Pematangsiantar

Show Abstract | Download Original | Original Source | Check in Google Scholar | DOI: 10.30645/j-sakti.v7i2.675

Abstract

The development of information technology is unavoidable. All aspects of human life require information technology. The use of information technology makes work easier to carry out. However, information technology also poses risks that can threaten the activities of an agency. The Pekanbaru College of Technology (STT) has implemented an Academic Information System (SIAKAD) to improve academic administration services, such as managing KRS, KHS, value input, schedules, and payments. Through interviews, it was identified possible risks that could disrupt business processes in the agency. The purpose of this study was to obtain an RPN (Risk Priority Number) value to provide recommendations for risk treatment in the Academic Information System (SIAKAD). The method used is ISO 31000 to measure the level of risk. The research stages include risk identification, risk analysis, calculation of RPN values, risk evaluation, and risk treatment. This research produces a level of risk from the highest to the lowest that can be used as a reference in the evaluation, treatment, and recommendations to overcome these risks.