Claim Missing Document
Check
Articles

Found 2 Documents
Search

ANALISIS RISIKO SISTEM INFORMASI AKUNTANSI MENGGUNAKAN ISO 31000:2018 DI PT. XYZ Filikano, Thomas; Gunawan, Andronikus; Andayani, Sri
Jurnal Ilmiah Sistem Informasi Vol. 4 No. 1 (2024): Jurnal Ilmiah Sistem Informasi
Publisher : LPPM Universitas Bina Bangsa

Show Abstract | Download Original | Original Source | Check in Google Scholar | DOI: 10.46306/sm.v4i1.71

Abstract

In the dynamic business environment, risk management plays a crucial role in the sustainability and success of a company. This research aims to assist PT. XYZ, a local beverage distribution company, in identifying, analyzing, and managing the risks it faces using the ISO 31000:2018 approach. A case study research method is applied, focusing on the company's accounting information system. Risk assessment steps include identifying assets, potential risks, and risk impacts, followed by analyzing the likelihood and impact of risks. The analysis results classify risks into three levels: Low, Medium, and High. Out of the 18 identified risks, risk treatment is conducted by providing appropriate solutions to mitigate the identified risks, as listed in the recommendation table. It is hoped that the findings of this analysis will help PT. XYZ minimize losses caused by risks and enhance its business sustainability
Implementasi COBIT 5 Pada Domain APO12 Untuk Manajemen Risiko TI CV XYZ Gunawan, Andronikus; Putra, Andreas Alessandro Fernando; Filikano, Thomas; Andayani, Sri
MDP Student Conference Vol 4 No 1 (2025): The 4th MDP Student Conference 2025
Publisher : Universitas Multi Data Palembang

Show Abstract | Download Original | Original Source | Check in Google Scholar | DOI: 10.35957/mdp-sc.v4i1.11230

Abstract

In the digital era, the rapid advancement of information technology (IT) has become a critical element in supporting business operations. However, the use of IT also introduces risks such as operational disruptions, data security threats, and system failures. This study aims to evaluate the implementation of IT risk management at CV XYZ, a mineral water distribution company in Sumatra, using the COBIT 5 framework in the APO12 (Manage Risk) domain. The research employs a qualitative case study approach, including literature review, problem identification, data collection through interviews with company executives, and descriptive data analysis. The findings reveal that CV XYZ operates at Capability Level 2 (Managed Process) for the data collection and risk analysis subdomains, and Level 3 (Established Process) for the risk profile maintenance and mitigation action determination subdomains. However, the company requires further optimization to achieve Level 5 (Optimizing Process). Strategic recommendations include strengthening risk policies, enhancing human resource skills, maintaining IT infrastructure, and improving disaster recovery systems to support sustainable business operations