Vidia Alma Cyrilla
Unknown Affiliation

Published : 2 Documents Claim Missing Document
Claim Missing Document
Check
Articles

Found 2 Documents
Search

Information System Audit on the Catatmak Application on the Web and Playstore Using the Cobit Framework for Financial Recording : Study Case : Application Note Fariz Nur Fikri Zaki; Putri Awaliatuz Zahra; Vidia Alma Cyrilla; Wahyu Latifatun; Jeffri Prayitno Bangkit Saputra
International Journal of Information Engineering and Science Vol. 2 No. 1 (2025): February : International Journal of Information Engineering and Science
Publisher : Asosiasi Riset Teknik Elektro dan Infomatika Indonesia

Show Abstract | Download Original | Original Source | Check in Google Scholar | DOI: 10.62951/ijies.v2i1.135

Abstract

PT Jadi Kaya Raya Bersama, founded in 2024 in Banyumas, Indonesia, focuses on providing reliable financial recording solutions for Micro, Small, and Medium Enterprises (MSMEs) through fintech-based applications. The platform is designed to support transaction recording, financial monitoring, and reporting processes to improve MSME financial management. Despite its significant potential, several technical issues have hindered the application’s performance and service quality. Key problems identified include disruptions in the WhatsApp Bot API, user authentication errors, and the lack of integration with banking systems and digital wallet services. These challenges affect transaction recording accuracy, operational efficiency, and the security of user financial data. To identify the root causes of these issues and propose appropriate solutions, a system audit was conducted using the COBIT framework as a governance and management evaluation tool. The audit process involved assessing system performance, control mechanisms, and IT service management practices. The results indicate that API disruptions were primarily caused by network instability and configuration errors, which led to interruptions in automated transaction recording services. Meanwhile, authentication problems were associated with weak login mechanisms and insufficient identity verification processes. In addition, the application’s inability to integrate with banking and e-money services created limitations in transaction synchronization and reduced overall user convenience. Based on these findings, several strategic recommendations are proposed. These include optimizing API performance, strengthening authentication systems through the implementation of Two-Factor Authentication (2FA), and developing integration capabilities with banking institutions and digital wallet platforms. The implementation of these improvements is expected to enhance system efficiency, data security, and service quality. Ultimately, strengthening the fintech application’s performance will support MSMEs financial management and contribute to sustainable digital economic growth in Indonesia.
Evaluasi Keamanan Sistem Pada Aplikasi Catatmak Dengan Metode Kualitatif Berbasis Pengkodean Tematik Fariz Nur Fikri Zaki; Putri Awaliatuz Zahra; Vidia Alma Cyrilla; Wahyu Latifatun; Ranggi Praharaningtyas Aji; Dhanar Intan Surya Saputra
Jurnal IT UHB Vol 6 No 2 (2025): Jurnal Ilmu Komputer dan Teknologi
Publisher : Universitas Harapan Bangsa

Show Abstract | Download Original | Original Source | Check in Google Scholar | DOI: 10.35960/ikomti.v6i2.1871

Abstract

This study evaluates the implementation of data security and privacy mechanisms in the Catatmak mobile application, a local personal finance tool. It addresses the increasing risks associated with the handling of sensitive user data, particularly in digital financial platforms used by the general public. A qualitative method was employed, using semi-structured interviews with the main developer of the app, who also oversees the system’s technical infrastructure. The interview explored data collection policies, encryption and authentication mechanisms, as well as role-based access control. In parallel, static and dynamic security assessments were conducted using Mobile Security Framework (MobSF) and the OWASP Application Security Verification Standard (ASVS). Results indicate that Catatmak enforces key security practices including HTTPS encryption, OTP-based login, encrypted cloud storage, and RBAC-based access segmentation. Despite these efforts, user-related vulnerabilities remain dominant, particularly weak password habits and careless sharing of OTP codes. The developer emphasized that “most threats don’t come from hackers, but from users giving away their own credentials.” As a result, the study recommends the integration of two-factor authentication (2FA), user security education, and the adoption of Secure Software Development Lifecycle (SDLC) principles. These insights are expected to inform the development of more secure financial apps within the Indonesian digital ecosystem.