Jurnal Pengembangan Teknologi Informasi dan Ilmu Komputer
Vol 3 No 6 (2019): Juni 2019

Evaluasi Maturitas Manajemen Risiko Teknologi Informasi menggunakan Process Assessment Model COBIT 5 (Studi Kasus PT. XYZ Indonesia)

Lintang Dila Mutiara Putri (Fakultas Ilmu Komputer, Universitas Brawijaya)
Andi Reza Perdanakusuma (Fakultas Ilmu Komputer, Universitas Brawijaya)
Aditya Rachmadi (Fakultas Ilmu Komputer, Universitas Brawijaya)



Article Info

Publish Date
30 Jul 2019

Abstract

XYZ Indonesia (Persero) is one of the strategic industrial companies that produces the main tools of the Indonesian defense system and has a focus on the application of information technology managed by the Divisi Teknologi Informasi. In its application, the possibility of a risk cannot be avoided so that IT risk management and evaluation are needed to maximize its performance. Information technology risk management evaluation is carried out by using the Process Assessment Model (PAM) in the COBIT 5 framework with the APO12 Manage Risk process. The use of the COBIT 5 framework will help in measuring the extent to which processes and activities have been carried out properly, and knowing the capability level of the process. This research was conducted using qualitative methods, where data collection was carried out by questionnaire, observation, and validation interviews. The purpose of this study is to obtain evaluation results based on the capability level and formulate recommendations based on the results of the evaluation. The capability level in the APO12 process based on the evaluation results is at level 2, namely the Managed Process. Based on the results of the analysis, 43 recommendations were prepared. Recommendations are prepared based on components at level 1 and level 2 that have not been fulfilled. In addition, recommendations are also made based on components at level 3 to meet target levels. The recommendations given to companies are used to increase the level of IT risk management capabilities that exist in the Divisi Teknologi Informasi of PT. XYZ Indonesia.

Copyrights © 2019






Journal Info

Abbrev

j-ptiik

Publisher

Subject

Computer Science & IT Control & Systems Engineering Education Electrical & Electronics Engineering Engineering

Description

Jurnal Pengembangan Teknlogi Informasi dan Ilmu Komputer (J-PTIIK) Universitas Brawijaya merupakan jurnal keilmuan dibidang komputer yang memuat tulisan ilmiah hasil dari penelitian mahasiswa-mahasiswa Fakultas Ilmu Komputer Universitas Brawijaya. Jurnal ini diharapkan dapat mengembangkan penelitian ...