INSTALL: Information System and Technology Journal
Vol 2 No 1 (2025): INSTALL : Information System and Technology Journal

Implementation of Information Security Governance Using EDM03 and APO13 at ICT UNISM: Evaluation of Maturity Levels and Gap Analysis Using COBIT 5 Framework

anshari, muhammad luthfi (Unknown)
Muhammad Hariri Sunnah (Unknown)
Muhammad Zaini Abdul Ghoni (Unknown)
Muhammad Kaffin Hasbi (Unknown)
Andi Muhammad Riefky (Unknown)
Abdul Latif (Unknown)



Article Info

Publish Date
29 Aug 2025

Abstract

Digital transformation in the university environment requires good information security management to protect academic, administrative, and personal data. This study aims to evaluate the implementation of information security governance in the ICT unit of Universitas Sari Mulia (UNISM) using the COBIT 5 framework, especially the EDM03 (Ensure Risk Optimization) and APO13 (Manage Security) domains. The research methods used were semi-structured interviews and surveys to relevant stakeholders. The results of the evaluation show that the maturity level of the two domains is at level 3 (Established), while the expected maturity level is level 5 (Optimizing), so there is a gap of two levels. Based on these findings, strategic recommendations were prepared to improve the effectiveness of information security governance in a sustainable manner in ICT UNISM. This research also contributes to the development of IT governance practices in the higher education sector in Indonesia.

Copyrights © 2025






Journal Info

Abbrev

install

Publisher

Subject

Computer Science & IT Decision Sciences, Operations Research & Management Education

Description

The Focus and Scope of this Journal is related to : Information system Information Technology Business commerce Management technology Business ...