Tadwin: Jurnal Ilmu Perpustakaan dan Informasi
Vol 6 No 1 (2025): Tadwin: Jurnal Ilmu Perpustakaan dan Informasi

Evaluation of Information Security Management Based on ISO/IEC 27001 at Universitas Nasional Library (UNAS)

fadilah, Afifah Nur (Unknown)
Saputra, Dwi Fajar (Unknown)
Fyras Maulana, Ibnu (Unknown)
Jordan A. N, Muhammad (Unknown)
Rizky Jumayyil, Dzaki (Unknown)
T. M., Sarah Aurelia (Unknown)
Mufiddah Adhayanti, Saffana (Unknown)



Article Info

Publish Date
20 Jun 2025

Abstract

As the utilization of digital systems continues to grow, libraries must strengthen their information management systems to protect against threats such as cyberattacks and data breaches. This study employed a descriptive qualitative approach using interviews, observation, and documentation. The findings indicate that several ISO/IEC 27001 based controls have been implemented, including firewalls, encryption, and regular audits. However, security gaps remain, such as weak credentials, the absence of multi-factor authentication, and limited real-time monitoring and data backup. Major risks include malware, network attacks, and system failures. Although the National University (UNAS) Cyber Library has developed a Disaster Recovery Plan (DRP), improvements in formal documentation and user digital literacy are still needed. These findings serve as a strategic evaluation basis for enhancing the effectiveness of information security governance in academic library environments.

Copyrights © 2025






Journal Info

Abbrev

tadwin

Publisher

Subject

Library & Information Science

Description

The purpose of this journal publication is to disseminate the conceptual thoughts and ideas or research results that have been achieved in the area of library and information. Tadwin is a multidisciplinary journal at the national level that covered many main problems in the science of library and ...