International Journal of Informatics, Information System and Computer Engineering (INJIISCOM)
Vol. 7 No. 2 (2026): INJIISCOM: VOLUME 7, ISSUE 2, DECEMBER 2026 (Online First)

Transform IT Governance and Management to Enhance Information Security using COBIT Framework 2019

Ibrahim, Achmad Najib (Unknown)
Suryani, Erma (Unknown)



Article Info

Publish Date
02 Feb 2026

Abstract

The rapid utilization of Information Technology in the operations of PT Kawasan Industri Terpadu Batang (KITB) increases the complexity of cybersecurity risks and regulatory compliance demands, thus requiring structured governance. This study aims to analyze the existing conditions, identify gaps, and develop an information security governance model using the COBIT 2019 framework. The research method involves Design Factor assessment and organizational needs analysis that sets four priority process objectives: EDM03, APO12, APO13, and DSS05. Data was collected through interviews, questionnaires, and document studies to assess the level of as-is capability compared to to-be targets. The results showed that the current level of governance capability is at Level 3 (Largely Achieved) with a target of Level 4 (Fully Achieved), leaving a gap of one level. Based on the gap analysis, strategic recommendations were developed focusing on strengthening governance, risk management, and security operations. This study provides a practical contribution in the form of a roadmap to improve measurable information security governance to support the operational stability of industrial estates and compliance with data security regulations.

Copyrights © 2026






Journal Info

Abbrev

injiiscom

Publisher

Subject

Computer Science & IT Electrical & Electronics Engineering Engineering Industrial & Manufacturing Engineering Mechanical Engineering

Description

FOCUS AND SCOPE INJIISCOM cover all topics under the fields of Computer Engineering, Information system, and Informatics. Informatics and Information system IT Audit Software Engineering Big Data and Data Mining Internet Of Thing (IoT) Game Development IT Management Computer Network and Security ...