Academia Open
Vol. 9 No. 2 (2024): December

Revolutionizing Hospital IT Security through ISO 27001 Launched in Indonesia: Merevolusi Keamanan TI Rumah Sakit melalui ISO 27001 Diluncurkan di Indonesia

Tasya Rafiiqa (Universitas Muhammadiyah Sidoarjo)
Uce Indahyanti (Universitas Muhammadiyah Sidoarjo [https://ror.org/017hvgd88])
Umi Khoirun Nisak (Universitas Muhammadiyah Sidoarjo [https://ror.org/017hvgd88])



Article Info

Publish Date
21 May 2024

Abstract

This study examines the security of the E-HOS System at RSUD Ibnu Sina Kab. Gresik, identifying critical threats and vulnerabilities, and offering mitigation strategies. Using qualitative methods, including interviews, observations, and documentation, data was collected from December 2022 to May 2023. The OCTAVE framework revealed 17 potential risk events, with user-related risks being the most significant, showing an RPN as high as 162 for access rights abuse. The study recommends implementing ISO 27001 controls—Access Control, Human Resource Security, and Communications Security—to enhance system security. These findings highlight the importance of robust IT security governance in healthcare settings. Highlight: Critical Risks: 17 events, highest risk in user access rights abuse. Methodology: Used OCTAVE framework, interviews, observations, documentation. Recommendations: Implement ISO 27001 controls: Access Control, HR Security, Communications Security. Keyword: E-HOS System, SIMRS security, OCTAVE method, risk assessment, ISO 27001

Copyrights © 2024






Journal Info

Abbrev

acopen

Publisher

Subject

Medicine & Pharmacology Public Health

Description

Academia Open is published by Universitas Muhammadiyah Sidoarjo published 2 (two) issues per year (June and December). This journal provides immediate open access to its content on the principle that making research freely available to the public supports a greater global exchange of knowledge. This ...