Journal of Emerging Information Systems and Business Intelligence (JEISBI)
Vol. 7 No. 2 (2026): Vol. 07 Issue 02

Cyber Resilience Readiness Assessment Using NIST Cybersecurity Framework 2.0 in Local Government

Aziev Hanif Bahtiar (Universitas Negeri Surabaya)
Rahadian Bisma (Universitas Negeri Surabaya)



Article Info

Publish Date
28 Jul 2026

Abstract

ABSTRACT The acceleration of public service digitalization through the Electronic-Based Government System (Sistem Pemerintahan Berbasis Elektronik, SPBE) requires comprehensive information security strengthening within local government agencies. This study measures the cyber resilience readiness level of the Communication and Informatics Office (Diskominfo) of Mojokerto City using the NIST Cybersecurity Framework (CSF) 2.0. A descriptive qualitative method with a case study approach was applied through in-depth interviews, field observations, and document analysis to map the organization's existing conditions onto the six core functions of NIST CSF 2.0: Govern, Identify, Protect, Detect, Respond, and Recover, comprising 22 categories and 106 subcategories. The measurement shows that the average cyber resilience readiness score of Diskominfo Mojokerto City is 2.10 on a 4.00 scale. This score places the agency at the Risk Informed level (Tier 2), indicating that the organization possesses risk awareness but has not yet implemented it consistently or through automation across all functions. Specifically, the Govern function achieved the highest score (2.47), supported by a solid administrative and legal foundation, whereas the Recover function was identified as the most critical vulnerability with the lowest score (1.67) due to the absence of a formal disaster recovery plan. Strategic recommendations to reach the Repeatable target profile (Tier 3) include the formulation of a Disaster Recovery Plan, formalization of vendor supply-chain security policies, and the implementation of centralized automated security monitoring technologies such as SIEM and threat intelligence. These findings provide an objective baseline to support the agency's transition from a reactive posture toward a mature and standardized cyber resilience program. Keyword: NIST CSF 2.0, Cyber Resilience, SPBE, Local Government, Readiness Level, Information Security Governance.

Copyrights © 2026






Journal Info

Abbrev

JEISBI

Publisher

Subject

Computer Science & IT Decision Sciences, Operations Research & Management Languange, Linguistic, Communication & Media Library & Information Science

Description

Journal of Emerging Information Systems and Business Intelligence (JEISBI) aims to provide scholarly literature focused on studies and research in the fields of Information Systems (IS) and Business Intelligence (BI). This journal also includes public reviews on the development of theories, methods, ...