Filter By Year

1945 2024


Found 1,304 documents
Search KEAMANAN INFORMASI

Perkembangan Sistem Pertahanan/Keamanan Siber Indonesia dalam Menghadapi Tantangan Perkembangan Teknologi dan Informasi: - Makbull Rizki
Politeia: Jurnal Ilmu Politik Vol. 14 No. 1 (2022): Politeia: Jurnal Ilmu Politik
Publisher : Talenta Publisher

Show Abstract | Download Original | Original Source | Check in Google Scholar | DOI: 10.32734/politeia.v14i1.6351

Abstract

The challenges in the world of defense and security are always dynamic, always changing in form, nature, and source of the threat itself. In the previous era, the challenges of defense and security were form by direct attacks with war equipment and involving more intense physical contact, while in the era of technology and information which is developing rapidly, security and defense challenges have created a new dimension, namely cyber security. This article will describe how cyber threats and attacks are a challenge for the world of defense in this current era, and how is the development of Indonesia's current cyber defense and security system.
Urgensi Manajemen Keamanan dan Pengendalian Sistem Informasi bagi UMKM di Indonesia Nugroho, Mahendra Adhi; Septininditya, Agatha Yerika; Nugraha, R. Andro Zylio
Indo-Fintech Intellectuals: Journal of Economics and Business Vol. 4 No. 3 (2024): Indo-Fintech Intellectuals: Journal of Economics and Business
Publisher : Lembaga Intelektual Muda (LIM) Maluku

Show Abstract | Download Original | Original Source | Check in Google Scholar | DOI: 10.54373/ifijeb.v4i3.1373

Abstract

In today's digital era, Micro, Small, and Medium Enterprises (MSMEs) are one of the important components in the national and global economy. In the context of MSMEs in Indonesia, managing and controlling information system security is a very important thing to pay attention to. This article discusses the urgency of steps that need to be taken to support the growth of MSMEs in Indonesia. The method used in this research is descriptive qualitative method. The approach used is library research. Based on the results of the literature study, it was found that the management and control of information systems really need to be applied to MSMEs in Indonesia. This is because threats to information systems and technology in MSMEs are unavoidable conditions. Generally, MSMEs already know this, but they have only taken the most basic information system management and control actions, and there are still many MSMEs that have not taken information system management and control actions.
Analisis Tata Kelola Keamanan Informasi Menggunakan Framework Cobit 5 di Perpustakaan Daerah Kota Banjarmasin Fatimah, Nora Ova Putri Martiani; Mambang, Mambang; Hidayat, Ahmad; Tumanggor, Agustina Hotma Uli
Jurnal Pendidikan Tambusai Vol. 7 No. 3 (2023): Desember 2023
Publisher : LPPM Universitas Pahlawan Tuanku Tambusai, Riau, Indonesia

Show Abstract | Download Original | Original Source | Check in Google Scholar | DOI: 10.31004/jptam.v7i3.11748

Abstract

Perkembangan dunia saat ini tidak terlepas dari perkembangan teknologi informasi yang dijadikan sebagai sarana pendukung dari perkembangan akses dan mampu meningkatkan efesiensi pekerjaan serta kualitas pelayanan dengan berbasis teknologi informasi. Untuk mengetahui tata kelola sistem keamanan dan tingkat kematangan saat ini dari sistem dengan menggunakan COBIT 5. Metode yang digunakan pada penelitian ini adalah Framework COBIT 5 yang digunakan dalam melaksanakan sebuah penelitian, pengumpulan data dengan melalui observasi, wawancara, dan pencarian studi literature sebagai bahan referensi teoritik dalam meneliti objek. Instrumen pengambilan data menggunakan kuesioner melalui google form.Berdasarkan penelitian hasil dari pengetahuan rata-rata pada seluruh domain proses ialah 1,25 dengan level dengan level 1 (Performed) yang dimana proses pada level ini, maka proses telah dilaksanakan dan mencapai tujuan sehingga dibutuhkan penyesuaian masing-masing domain proses. Berdasarkan hasil penelitian yang sudah dilakukan dari hasil kemantangan ini nilai rata-rata maturity level adalah 4,74 berada pada level 5 (Optimizing), yang dimana pada proses ini telah terstandarisasi dengan baik sehingga kemudian diimplementasikan menggunakan proses untuk mencapai hasil yang diinginkan diKeamanan Informasi.
Analisis Keamanan Infrastruktur Teknologi Informasi dalam Menghadapi Ancaman Cybersecurity Hoshmand, Mohammad Omer; Ratnawati, Suci
Jurnal Sains dan Teknologi Vol. 5 No. 2 (2023): Jurnal Sains dan Teknologi
Publisher : CV. Utility Project Solution

Show Abstract | Download Original | Original Source | Check in Google Scholar

Abstract

In the ever-growing digital era, Information Technology (IT) infrastructure security has become an urgent need. Cybersecurity threats are increasingly complex and diverse, requiring organizations to adopt a proactive approach to protecting systems and data. This research aims to conduct an IT infrastructure security analysis and identify effective strategies in dealing with cyber security threats. The research method used is literature study, with a focus on the latest literature discussing cyber security, IT infrastructure and related technologies. The analysis was conducted to evaluate commonly used security frameworks and identify current trends, challenges and solutions in addressing cybersecurity threats. The research results show that successful IT infrastructure security requires a holistic approach that includes technical aspects, policies and human resource training. Regular software updates, implementation of advanced security technologies, and proactive monitoring can help reduce the risk of cyber threats. In addition, strict security policies and ongoing training for personnel are key to mitigating risks.
Audit Keamanan Sistem Informasi Puskesmas Dengan Standar ISO/IEC 27001:2013 Dan Framework COBIT 5 Titan Parama Yoga Titan; Vani Maharani; Naufal Dwi Maulana
NUANSA INFORMATIKA Vol. 18 No. 1 (2024): Nuansa Informatika 18.1 Januari 2024
Publisher : FKOM UNIKU

Show Abstract | Download Original | Original Source | Check in Google Scholar | DOI: 10.25134/ilkom.v18i1.56

Abstract

One of the problems of a company is the security of information systems. High security is needed to maintain the confidentiality and misuse of information within the organization. To improve the security of business operations and the quality of information technology resources, it is necessary to evaluate the security of existing information technology assets. Just like one of the systems at PT Infokes Indonesia, namely the Health Center Information System, this is a multi-functional application based on a web base so that it can be used by more than one user at the same time as patient recording is done electronically. The purpose of this study was to conduct a security audit of the Health Center Information System at PT. Infokes Indonesia uses ISO/IEC 27001:2013 and the COBIT 5 framework to document audit findings of information system audits at PT. Infokes Indonesia to make an audit report. Based on the results of research that has been conducted through interviews and questionnaires using the COBIT 5 framework and using the APO13 sub domain, the results show that Existing Capability is at level 1 while the expected Capability Level is at level 3 so that the Capability Gap is 2.
Kesadaran Keamanan Informasi atas Phising, Smishing, dan Vishing pada Warga Kota Cimahi ULFA LADAYYA; Deni Prayitno; Mamay Syani; Rizki Hikmawan; Nuur Wachid Abdulmajid
NUANSA INFORMATIKA Vol. 18 No. 2 (2024): Nuansa Informatika 18.2 Juli 2024
Publisher : FKOM UNIKU

Show Abstract | Download Original | Original Source | Check in Google Scholar | DOI: 10.25134/ilkom.v18i2.201

Abstract

Maintaining the confidentiality of information poses a significant challenge in today's technology-driven era. Information security is invaluable for individuals, businesses, governments, and global entities alike. It serves as a vital tool in preventing and identifying fraud within information-based systems. This knowledge is intended to educate people worldwide early on, helping them avoid falling victim to fraud. As technology advances for the greater good, it demands our vigilance against potential crimes like phishing, smishing, and vishing. The study utilized survey and literature review methods. Surveys were conducted using questionnaires at the Civil Registration Office of Cimahi City, targeting city residents. Survey findings indicated that many residents had experienced smishing incidents. Some respondents showed a commendable level of awareness regarding information security. Furthermore, the Dilandacita website aids respondents in handling population and civil registration matters efficiently.
Jaminan Informasi dan Keamanan yang Lebih Baik: Studi Kasus BPJS Kesehatan Abdul Hakim Satria Nusantara; Irhan Kahirul Umam; Muharman Lubis
NUANSA INFORMATIKA Vol. 18 No. 2 (2024): Nuansa Informatika 18.2 Juli 2024
Publisher : FKOM UNIKU

Show Abstract | Download Original | Original Source | Check in Google Scholar | DOI: 10.25134/ilkom.v18i2.202

Abstract

In 2021, BPJS Kesehatan experienced a significant data leak incident, where the personal data of 279 million Indonesians was leaked and traded on hacker forums. This incident has a serious impact on individual privacy and the reputation of BPJS Kesehatan. This paper analyzes the incident using the security lifecycle method, which consists of the stages of identification, analysis/assessment, protection, and monitoring. The findings suggest that weaknesses in IT security systems and a lack of continuous monitoring contributed to the leaks. Recommendations include strengthening security protocols, staff training, and implementing real-time monitoring to prevent similar incidents in the future.
Penerapan ISO/IEC 27001:2022 dalam Tata Kelola Keamanan Sistem Informasi: Evaluasi Proses dan Kendala Rudolf Sinaga; Frangky Taan
NUANSA INFORMATIKA Vol. 18 No. 2 (2024): Nuansa Informatika 18.2 Juli 2024
Publisher : FKOM UNIKU

Show Abstract | Download Original | Original Source | Check in Google Scholar | DOI: 10.25134/ilkom.v18i2.205

Abstract

Implementing ISO/IEC 27001:2022 in information security management is crucial and timely due to the increasing cyber threats, the necessity for regulatory compliance, and the significance of information security as a competitive edge. The latest revision of this standard demands proper adaptation and implementation to ensure effective information security management across various organizations. This study examines the key components of ISO/IEC 27001:2022, including organizational context, leadership, planning, support, operations, performance evaluation, and improvement. It delves into the application of ISO/IEC 27001:2022 in security system governance, emphasizing how this standard can enhance risk management and information security within an organization. A case study on a logistics company adopting this standard was conducted to identify best practices, implementation challenges, and its impact on security and regulatory compliance. The study's findings demonstrate that implementing ISO/IEC 27001:2022 effectively improves an organization's information security posture by integrating security policies, procedures, and controls into business processes. These findings offer recommendations as practical guidelines for organizations aiming to strengthen their information security management through the adoption of globally recognized international standards.
Penilaian Risiko Keamanan Informasi Menggunakan Standar NIST SP 800-30 pada PT.XYZ Zuhriyah, Aminatuz; Pakarbudi, Adib
Prosiding Seminar Nasional Teknik Elektro, Sistem Informasi, dan Teknik Informatika (SNESTIK) 2024: SNESTIK IV
Publisher : Institut Teknologi Adhi Tama Surabaya

Show Abstract | Download Original | Original Source | Check in Google Scholar | DOI: 10.31284/p.snestik.2024.5835

Abstract

Sistem informasi merupakan hal yang perlu dikelola dengan baik oleh perusahaan dikarenakan perusahaan dapat berjalan secara optimal jika menerapkan sistem keamanan informasi guna mempertahankan bisnis yang dijalankan. PT. XYZ merupakan perusahaan yang menerapkan sistem informasi dalam proses bisnisnya. Penelitian ini bertujuan untuk menganalisa, mengidentifikasi dan memitigasi risiko yang terjadi pada tiap aset perusahaan terlebih khusus pada aset sistem perencanaan produksi bahan baku di PT.XYZ menggunakan standar NIST SP 800-30. PT.XYZ mengalami kebobolan data berupa terjadinya risiko web spoofing sehingga perusahaan kehilangan data perencanaan produksi bahan baku. Setelah dilakukan analisa dengan penerapan standar NIST SP 800-30 didapati hasil bahwa aset sistem perencanaan produksi bahan baku di PT.XYZ memiliki kemungkinan sangat jarang dengan nilai likelihood sebesar 0,015 namun didapati dampak yang sangat besar sehingga tergolong kedalam risiko level tinggi. Oleh karena itu, perlu dilakukan mitigasi berupa penerapan pengamanan sistem dan pembaruan keamanan perangkat lunak yang diupdate secara berkala dengan patch keamanan terbaru untuk mengatasi kerentanan risiko serta penggunaan alat deteksi intrusi untuk memantau aktivitas mencurigakan dalam jaringan dan sistem.
Implementasi GNU Privacy Guard (GPG) Hybrid Encryption untuk Meningkatkan Keamanan Informasi pada Layanan Electronic Signature (E-Sign) Universitas Mataram Mardiansyah, Ahmad Zafrullah; Zubaidi, Ariyan; Jatmika, Andy Hidayat; Huwae, Raphael Bianco
Journal of Computer Science and Informatics Engineering (J-Cosine) Vol 8 No 1 (2024): Juni 2024
Publisher : Informatics Engineering Dept., Faculty of Engineering, University of Mataram

Show Abstract | Download Original | Original Source | Check in Google Scholar | DOI: 10.29303/jcosine.v8i1.593

Abstract

Electronic signatures have been widely used for administrative purposes since 2020, especially when activities from home are a priority. University of Mataram is one of the state universities that provides electronic signature facilities (E-Sign) for its academic community. The ease of using E-Sign has its own obstacles, one of which is in terms of security protection. Protection in the information security system has a role to take preventive action if the worst scenario occurs to the information system, such as unauthorized access by hackers. Naturally, each signature has been given information related to several things, namely who signed, when it was signed, information for signature purposes, and hash values that can be used to ensure the integrity of the data from the signature. When unauthorized access occurs, hackers can create an identity using the identity of a particular person. This makes E-Sign validation difficult and potentially misused. In this study, a scheme for securing user identity is proposed using GNU Privacy Guard (GPG) to encrypt E-Sign data. The encryption process is carried out with two layers of public-private key cryptography combined with the PGP Key Server.

Page 79 of 131 | Total Record : 1304