Analysis of Information Technology Security Management UKSW SIASAT Using ISO/IEC 27001:2013

Andeka Rocky Tanaamah, Friska Juliana Indira
{"title":"Analysis of Information Technology Security Management UKSW SIASAT Using ISO/IEC 27001:2013","authors":"Andeka Rocky Tanaamah, Friska Juliana Indira","doi":"10.22146/ijitee.65670","DOIUrl":null,"url":null,"abstract":"IT security management is essential for organizations to notice the occurring risks and opportunities because they will profoundly affect the ongoing business processes within the organization. The Satya Wacana Academic Information System, more often called SIASAT, is an IT component playing an essential role in running core business processes at Satya Wacana Christian University under the control of the Information Systems and Technology Bureau. At this time, the implementation of SIASAT has been going well, but there are still some obstacles. Lack of human resources is one of the findings and one it becomes of the most significant risks as it affects the use of infrastructure and information security. This research was conducted using the international standard ISO/IEC 27001:2013, prioritizing information security by taking a planning clause focusing on risk assessment. From the results of this study, there were nine recommendations given. Some of which were the most important, i.e., creating separated standard operating procedure documents for SIASAT, which previously were still affiliated with the Academic Administration Bureau; distributing job descriptions; and providing clear and documented access rights for everyone. It is expected that this research can reduce the occurring risks and can be considered for establishing improvements to enhance academic services in the future.","PeriodicalId":292390,"journal":{"name":"IJITEE (International Journal of Information Technology and Electrical Engineering)","volume":"50 1","pages":"0"},"PeriodicalIF":0.0000,"publicationDate":"2021-08-06","publicationTypes":"Journal Article","fieldsOfStudy":null,"isOpenAccess":false,"openAccessPdf":"","citationCount":"0","resultStr":null,"platform":"Semanticscholar","paperid":null,"PeriodicalName":"IJITEE (International Journal of Information Technology and Electrical Engineering)","FirstCategoryId":"1085","ListUrlMain":"https://doi.org/10.22146/ijitee.65670","RegionNum":0,"RegionCategory":null,"ArticlePicture":[],"TitleCN":null,"AbstractTextCN":null,"PMCID":null,"EPubDate":"","PubModel":"","JCR":"","JCRName":"","Score":null,"Total":0}
引用次数: 0

Abstract

IT security management is essential for organizations to notice the occurring risks and opportunities because they will profoundly affect the ongoing business processes within the organization. The Satya Wacana Academic Information System, more often called SIASAT, is an IT component playing an essential role in running core business processes at Satya Wacana Christian University under the control of the Information Systems and Technology Bureau. At this time, the implementation of SIASAT has been going well, but there are still some obstacles. Lack of human resources is one of the findings and one it becomes of the most significant risks as it affects the use of infrastructure and information security. This research was conducted using the international standard ISO/IEC 27001:2013, prioritizing information security by taking a planning clause focusing on risk assessment. From the results of this study, there were nine recommendations given. Some of which were the most important, i.e., creating separated standard operating procedure documents for SIASAT, which previously were still affiliated with the Academic Administration Bureau; distributing job descriptions; and providing clear and documented access rights for everyone. It is expected that this research can reduce the occurring risks and can be considered for establishing improvements to enhance academic services in the future.
查看原文
分享 分享
微信好友 朋友圈 QQ好友 复制链接
本刊更多论文
使用ISO/IEC 27001:2013的信息技术安全管理分析UKSW SIASAT
IT安全管理对于组织注意到发生的风险和机会至关重要,因为它们将深刻地影响组织内正在进行的业务流程。萨蒂亚瓦卡纳学术信息系统,通常被称为SIASAT,是一个IT组件,在信息系统和技术局的控制下,在萨蒂亚瓦卡纳基督教大学的核心业务流程中起着至关重要的作用。此时,SIASAT的实施进展顺利,但仍存在一些障碍。缺乏人力资源是调查结果之一,它成为最重大的风险之一,因为它影响到基础设施和信息安全的使用。本研究使用国际标准ISO/IEC 27001:2013进行,通过采用侧重于风险评估的规划条款来优先考虑信息安全。根据这项研究的结果,提出了九项建议。其中一些是最重要的,即为SIASAT创建单独的标准操作程序文件,该文件以前仍隶属于教务处;分发职位描述;并为每个人提供明确和有文件记录的访问权。期望本研究可以减少发生的风险,并可考虑建立改进措施,以提高未来的学术服务。
本文章由计算机程序翻译,如有差异,请以英文原文为准。
求助全文
约1分钟内获得全文 去求助
来源期刊
自引率
0.00%
发文量
0
期刊最新文献
Eye Blink Classification for Assisting Disability to Communicate Using Bagging and Boosting Product Recommendation Based on Eye Tracking Data Using Fixation Duration Optimal Capacity and Location Wind Turbine to Minimize Power Losses Using NSGA-II Factors Affecting Collaboration Portal Effectiveness of the Audit Board of Indonesia Piezoelectric Energy Harvester for IoT Sensor Devices
×
引用
GB/T 7714-2015
复制
MLA
复制
APA
复制
导出至
BibTeX EndNote RefMan NoteFirst NoteExpress
×
×
提示
您的信息不完整,为了账户安全,请先补充。
现在去补充
×
提示
您因"违规操作"
具体请查看互助需知
我知道了
×
提示
现在去查看 取消
×
提示
确定
0
微信
客服QQ
Book学术公众号 扫码关注我们
反馈
×
意见反馈
请填写您的意见或建议
请填写您的手机或邮箱
已复制链接
已复制链接
快去分享给好友吧!
我知道了
×
扫码分享
扫码分享
Book学术官方微信
Book学术文献互助
Book学术文献互助群
群 号:481959085
Book学术
文献互助 智能选刊 最新文献 互助须知 联系我们:info@booksci.cn
Book学术提供免费学术资源搜索服务,方便国内外学者检索中英文文献。致力于提供最便捷和优质的服务体验。
Copyright © 2023 Book学术 All rights reserved.
ghs 京公网安备 11010802042870号 京ICP备2023020795号-1