Use of the Information Security Index (KAMI) 4.2 as an Evaluation Method at the Paser Regency Communication, Informatics, Statistics and Coding Service

Nikita Samantha, Dwi Arief Prambudi, I Putu Deny Arthawan Sugih Prabowo

Abstract

Paser Department of Communication, Informatics, Statistics, and Cryptography (Diskominfostaper) is a regional institution tasked to providing information on regional development and public service provider. Based on Kominfo regulation No. 4 of 2016, Diskominfostaper Paser district as a local government apparatus, requires implementation and supervision related to information security in order to safeguard all managed information. However, the current information security is still weak because there has never been an evaluation of information security either independently (self-assessment) or from an external party, as a results there are still attempts to hack the system and involvement of third parties without any formal contracts. In this research, an evaluation of information security was carried out at the Diskominfostaper Paser Regency using the Index KAMI 4.2 with the ISO/IEC 27001: 2013 standard to determine the level of information security readiness. The results of the evaluation were obtained with an overall final score of 220 and a final score in the Electronic System (SE) category of 30 which was included in "High" category, thus indicating that information security is currently in the "Inadequate" Preparedness Level status with a Maturity Level of level I to level II. As a result, 95dihasilkan rekomendasi perbaikan pada enam area penilaian Indeks KAMI 4.2 guna meningkatkan pemenuhan status Tingkat Kelengkapan dalam memenuhi Kerangka Dasar ISO/IEC 27001:2013.

Keywords

Information Communication, Statistics and Encryption Service of Paser Regency; Evaluation; Information Security Index (KAMI) 4.2; ISO/IEC 27001:2013; Information Security

Full Text:

PDF

References

Badan Pusat Statistik, “Statistik Telekomunikasi Indonesia 2021," 2021.

Prabawati, V. A., Rachmadi, A., and Perdanakusuma, A. R., "Analisis Risiko Teknologi Informasi Berbasis Risk Management Menggunakan Kerangka Kerja OCTAVE-S Pada Unit Pengelola Sistem Informasi Dan Kehumasan (PSIK)," Fakultas Ilmu Komputer Universitas Brawijaya, 3(3), 2829–2836, 2019.

T. Kristanto et al, “Analisis Manajemen Keamanan Informasi Menggunakan Standart ISO 27001:2005 Pada Staff IT Support di Instansi XYZ," vol. 02, no. 02, 2019.

Siswanti, S, "Penilaian Kematangan Proses Keamanan Sistem Informasi Pendaftaran Pasien Menggunakan Framework Cobit 4.1.," SATIN-Sains dan Teknologi Informasi, 7(1), 123–133, 2021.

Rencana Strategi Dinas Komunikasi Informatika, Statistik dan Persandian Kabupaten Paser, "Rencana Strategi Dinas Komunikasi Informatika, Statistik dan Persandian Kabupaten Paser," Kabupaten Paser, Dinas Komunikasi Informatika, Statistik dan Persandian, 2016-2021.

Badan Siber dan Sandi Negara Republik Indonesia, Peraturan Badan Siber dan Sandi Negara Nomor 8 Tahun 2021. 2021, pp. 10–27.

Badan Siber dan Sandi Negara Republik Indonesia, "Indeks KAMI Versi 4.2," diambil kembali dari "Indeks KAMI": https://bssn.go.id/indeks-kami/, 2019.

Prasetyowati, D. D., Gamayanto, I., Wibowo, S., & Suharnawi, "Evaluasi Manajemen Keamanan Informasi Menggunakan Indeks KAMI Berdasarkan ISO/IEC 27001:2013 pada Politeknik Ilmu Pelayaran Semarang", Journal of Information System Vol.4, No. 1, 65-75, 2019.

Refbacks

  • There are currently no refbacks.