Akmal Zaifullah Maingak
Faculty of Economics and Business, Universitas Telkom

Published : 1 Documents Claim Missing Document
Claim Missing Document
Check
Articles

Found 1 Documents
Search

Information Security Assessment Using ISO/IEC 27001:2013 Standard on Government Institution Akmal Zaifullah Maingak; Candiwan Candiwan; Listyo Dwi Harsono
TRIKONOMIKA Vol 17 No 1 (2018): June Edition
Publisher : Faculty of Economics and Business, University of Pasundan

Show Abstract | Download Original | Original Source | Check in Google Scholar | Full PDF (737.829 KB) | DOI: 10.23969/trikonomika.v17i1.1138

Abstract

The purpose of this research is to determine the existing gap to achieve ISO/IEC 27001:2013 certification and determine the maturity level of the information system owned by X Government Institution. The information system of X Government Institution would be assessed based on 14 clauses contained in ISO/IEC 27001: 2013. The method used is qualitative method, data collection and data validation with triangulation technique (interview, observation, and documentation). Data analysis used gap analysis and to measure the maturity level of this research used CMMI (Capability Maturity Model for Integration). The result of the research showed that information security which had been applied by X Government Institution was at level 1 (Initial) which meant there was evidence that the institution was aware of problems that needed to be overcome, unstandardized process, and tended to handle the problem individually or by case.