Audit Keamanan Sistem Informasi Manajemen Rumah Sakit Dengan Framework COBIT 2019 Pada RSUD Palembang BARI

This study examines the implementation of information system at RSUD Palembang BARI with the aim of enhancing information system security. In this context, a security audit is conducted using the COBIT 2019 framework. The COBIT 2019 domains and processes utilizing include EDM03, APO12, APO13, APO14,...

Full description

Bibliographic Details
Main Authors: Arief Algiffary, M. Izman Herdiansyah, Yesi Novaria Kunang
Format: Article
Language:Indonesian
Published: Indonesian Society of Applied Science (ISAS) 2023-06-01
Series:Journal of Applied Computer Science and Technology
Subjects:
Online Access:https://journal.isas.or.id/index.php/JACOST/article/view/505
_version_ 1797790969236553728
author Arief Algiffary
M. Izman Herdiansyah
Yesi Novaria Kunang
author_facet Arief Algiffary
M. Izman Herdiansyah
Yesi Novaria Kunang
author_sort Arief Algiffary
collection DOAJ
description This study examines the implementation of information system at RSUD Palembang BARI with the aim of enhancing information system security. In this context, a security audit is conducted using the COBIT 2019 framework. The COBIT 2019 domains and processes utilizing include EDM03, APO12, APO13, APO14, and DSS05. The research involves the identification and evaluation of information security risks, determination of necessary security controls, and ensuring compliance with the information security standards established by COBIT 2019. The findings indicate that the level of information system security at RSUD Palembang BARI is at level 3 (Defined), with a gap analysis difference of 1 level below the expected target. Based on the above results, efforts to improve and enhance the information system security at RSUD Palembang BARI are still needed. The use of information system security techniques such as vulnerability scanning, penetration testing, WAF, IDS and IPS, and data encryption, as well as improving security in terms of server physical aspects such as installing CCTV and restricting user access with access cards or fingerprints, can be implemented to ensure compliance with relevant information security standards. Consideration for obtaining security certifications, like ISO 27001, should also be taken. Additionally, the quality of human resources in terms of policy-making and the ability of employees to address threats and attacks on information system security should be improved through training and strengthening coordination among employees.
first_indexed 2024-03-13T02:12:05Z
format Article
id doaj.art-74ed57aef86e4f1c9bfa210c0972fb05
institution Directory Open Access Journal
issn 2723-1453
language Indonesian
last_indexed 2024-03-13T02:12:05Z
publishDate 2023-06-01
publisher Indonesian Society of Applied Science (ISAS)
record_format Article
series Journal of Applied Computer Science and Technology
spelling doaj.art-74ed57aef86e4f1c9bfa210c0972fb052023-07-01T01:45:44ZindIndonesian Society of Applied Science (ISAS)Journal of Applied Computer Science and Technology2723-14532023-06-0141192610.52158/jacost.v4i1.505505Audit Keamanan Sistem Informasi Manajemen Rumah Sakit Dengan Framework COBIT 2019 Pada RSUD Palembang BARIArief Algiffary0M. Izman Herdiansyah1Yesi Novaria Kunang2Universitas Bina DarmaUniversitas Bina DarmaUniversitas Bina DarmaThis study examines the implementation of information system at RSUD Palembang BARI with the aim of enhancing information system security. In this context, a security audit is conducted using the COBIT 2019 framework. The COBIT 2019 domains and processes utilizing include EDM03, APO12, APO13, APO14, and DSS05. The research involves the identification and evaluation of information security risks, determination of necessary security controls, and ensuring compliance with the information security standards established by COBIT 2019. The findings indicate that the level of information system security at RSUD Palembang BARI is at level 3 (Defined), with a gap analysis difference of 1 level below the expected target. Based on the above results, efforts to improve and enhance the information system security at RSUD Palembang BARI are still needed. The use of information system security techniques such as vulnerability scanning, penetration testing, WAF, IDS and IPS, and data encryption, as well as improving security in terms of server physical aspects such as installing CCTV and restricting user access with access cards or fingerprints, can be implemented to ensure compliance with relevant information security standards. Consideration for obtaining security certifications, like ISO 27001, should also be taken. Additionally, the quality of human resources in terms of policy-making and the ability of employees to address threats and attacks on information system security should be improved through training and strengthening coordination among employees.https://journal.isas.or.id/index.php/JACOST/article/view/505security auditinformation systemhospital management information systeminformation system securitycobit 2019rsud palembang bari
spellingShingle Arief Algiffary
M. Izman Herdiansyah
Yesi Novaria Kunang
Audit Keamanan Sistem Informasi Manajemen Rumah Sakit Dengan Framework COBIT 2019 Pada RSUD Palembang BARI
Journal of Applied Computer Science and Technology
security audit
information system
hospital management information system
information system security
cobit 2019
rsud palembang bari
title Audit Keamanan Sistem Informasi Manajemen Rumah Sakit Dengan Framework COBIT 2019 Pada RSUD Palembang BARI
title_full Audit Keamanan Sistem Informasi Manajemen Rumah Sakit Dengan Framework COBIT 2019 Pada RSUD Palembang BARI
title_fullStr Audit Keamanan Sistem Informasi Manajemen Rumah Sakit Dengan Framework COBIT 2019 Pada RSUD Palembang BARI
title_full_unstemmed Audit Keamanan Sistem Informasi Manajemen Rumah Sakit Dengan Framework COBIT 2019 Pada RSUD Palembang BARI
title_short Audit Keamanan Sistem Informasi Manajemen Rumah Sakit Dengan Framework COBIT 2019 Pada RSUD Palembang BARI
title_sort audit keamanan sistem informasi manajemen rumah sakit dengan framework cobit 2019 pada rsud palembang bari
topic security audit
information system
hospital management information system
information system security
cobit 2019
rsud palembang bari
url https://journal.isas.or.id/index.php/JACOST/article/view/505
work_keys_str_mv AT ariefalgiffary auditkeamanansisteminformasimanajemenrumahsakitdenganframeworkcobit2019padarsudpalembangbari
AT mizmanherdiansyah auditkeamanansisteminformasimanajemenrumahsakitdenganframeworkcobit2019padarsudpalembangbari
AT yesinovariakunang auditkeamanansisteminformasimanajemenrumahsakitdenganframeworkcobit2019padarsudpalembangbari