CD Skripsi
Analisis Manajemen Risiko Sistem Informasi Terintegrasi Manajemen Asn (Sigma) Menggunakan Nist Sp 800-30 Revisi 1 Pada Badan Kepegawaian Daerah Provinsi Riau
The Regional Personnel Agency (BKD) of Riau Province is a government agency in Riau province, which is responsible for personnel management and services including planning, procurement, development, coaching and dismissal of the State Civil Apparatus (ASN). One of the information systems used by BKD Riau Province in carrying out its duties is ASN Management Integrated Information System (SIGMA). SIGMA often causes problems that become risks, such as human error, DDoS attacks, malware and virus attacks. However, BKD Riau Province has never implemented risk management. This can threaten the security of information systems owned by the institution. This research was conducted using the NIST framework developed directly by the United States Department of Commerce. NIST is a special guide used for information security risk management. This guide is used as a reference in implementing information security risk management with the aim of identifying risks arising from internal and external threats, so that organizations can reduce potential losses. Based on the results of the research, it was found that the results of risk management analysis using the NIST SP 800-30 Revision 1 framework contained 24 adversarial risks at a moderate level, and 16 non-adversarial risks at a moderate level as well as proposed risk mitigation recommendations with ISO/IEC 27001:2013 standards. Risk management using the NIST SP 800-30 Revision 1 framework can be a guide in conducting a systematic assessment to identify, assess, and prioritize risks that can threaten information systems and help BKD Riau Province in making decisions related to risk management.
Keywords: , BKD Provinsi Riau, Risk Management, NIST SP 800-30 Revision 1, SIGMA
Tidak tersedia versi lain