CFP last date
20 May 2024
Call for Paper
June Edition
IJCA solicits high quality original research papers for the upcoming June edition of the journal. The last date of research paper submission is 20 May 2024

Submit your paper
Know more
Reseach Article

Risk Assessment Analysis of Medical Information System Services using COBIT 5 Framework

by Odjie Dwianto, Imam Riadi
International Journal of Computer Applications
Foundation of Computer Science (FCS), NY, USA
Volume 184 - Number 27
Year of Publication: 2022
Authors: Odjie Dwianto, Imam Riadi
10.5120/ijca2022922331

Odjie Dwianto, Imam Riadi . Risk Assessment Analysis of Medical Information System Services using COBIT 5 Framework. International Journal of Computer Applications. 184, 27 ( Sep 2022), 7-17. DOI=10.5120/ijca2022922331

@article{ 10.5120/ijca2022922331,
author = { Odjie Dwianto, Imam Riadi },
title = { Risk Assessment Analysis of Medical Information System Services using COBIT 5 Framework },
journal = { International Journal of Computer Applications },
issue_date = { Sep 2022 },
volume = { 184 },
number = { 27 },
month = { Sep },
year = { 2022 },
issn = { 0975-8887 },
pages = { 7-17 },
numpages = {9},
url = { https://ijcaonline.org/archives/volume184/number27/32483-2022922331/ },
doi = { 10.5120/ijca2022922331 },
publisher = {Foundation of Computer Science (FCS), NY, USA},
address = {New York, USA}
}
%0 Journal Article
%1 2024-02-07T01:22:33.237094+05:30
%A Odjie Dwianto
%A Imam Riadi
%T Risk Assessment Analysis of Medical Information System Services using COBIT 5 Framework
%J International Journal of Computer Applications
%@ 0975-8887
%V 184
%N 27
%P 7-17
%D 2022
%I Foundation of Computer Science (FCS), NY, USA
Abstract

PT. MandatechMataram Mukti is providers for application social service in theYogyakarta area. Risk management requires risk assessment analysis of ongoing business processes for business processes to run well. COBIT 5 is here to answer the challenges of this modern era, especially risk management. The need for a risk assessment analysis to measure the extent to which elements apply risk management to the enterprise. The purpose of this study is to determine the current Capability Level value (capability level) and expected value, calculate gap value, and provide recommendations following APO12 (Manage Risk) and EDM03 (Ensure Risk Optimization) domains. Risk management assessment analysis in this study uses the COBIT 5 framework using the APO12 (Manage Risk) and EDM03 (Ensure Risk Optimization) process domains including the stages of data collection, risk analysis, risk profile, risk articulation, risk tolerance values, ways to respond to risks, evaluate risk management and direct risk management. The research stages carried out have three stages of research analysis: determining the current capability, expected levels, conducting gap analysis, and providing recommendations and suggestions for improvement. Based on the results of calculations carried out in this study, the level of domain APO12 capabilities currently (Manage Risk) gets a score of 1.83 is at level 1 (Performed Process) meaning that the IT process in Medical Information System Services has carried out management and governance efforts properly. The APO12 (Manage Risk) domains gets a gap value of 1. Capability Level in EDM03(Ensuring Risk Optimization) domains gets a capability value of 1.62 (PerfomedProcess) for expected capability value at domain capability level APO12 and EDM03 is at level 2, for the result of calculation of gap value get a gap value of 1 in the EDM03(Ensuring Risk Optimization) domains, recommendations produced in this study are the following expected company objectives.

References
  1. ISACA. 2012. COBIT 5: A Business Framework For The Governance and Management Of Enterprise IT. 2012.
  2. Putri, I. Y., Suprapto., & Herlambang, D. A. (2018). ‘Assessment of the Capability of Implementing Information Technology Risk Management using the COBIT 5 Framework (Study on PDAM Malang City, East Java)', Journal of Information Technology and Computer Science Development, e-ISSN: 2548-964X, Vol. 2, No. 11, November 2018, hlm. 4855-4862.
  3. Astuti, R. (2018). Implementation of Information System Risk Management using COBIT 5. Media Informatics (Vol.17No.1).https://jurnal.likmi.ac.id/Jurnal/3_2018/0318_04_Rini.pdf.
  4. ISACA. 2012. COBIT 5: Enabling Processes, Rolling Meadows. ISACA. 2012. COBIT 5 Implementation.USA: IT Governance Institute.
  5. Elly., & Halim, F. (2021). 'IT Infrastructure Governance Evaluation With COBIT 5 Framework', Journal of Information Systems, SMIK Mikroskil.
  6. YP Andriani and I. Riadi. (2021). “Risk Assessment of Monitoring Services using COBIT 5 Framework,” Int. J. Comput. Appl., vol. 183, no. 37, pp. 8-16.
  7. ISACA. 2012. COBIT 5: Process Assessment Model, USA: IT Governance Institute.
  8. Jung, Ho-Won, & Hunter, R. (nd). The Relationship Between ISO/IEC 15504 Process Capability Levels, ISO 9001 Certification, and Organization Size. An Empirical Study. Elsevier.
  9. Alfia Miranti. 2019. Evaluation of Information Technology Governance using COBIT 5 Framework (Case Study: PT. Praweda Ciptakarsa Informatics). Thesis. Jakarta: Information Systems UIN Syarif Hidayatullah.
  10. Tamara. (2021). Analysis ofRisk Management Assessment on Student Credit Services using COBIT 5 Method.
  11. Rival Dwi Anggriyan P., Eman S., Awalludiyah and Ambarwati. 2019. Evaluation of IT Risk Management using Framework COBIT 5 for PT.BTM. Journal Information Systems (E-Journal). VOL.11, NO.2, October 2019.
  12. Fitriani, W., & et al. (January 2019). Information Technology Governance Audit using COBIT 5. Journal of Engineering and Informatics Vol. 6, No. 1, Pg. 42 - 45.
  13. Khairuna, D., Wibowo, S., & Gamayanto, I. (2020). 'Evaluation of Information Technology Risk Management using COBIT 5 Framework Based on Domain APO12 (Manage Risk) at Head Office of BPR Agung Sejahtera', Journal of Information A system, Vol. 5, No. 1, Mei 2020:18-26 DOI:10.33633/joinsv5i1.3088.
  14. Setyaningrum, ND (2018). Evaluation of Information Technology Risk Management using COBIT 5 Framework (Case Study: PT. Kimia Farma (Persero) Tbk- Plant Watudakon). Journal of Information Technology Development and Computer Science. (Vol. 2 No. 1) http://jptiik.ub.ac.id/index.php/jptiik/article/downloa d/731/286.
  15. Sugiyono. (September 2019). Quantitative, Qualitative, and R&D Research Methods. Bandung: ALFABETA.
  16. Astuti, R. (2018). Implementation of Information System Risk Management using COBIT 5. Media Informatics, 17(1), 18–28.
  17. Khairuna, D., Wibowo, S., & Gamayanto, I. (2020). ‘Evaluation of Information Technology Risk Management using COBIT 5 Framework Based on
  18. Nurfitri Zukhrufatul Firdaus., Suprapto. 2018. Evalution IT Risk Management using COBIT 5 IT Risk (Case Study: PT. Petrokimia Gresik). Journal IT Development and Computer Science, Vol.2, No. 1, January 2018, Pg. 91-100
  19. Nurfadiun. 2017. Creating a Risk Management Model for Information Technology Infrastructure Management using COBIT 5 Framework Biskom UAD. Thesis. Yogyakarta: Informatics Engineering UAD.
  20. Dimas Adi P., Awalludiyah A. and Eman S. 2020. Risk Management Analysis Dealer Management System Service using COBIT 5. JOURNAL MATRIX, VOL. 10, NO. 2.
  21. Riyan Abdul A., Kusrini and Sudarmawan. 2018. Evaluation of Information Technology Risk Management in STATE-OWNED Companies using Cobit 5 Standard (Case Study: PT TASPEN PERSERO). Journal IT CIDA Vol. 4 No. 2 December 2018.
  22. Prilly Peshaulia Thenu, Agustinus Fritz Wijaya and Christ Rudianto. 2020. Information Technology Risk Management Analysis using COBIT 5 (Case Study: PT GLOBAL INFOTECH). Journal Bina Computer JBK, Vol. 2, No. 1, 1-13.
  23. Riki N. and Handayaningsih, S.2019. Risk Management Analysis of Student Resignation Services using COBIT 5 Framework Focuses on Managing Risk (APO12).
  24. M. Habibullah A., Suprapto. 2018. Evaluation of Information Technology Risk Management Using the COBIT 5 Framework (Case Study for Perum Jasa Tirta 1 Malang). Journal of Information Technology Development and Computer Science, Vol.2, No. 1, January 2018, hlm. 101-110.
  25. Yani Iriana Putri, Suprapto and Admaja Dwi Herlambang. 2018. Assessment of Capability Implementing Information Technology Risk Management sings the COBIT 5 Framework (Case Study: PDAM Malang East Java). Journal Development of Information Technology and Computer Science Vol. 2, No. 11 November 2018, hlm 4855-4862.
  26. Dimas Adi P., Awalludiyah A. and Eman S. 2020. Analysisof Risk Management in Systems Management Dealer Service using COBIT 5 Framework. JOURNAL MATRIX, VOL. 10, NO. 2.
  27. Indriyanto. (2020). Analysis of Risk Assessment in Canasoft Information Systems using COBIT 5 Framework.
  28. Nanda Noveryal and Imam Riadi. (2022). Analysis a Maturity of Case Search Information Systems using Cobit 5Framework. International Journal of Computer Applications. Vol.184, No.12, May 2022, hlm. 29-35.
Index Terms

Computer Science
Information Sciences

Keywords

Risk Management Information Systems COBIT 5 RACIChart ProcessCapabilityLevel.