Wirdya, Sara (2026) PERANCANGAN TAHAPAN KEAMANAN INFORMASI BERBASIS ISO 27001:2022 BERDASARKAN ANALISIS RISIKO MENGGUNAKAN OCTAVE DAN FMEA DI PERUSAHAAN X. Tugas Akhir (S1) - thesis, Universitas Bakrie.
|
Text (COVER)
00 COVER.pdf - Accepted Version Download (1MB) |
|
|
Text (BAB 1 - 3)
01 BAB I - III.pdf - Accepted Version Restricted to Registered users only Download (2MB) | Request a copy |
|
|
Text (BAB IV)
02 BAB IV.pdf - Accepted Version Restricted to Registered users only Download (1MB) | Request a copy |
|
|
Text (BAB V)
03 BAB V.pdf - Accepted Version Restricted to Registered users only Download (1MB) | Request a copy |
|
|
Text (Daftar Pustaka)
Daftar Pustaka S.pdf - Accepted Version Download (206kB) |
|
|
Text (LAMPIRAN)
05 Lampiran.pdf - Accepted Version Restricted to Registered users only Download (1MB) | Request a copy |
Abstract
Keamanan informasi penting untuk menjaga keberlangsungan proses bisnis Perusahaan X yang bergantung pada sistem informasi. Penelitian ini bertujuan merancang tahapan keamanan informasi berbasis ISO 27001:2022 melalui analisis risiko menggunakan Operationally Critical Threat, Asset, and Vulnerability Evaluation (OCTAVE) dan Failure Mode and Effect Analysis (FMEA). OCTAVE digunakan untuk mengidentifikasi aset kritis, ancaman, dan kerentanan, sedangkan FMEA digunakan untuk menentukan prioritas risiko berdasarkan Severity, Occurrence, dan Detection. Hasil penelitian mengidentifikasi empat aset utama, yaitu ERP, HCGA, Database, serta Server dan Jaringan. Risiko prioritas yang diperoleh meliputi ketiadaan pedoman keamanan informasi dengan RPN 720, malware/ransomware 576, eksploitasi jaringan melalui BYOD 576, dan phishing 245. Risiko tersebut dipetakan terhadap ISO 27001:2022 sebagai dasar penyusunan tiga rancangan SOP, yaitu SOP Tata Kelola Keamanan Informasi, SOP Penggunaan Aset dan Perangkat Pribadi (BYOD), serta SOP Penanganan Insiden Keamanan dan Kesadaran Siber. Evaluasi teoritis menunjukkan estimasi penurunan RPN masing-masing menjadi 96, 144, 72, dan 63. Nilai tersebut merupakan estimasi rancangan pengendalian karena SOP belum diimplementasikan.
| Item Type: | Thesis (Tugas Akhir (S1) - ) |
|---|---|
| Uncontrolled Keywords: | Keamanan Informasi, ISO 27001:2022, OCTAVE, FMEA, Standar Operasional Prosedur. |
| Subjects: | Industrial & Manufacturing Engineering > Industrial System Design Industrial & Manufacturing Engineering > System analysis (Analisis sistem) Thesis Thesis > Thesis (S1) |
| Divisions: | Fakultas Teknik dan Ilmu Komputer > Program Studi Teknik Industri |
| Depositing User: | Sara Wirdya |
| Date Deposited: | 11 Sep 2026 02:39 |
| Last Modified: | 11 Sep 2026 02:39 |
| URI: | https://repository.bakrie.ac.id/id/eprint/14481 |
Actions (login required)
![]() |
View Item |

