DESIGN OF MEASURING TOOL FOR THE INTEGRATION SYSTEM OF SNI ISO 37001: 2016 AND SNI ISO 27001: 2013

Information is an important asset for an organization because they help to achieve organizational goals. Therefore, an organization should take care of their information security seriously to ensure confidentiality, integrity, and availability of it. Unfortunately, the risk of bribery, whose some of...

Full description

Saved in:
Bibliographic Details
Main Author: Haikal - NIM: 23216046 , Antoni
Format: Theses
Language:Indonesia
Online Access:https://digilib.itb.ac.id/gdl/view/25698
Tags: Add Tag
No Tags, Be the first to tag this record!
Institution: Institut Teknologi Bandung
Language: Indonesia
Description
Summary:Information is an important asset for an organization because they help to achieve organizational goals. Therefore, an organization should take care of their information security seriously to ensure confidentiality, integrity, and availability of it. Unfortunately, the risk of bribery, whose some of examples related to the confidentiality of information are described in ICAC (2017), can damage the information security. As a preventive measure for bribery, an organization should implement an integrated system consists of SNI ISO 27001:2013 standards and SNI ISO 37001:2016. In addition, the integration of these two standards can provide benefits for the organization to achieve organizational goals and to comply with local government regulations. Although previous research has provided us with a second standard integration guidelines, we still need a measurement standard for our guidelines during the implementation of the integration of these two standards. In this thesis, a measuring tool for integrating SNI ISO 27001:2013 and SNI ISO 37001:2016 is proposed and designed using the ISO/IEC/IEEE 15939:2017 measurement process standard. The outcomes of the result is in the form of measuring tool to help the organization meet all of the requirements in order to successfully implement the integration of SNI ISO 27001:2013 standards and SNI ISO 37001:2016. <br />