DESIGN OF INFORMATION SECURITY AND ANTI BRIBERY RISK MANAGEMENT BASED ON COSO ERM 2017 AND COBIT 2019
The main component of value delivery in organization to its stakeholder is implementation of good governance. If organization unable to implement a good governreducing organizations value delivery. This matter will have negative impact to acs vision, mission execution and core values thus organiz...
Saved in:
Main Author: | |
---|---|
Format: | Theses |
Language: | Indonesia |
Online Access: | https://digilib.itb.ac.id/gdl/view/35193 |
Tags: |
Add Tag
No Tags, Be the first to tag this record!
|
Institution: | Institut Teknologi Bandung |
Language: | Indonesia |
Summary: | The main component of value delivery in organization to its stakeholder is implementation
of good governance. If organization unable to implement a good governreducing
organizations value delivery. This matter will have negative impact to acs
vision, mission execution and core values thus organization
could not realize its benefit to public. Indonesian government has understood
the issue with governance implementation very well. This is proven by issuing governance
related laws to support implementation of good governance. But, the problem
in governance still arise and become significant issue and become threat in
information security and the rise of bribery risk aggravate the risk for organization.
These risks eventually will have great impac
could threat the existence of organization itself.
The problem in governance come in governance,
risk and compliance concept. This can be seen from the laws that has been
made by Indonesian government which is usually separates governance, risk management
and implementation of compliance which is creation, implementation and
managing compliance. Badan Narkotika Nasional (National Anti-Narcotics) Republic
of Indonesia as one of government body also segregate the guidance of implementation
information technology governance and risk management. The academic
research about IT
explanation in connection and relation between IT governance and risk management.
In order to solve the issue, a design of risk management model that implement inseparable
governance, risk and compliance is needed. COSO ERM 2017 and COBIT
2019 will be used as guidance to form the model in this research. The model
later will be used to assess and measure implementation risk management and governance
of information and related technology quality in organization. |
---|