DESIGN OF INFORMATION SECURITY AND ANTI BRIBERY RISK MANAGEMENT BASED ON COSO ERM 2017 AND COBIT 2019

The main component of value delivery in organization to its stakeholder is implementation of good governance. If organization unable to implement a good governreducing organizations value delivery. This matter will have negative impact to acs vision, mission execution and core values thus organiz...

Full description

Saved in:
Bibliographic Details
Main Author: Pranoto Utomo, Suryo
Format: Theses
Language:Indonesia
Online Access:https://digilib.itb.ac.id/gdl/view/35193
Tags: Add Tag
No Tags, Be the first to tag this record!
Institution: Institut Teknologi Bandung
Language: Indonesia
Description
Summary:The main component of value delivery in organization to its stakeholder is implementation of good governance. If organization unable to implement a good governreducing organizations value delivery. This matter will have negative impact to acs vision, mission execution and core values thus organization could not realize its benefit to public. Indonesian government has understood the issue with governance implementation very well. This is proven by issuing governance related laws to support implementation of good governance. But, the problem in governance still arise and become significant issue and become threat in information security and the rise of bribery risk aggravate the risk for organization. These risks eventually will have great impac could threat the existence of organization itself. The problem in governance come in governance, risk and compliance concept. This can be seen from the laws that has been made by Indonesian government which is usually separates governance, risk management and implementation of compliance which is creation, implementation and managing compliance. Badan Narkotika Nasional (National Anti-Narcotics) Republic of Indonesia as one of government body also segregate the guidance of implementation information technology governance and risk management. The academic research about IT explanation in connection and relation between IT governance and risk management. In order to solve the issue, a design of risk management model that implement inseparable governance, risk and compliance is needed. COSO ERM 2017 and COBIT 2019 will be used as guidance to form the model in this research. The model later will be used to assess and measure implementation risk management and governance of information and related technology quality in organization.