Compliance Gap Analysis of Information Security Management System Standards on Ina-Geoportal

Eka Marliana(1) , Yani Nurhadryani(2) , Irman Hermadi(3)
(1) a:1:{s:5:"id_ID";s:26:"Badan Informasi Geospasial";},
(2) ,
(3)

Abstract

The increasing threats to information security and regulatory demands on the Ina-geoportal system as a strategic electronic system require the National Geospatial Information Agency (Badan Informasi Geospasial) to implement and obtain ISO/IEC 27001 standard certification within the scope of the Ina-geoportal. Gap analysis is conducted to evaluate compliance with standard requirements and established information security controls, based on document studies, observations, and interviews with 10 respondents from the Center for Management and Dissemination of Geospatial Information. The analysis results show that the majority of standard requirements remain unfulfilled, with 20 out of 26 requirements still unmet. This shortfall is attributed to the National Geospatial Information Agency's limited implementation of ISO/IEC 27001, focusing solely on physical facilities and network infrastructure within data centersDespite significant progress, with most controls met within the current scope, 28 out of 108 established information security controls remain unmet.

Full text article

Generated from XML file

Authors

Eka Marliana
marlianaeka@apps.ipb.ac.id (Primary Contact)
Yani Nurhadryani
Irman Hermadi
Compliance Gap Analysis of Information Security Management System Standards on Ina-Geoportal. (2024). Jurnal Ilmu Komputer Dan Agri-Informatika, 11(1), 27-38. https://doi.org/10.29244/jika.11.1.27-38

Article Details

How to Cite

Compliance Gap Analysis of Information Security Management System Standards on Ina-Geoportal. (2024). Jurnal Ilmu Komputer Dan Agri-Informatika, 11(1), 27-38. https://doi.org/10.29244/jika.11.1.27-38

Most read articles by the same author(s)

<< < 1 2 
No Related Submission Found