Information Technology Security Risk Management using the OCTAVE-S Method

  • Rahmawati L
  • Hartomo K
N/ACitations
Citations of this article
9Readers
Mendeley users who have this article in their library.

Abstract

The Salatiga City Population and Civil Registration Office is a regional device organization that already uses information technology in its business processes. Although they have taken advantage of the information system, they have not yet conducted an assessment of risk threats and have not run a risk management. The source of the problem is a problem in implementing risk measurement and management techniques using the Octave-S method that focuses on organizations with no more than 100 members. This technique is used to identify and analyze threats to critical assets in Salatiga City Population and Civil Registration Service. The results of analysis of such threats will be useful when performing mitigation plans in accordance with existing security practices. From the research that has been conducted, there are 2 areas of security practice that produce yellow stoplight status which is a sign that the organization has implemented security practices but is not yet perfect. Both areas of security practice will be selected as mitigation areas.In

Cite

CITATION STYLE

APA

Rahmawati, L., & Hartomo, K. D. (2023). Information Technology Security Risk Management using the OCTAVE-S Method. SISTEMASI, 12(3), 851. https://doi.org/10.32520/stmsi.v12i3.3122

Register to see more suggestions

Mendeley helps you to discover research relevant for your work.

Already have an account?

Save time finding and organizing research with Mendeley

Sign up for free