2022
DOI: 10.51519/journalisi.v4i3.319
|View full text |Cite
|
Sign up to set email alerts
|

Academic IS Risk Management using OCTAVE Allegro in Educational Institution

Abstract: Today, the use of technology is a common thing that is used to support everyday life. However, this technology also carries risks that can compromise the security of information in organizations. Kalbis Institute is a private campus in the East Jakarta area that has been established since 2012. The academic information system used there includes all actors in the campus environment. This risk analysis is carried out to see and understand what risks exist in the current information system. This risk analysis wi… Show more

Help me understand this report

Search citation statements

Order By: Relevance

Paper Sections

Select...
1
1
1
1

Citation Types

0
1
0

Year Published

2023
2023
2024
2024

Publication Types

Select...
6
2

Relationship

0
8

Authors

Journals

citations
Cited by 8 publications
(5 citation statements)
references
References 7 publications
0
1
0
Order By: Relevance
“…This method, developed by the Carnegie Mellon University Software Engineering Institute (SEI), is often used by companies or institutions, both private and government. This method is quite popular for providing assessments of information system implementation such as storing and distributing information as well as detecting information security threats (Gerardo & Fajar, 2022). Identification of these risks is related to the organization's behavior in carrying out its business processes and provides an assessment of the weaknesses of the systems that have been implemented (Gala et al, 2020).…”
Section: Octave Allegromentioning
confidence: 99%
“…This method, developed by the Carnegie Mellon University Software Engineering Institute (SEI), is often used by companies or institutions, both private and government. This method is quite popular for providing assessments of information system implementation such as storing and distributing information as well as detecting information security threats (Gerardo & Fajar, 2022). Identification of these risks is related to the organization's behavior in carrying out its business processes and provides an assessment of the weaknesses of the systems that have been implemented (Gala et al, 2020).…”
Section: Octave Allegromentioning
confidence: 99%
“…Assessment of the identified risks by applying the OCTAVE (Operationally Critical Threat, Asset, and Vulnerability Evaluation) method with mathematical calculations in the risk assessment analysis (Alsafwani, Fazea, & Alnajjar, 2024;Friman, 2024;Gerardo & Fajar, 2022). OCTAVE is an approach to risk evaluation from three aspects of information security, namely confidentiality, integrity, and availability that is comprehensive, systematic, directed, and self-conducted.…”
Section: Risk Assessmentmentioning
confidence: 99%
“…In [42], the authors utilized the OCTAVE allegro approach to evaluate the information system risk at the ed-tech organization to determine the risk mitigation priorities. In [43], the authors established a risk assessment model for universities based on OCTAVE allegro, assessed and evaluated the risk in Higher education Institutes, measured the risk severity, estimated the risk acceptance threshold, and enhanced risk management decision-making. The above facts, vulnerabilities in IoT devices, the significance of the Shodan search engine, and the effectiveness of the OCTAVE Allegro risk assessment methodology urged us to combine all three aspects and execute a massive vulnerability scan on connected IoT devices.…”
Section: Related Workmentioning
confidence: 99%