SlideShare a Scribd company logo
1 of 11
Download to read offline
K E M E N T E R I A N P E N D A Y A G U N A A N A P A R A T U R N E G A R A
D A N R E F O R M A S I B I R O K R A S I
R E P U B L I K I N D O N E S I A
Slamet Aji Pamungkas
Tim Manajemen Resiko SPBE
Kepala Pusat Data & Sistem Informasi BSN
Jakarta, 18 November 2019
PENDEKATAN SNI ISO/IEC 27001
SISTEM MANAJEMEN KEAMANAN INFORMASSI (SMKI)
DALAM MEMENUHI PERSYARATAN
SISTEM PEMRINTAHAN BERBASIS ELEKTORINIK (SPBE)
Jakarta, 21 Juli 2020
K E M E N T E R I A N P E N D A Y A G U N A A N A P A R A T U R N E G A R A
D A N R E F O R M A S I B I R O K R A S I
R E P U B L I K I N D O N E S I A
SPBE & SMKI
Organisasi Kebijakan
Manajemen aResiko
Sumber Daya
Evaluasi & Perbaikan
K E M E N T E R I A N P E N D A Y A G U N A A N A P A R A T U R N E G A R A
D A N R E F O R M A S I B I R O K R A S I
R E P U B L I K I N D O N E S I A
Z
STRUKTUR
SNI ISO/IEC
27001:2013
Klausul 4 - 10 tidak dapat dikecualikan (wajib)
dalam sertifikasi SNI ISO/IEC 27001:2013
Terdiri dari 10 klausul dan lampiran
Annex, dengan 14 Kelompok Domain dan
114 Kendali (Kontrol)
K E M E N T E R I A N P E N D A Y A G U N A A N A P A R A T U R N E G A R A
D A N R E F O R M A S I B I R O K R A S I
R E P U B L I K I N D O N E S I A
Z
KLAUSUL
WAJIB
SNI ISO/IEC
27001:2013
K E M E N T E R I A N P E N D A Y A G U N A A N A P A R A T U R N E G A R A
D A N R E F O R M A S I B I R O K R A S I
R E P U B L I K I N D O N E S I A
Z
K E M E N T E R I A N P E N D A Y A G U N A A N A P A R A T U R N E G A R A
D A N R E F O R M A S I B I R O K R A S I
R E P U B L I K I N D O N E S I A
Z
DOMAIN
DAN ASPEK
PENILAIAN
SPBE
K E M E N T E R I A N P E N D A Y A G U N A A N A P A R A T U R N E G A R A
D A N R E F O R M A S I B I R O K R A S I
R E P U B L I K I N D O N E S I A
PREDIKAT
INDEKS
SPBE
K E M E N T E R I A N P E N D A Y A G U N A A N A P A R A T U R N E G A R A
D A N R E F O R M A S I B I R O K R A S I
R E P U B L I K I N D O N E S I A
2,27 3,99
SNI ISO/IEC
27001:2013
Organisasi
Kepemimpinan
Sumber
daya
Manaj. Resiko
Perencanaan
Perbaikan Berkelanjutan
Audit
BAGAIMANA PENERAPAN SNI ISO/IEC 27001:2013 MENDUKUNG SPBE?
2018 2019
K E M E N T E R I A N P E N D A Y A G U N A A N A P A R A T U R N E G A R A
D A N R E F O R M A S I B I R O K R A S I
R E P U B L I K I N D O N E S I A
BAGAIMANA PENERAPAN SNI ISO/IEC 27001:2013 MENDUKUNG SPBE?
SNI ISO/IEC 27001 SPBE
Organisasi Tim Pengarah SPBE
Kepempininan Tim Pengarah SPBE
Perencanaan Rencana induk SPBE/ Manajemen Resiko
Dukungan Anggaran/ SDM/ Manajemen Keuangan
Operasi Kebijakan layanan/ Operasional Layanan/ Integrasi
Evaluasi Kinerja Audit/ Adapatasi/ Evaluasi
Perbaikan (Berkelanjutan) Perbaikan berkelanjutan
K E M E N T E R I A N P E N D A Y A G U N A A N A P A R A T U R N E G A R A
D A N R E F O R M A S I B I R O K R A S I
R E P U B L I K I N D O N E S I A
SERTIFIKASI SNI ISO/IEC 27001:2013
Uji coba implementasi,
Audit Internal, Tindak lanjut
hasik audit internal
Analisa dan evaluasi
temuan, pemenuhan
temuan
Asessment awal, Gap
analysist, Training,
Penyusunan Dokumentasi,
Penerapan sistem
manajemen mutu
Penyusunan
Dokumentasi Sistem Audit Internal
Pendampingan Pasca
Audit
AUDIT SNI ISO/IEC
27001:2013
K E M E N T E R I A N P E N D A Y A G U N A A N A P A R A T U R N E G A R A
D A N R E F O R M A S I B I R O K R A S I
R E P U B L I K I N D O N E S I A
TERIMA KASIH
K E M E N T E R I A N P E N D A Y A G U N A A N A P A R A T U R N E G A R A
D A N R E F O R M A S I B I R O K R A S I
R E P U B L I K I N D O N E S I A

More Related Content

Similar to SNI manajemen Resoko SPBE bagi perangkat

ICOFR - Complete
ICOFR - CompleteICOFR - Complete
ICOFR - CompleteLutfi Hedir
 
NQA ISO 45001 Implementation Guide
NQA ISO 45001 Implementation GuideNQA ISO 45001 Implementation Guide
NQA ISO 45001 Implementation GuideNQA
 
SOP & Quality Documents Creation - CSMI.pdf
SOP & Quality Documents Creation - CSMI.pdfSOP & Quality Documents Creation - CSMI.pdf
SOP & Quality Documents Creation - CSMI.pdfWin Pyae Chan Tha
 
ASI-Summary-Audit-Report-Thai-Beverage-Can-Certificate-134-PS-Provisional.pdf
ASI-Summary-Audit-Report-Thai-Beverage-Can-Certificate-134-PS-Provisional.pdfASI-Summary-Audit-Report-Thai-Beverage-Can-Certificate-134-PS-Provisional.pdf
ASI-Summary-Audit-Report-Thai-Beverage-Can-Certificate-134-PS-Provisional.pdfssuserbed9ab
 
The Ins & Outs of Energy Efficiency in the Building Code - Bob Bach, P.Eng.
The Ins & Outs of Energy Efficiency in the Building Code - Bob Bach, P.Eng.The Ins & Outs of Energy Efficiency in the Building Code - Bob Bach, P.Eng.
The Ins & Outs of Energy Efficiency in the Building Code - Bob Bach, P.Eng.SBCBreakfastSessions
 
Submission Final Term Presentation-Betterment of EHS Conditions-Daniyal
Submission Final Term Presentation-Betterment of EHS Conditions-DaniyalSubmission Final Term Presentation-Betterment of EHS Conditions-Daniyal
Submission Final Term Presentation-Betterment of EHS Conditions-DaniyalMuhammad Daniyal
 
NQA - ISO 45001 Implementation Guide
NQA - ISO 45001 Implementation GuideNQA - ISO 45001 Implementation Guide
NQA - ISO 45001 Implementation GuideNA Putra
 
IntroductoryPPT_CSE242.pptx
IntroductoryPPT_CSE242.pptxIntroductoryPPT_CSE242.pptx
IntroductoryPPT_CSE242.pptxAnonymous9etQKwW
 
Leapfrog Mentors- Introduction to ISO 9001:2015
Leapfrog Mentors- Introduction to ISO 9001:2015Leapfrog Mentors- Introduction to ISO 9001:2015
Leapfrog Mentors- Introduction to ISO 9001:2015BalasubramanyaS3
 
What Documents are required for ISO 45001:2018 Certification?
What Documents are required for ISO 45001:2018 Certification?What Documents are required for ISO 45001:2018 Certification?
What Documents are required for ISO 45001:2018 Certification?Global Manager Group
 
What is ISO 45001 certification (OH&SMS) requirements for organizations?
What is ISO 45001 certification (OH&SMS) requirements for organizations?What is ISO 45001 certification (OH&SMS) requirements for organizations?
What is ISO 45001 certification (OH&SMS) requirements for organizations?isocert2
 
ISO Overview Training
ISO Overview TrainingISO Overview Training
ISO Overview TrainingSkipper1976
 
ISO 14001:2015 (Environmental Management Systems) Awareness Training
ISO 14001:2015 (Environmental Management Systems) Awareness TrainingISO 14001:2015 (Environmental Management Systems) Awareness Training
ISO 14001:2015 (Environmental Management Systems) Awareness TrainingOperational Excellence Consulting
 
PAC 2020 Santorin - Vasilis Chatzinasios
PAC 2020 Santorin - Vasilis ChatzinasiosPAC 2020 Santorin - Vasilis Chatzinasios
PAC 2020 Santorin - Vasilis ChatzinasiosNeotys
 

Similar to SNI manajemen Resoko SPBE bagi perangkat (20)

ICOFR - Complete
ICOFR - CompleteICOFR - Complete
ICOFR - Complete
 
NQA ISO 45001 Implementation Guide
NQA ISO 45001 Implementation GuideNQA ISO 45001 Implementation Guide
NQA ISO 45001 Implementation Guide
 
SOP & Quality Documents Creation - CSMI.pdf
SOP & Quality Documents Creation - CSMI.pdfSOP & Quality Documents Creation - CSMI.pdf
SOP & Quality Documents Creation - CSMI.pdf
 
Understanding and implementing ISO 9001:2008
Understanding and implementing ISO 9001:2008Understanding and implementing ISO 9001:2008
Understanding and implementing ISO 9001:2008
 
ASI-Summary-Audit-Report-Thai-Beverage-Can-Certificate-134-PS-Provisional.pdf
ASI-Summary-Audit-Report-Thai-Beverage-Can-Certificate-134-PS-Provisional.pdfASI-Summary-Audit-Report-Thai-Beverage-Can-Certificate-134-PS-Provisional.pdf
ASI-Summary-Audit-Report-Thai-Beverage-Can-Certificate-134-PS-Provisional.pdf
 
The Ins & Outs of Energy Efficiency in the Building Code - Bob Bach, P.Eng.
The Ins & Outs of Energy Efficiency in the Building Code - Bob Bach, P.Eng.The Ins & Outs of Energy Efficiency in the Building Code - Bob Bach, P.Eng.
The Ins & Outs of Energy Efficiency in the Building Code - Bob Bach, P.Eng.
 
Submission Final Term Presentation-Betterment of EHS Conditions-Daniyal
Submission Final Term Presentation-Betterment of EHS Conditions-DaniyalSubmission Final Term Presentation-Betterment of EHS Conditions-Daniyal
Submission Final Term Presentation-Betterment of EHS Conditions-Daniyal
 
Guidelines
GuidelinesGuidelines
Guidelines
 
NQA - ISO 45001 Implementation Guide
NQA - ISO 45001 Implementation GuideNQA - ISO 45001 Implementation Guide
NQA - ISO 45001 Implementation Guide
 
Resume 01-07-15
Resume 01-07-15Resume 01-07-15
Resume 01-07-15
 
Sulatha Resume-QA
Sulatha Resume-QASulatha Resume-QA
Sulatha Resume-QA
 
Changes will save the day
Changes will save the dayChanges will save the day
Changes will save the day
 
IntroductoryPPT_CSE242.pptx
IntroductoryPPT_CSE242.pptxIntroductoryPPT_CSE242.pptx
IntroductoryPPT_CSE242.pptx
 
Leapfrog Mentors- Introduction to ISO 9001:2015
Leapfrog Mentors- Introduction to ISO 9001:2015Leapfrog Mentors- Introduction to ISO 9001:2015
Leapfrog Mentors- Introduction to ISO 9001:2015
 
What Documents are required for ISO 45001:2018 Certification?
What Documents are required for ISO 45001:2018 Certification?What Documents are required for ISO 45001:2018 Certification?
What Documents are required for ISO 45001:2018 Certification?
 
What is ISO 45001 certification (OH&SMS) requirements for organizations?
What is ISO 45001 certification (OH&SMS) requirements for organizations?What is ISO 45001 certification (OH&SMS) requirements for organizations?
What is ISO 45001 certification (OH&SMS) requirements for organizations?
 
ISO Overview Training
ISO Overview TrainingISO Overview Training
ISO Overview Training
 
Iso 9000 An Introduction By C.Eashwer
Iso 9000   An Introduction By C.EashwerIso 9000   An Introduction By C.Eashwer
Iso 9000 An Introduction By C.Eashwer
 
ISO 14001:2015 (Environmental Management Systems) Awareness Training
ISO 14001:2015 (Environmental Management Systems) Awareness TrainingISO 14001:2015 (Environmental Management Systems) Awareness Training
ISO 14001:2015 (Environmental Management Systems) Awareness Training
 
PAC 2020 Santorin - Vasilis Chatzinasios
PAC 2020 Santorin - Vasilis ChatzinasiosPAC 2020 Santorin - Vasilis Chatzinasios
PAC 2020 Santorin - Vasilis Chatzinasios
 

More from syamsul_akbar

kegagalan digital marketing sebagai alat
kegagalan digital marketing sebagai alatkegagalan digital marketing sebagai alat
kegagalan digital marketing sebagai alatsyamsul_akbar
 
Pengembangan_wilayah_perkotaan bagi pemu
Pengembangan_wilayah_perkotaan bagi pemuPengembangan_wilayah_perkotaan bagi pemu
Pengembangan_wilayah_perkotaan bagi pemusyamsul_akbar
 
Panduan membuat ecoenzym memanfaatkan.pdf
Panduan membuat ecoenzym memanfaatkan.pdfPanduan membuat ecoenzym memanfaatkan.pdf
Panduan membuat ecoenzym memanfaatkan.pdfsyamsul_akbar
 
Presentasi Implementasi Smart City 2021.ppt
Presentasi Implementasi Smart City 2021.pptPresentasi Implementasi Smart City 2021.ppt
Presentasi Implementasi Smart City 2021.pptsyamsul_akbar
 
Mengelola Google Form untuk Website edit.pptx
Mengelola Google Form untuk Website edit.pptxMengelola Google Form untuk Website edit.pptx
Mengelola Google Form untuk Website edit.pptxsyamsul_akbar
 

More from syamsul_akbar (6)

kegagalan digital marketing sebagai alat
kegagalan digital marketing sebagai alatkegagalan digital marketing sebagai alat
kegagalan digital marketing sebagai alat
 
Pengembangan_wilayah_perkotaan bagi pemu
Pengembangan_wilayah_perkotaan bagi pemuPengembangan_wilayah_perkotaan bagi pemu
Pengembangan_wilayah_perkotaan bagi pemu
 
Panduan membuat ecoenzym memanfaatkan.pdf
Panduan membuat ecoenzym memanfaatkan.pdfPanduan membuat ecoenzym memanfaatkan.pdf
Panduan membuat ecoenzym memanfaatkan.pdf
 
Presentasi Implementasi Smart City 2021.ppt
Presentasi Implementasi Smart City 2021.pptPresentasi Implementasi Smart City 2021.ppt
Presentasi Implementasi Smart City 2021.ppt
 
Mengelola Google Form untuk Website edit.pptx
Mengelola Google Form untuk Website edit.pptxMengelola Google Form untuk Website edit.pptx
Mengelola Google Form untuk Website edit.pptx
 
Silabus ppa 2009
Silabus ppa 2009Silabus ppa 2009
Silabus ppa 2009
 

Recently uploaded

IAC 2024 - IA Fast Track to Search Focused AI Solutions
IAC 2024 - IA Fast Track to Search Focused AI SolutionsIAC 2024 - IA Fast Track to Search Focused AI Solutions
IAC 2024 - IA Fast Track to Search Focused AI SolutionsEnterprise Knowledge
 
Mastering MySQL Database Architecture: Deep Dive into MySQL Shell and MySQL R...
Mastering MySQL Database Architecture: Deep Dive into MySQL Shell and MySQL R...Mastering MySQL Database Architecture: Deep Dive into MySQL Shell and MySQL R...
Mastering MySQL Database Architecture: Deep Dive into MySQL Shell and MySQL R...Miguel Araújo
 
How to convert PDF to text with Nanonets
How to convert PDF to text with NanonetsHow to convert PDF to text with Nanonets
How to convert PDF to text with Nanonetsnaman860154
 
Histor y of HAM Radio presentation slide
Histor y of HAM Radio presentation slideHistor y of HAM Radio presentation slide
Histor y of HAM Radio presentation slidevu2urc
 
What Are The Drone Anti-jamming Systems Technology?
What Are The Drone Anti-jamming Systems Technology?What Are The Drone Anti-jamming Systems Technology?
What Are The Drone Anti-jamming Systems Technology?Antenna Manufacturer Coco
 
Apidays Singapore 2024 - Building Digital Trust in a Digital Economy by Veron...
Apidays Singapore 2024 - Building Digital Trust in a Digital Economy by Veron...Apidays Singapore 2024 - Building Digital Trust in a Digital Economy by Veron...
Apidays Singapore 2024 - Building Digital Trust in a Digital Economy by Veron...apidays
 
Presentation on how to chat with PDF using ChatGPT code interpreter
Presentation on how to chat with PDF using ChatGPT code interpreterPresentation on how to chat with PDF using ChatGPT code interpreter
Presentation on how to chat with PDF using ChatGPT code interpreternaman860154
 
ProductAnonymous-April2024-WinProductDiscovery-MelissaKlemke
ProductAnonymous-April2024-WinProductDiscovery-MelissaKlemkeProductAnonymous-April2024-WinProductDiscovery-MelissaKlemke
ProductAnonymous-April2024-WinProductDiscovery-MelissaKlemkeProduct Anonymous
 
A Domino Admins Adventures (Engage 2024)
A Domino Admins Adventures (Engage 2024)A Domino Admins Adventures (Engage 2024)
A Domino Admins Adventures (Engage 2024)Gabriella Davis
 
Powerful Google developer tools for immediate impact! (2023-24 C)
Powerful Google developer tools for immediate impact! (2023-24 C)Powerful Google developer tools for immediate impact! (2023-24 C)
Powerful Google developer tools for immediate impact! (2023-24 C)wesley chun
 
GenAI Risks & Security Meetup 01052024.pdf
GenAI Risks & Security Meetup 01052024.pdfGenAI Risks & Security Meetup 01052024.pdf
GenAI Risks & Security Meetup 01052024.pdflior mazor
 
08448380779 Call Girls In Greater Kailash - I Women Seeking Men
08448380779 Call Girls In Greater Kailash - I Women Seeking Men08448380779 Call Girls In Greater Kailash - I Women Seeking Men
08448380779 Call Girls In Greater Kailash - I Women Seeking MenDelhi Call girls
 
presentation ICT roal in 21st century education
presentation ICT roal in 21st century educationpresentation ICT roal in 21st century education
presentation ICT roal in 21st century educationjfdjdjcjdnsjd
 
Boost PC performance: How more available memory can improve productivity
Boost PC performance: How more available memory can improve productivityBoost PC performance: How more available memory can improve productivity
Boost PC performance: How more available memory can improve productivityPrincipled Technologies
 
🐬 The future of MySQL is Postgres 🐘
🐬  The future of MySQL is Postgres   🐘🐬  The future of MySQL is Postgres   🐘
🐬 The future of MySQL is Postgres 🐘RTylerCroy
 
How to Troubleshoot Apps for the Modern Connected Worker
How to Troubleshoot Apps for the Modern Connected WorkerHow to Troubleshoot Apps for the Modern Connected Worker
How to Troubleshoot Apps for the Modern Connected WorkerThousandEyes
 
2024: Domino Containers - The Next Step. News from the Domino Container commu...
2024: Domino Containers - The Next Step. News from the Domino Container commu...2024: Domino Containers - The Next Step. News from the Domino Container commu...
2024: Domino Containers - The Next Step. News from the Domino Container commu...Martijn de Jong
 
Data Cloud, More than a CDP by Matt Robison
Data Cloud, More than a CDP by Matt RobisonData Cloud, More than a CDP by Matt Robison
Data Cloud, More than a CDP by Matt RobisonAnna Loughnan Colquhoun
 
Strategies for Landing an Oracle DBA Job as a Fresher
Strategies for Landing an Oracle DBA Job as a FresherStrategies for Landing an Oracle DBA Job as a Fresher
Strategies for Landing an Oracle DBA Job as a FresherRemote DBA Services
 
Exploring the Future Potential of AI-Enabled Smartphone Processors
Exploring the Future Potential of AI-Enabled Smartphone ProcessorsExploring the Future Potential of AI-Enabled Smartphone Processors
Exploring the Future Potential of AI-Enabled Smartphone Processorsdebabhi2
 

Recently uploaded (20)

IAC 2024 - IA Fast Track to Search Focused AI Solutions
IAC 2024 - IA Fast Track to Search Focused AI SolutionsIAC 2024 - IA Fast Track to Search Focused AI Solutions
IAC 2024 - IA Fast Track to Search Focused AI Solutions
 
Mastering MySQL Database Architecture: Deep Dive into MySQL Shell and MySQL R...
Mastering MySQL Database Architecture: Deep Dive into MySQL Shell and MySQL R...Mastering MySQL Database Architecture: Deep Dive into MySQL Shell and MySQL R...
Mastering MySQL Database Architecture: Deep Dive into MySQL Shell and MySQL R...
 
How to convert PDF to text with Nanonets
How to convert PDF to text with NanonetsHow to convert PDF to text with Nanonets
How to convert PDF to text with Nanonets
 
Histor y of HAM Radio presentation slide
Histor y of HAM Radio presentation slideHistor y of HAM Radio presentation slide
Histor y of HAM Radio presentation slide
 
What Are The Drone Anti-jamming Systems Technology?
What Are The Drone Anti-jamming Systems Technology?What Are The Drone Anti-jamming Systems Technology?
What Are The Drone Anti-jamming Systems Technology?
 
Apidays Singapore 2024 - Building Digital Trust in a Digital Economy by Veron...
Apidays Singapore 2024 - Building Digital Trust in a Digital Economy by Veron...Apidays Singapore 2024 - Building Digital Trust in a Digital Economy by Veron...
Apidays Singapore 2024 - Building Digital Trust in a Digital Economy by Veron...
 
Presentation on how to chat with PDF using ChatGPT code interpreter
Presentation on how to chat with PDF using ChatGPT code interpreterPresentation on how to chat with PDF using ChatGPT code interpreter
Presentation on how to chat with PDF using ChatGPT code interpreter
 
ProductAnonymous-April2024-WinProductDiscovery-MelissaKlemke
ProductAnonymous-April2024-WinProductDiscovery-MelissaKlemkeProductAnonymous-April2024-WinProductDiscovery-MelissaKlemke
ProductAnonymous-April2024-WinProductDiscovery-MelissaKlemke
 
A Domino Admins Adventures (Engage 2024)
A Domino Admins Adventures (Engage 2024)A Domino Admins Adventures (Engage 2024)
A Domino Admins Adventures (Engage 2024)
 
Powerful Google developer tools for immediate impact! (2023-24 C)
Powerful Google developer tools for immediate impact! (2023-24 C)Powerful Google developer tools for immediate impact! (2023-24 C)
Powerful Google developer tools for immediate impact! (2023-24 C)
 
GenAI Risks & Security Meetup 01052024.pdf
GenAI Risks & Security Meetup 01052024.pdfGenAI Risks & Security Meetup 01052024.pdf
GenAI Risks & Security Meetup 01052024.pdf
 
08448380779 Call Girls In Greater Kailash - I Women Seeking Men
08448380779 Call Girls In Greater Kailash - I Women Seeking Men08448380779 Call Girls In Greater Kailash - I Women Seeking Men
08448380779 Call Girls In Greater Kailash - I Women Seeking Men
 
presentation ICT roal in 21st century education
presentation ICT roal in 21st century educationpresentation ICT roal in 21st century education
presentation ICT roal in 21st century education
 
Boost PC performance: How more available memory can improve productivity
Boost PC performance: How more available memory can improve productivityBoost PC performance: How more available memory can improve productivity
Boost PC performance: How more available memory can improve productivity
 
🐬 The future of MySQL is Postgres 🐘
🐬  The future of MySQL is Postgres   🐘🐬  The future of MySQL is Postgres   🐘
🐬 The future of MySQL is Postgres 🐘
 
How to Troubleshoot Apps for the Modern Connected Worker
How to Troubleshoot Apps for the Modern Connected WorkerHow to Troubleshoot Apps for the Modern Connected Worker
How to Troubleshoot Apps for the Modern Connected Worker
 
2024: Domino Containers - The Next Step. News from the Domino Container commu...
2024: Domino Containers - The Next Step. News from the Domino Container commu...2024: Domino Containers - The Next Step. News from the Domino Container commu...
2024: Domino Containers - The Next Step. News from the Domino Container commu...
 
Data Cloud, More than a CDP by Matt Robison
Data Cloud, More than a CDP by Matt RobisonData Cloud, More than a CDP by Matt Robison
Data Cloud, More than a CDP by Matt Robison
 
Strategies for Landing an Oracle DBA Job as a Fresher
Strategies for Landing an Oracle DBA Job as a FresherStrategies for Landing an Oracle DBA Job as a Fresher
Strategies for Landing an Oracle DBA Job as a Fresher
 
Exploring the Future Potential of AI-Enabled Smartphone Processors
Exploring the Future Potential of AI-Enabled Smartphone ProcessorsExploring the Future Potential of AI-Enabled Smartphone Processors
Exploring the Future Potential of AI-Enabled Smartphone Processors
 

SNI manajemen Resoko SPBE bagi perangkat

  • 1. K E M E N T E R I A N P E N D A Y A G U N A A N A P A R A T U R N E G A R A D A N R E F O R M A S I B I R O K R A S I R E P U B L I K I N D O N E S I A Slamet Aji Pamungkas Tim Manajemen Resiko SPBE Kepala Pusat Data & Sistem Informasi BSN Jakarta, 18 November 2019 PENDEKATAN SNI ISO/IEC 27001 SISTEM MANAJEMEN KEAMANAN INFORMASSI (SMKI) DALAM MEMENUHI PERSYARATAN SISTEM PEMRINTAHAN BERBASIS ELEKTORINIK (SPBE) Jakarta, 21 Juli 2020
  • 2. K E M E N T E R I A N P E N D A Y A G U N A A N A P A R A T U R N E G A R A D A N R E F O R M A S I B I R O K R A S I R E P U B L I K I N D O N E S I A SPBE & SMKI Organisasi Kebijakan Manajemen aResiko Sumber Daya Evaluasi & Perbaikan
  • 3. K E M E N T E R I A N P E N D A Y A G U N A A N A P A R A T U R N E G A R A D A N R E F O R M A S I B I R O K R A S I R E P U B L I K I N D O N E S I A Z STRUKTUR SNI ISO/IEC 27001:2013 Klausul 4 - 10 tidak dapat dikecualikan (wajib) dalam sertifikasi SNI ISO/IEC 27001:2013 Terdiri dari 10 klausul dan lampiran Annex, dengan 14 Kelompok Domain dan 114 Kendali (Kontrol)
  • 4. K E M E N T E R I A N P E N D A Y A G U N A A N A P A R A T U R N E G A R A D A N R E F O R M A S I B I R O K R A S I R E P U B L I K I N D O N E S I A Z KLAUSUL WAJIB SNI ISO/IEC 27001:2013
  • 5. K E M E N T E R I A N P E N D A Y A G U N A A N A P A R A T U R N E G A R A D A N R E F O R M A S I B I R O K R A S I R E P U B L I K I N D O N E S I A Z
  • 6. K E M E N T E R I A N P E N D A Y A G U N A A N A P A R A T U R N E G A R A D A N R E F O R M A S I B I R O K R A S I R E P U B L I K I N D O N E S I A Z DOMAIN DAN ASPEK PENILAIAN SPBE
  • 7. K E M E N T E R I A N P E N D A Y A G U N A A N A P A R A T U R N E G A R A D A N R E F O R M A S I B I R O K R A S I R E P U B L I K I N D O N E S I A PREDIKAT INDEKS SPBE
  • 8. K E M E N T E R I A N P E N D A Y A G U N A A N A P A R A T U R N E G A R A D A N R E F O R M A S I B I R O K R A S I R E P U B L I K I N D O N E S I A 2,27 3,99 SNI ISO/IEC 27001:2013 Organisasi Kepemimpinan Sumber daya Manaj. Resiko Perencanaan Perbaikan Berkelanjutan Audit BAGAIMANA PENERAPAN SNI ISO/IEC 27001:2013 MENDUKUNG SPBE? 2018 2019
  • 9. K E M E N T E R I A N P E N D A Y A G U N A A N A P A R A T U R N E G A R A D A N R E F O R M A S I B I R O K R A S I R E P U B L I K I N D O N E S I A BAGAIMANA PENERAPAN SNI ISO/IEC 27001:2013 MENDUKUNG SPBE? SNI ISO/IEC 27001 SPBE Organisasi Tim Pengarah SPBE Kepempininan Tim Pengarah SPBE Perencanaan Rencana induk SPBE/ Manajemen Resiko Dukungan Anggaran/ SDM/ Manajemen Keuangan Operasi Kebijakan layanan/ Operasional Layanan/ Integrasi Evaluasi Kinerja Audit/ Adapatasi/ Evaluasi Perbaikan (Berkelanjutan) Perbaikan berkelanjutan
  • 10. K E M E N T E R I A N P E N D A Y A G U N A A N A P A R A T U R N E G A R A D A N R E F O R M A S I B I R O K R A S I R E P U B L I K I N D O N E S I A SERTIFIKASI SNI ISO/IEC 27001:2013 Uji coba implementasi, Audit Internal, Tindak lanjut hasik audit internal Analisa dan evaluasi temuan, pemenuhan temuan Asessment awal, Gap analysist, Training, Penyusunan Dokumentasi, Penerapan sistem manajemen mutu Penyusunan Dokumentasi Sistem Audit Internal Pendampingan Pasca Audit AUDIT SNI ISO/IEC 27001:2013
  • 11. K E M E N T E R I A N P E N D A Y A G U N A A N A P A R A T U R N E G A R A D A N R E F O R M A S I B I R O K R A S I R E P U B L I K I N D O N E S I A TERIMA KASIH K E M E N T E R I A N P E N D A Y A G U N A A N A P A R A T U R N E G A R A D A N R E F O R M A S I B I R O K R A S I R E P U B L I K I N D O N E S I A