CFP last date
20 March 2025
Reseach Article

Analysis of Risk Assessment on Fundraising Services using COBIT 5 Framework

by Wendi Ari Wilianto, Imam Riadi
International Journal of Computer Applications
Foundation of Computer Science (FCS), NY, USA
Volume 184 - Number 26
Year of Publication: 2022
Authors: Wendi Ari Wilianto, Imam Riadi

Wendi Ari Wilianto, Imam Riadi . Analysis of Risk Assessment on Fundraising Services using COBIT 5 Framework. International Journal of Computer Applications. 184, 26 ( Aug 2022), 35-44. DOI=10.5120/ijca2022922324

@article{ 10.5120/ijca2022922324,
author = { Wendi Ari Wilianto, Imam Riadi },
title = { Analysis of Risk Assessment on Fundraising Services using COBIT 5 Framework },
journal = { International Journal of Computer Applications },
issue_date = { Aug 2022 },
volume = { 184 },
number = { 26 },
month = { Aug },
year = { 2022 },
issn = { 0975-8887 },
pages = { 35-44 },
numpages = {9},
url = { },
doi = { 10.5120/ijca2022922324 },
publisher = {Foundation of Computer Science (FCS), NY, USA},
address = {New York, USA}
%0 Journal Article
%1 2024-02-07T01:22:29.785931+05:30
%A Wendi Ari Wilianto
%A Imam Riadi
%T Analysis of Risk Assessment on Fundraising Services using COBIT 5 Framework
%J International Journal of Computer Applications
%@ 0975-8887
%V 184
%N 26
%P 35-44
%D 2022
%I Foundation of Computer Science (FCS), NY, USA

A fundraisingservice is a public service that can make it easier for the community to channel their funds to an organization andthen the funds will be channeled or utilized for the benefit of the community. In carrying out its business processes, fundraising services have implemented information system technology to support the best service, but in its application, there are still some risks that can interfere with services to donors and can have an impact on the level of service provided by the organization to the community. Researchers conduct further risk assessment analysis to measure the extent to which risk management has been implemented by the institution using the COBIT 5 framework.This study aims to determine the capability level value and the expected value, calculate the gap value and provide recommendations in accordance with domains APO12 (Manage Risk) and EDM03 (Ensure Risk Optimisation). The process of collecting data in this study was in the form of observation, interviews, and questionnaires. Based on the calculations that have been made, the capability level generated in the APO12 domain is 2.31 which is at level 2, and in the EDM03 domain, the capability level value is 2.24 which is at level 2. The result of calculating the Gap value in the APO12 domain is 1 and in the EDM03 domain the calculation result of the Gap value is 1, it is necessary to have recommendations that are tailored to the company's goals to meet the target of achieving the capability expected.

  1. F. T. Riadi, A. D. Manuputty, and A. Saputra, “Evaluation of Information Security Risk Management using COBIT 5 Subdomain EDM03 (Ensure Risk Optimisation),” Jutei, vol. 2, no. 1, pp. 1–10, 2018.
  2. J. K. Sitinjak, A. Fajar, and R. Hanafi, “Assessment of the Implementation of the It Governance Process Using COBIT 5 Version 5 on the BAI Domain for Application Development Ipos Case Study at Pt. Pos Indonesia,” eProceedings Eng., vol. 2, no. 2, pp. 1–10, 2015.
  3. S. T. A. Ramdhani and R. Andriani, “Evaluation of Library Service Risk Management Using the Cobit 5 Framework,” J. Tecnoscienza, vol. 5, pp. 186–196, 2021.
  4. Kasidi, Risk management, Ke-2. Bogor: Ghalia Indonesia, 2014.
  5. M. M. Hanafi, Risk management, Ke-2. Yogyakarta: UPP STIM YKPN, 2012.
  6. A. Ichwani and A. D. Farida, “Measuring the Level of Risk Management Capability of Sharia Cooperative Information Systems Using the COBIT 5 Framework,” J. Komputasi, vol. 8, no. 1, pp. 1–14, 2020.
  7. C. U. Putri, “Risk Assessment of Information Technology Processes Based on the Cobit 5 Framework at the Helpdesk of the Sub-Directorate of Technology and Information Systems Services, Directorate of Technology and Information Systems Development (DPTSI) Institut Teknologi Sepuluh Nopember,” Sepuluh Nopember Institute of Technology, 2017.
  8. N. Z. Firdaus and Suprapto, “Evaluation of Information Technology Risk Management Using COBIT 5 IT Risk (Case Study: PT . Petrochemical Gresik),” J. Pengemb. Teknol. Inf. dan Ilmu Komput., vol. 2, no. 1, pp. 1–10, 2018.
  9. M. Labombang, “Risk Management In Construction Projects,” J. SMARTek, vol. 9, pp. 39–46, 2011.
  10. M. A. G. Wattimena and A. R. Tanaamah, “Information Technology Risk Management Analysis Using COBIT 5 (Case Studies: TSI/UKSW Library Information Technology and Systems),” J. Inf. Syst. Informatics, vol. 3, no. 3, pp. 483–498, 2021, doi: 10.51519/journalisi.v3i3.183.
  11. Indriyanto and I. Riadi, “Analysis of Risk Assessment on Stock System Services using COBIT 5 Framework,” vol. 183, no. 23, pp. 29–37, 2021.
  12. M. W. Astuti, Suprapto, and A. R. Perdanakusuma, “Information Technology Evaluation using COBIT 5 Process Focus DSS02, DSS03, and DSS04 ( Case Study: PT . Salt ( Persero )),” J. Pengemb. Teknol. Inf. dan Ilmu Komput., vol. 3, no. 9, pp. 8874–8881, 2019:
  13. N. E. Sulistyowati and Suharnawi, “Governance Analysis of Information Technology Attendance of the Transportation Agency of Central Java Province using COBIT Version 5,” pp. 1–15, 2015.
  14. ISACA, A Business Framework for the Governance and Management of Enterprise IT. 2012.
  15. B. Gunawan and F. A. Pratama, Designing information technology governance. Yogyakarta, 2018.
  16. A. F. Tamaraand I. Riadi, “Analysis of Risk Assessment on Student Credit Services using COBIT 5 Framework,” vol. 183, no. 42, pp. 50–58, 2021.
  17. I. Zakkadiaksa, B. T. Hanggara, and B. S. Prakoso, “Evaluation of Information Technology Risk Management Using COBIT 5 with Domains EDM03 and APO12 (Case Study on UPT-ICT Universitas Brawijaya),” J. Pengemb. Teknol. Inf. dan Ilmu Komput., vol. 4, no. 8, pp. 2329–2337, 2020.
  18. E. Zuraidah and C. Budihartanti, Audit of information systems and management using COBIT 4 and 5. Yogyakarta: Graha Ilmu, 2021.
  19. P. P. Thenu, A. F. Wijaya, and C. Rudianto, “Information Technology Risk Management Analysis Using Cobit 5 (Case Study: Pt Global Infotech),” J. Bina Komput., vol. 2, no. 1, pp. 1–13, 2020, doi: 10.33557/binakomputer.v2i1.799.
  20. R. Nurhidayat and S. Handayaningsih, “Risk Management Analysis on Student Resignation Services Using the COBIT 5 Framework Focus on Managing Risk (APO12),” J. Sarj. Tek. Inform., vol. 7, no. 1, pp. 69–76, 2019, doi: 10.12928/jstie.v7i1.15806.
  21. J. S. A. Rajjani, B. T. Hanggara, and Y. T. Musityo, “Evaluation of Information Technology Risk Management at the Department of ICT of PT Semen Indonesia (Perseo) Tbk using the COBIT 2019 Framework with EDM03 and APO12 Domains,” J. Pengemb. Teknol. Inf. dan Ilmu Komput., vol. 5, no. 5, pp. 1734–1744, 2021.
  22. ISACA, Process Assessment Model (PAM): Using COBIT 5 of Enterprise IT. 2013.
  23. ISACA, “Self-assessment Guide : Using COBIT ® 5,” pp. 1–24, 2019.
  24. N. S. F. Messakh and A. R. Tanaamah, “Cobit 5-Based Information System Analysis (Case Study: LTC UKSW),” J. Tek. Inform. dan Sist. Inf., vol. 8, no. 1, pp. 388–400, 2021, doi:
  25. ISACA, Enabling Processes. 2012.
  26. A. A. Indrianto and I. Riadi, “Risk Management Assessment in Case Tracing Information System using COBIT 5 Framework,” vol. 184, no. 16, pp. 41–48, 2022.
Index Terms

Computer Science
Information Sciences


Risk management COBIT 5 APO12 EDM03 Capability Level