CFP last date
20 December 2024
Reseach Article

Service Risk Assessment Learning Management System using ISO 31000:2018/31010

by Sri Hardianti, Imam Riadi
International Journal of Computer Applications
Foundation of Computer Science (FCS), NY, USA
Volume 184 - Number 4
Year of Publication: 2022
Authors: Sri Hardianti, Imam Riadi
10.5120/ijca2022921993

Sri Hardianti, Imam Riadi . Service Risk Assessment Learning Management System using ISO 31000:2018/31010. International Journal of Computer Applications. 184, 4 ( Mar 2022), 1-11. DOI=10.5120/ijca2022921993

@article{ 10.5120/ijca2022921993,
author = { Sri Hardianti, Imam Riadi },
title = { Service Risk Assessment Learning Management System using ISO 31000:2018/31010 },
journal = { International Journal of Computer Applications },
issue_date = { Mar 2022 },
volume = { 184 },
number = { 4 },
month = { Mar },
year = { 2022 },
issn = { 0975-8887 },
pages = { 1-11 },
numpages = {9},
url = { https://ijcaonline.org/archives/volume184/number4/32318-2022921993/ },
doi = { 10.5120/ijca2022921993 },
publisher = {Foundation of Computer Science (FCS), NY, USA},
address = {New York, USA}
}
%0 Journal Article
%1 2024-02-07T01:20:35.921584+05:30
%A Sri Hardianti
%A Imam Riadi
%T Service Risk Assessment Learning Management System using ISO 31000:2018/31010
%J International Journal of Computer Applications
%@ 0975-8887
%V 184
%N 4
%P 1-11
%D 2022
%I Foundation of Computer Science (FCS), NY, USA
Abstract

Many universities take advantage of the development of information technology to encourage the process of teaching and learning activities. Many models are used and one of them is LMS (Learning Management System). LMS (Learning Management System) is an electronic learning system program that is used to assist the learning process of students studying anywhere and anytime so that students can access material easily. One of them is LMS Ahmad Dahlan University which manages and implements website-based information technology using Moodle. Management cannot be separated from the possibility of risks that can disrupt the system and hinder learning business processes. Risk fixes should be scheduled so that when a breakdown occurs, recommendations can be made from the start and not when a risk occurs. Risk assessment using the 31000:2018 method is used for risk management guidelines which consist of communication and consultation stages, context setting, ISO 31010:2009 which is the standard assessment technique used consists of risk assessment stages (Risk identification, risk analysis, and risk evaluation), then the stages after the assessment are risk treatment, risk monitoring and review, risk recording and reporting using ISO 31000:2018 guidelines. Data was collected by filling out an introductory questionnaire and a questionnaire to identify the likelihood and impact of risks and determine stakeholders, RACI, and risk treatment and then validated through interviews with key informants. The results of this study are risk identification documentation that has 29 possible risk variables and risk impacts, and the results of the risk assessment of all variables are at a low level (low) but the risk management criteria are different, namely, 13 risks get a score scale of 1, and 16 risk gets a scale value 2 but at the same level. After being evaluated, the risk assessment can be used as a reference for preventing the handling and maintenance of information technology systems and assets in the future.

References
  1. N. Terry George Abisay, "Risk Management at Soekarno Hatta Airport Based on ISO 31000," pp. 116 - 129, 2013.
  2. Lalonde, C., & Boiral, O. (2012). "Managing risks through ISO 31000: A critical analysis. Risk Management, 14(4), 272–300.
  3. Susilo Leo J. and Victor Riwu Kaho 2018. “ISO 31000:2018-Based Risk Management: A Guide for Risk Leaders and Risk Practitioners.”. Jakarta: Gramedia Widiasarana Indonesia.
  4. Agustinus, Stefan., Nugroho, Adi., Cahyono, Ariya Dwika. (2017). “Information Technology Risk Analysis Using ISO 31000 in HRMS Programs.,” vol.1.
  5. Castells, Manuel & Cardoso, Gustavo, eds. 2005. The Network Society: From Knowledge to Policy. Washington, DC: Johns Hopkins Center for Transatlantic Relations.
  6. McFadden, dkk. 1999. Database Concepts and Practical Guide. Yogyakarta.
  7. Indriantoro. “The Effect of Computer Anxiety on Lecturer Skills in the use of Computers,” Indonesian Journal of Accounting and Auditing, Vol. 4, 2000.
  8. SNI IEC/ISO 31000:2009. 2011. “Risk Management – Principles and Guidelines”. National Standardization Agency. Jakarta.
  9. ISO 31000:2018. “Risk Management – Guidelines (ISO 31000:2018)”. BSI Standards Limited 2018. Switzerland.
  10. SNI IEC/ISO 31010:2009. 2016. “Risk Management – Risk Assessment Techniques”. National Standardization Agency. Jakarta.
  11. Lisananda, Aldesra Azria. (2021). “Construction Risk Management in Wastewater Piping Construction Projects Based on ISO 31000:2018 Concepts.” Essay. Yogyakarta: Indonesian Islamic University.
  12. Putra, Muhammad Nofeliansyah. (2019). “Analysis of ISO 31000-Based Academic Information System Technology Risk Management (Case Study: UIN Sunan Kalijaga). Essay. Yogyakarta: UIN Sunan Kalijaga.
  13. Miftakhatum, (2020). “Analisis Manajemen Risiko Teknologi Informasi pada Website Ecofo Menggunakan ISO 31000,” vol.1..
  14. Woody, Carol. “Applying OCTAVE: Practitioners Report,” Carnegie Melon University. 2006. US.
  15. Sukri, Muh. (2020). “Risk Management Analysis on Administration System using OCTAVE Allegro Framework”.
  16. Alvian, Fawwaz Afif., Sulaiman, Muhammad Haikal et al. (2020). "Risk Management at the Integration Laboratory of the State Islamic University of Sunan Ampel Surabaya using ISO 31000," vol.12.
  17. Setiawan, Ito. Sekarini, A. R., Waluyo, Retno., Alfiana, F. N, “Information System Risk Management Using ISO 31000 and ISO/IEC 21001 Control Standards in Tripio Purwokerto”, vol.20, no. 2, pp. 389-396, 2021.
  18. D. D. J. Andi Novia Rilyani. Yanuar Firdaus, "Risk Analysis of Information Technology Based on Risk Management Using ISO 31000 (Case Study: i-Gracias Telkom University)," e-Proceeding of Engineering, pp. 6201-6208, 2015.).
  19. Kobo, F. N. 2011. “Risk Management Methodology. Enterprise Risk Management Strategy”.
  20. Maralis Reni and Triyono Aris. 2019. Risk Management. Yogyakarta: Depublish CV Budi Utama publishing group.
  21. Nice, Francisca Lady and Imbar, Radian Victor. “Information Technology Risk Analysis in Institutions National Aeronautics and Space Agency (LAPAN) on SWIFTS Site using ISO 31000, Vol. 2, No. 2, pp. 2-3. 2016.
  22. Innocent, Robin. 2018. “ISO 31000-Based Risk Management Analysis on Company Operational Aspects (Case Study: Cafe Industry, Sleman Regency, DIY). Essay. Yogyakarta: Sanata Dharma University.
  23. De Oliveira, U. R., Marins, F. A. S., Rocha, H. M., & Salomon, V. A. P. 2017. The ISO 31000 standard in supply chain risk management. Journal of Cleaner Production, 151(March), 616–633.
  24. Labombang, M. 2011. “Manajemen Risiko dalam Proyek Konstruksi”. Jurnal SMARTekv Vol 9 No 11 Februari 2011. Staf Pengajar Jurusan Teknik Sipil. Fakultas Teknik. Universitas Tadulako. Palu.
  25. Rahmawati, Aprilia., Wijaya, Augustine Fritz. (2019). “Information Technology Risk Analysis using ISO 31000 in ITOP Applications,” vol.2.
Index Terms

Computer Science
Information Sciences

Keywords

LMS ISO 31000 Risk Management Risk Analysis