Mohamad, Iki Adfi Nur (2026) Analisis Tata Kelola Teknologi Informasi dalam Transformasi dan Keamanan Sistem Informasi Berbasis COBIT 2019 pada PT XYZ. Other thesis, Institut Teknologi Sepuluh Nopember.
|
Text
5027221033-Undergraduate_Thesis.pdf - Accepted Version Restricted to Repository staff only Download (4MB) | Request a copy |
Abstract
Transformasi digital dan meningkatnya ketergantungan terhadap sistem informasi menempatkan tata kelola teknologi informasi (TI) sebagai elemen krusial dalam menjaga keberlanjutan, efektivitas, dan keamanan operasional, khususnya pada perusahaan di bidang port engineering services yang memiliki kompleksitas operasional tinggi dan sebaran lokasi kerja yang luas. Penelitian ini bertujuan menganalisis tata kelola TI dalam mendukung transformasi dan keamanan sistem informasi menggunakan kerangka kerja COBIT 2019 dengan mengombinasikan perspektif strategis melalui Goals Cascade dan perspektif kondisi aktual perusahaan melalui Design Factors. Pemetaan prioritas menetapkan tiga subdomain untuk dievaluasi, yaitu BAI03 (Managed Solutions Identification and Build), BAI06 (Managed IT Changes), dan DSS05 (Managed Security Services). Tingkat kapabilitas diukur menggunakan kuesioner berbasis skala Guttman yang disusun dari aktivitas proses COBIT 2019 dan didistribusikan kepada responden terpilih sesuai pemetaan RACI chart, kemudian dianalisis kesenjangannya terhadap kondisi yang diharapkan (to-be). Hasil asesmen menunjukkan ketiga subdomain berada pada Level 1 (Performed Process) dengan status Largely Achieved, sehingga teridentifikasi kesenjangan sebesar satu level pada BAI03 (menuju Level 2) serta dua level pada BAI06 dan DSS05 (menuju Level 3). Dari temuan tersebut dirumuskan 44 rekomendasi perbaikan yang diprioritaskan menggunakan metode Analytic Hierarchy Process (AHP) dengan Risiko/Urgensi sebagai kriteria paling dominan dan nilai Consistency Ratio 0,09 yang menunjukkan penilaian konsisten. Hasil prioritas AHP menetapkan penyelenggaraan security awareness training (DSS05), kewajiban independent testing (BAI03), dan formalisasi vulnerability monitoring (DSS05) sebagai tiga rekomendasi utama dengan bobot urgensi tertinggi. Seluruh rekomendasi tersebut telah diverifikasi dan diterima oleh manajemen PT XYZ sebagai pedoman peningkatan tata kelola teknologi informasi dalam transformasi dan keamanan sistem informasi perusahaan.
==================================================================================================================================
Digital transformation and the increasing reliance on information systems have made Information Technology (IT) governance a crucial element in maintaining operational sustainability, effectiveness, and security. This is particularly evident in port engineering services companies, which are characterized by high operational complexity and geographically dispersed work locations. This study aims to analyze IT governance to support information system transformation and security using the COBIT 2019 framework. The approach combines a strategic perspective through the Goals Cascade with the company's actual conditions through Design Factors. The priority mapping identified three subdomains for evaluation: BAI03 (Managed Solutions Identification and Build), BAI06 (Managed IT Changes), and DSS05 (Managed Security Services). Capability levels were measured using a Guttman scale questionnaire based on COBIT 2019 process activities. These questionnaires were distributed to selected respondents based on a RACI chart mapping, followed by a gap analysis against the target (to-be) conditions. The assessment results revealed that all three subdomains are currently at Level 1 (Performed Process) with a "Largely Achieved" status. Consequently, a gap of one level was identified for BAI03 (targeting Level 2), alongside a two-level gap for BAI06 and DSS05 (targeting Level 3). Based on these findings, 44 improvement recommendations were formulated. These recommendations were prioritized using the Analytic Hierarchy Process (AHP) method, with Risk/Urgency emerging as the most dominant criterion. A Consistency Ratio of 0.09 confirmed the reliability and consistency of the assessment. The AHP prioritization established the implementation of security awareness training (DSS05), mandatory independent testing (BAI03), and the formalization of vulnerability monitoring (DSS05) as the top three recommendations with the highest urgency weights. All recommendations have been verified and accepted by the management of PT XYZ to serve as actionable guidelines for improving IT governance, supporting the company's broader information system transformation and security efforts.
| Item Type: | Thesis (Other) |
|---|---|
| Uncontrolled Keywords: | Analytic Hierarchy Process, Capability Level, COBIT 2019, Design Factors, Goals Cascade, Port Engineering Services, Tata Kelola Teknologi Informasi, Analytic Hierarchy Process, Capability Level, COBIT 2019, Design Factors, Goals Cascade, IT Governance, Port Engineering Services |
| Subjects: | T Technology > T Technology (General) > T58.5 Information technology. IT--Auditing |
| Divisions: | Faculty of Intelligent Electrical and Informatics Technology (ELECTICS) > Information Technology > 59201-(S1) Undergraduate Thesis |
| Depositing User: | Iki Adfi Nur Mohamad |
| Date Deposited: | 21 Jul 2026 01:11 |
| Last Modified: | 21 Jul 2026 01:11 |
| URI: | http://repository.its.ac.id/id/eprint/135936 |
Actions (login required)
![]() |
View Item |
