11.07.2015 Views

Panduan Penerapan Tata Kelola Keamanan Informasi bagi ...

Panduan Penerapan Tata Kelola Keamanan Informasi bagi ...

Panduan Penerapan Tata Kelola Keamanan Informasi bagi ...

SHOW MORE
SHOW LESS

Create successful ePaper yourself

Turn your PDF publications into a flip-book with our unique Google optimized e-Paper software.

3Daftar IsiDaftar Isi……………………………………………………………………………. 2Daftar Gambar……………………………………………………………………… .4Daftar Tabel…………………………………………………………………………..51 Pendahuluan .......................................................................................................... 72 Tujuan ................................................................................................................... 83 Ruang Lingkup <strong>Penerapan</strong> .................................................................................... 83.1 Area Penggunaan .............................................................................................. 83.1.1 Instansi pemerintah pusat dan daerah ....................................................... 83.1.2 BUMN ...................................................................................................... 83.1.3 BUMD ...................................................................................................... 83.1.4 Penyelenggara pelayanan publik lainnya .................................................. 83.2 Area Evaluasi .................................................................................................... 83.2.1 <strong>Tata</strong> <strong>Kelola</strong> <strong>Keamanan</strong> <strong>Informasi</strong> ............................................................. 83.2.2 Manajemen Risiko <strong>Keamanan</strong> <strong>Informasi</strong> ................................................. 83.2.3 Kerangka Kerja Pengelolaan <strong>Keamanan</strong> <strong>Informasi</strong> .................................. 83.2.4 Pengelolaan Aset <strong>Informasi</strong> ...................................................................... 83.2.5 Teknologi <strong>Keamanan</strong> <strong>Informasi</strong> ............................................................... 84 Standar Sistem Manajemen <strong>Keamanan</strong> <strong>Informasi</strong> ................................................ 94.1 ISO/IEC 27000 ISMS- Overview and Vocabulary ........................................... 94.2 SNI ISO/IEC 27001- Persyaratan Sistem Manajemen <strong>Keamanan</strong> <strong>Informasi</strong> . 104.3 ISO/IEC 27002 –Code of Practice for ISMS .................................................. 124.4 ISO/IEC 27003- Information Security Management System ImplementationGuidance ......................................................................................................... 124.5 ISO/IEC 27004 - Information Security Management Measurement .............. 124.6 ISO/IEC27005 - Information Security Risk Management. ............................. 134.7 ISO/IEC 27006 - Requirements for Bodies Providing Audit and Certificationof Information Security Management Systems. ............................................... 135 Dokumentasi Sistem Manajemen <strong>Keamanan</strong> <strong>Informasi</strong> ..................................... 135.1 Struktur Dokumentasi SMKI .......................................................................... 135.1.1 Tingkat 1: ................................................................................................ 135.1.2 Tingkat 2: ................................................................................................ 145.1.3 Tingkat 3: ................................................................................................ 145.2 Cakupan Dokumentasi SMKI ......................................................................... 146 Tahapan <strong>Penerapan</strong> SMKI .................................................................................. 176.1 Persetujuan Pimpinan ...................................................................................... 176.2 Menetapkan Organisasi, Peran dan Tanggung jawab ..................................... 186.3 Mendefinisikan Ruang Lingkup ..................................................................... 186.4 Melakukan Gap Analysis ................................................................................ 18@Kominfo, 2011,Klasifikasi: Umum

Hooray! Your file is uploaded and ready to be published.

Saved successfully!

Ooh no, something went wrong!