analysis of information security

Upload: tris-retno-aryani

Post on 02-Jun-2018

215 views

Category:

Documents


0 download

TRANSCRIPT

  • 8/10/2019 Analysis of Information Security

    1/20

    L O G O

    A. BUDI SETIAWAN

    AN ANALYSIS OF INFORMATION SECURITYGOVERNANCE READINESS IN GOVERNMENTINSTITUTION

    The Center of Research and Development of InformaticApplication.Agency of Human Resource Research and Development,Ministry of ICT Indonesia

    Delivered at 4 th International Symposium on ChaosRevolution in Science, Technology and SocietyAu ust 28-29 2013 in Jakarta Indonesia

  • 8/10/2019 Analysis of Information Security

    2/20

  • 8/10/2019 Analysis of Information Security

    3/20

  • 8/10/2019 Analysis of Information Security

    4/20

    Recent Risk Report in Indonesia

    Distributed Denial of Service attack on the system of Domain Name Service(DNS) ccTLD-ID indicates that the attack on the domain "go.id" is the most

    (source: Zone-h, 2012)

    (source: Id-SIRTII, 2012)

    Number of attacks to domain id website onOctober 2012

    THREAT

  • 8/10/2019 Analysis of Information Security

    5/20

    Observe the readiness of Information Security Governanceimplementation in government agencies

    Analysis was performed by using index of e-Government Rank(PeGI) and Information Security Index (Index KAMI

    The Study of IT Security Readiness in Government

    PeGI

    IndexKAMI

    Trianggulation:Expert

    judgemnet(FGD)

  • 8/10/2019 Analysis of Information Security

    6/20

    Indonesias Statistics

    Internet users: 55,000,000 Internet users as of June.30, 2012, and22.1% penetration.(source : http://www.internetworldstats.com/asia.htm#id)Internet subs: 2,3 millions

  • 8/10/2019 Analysis of Information Security

    7/20

    Cyber Security Legal Framework in Indonesia

  • 8/10/2019 Analysis of Information Security

    8/20

    National Policy and Law on Internet Security

    Indonesias Act

    Indonesias Telecommunication Act

    (UU Telekomunikasi)

    Information & Electronic Transaction Act (UU ITE)

    No. 29/PER/M.KOMINFO/10 /2010 aboutSecuring Telecommunication NetworkUtilization based on Internet Protocol

    Number: 133/KEP/M/KOMINFO/04/2010

    Number: 01/SE/M.KOMINFO/02/2011

    Regulation of Minister of CIT

    Decree of Minister of CIT

    Circular of Minister of CIT

  • 8/10/2019 Analysis of Information Security

    9/20

    Information Security Index

  • 8/10/2019 Analysis of Information Security

    10/20

    The Index of Indonesian e-Government Rank

    No. Dimensions

    1 Policy

    2 Institutional

    3 Infrastructure

    4 Application

    5 Planning

    5 Dimensions of Indonesian e-Government Rank :

    Provides a reference for the development and utilization of ICT in public sector Provide impetus for the development of ICT in the government through the

    evaluation of a large, balanced, and objective

    Provides map of the environment conditions of the use of ICT in the nationalgovernment

    Goals :

  • 8/10/2019 Analysis of Information Security

    11/20

    Indonesian e-Government Rank 2012 :

    Ministries

  • 8/10/2019 Analysis of Information Security

    12/20

    NO Ministries

    DIMENSION SCORE

    CATEGORYPOLICY INSTITUTIONAL

    INFRASTRUCT

    UREAPPLICATION PLANNING AVERAGE

    1 Kementerian Keuangan 3.50 3.53 3.52 3.37 3.63 3.51 Good

    2 Kementerian Pekerjaan Umum 3.10 3.52 3.11 3.34 3.52 3.32 Good

    3 Kementerian Perindustrian 3.13 3.50 3.48 3.40 3.00 3.30 Good

    4 Kementerian Pendidikan dan Kebudayaan 3.17 3.27 3.40 3.22 3.13 3.24 Good

    5 Kementerian Tenaga Kerja dan Transmigrasi 3.10 2.96 2.83 2.94 3.16 3.00 Good

    6 Kementerian Perhubungan 2.79 2.70 2.90 2.92 2.77 2.82 Good

    7 Kementerian Perdagangan 2.73 2.73 3.19 2.92 2.40 2.79 Good

    8 Kementerian Pertahanan 2.84 3.10 2.68 2.50 2.75 2.77 Good

    9 Kementerian Pemuda dan Olah Raga 2.44 2.73 2.95 2.73 2.83 2.74 Good

    10 Kementerian Perencanaan Pembangunan Nasional 2.10 2.43 3.14 2.90 2.73 2.66 Good

    11 Kementerian Kesehatan 2.23 2.88 2.74 2.70 2.52 2.61 Good

    12 Kementerian Energi dan Sumber Daya Mineral 1.98 2.63 2.98 2.67 2.73 2.60 Good

    13 Kementerian Kehutanan 2.54 2.80 2.93 2.62 1.67 2.51 Poor

    14 Kementerian Pertanian 2.63 3.03 2.69 2.37 1.67 2.48 Poor

    15 Kementerian Luar Negeri 2.15 2.44 2.77 2.40 2.40 2.43 Poor

    16 Kementerian Hukum dan Hak Asasi Manusia 2.17 2.33 2.26 2.63 2.70 2.42 Poor

    17 Kementerian Koordinator Bidang Kesejahteraan Rakyat 2.38 2.70 2.36 2.27 2.27 2.39 Poor

    18 Kementerian Riset dan Teknologi 2.10 2.87 2.55 2.60 1.70 2.36 Poor

    19 Kementerian Koperasi dan Usaha Kecil dan Menengah 2.25 2.28 2.37 2.58 2.20 2.34 Poor

    20 Kementerian Badan Usaha Milik Negara 1.55 2.28 2.40 2.64 2.40 2.25 Poor

    21 Kementerian Koordinator Bidang Perekonomian 2.40 2.60 2.10 2.45 1.57 2.22 Poor

    22 Kementerian Pariwisata dan Ekonomi Kreatif 2.19 2.57 2.24 2.03 1.67 2.14 Poor

    23 Kementerian Kelautan dan Perikanan 2.02 2.67 2.07 2.38 1.40 2.11 Poor

    24Kementerian Pemberdayaan Perempuan dan PerlindunganAnak

    2.03 2.44 1.80 2.08 1.44 1.96 Poor

    25Kementerian Koordinator Bidang Politik, Hukum, danKeamanan

    1.50 2.00 1.94 2.10 2.12 1.93 Poor

    26 Kementerian Lingkungan Hidup 1.44 1.90 2.24 2.18 1.83 1.92 Poor

    27 Kementerian Agama 1.43 2.04 2.46 1.88 1.48 1.86 Poor

    28 Kementerian Perumahan Rakyat 1.38 1.83 1.90 2.23 1.30 1.73 Poor

    29 Kementerian Pembangunan Daerah Tertinggal 1.21 1.63 1.57 1.80 1.40 1.52 Very PoorAVERAGE 2.29 2.63 2.61 2.58 2.29 2.48 Poor

  • 8/10/2019 Analysis of Information Security

    13/20

    Indonesian e-Government Rank 2012 :

    Local Government (Provinces)

  • 8/10/2019 Analysis of Information Security

    14/20

    NO Provinces

    DIMENSION SCORE

    CATEGORYPOLICY INSTITUTIONAL INFRASTRUCTURE APPLICATION PLANNING AVERAGE

    1 Jawa Barat 3.46 3.53 3.33 3.10 3.47 3.38 Good2 Jawa Timur 3.17 3.47 3.10 2.73 2.67 3.03 Good3 DKI Jakarta 2.88 2.73 2.90 2.77 2.80 2.82 Good4 Yogyakarta 2.79 2.67 2.90 2.73 2.80 2.78 Good

    5 Aceh 2.42 2.87 3.05 2.77 2.47 2.71 Good6 Bangka Belitung 2.67 3.07 2.38 2.27 2.73 2.62 Good7 Sumatera Selatan 2.71 2.60 2.67 2.40 2.67 2.61 Good8 Gorontalo 2.42 2.47 2.48 2.60 2.87 2.57 Poor9 Jambi 1.83 2.73 2.24 2.53 2.47 2.36 Poor

    10 Jawa Tengah 2.08 2.67 2.67 2.40 1.80 2.32 Poor11 Kalimantan Timur 2.00 2.40 2.43 2.23 2.20 2.25 Poor12 Kalimantan Tengah 2.21 2.40 2.00 2.03 2.40 2.21 Poor13 Nusa Tenggara Barat 2.29 2.13 1.71 2.43 1.67 2.05 Poor14 Sumatera Barat 2.38 2.13 2.05 1.77 1.60 1.98 Poor15 Kalimantan Barat 1.92 2.20 1.95 2.00 1.80 1.97 Poor16 Papua 1.67 1.90 1.93 1.98 2.27 1.95 Poor17 Sulawesi Utara 2.00 2.20 1.67 2.37 1.20 1.89 Poor18 Kepulauan Riau 1.38 2.47 1.48 1.80 2.13 1.85 Poor19 Sumatera Utara 1.21 2.20 1.86 1.77 1.47 1.70 Poor20 Sulawesi Barat 1.50 1.70 1.90 1.70 1.47 1.65 Poor21 Lampung 1.21 2.07 1.43 1.90 1.47 1.61 Poor

    22 Bengkulu 1.50 1.73 1.19 1.63 1.33 1.48Very Poor

    Poor

    23 Sulawesi Tengah 1.33 1.80 1.24 1.63 1.00 1.40 Very PoorPoor

    24 Kalimantan Selatan 1.00 1.47 1.00 1.67 1.00 1.23Very Poor

    PoorAVERAGE 2.08 2.40 2.15 2.22 2.07 2.18 Poor

  • 8/10/2019 Analysis of Information Security

    15/20

    Analysis of Indonesian e-Government Rank

    Ministries

    31.03%

    48.28%

    20.69%

    Dimension: Policy

    Good Poor Very Poor

    58.62%41.38%

    0%

    Dimension: Institutional

    Good Poor Very Poor

    51.72%44.83%

    3.45%

    Dimension:Infrastructure

    Good Poor Very Poor

    51.72%68.28%

    0%

    Dimension: Application

    Good Poor Very Poor

    3.45%

    34.48%

    41.38%

    20.69%

    Dimension: Planning

    Very Good Good

    Poor Very Poor

  • 8/10/2019 Analysis of Information Security

    16/20

    Analysis of Indonesian e-Government Rank

    Local Government (Provinces)

    25.00%

    45.83%

    29.17%

    Dimension: Policy

    Good Poor Very Poor

    37.50%

    58.33%

    4%

    Dimension: Institutional

    Good Poor Very Poor

    29.17%

    50.00%

    20.83%

    Dimension: Infrastructure

    Good Poor Very Poor

    20.83%

    79.17%

    0%

    Dimension: Application

    Good Poor Very Poor

    0.00% 29.17%

    41.67%

    29.17%

    Dimension: Planning

    Very Good Good Poor Very Poor

  • 8/10/2019 Analysis of Information Security

    17/20

    Source: Directorate ofInformation Security

    Information Security Index 2012

  • 8/10/2019 Analysis of Information Security

    18/20

    1. Coordination between government agencies is still weakin terms of cyber security

    2. The levels of internet safety and cyber securityawareness of government agencies and public are stilllow

    3. Implementation of ICT security in Indonesia is stillrunning on silo system

    4. ICT governance and information security management

    systems in government agencies do not operateeffectively

    Cyber Security Readiness in Government

  • 8/10/2019 Analysis of Information Security

    19/20

    1. Need strong commitment form all level management ingovernment institution related to implement IT Securitygovernance

    2. Information security should become the spirit for all ICTregulation and policy3. Need particular policy from the highest level government

    management which is mandate for all governmentinstitution to implement IT Security governance

    Recommendation for Cyber Security Readinessin Government

  • 8/10/2019 Analysis of Information Security

    20/20

    THANK YOU

    A. BUDI SETIAWANICT Researcher at Center of R&D of Informatic ApplicationHuman Resource R&D Agency, Ministry of ICT Indonesia

    [email protected] ahmed setiawan007@yahoo com

    mailto:[email protected]:[email protected]:[email protected]:[email protected]