ENHANCING ENTERPRISE SECURITY POSTURE: DESIGN IT/OT RISK MANAGEMENT ON XYZ ORGANIZATION USING MULTI-CRITERIA DECISION ANALYSIS APPROACH
| dc.contributor.author | Saputra, Brilian Adi | |
| dc.contributor.author | Lim, Charles | |
| dc.contributor.author | Budiarto, Eka | |
| dc.date.accessioned | 2026-04-27T07:17:38Z | |
| dc.date.issued | 2025-08-13 | |
| dc.description.abstract | This thesis supports the Indonesian government’s "Making Indonesia 4.0" initiative by addressing cybersecurity challenges in XYZ Organization, a state-owned manufacturer facing IT/OT convergence risks. With no defined maturity model or clear risk prioritization, the study develops a strategic IT/OT risk management framework using ISO/IEC 27005 and NIST SP 800-30. Applying STRIDE to the SAP-MES integration identified 34 threats, evaluated through a 5x5 likelihood-impact matrix aligned with COSO standards, highlighting 10 critical risks—such as equipment damage and backup failure—scoring 20/25. Mapped to ISO 27001 controls, tailored mitigation strategies are proposed, resulting in a structured, repeatable framework that strengthens cybersecurity governance and aligns with digital transformation and national mandates. | |
| dc.identifier.uri | https://dspace-repository.sgu.ac.id/handle/123456789/77 | |
| dc.language.iso | en | |
| dc.publisher | Swiss German University | |
| dc.subject | IT/OT Convergence | |
| dc.subject | Risk Management | |
| dc.subject | Cybersecurity | |
| dc.subject | Industry 4.0 | |
| dc.subject | STRIDE | |
| dc.subject | Risk Prioritization | |
| dc.subject | Multi-Criteria Decision Analysis (MCDA) | |
| dc.subject | Manufacturing | |
| dc.title | ENHANCING ENTERPRISE SECURITY POSTURE: DESIGN IT/OT RISK MANAGEMENT ON XYZ ORGANIZATION USING MULTI-CRITERIA DECISION ANALYSIS APPROACH | |
| dc.type | Thesis |
Files
Original bundle
1 - 5 of 6
License bundle
1 - 1 of 1
Loading...
- Name:
- license.txt
- Size:
- 1.71 KB
- Format:
- Item-specific license agreed to upon submission
- Description: