The evaluation of information security of hospital information system (his) using cobit 5 framework: case study at Soreang Hospital, Indonesia

Based on the Minister of Health Regulation No.82 of 2013 related to HIS, all hospitals are required to have HIS for healthcare. Even though HIS has a lot of benefits, but on the other hand, it also has several issues of the system such as misuses of data and data loss, due to this flaw HIS has been...

Full description

Saved in:
Bibliographic Details
Main Author: Nistrina, Khilda
Format: Thesis
Language:English
English
English
Published: 2019
Subjects:
Online Access:http://eprints.uthm.edu.my/532/1/24p%20KHILDA%20NISTRINA.pdf
http://eprints.uthm.edu.my/532/2/KHILDA%20NISTRINA%20COPYRIGHT%20DECLARATION.pdf
http://eprints.uthm.edu.my/532/3/KHILDA%20NISTRINA%20WATERMARK.pdf
Tags: Add Tag
No Tags, Be the first to tag this record!
id my-uthm-ep.532
record_format uketd_dc
spelling my-uthm-ep.5322021-07-26T01:10:40Z The evaluation of information security of hospital information system (his) using cobit 5 framework: case study at Soreang Hospital, Indonesia 2019-09 Nistrina, Khilda T58.5-58.64 Information technology Based on the Minister of Health Regulation No.82 of 2013 related to HIS, all hospitals are required to have HIS for healthcare. Even though HIS has a lot of benefits, but on the other hand, it also has several issues of the system such as misuses of data and data loss, due to this flaw HIS has been integrated into several systems in the hospital like administrating the management of patients’ and clinic’s record. In reality, threats do not come only from hackers. The damaged IT systems can be a cause due to developing infrastructures that are not comprehensive yet. Therefore, evaluation is needed to measure the threats and vulnerabilities of the system and also to confirm the effectiveness of current controls. This research proposes to recommend information security strategies based on COBIT 5 to be implemented in HIS. The objectives of the study are to examine the capability level of HIS in term of information security using COBIT 5 framework, to determine the infrastructure of network security which is provided by Soreang hospital and to identify the information security strategies based on COBIT 5 to be implemented in the Hospital Information System. The case study areas are Soreang Hospital, Indonesia. The methodology used is explanatory sequential with two phases in data collection. The first one is quantitative, using a questionnaire. The sampling method used simple random sampling with 89 staff respondents. The second one, is qualitative, using interview, the sampling method used purposive sampling with 3 members of staff. Evaluation results show the capability level in the Soreang Hospital is at level 1 for DSS05 domains with L and level 0 domains for APO13 domains with L The findings demonstrated that HIS system of the Soreang hospital has been used as a firewall to protect the network, filters incoming and outgoing traffic, used an Antivirus, IDS and VN). Recommendations for improvement are prepared to achieve the expected capability level of the target. The research contributes to the knowledge through created recommendation information security and HIS measurement analysis and evaluation using the COBIT 5 framework. 2019-09 Thesis http://eprints.uthm.edu.my/532/ http://eprints.uthm.edu.my/532/1/24p%20KHILDA%20NISTRINA.pdf text en public http://eprints.uthm.edu.my/532/2/KHILDA%20NISTRINA%20COPYRIGHT%20DECLARATION.pdf text en staffonly http://eprints.uthm.edu.my/532/3/KHILDA%20NISTRINA%20WATERMARK.pdf text en validuser mphil masters Universiti Tun Hussein Onn Malaysia Fakulti Pengurusan Teknologi dan Perniagaan
institution Universiti Tun Hussein Onn Malaysia
collection UTHM Institutional Repository
language English
English
English
topic T58.5-58.64 Information technology
spellingShingle T58.5-58.64 Information technology
Nistrina, Khilda
The evaluation of information security of hospital information system (his) using cobit 5 framework: case study at Soreang Hospital, Indonesia
description Based on the Minister of Health Regulation No.82 of 2013 related to HIS, all hospitals are required to have HIS for healthcare. Even though HIS has a lot of benefits, but on the other hand, it also has several issues of the system such as misuses of data and data loss, due to this flaw HIS has been integrated into several systems in the hospital like administrating the management of patients’ and clinic’s record. In reality, threats do not come only from hackers. The damaged IT systems can be a cause due to developing infrastructures that are not comprehensive yet. Therefore, evaluation is needed to measure the threats and vulnerabilities of the system and also to confirm the effectiveness of current controls. This research proposes to recommend information security strategies based on COBIT 5 to be implemented in HIS. The objectives of the study are to examine the capability level of HIS in term of information security using COBIT 5 framework, to determine the infrastructure of network security which is provided by Soreang hospital and to identify the information security strategies based on COBIT 5 to be implemented in the Hospital Information System. The case study areas are Soreang Hospital, Indonesia. The methodology used is explanatory sequential with two phases in data collection. The first one is quantitative, using a questionnaire. The sampling method used simple random sampling with 89 staff respondents. The second one, is qualitative, using interview, the sampling method used purposive sampling with 3 members of staff. Evaluation results show the capability level in the Soreang Hospital is at level 1 for DSS05 domains with L and level 0 domains for APO13 domains with L The findings demonstrated that HIS system of the Soreang hospital has been used as a firewall to protect the network, filters incoming and outgoing traffic, used an Antivirus, IDS and VN). Recommendations for improvement are prepared to achieve the expected capability level of the target. The research contributes to the knowledge through created recommendation information security and HIS measurement analysis and evaluation using the COBIT 5 framework.
format Thesis
qualification_name Master of Philosophy (M.Phil.)
qualification_level Master's degree
author Nistrina, Khilda
author_facet Nistrina, Khilda
author_sort Nistrina, Khilda
title The evaluation of information security of hospital information system (his) using cobit 5 framework: case study at Soreang Hospital, Indonesia
title_short The evaluation of information security of hospital information system (his) using cobit 5 framework: case study at Soreang Hospital, Indonesia
title_full The evaluation of information security of hospital information system (his) using cobit 5 framework: case study at Soreang Hospital, Indonesia
title_fullStr The evaluation of information security of hospital information system (his) using cobit 5 framework: case study at Soreang Hospital, Indonesia
title_full_unstemmed The evaluation of information security of hospital information system (his) using cobit 5 framework: case study at Soreang Hospital, Indonesia
title_sort evaluation of information security of hospital information system (his) using cobit 5 framework: case study at soreang hospital, indonesia
granting_institution Universiti Tun Hussein Onn Malaysia
granting_department Fakulti Pengurusan Teknologi dan Perniagaan
publishDate 2019
url http://eprints.uthm.edu.my/532/1/24p%20KHILDA%20NISTRINA.pdf
http://eprints.uthm.edu.my/532/2/KHILDA%20NISTRINA%20COPYRIGHT%20DECLARATION.pdf
http://eprints.uthm.edu.my/532/3/KHILDA%20NISTRINA%20WATERMARK.pdf
_version_ 1747830632188215296