Nabeel Azhar Garnida, R. Mulyana, Widyatasya Agustika Nurtrisha
{"title":"利用 COBIT 2019 框架设计信息技术风险管理,实现保险公司数字化转型 IT 风险管理重点领域","authors":"Nabeel Azhar Garnida, R. Mulyana, Widyatasya Agustika Nurtrisha","doi":"10.33197/jitter.vol9.iss3.2023.1338","DOIUrl":null,"url":null,"abstract":"Rapid advancements in Information Technology (IT) play a vital role in fostering innovation within a company. Previous research has successfully identified the significance of IT Governance and Management (ITGM) in the process of Digital Transformation (DT). However, a more comprehensive analysis is needed to understand the role of IT risk management in supporting such changes, particularly through a case study on the insurance company InsurCo. This study employs the Design Science Research (DSR) method, utilizing interview data and the COBIT 2019 IT Risk Management Focus Area framework to design an IT risk management approach that supports InsurCo's DT. Capability assessments, gap analysis, potential improvements, improvement designs, roadmap development, and impact estimation of implementation have been executed on seven ITGM components. InsurCo, being a State-Owned Enterprise, is bound by the regulation PER-2/MBU/03/2023 concerning the Guidelines for Governance and Significant Corporate Activities of State-Owned Enterprises. Additionally, the Financial Services Sector Master Plan 2021-2025 highlights the acceleration of DT. The prioritized ITGM objectives required by InsurCo are derived from three design factor determinations: focus areas, design mechanisms, and ITGM mechanisms concerning DT, resulting in the following prioritized ITGM objectives: APO12 Managed Risk, EDM03 Ensure Risk Optimization, and DSS04 Managed Continuity. There is an estimated average capability increase of 3.57% across these three ITGM objectives. The research outcome presents a recommended design for the seven components of the governance system, aiming to enhance the IT risk management capability index within InsurCo. This study contributes to a deeper understanding of the concept of prioritizing IT risk management to support organizational digital transformation, specifically providing practical implications for InsurCo to bolster the success of their strategic programs, and benefit the insurance industry.","PeriodicalId":195349,"journal":{"name":"Jurnal Ilmiah Teknologi Infomasi Terapan","volume":"19 1","pages":""},"PeriodicalIF":0.0000,"publicationDate":"2023-08-16","publicationTypes":"Journal Article","fieldsOfStudy":null,"isOpenAccess":false,"openAccessPdf":"","citationCount":"0","resultStr":"{\"title\":\"Transformasi Digital InsurCo dengan Merancang Pengelolaan Risiko Teknologi Informasi Menggunakan Framework COBIT 2019 IT Risk Management Focus Area\",\"authors\":\"Nabeel Azhar Garnida, R. Mulyana, Widyatasya Agustika Nurtrisha\",\"doi\":\"10.33197/jitter.vol9.iss3.2023.1338\",\"DOIUrl\":null,\"url\":null,\"abstract\":\"Rapid advancements in Information Technology (IT) play a vital role in fostering innovation within a company. Previous research has successfully identified the significance of IT Governance and Management (ITGM) in the process of Digital Transformation (DT). However, a more comprehensive analysis is needed to understand the role of IT risk management in supporting such changes, particularly through a case study on the insurance company InsurCo. This study employs the Design Science Research (DSR) method, utilizing interview data and the COBIT 2019 IT Risk Management Focus Area framework to design an IT risk management approach that supports InsurCo's DT. Capability assessments, gap analysis, potential improvements, improvement designs, roadmap development, and impact estimation of implementation have been executed on seven ITGM components. InsurCo, being a State-Owned Enterprise, is bound by the regulation PER-2/MBU/03/2023 concerning the Guidelines for Governance and Significant Corporate Activities of State-Owned Enterprises. Additionally, the Financial Services Sector Master Plan 2021-2025 highlights the acceleration of DT. The prioritized ITGM objectives required by InsurCo are derived from three design factor determinations: focus areas, design mechanisms, and ITGM mechanisms concerning DT, resulting in the following prioritized ITGM objectives: APO12 Managed Risk, EDM03 Ensure Risk Optimization, and DSS04 Managed Continuity. There is an estimated average capability increase of 3.57% across these three ITGM objectives. The research outcome presents a recommended design for the seven components of the governance system, aiming to enhance the IT risk management capability index within InsurCo. This study contributes to a deeper understanding of the concept of prioritizing IT risk management to support organizational digital transformation, specifically providing practical implications for InsurCo to bolster the success of their strategic programs, and benefit the insurance industry.\",\"PeriodicalId\":195349,\"journal\":{\"name\":\"Jurnal Ilmiah Teknologi Infomasi Terapan\",\"volume\":\"19 1\",\"pages\":\"\"},\"PeriodicalIF\":0.0000,\"publicationDate\":\"2023-08-16\",\"publicationTypes\":\"Journal Article\",\"fieldsOfStudy\":null,\"isOpenAccess\":false,\"openAccessPdf\":\"\",\"citationCount\":\"0\",\"resultStr\":null,\"platform\":\"Semanticscholar\",\"paperid\":null,\"PeriodicalName\":\"Jurnal Ilmiah Teknologi Infomasi Terapan\",\"FirstCategoryId\":\"1085\",\"ListUrlMain\":\"https://doi.org/10.33197/jitter.vol9.iss3.2023.1338\",\"RegionNum\":0,\"RegionCategory\":null,\"ArticlePicture\":[],\"TitleCN\":null,\"AbstractTextCN\":null,\"PMCID\":null,\"EPubDate\":\"\",\"PubModel\":\"\",\"JCR\":\"\",\"JCRName\":\"\",\"Score\":null,\"Total\":0}","platform":"Semanticscholar","paperid":null,"PeriodicalName":"Jurnal Ilmiah Teknologi Infomasi Terapan","FirstCategoryId":"1085","ListUrlMain":"https://doi.org/10.33197/jitter.vol9.iss3.2023.1338","RegionNum":0,"RegionCategory":null,"ArticlePicture":[],"TitleCN":null,"AbstractTextCN":null,"PMCID":null,"EPubDate":"","PubModel":"","JCR":"","JCRName":"","Score":null,"Total":0}
引用次数: 0
摘要
信息技术(IT)的快速发展在促进公司内部创新方面发挥着至关重要的作用。以往的研究已经成功确定了信息技术治理和管理(ITGM)在数字化转型(DT)过程中的重要性。然而,要了解 IT 风险管理在支持此类变革中的作用,还需要进行更全面的分析,特别是通过对保险公司 InsurCo 的案例研究。本研究采用了设计科学研究(DSR)方法,利用访谈数据和 COBIT 2019 IT 风险管理重点领域框架,设计了一种支持 InsurCo 数字化转型的 IT 风险管理方法。对七个 ITGM 组成部分进行了能力评估、差距分析、潜在改进、改进设计、路线图开发和实施影响评估。作为一家国有企业,保险公司受关于国有企业治理和重大公司活动准则的 PER-2/MBU/03/2023 号条例的约束。此外,《2021-2025 年金融服务部门总体规划》强调要加快 DT 的发展。保险公 司所需的 ITGM 优先目标来自三个设计因素的确定:重点领域、设计机制和有关 DT 的 ITGM 机制,最终确定了以下 ITGM 优先目标:APO12 风险管理、EDM03 确保风险优化和 DSS04 连续性管理。据估计,这三个 ITGM 目标的平均能力提高了 3.57%。研究成果提出了治理系统七个组成部分的建议设计,旨在提高保险公司的信息技术风险管理能力指数。本研究有助于加深对优先考虑 IT 风险管理以支持组织数字化转型这一概念的理解,特别是为保险公司提供实际意义,以促进其战略计划的成功,并使保险行业受益。
Transformasi Digital InsurCo dengan Merancang Pengelolaan Risiko Teknologi Informasi Menggunakan Framework COBIT 2019 IT Risk Management Focus Area
Rapid advancements in Information Technology (IT) play a vital role in fostering innovation within a company. Previous research has successfully identified the significance of IT Governance and Management (ITGM) in the process of Digital Transformation (DT). However, a more comprehensive analysis is needed to understand the role of IT risk management in supporting such changes, particularly through a case study on the insurance company InsurCo. This study employs the Design Science Research (DSR) method, utilizing interview data and the COBIT 2019 IT Risk Management Focus Area framework to design an IT risk management approach that supports InsurCo's DT. Capability assessments, gap analysis, potential improvements, improvement designs, roadmap development, and impact estimation of implementation have been executed on seven ITGM components. InsurCo, being a State-Owned Enterprise, is bound by the regulation PER-2/MBU/03/2023 concerning the Guidelines for Governance and Significant Corporate Activities of State-Owned Enterprises. Additionally, the Financial Services Sector Master Plan 2021-2025 highlights the acceleration of DT. The prioritized ITGM objectives required by InsurCo are derived from three design factor determinations: focus areas, design mechanisms, and ITGM mechanisms concerning DT, resulting in the following prioritized ITGM objectives: APO12 Managed Risk, EDM03 Ensure Risk Optimization, and DSS04 Managed Continuity. There is an estimated average capability increase of 3.57% across these three ITGM objectives. The research outcome presents a recommended design for the seven components of the governance system, aiming to enhance the IT risk management capability index within InsurCo. This study contributes to a deeper understanding of the concept of prioritizing IT risk management to support organizational digital transformation, specifically providing practical implications for InsurCo to bolster the success of their strategic programs, and benefit the insurance industry.