Designing Attack Surface in Early Childhood Education System Environment using Risk Assessment and Enterprise Architecture Approach

As digital technologies increasingly permeate the education sector, the need to safeguard sensitive personal data within early childhood education systems becomes paramount. In Indonesia, where the adoption of digital tools in education is rapidly expanding, these systems are particularly vulnerable...

Full description

Saved in:
Bibliographic Details
Main Authors: Dadang Setiawan, Dita Oktaria, Sidik Prabowo, Elizabeth Sastrina Indrasari
Format: Article
Language:Indonesian
Published: Islamic University of Indragiri 2024-11-01
Series:Sistemasi: Jurnal Sistem Informasi
Online Access:https://sistemasi.ftik.unisi.ac.id/index.php/stmsi/article/view/4623
Tags: Add Tag
No Tags, Be the first to tag this record!
_version_ 1841555766913269760
author Dadang Setiawan
Dita Oktaria
Sidik Prabowo
Elizabeth Sastrina Indrasari
author_facet Dadang Setiawan
Dita Oktaria
Sidik Prabowo
Elizabeth Sastrina Indrasari
author_sort Dadang Setiawan
collection DOAJ
description As digital technologies increasingly permeate the education sector, the need to safeguard sensitive personal data within early childhood education systems becomes paramount. In Indonesia, where the adoption of digital tools in education is rapidly expanding, these systems are particularly vulnerable due to the hybrid nature of their processes, varying levels of digital literacy among stakeholders, and a complex regulatory environment. This research addresses the challenge of securing Indonesia’s early childhood education systems by designing a minimized attack surface through the integration of ISO 27005-based risk assessment and the TOGAF enterprise architecture framework. ISO 27005 provides a systematic methodology for identifying, assessing, and mitigating information security risks, ensuring compliance with the Indonesian Personal Data Protection Law (UUPDP). TOGAF is utilized to structure the enterprise architecture, aligning IT strategies with institutional goals while embedding robust security measures across the digital infrastructure. The research methodology involves identifying critical assets and potential threats, evaluating these threats using ISO 27005, and developing a secure architecture tailored to the unique needs of Indonesian early childhood education systems. The proposed framework is validated through application in a case study involving several Indonesian early childhood education institutions. This approach not only enhances the security posture of these institutions but also aligns with cultural and regulatory considerations, offering a comprehensive solution for protecting vulnerable educational environments in Indonesia.
format Article
id doaj-art-9a1ef14de6e64e149aa7ad8ff6bfda1e
institution Kabale University
issn 2302-8149
2540-9719
language Indonesian
publishDate 2024-11-01
publisher Islamic University of Indragiri
record_format Article
series Sistemasi: Jurnal Sistem Informasi
spelling doaj-art-9a1ef14de6e64e149aa7ad8ff6bfda1e2025-01-08T03:10:27ZindIslamic University of IndragiriSistemasi: Jurnal Sistem Informasi2302-81492540-97192024-11-011362527253910.32520/stmsi.v13i6.4623908Designing Attack Surface in Early Childhood Education System Environment using Risk Assessment and Enterprise Architecture ApproachDadang Setiawan0Dita Oktaria1Sidik Prabowo2Elizabeth Sastrina Indrasari3Telkom UniversityTelkom UniversityTelkom UniversityTelkom UniversityAs digital technologies increasingly permeate the education sector, the need to safeguard sensitive personal data within early childhood education systems becomes paramount. In Indonesia, where the adoption of digital tools in education is rapidly expanding, these systems are particularly vulnerable due to the hybrid nature of their processes, varying levels of digital literacy among stakeholders, and a complex regulatory environment. This research addresses the challenge of securing Indonesia’s early childhood education systems by designing a minimized attack surface through the integration of ISO 27005-based risk assessment and the TOGAF enterprise architecture framework. ISO 27005 provides a systematic methodology for identifying, assessing, and mitigating information security risks, ensuring compliance with the Indonesian Personal Data Protection Law (UUPDP). TOGAF is utilized to structure the enterprise architecture, aligning IT strategies with institutional goals while embedding robust security measures across the digital infrastructure. The research methodology involves identifying critical assets and potential threats, evaluating these threats using ISO 27005, and developing a secure architecture tailored to the unique needs of Indonesian early childhood education systems. The proposed framework is validated through application in a case study involving several Indonesian early childhood education institutions. This approach not only enhances the security posture of these institutions but also aligns with cultural and regulatory considerations, offering a comprehensive solution for protecting vulnerable educational environments in Indonesia.https://sistemasi.ftik.unisi.ac.id/index.php/stmsi/article/view/4623
spellingShingle Dadang Setiawan
Dita Oktaria
Sidik Prabowo
Elizabeth Sastrina Indrasari
Designing Attack Surface in Early Childhood Education System Environment using Risk Assessment and Enterprise Architecture Approach
Sistemasi: Jurnal Sistem Informasi
title Designing Attack Surface in Early Childhood Education System Environment using Risk Assessment and Enterprise Architecture Approach
title_full Designing Attack Surface in Early Childhood Education System Environment using Risk Assessment and Enterprise Architecture Approach
title_fullStr Designing Attack Surface in Early Childhood Education System Environment using Risk Assessment and Enterprise Architecture Approach
title_full_unstemmed Designing Attack Surface in Early Childhood Education System Environment using Risk Assessment and Enterprise Architecture Approach
title_short Designing Attack Surface in Early Childhood Education System Environment using Risk Assessment and Enterprise Architecture Approach
title_sort designing attack surface in early childhood education system environment using risk assessment and enterprise architecture approach
url https://sistemasi.ftik.unisi.ac.id/index.php/stmsi/article/view/4623
work_keys_str_mv AT dadangsetiawan designingattacksurfaceinearlychildhoodeducationsystemenvironmentusingriskassessmentandenterprisearchitectureapproach
AT ditaoktaria designingattacksurfaceinearlychildhoodeducationsystemenvironmentusingriskassessmentandenterprisearchitectureapproach
AT sidikprabowo designingattacksurfaceinearlychildhoodeducationsystemenvironmentusingriskassessmentandenterprisearchitectureapproach
AT elizabethsastrinaindrasari designingattacksurfaceinearlychildhoodeducationsystemenvironmentusingriskassessmentandenterprisearchitectureapproach