Keamanan Learning Management System Perguruan Tinggi dengan Standard ISO/IEC 27002:2022

Saepudin Saepudin, Khidhir Akbar Ghofar, Hendra Wibiksana, Adib Adib, Tarsinah Tarsinah, Ai Nurhayati

Abstract


Learning Management System (LMS) adalah platform digital yang diterapkan di sektor pendidikan dan pelatihan korporat untuk mengelola, menyimpan, dan mendistribusikan materi pembelajaran online. LMS menyimpan data sensitif, seperti informasi pribadi pengguna, hasil evaluasi, dan materi pembelajaran sehingga LMS memiliki permasalahan yang rentan terhadap risiko keamanan dari ancaman internal maupun eksternal sehingga perlu penerapan standar keamanan yang solid. Penelitian ini bertujuan untuk mengevaluasi penerapan standard keamanan ISO/IEC 27002:2022 pada sistem LMS untuk melindungi data pengguna serta menjaga integritas dan kepercayaan terhadap sistem. Metode yang diterapkan dalam penelitian ini, yakni metode evaluasi penerapan standard keamanan ISO/IEC 27002:2022. Metode ini memberikan panduan kendali keamanan yang komprehensif untuk memastikan kepatuhan terhadap regulasi perlindungan data serta mitigasi risiko keamanan. Berdasarkan analisis dan penerapan standar ini, penelitian ini memberikan rekomendasi bagi pengelola LMS. Rekomendasi ini diterapkan agar dapat meningkatkan ketahanan sistem dalam menghadapi ancaman keamanan informasi yang semakin kompleks. Rekomendasi ini juga termasuk dengan langkah-langkah tambahan yang disesuaikan dengan kebutuhan spesifik organisasi. Rekomendasi untuk LMS perguruan tinggi XYZ adalah membuat beberapa SOP terkait keamanan sistem. Dampak dari penerapan SOP yang direkomendasikan ini dapat meningkatkan keamanan LMS pada perguruan tinggi XYZ


Keywords


ISO/IEC 27002; Learning Management System; keamanan sistem informasi.

Full Text:

PDF

References


Abdymanapov, S. A., Muratbekov, M., Altynbek, S., & Barlybayev, A. (2021). Fuzzy Expert System of Information Security Risk Assessment on the Example of Analysis Learning Management Systems. IEEE Access, 9, 156556–156565. https://doi.org/10.1109/ACCESS.2021.3129488

Abhiram, P., Anver, S. R., & Rahiman, M. A. (2023). A Deep learning framework for domain generation algorithm based malware detection. Research Square, 24(July), 1–31. https://doi.org/https://doi.org/10.21203/rs.3.rs-3154412/v1

Akacha, S. A.-L., & Awad, A. I. (2023). Enhancing Security and Sustainability of e-Learning Software Systems: A Comprehensive Vulnerability Analysis and Recommendations for Stakeholders. Sustainability, 15(19), 1–27. https://doi.org/10.3390/su151914132

Akinade, A. O., Adepoju, P. A., Ige, A. B., & Afolabi, A. I. (2025). Cloud Security Challenges and Solutions : A Review of Current Best Practices. International Journal of Multidisciplinary Research and Growth Evaluation, 6(1), 26–35. https://doi.org/https://doi.org/10.54660/.IJMRGE.2025.6.1.26-35

Alfalah, A. A. (2023). The role of Internet security awareness as a moderating variable on cyber security perception: Learning management system as a case study. International Journal of Advanced and Applied Sciences, 10(4), 136–144. https://doi.org/10.21833/ijaas.2023.04.017

Ansari, M. F., Sharma, P. K., & Dash, B. (2022). Prevention of Phishing Attacks Using AI-Based Cybersecurity Awareness Training. International Journal of Smart Sensor and Adhoc Network., 3(3), 61–72. https://doi.org/10.47893/ijssan.2022.1221

Aslan, O., Aktug, S. S., Ozkan-okay, M., Yilmaz, A. A., & Akin, E. (2023). A Comprehensive Review of Cyber Security Vulnerabilities, Threats, Attacks, and Solutions. Electronics, 12(1333), 1–42. https://doi.org/https:// doi.org/10.3390/electronics12061333

Avcı, Ü., & Ergün, E. (2022). Online students’ LMS activities and their effect on engagement, information literacy and academic performance. Interactive Learning Environments, 30(1), 71–84. https://doi.org/10.1080/10494820.2019.1636088

Bradley, V. M. (2020). Learning Management System (LMS) Use with Online Instruction. International Journal of Technology in Education, 4(1), 68. https://doi.org/10.46328/ijte.36

Chatterjee, P., Bose, R., Banerjee, S., & Roy, S. (2023). Enhancing Data Security of Cloud Based LMS. Wireless Personal Communications, 130(2), 1123–1139. https://doi.org/10.1007/s11277-023-10323-5

Egorov, E. E., Prokhorova, M. P., Lebedeva, T. E., Mineeva, O. A., & Tsvetkova, S. Y. (2021). Moodle LMS: Positive and Negative Aspects of Using Distance Education in Higher Education Institutions. Propósitos y Representaciones, 9(SPE2), 1–12. https://doi.org/10.20511/pyr2021.v9nspe2.1104

Falana, O. J., Ebo, I. O., Akinwunmi, O., & Odom, I. O. (2021). Se-LMS: Secured learning management systems for smart school. International Journal of Software Engineering and Computer Systems, 7(1), 36–46. https://doi.org/10.15282/ijsecs.7.1.2021.4.0080

Madhumala, Chhetri, S., KC, A., & Jain, H. (2021). Secure File Storage & Sharing on Cloud Using Cryptography. International Journal of Computer Science and Mobile Computing, 10(5), 49–59. https://doi.org/10.47760/ijcsmc.2021.v10i05.005

Nassif, A. B., Talib, M. A., Nasir, Q., Albadani, H., & Dakalbab, F. M. (2021). Machine Learning for Cloud Security: A Systematic Review. IEEE Access, 9(February), 20717–20735. https://doi.org/10.1109/ACCESS.2021.3054129

Nurhayati, A. (2019). Mapping Perception of Consumer Antivirus Software with Multidimensional Scaling Method. APTIKOM Journal on Computer Science and Information Technologies, 4(3), 91–95. https://doi.org/10.11591/APTIKOM.J.CSIT.13

Nurhayati, A. (2021). The effect of the internet during COVID-19 on work using the manova algorithm The effect of the internet during COVID-19 on work using the manova algorithm. Journal of Physics: Conference Series, 1844, 12030. https://doi.org/10.1088/1742-6596/1844/1/012030

Nurhayati, A. (2022). Pengembangan Jasa Salon Di Masa Pandemi Covid-19 Dengan Factor Analysis Method. Sistemik, 10(1), 33–40. https://doi.org/https://doi.org/10.53580/sistemik.v10i1.68

Nurhayati, A., Gusdevi, H., & Sugiatna, A. (2022). Effect of Social Media Function on Student Graduation Rate. Social Science Studies, 2(6), 461–471. https://doi.org/10.47153/sss26.4092022

Ogungbemi, O. S., Ezeugwa, F. A., Olaniyi, O. O., Akinola, O. I., & Oladoyinbo, O. B. (2024). Overcoming Remote Workforce Cyber Threats: A Comprehensive Ransomware and Bot Net Defense Strategy Utilizing VPN Networks. Journal of Engineering Research and Reports, 26(8), 161–184. https://doi.org/10.9734/jerr/2024/v26i81237

Piquero, N. L., Piquero, A. R., Gies, S., Green, B., Bobnis, A., & Velasquez, E. (2021). Preventing Identity Theft: Perspectives on Technological Solutions from Industry Insiders. Victims and Offenders, 16(3), 444–463. https://doi.org/10.1080/15564886.2020.1826023

Prathiba, S. B., Govindarajan, Y., Ganesan, V. P. A., Ramachandran, A., Selvaraj, A. K., Bashir, A. K., & Gadekallu, T. R. (2024). Fortifying Federated Learning in IIoT: Leveraging Blockchain and Digital Twin Innovations for Enhanced Security and Resilience. IEEE Access, 12(April), 68968–68980. https://doi.org/10.1109/ACCESS.2024.3401039

Suorsa, M., & Helo, P. (2024). Information security failures identified and measured–ISO/IEC 27001:2013 controls ranked based on GDPR penalty case analysis. Information Security Journal: A Global Perspective, 33(3), 285–306. https://doi.org/10.1080/19393555.2023.2270984

Villalón-Fonseca, R. (2022). The nature of security: A conceptual framework for integral-comprehensive modeling of IT security and cybersecurity. Computers and Security, 120(102805), 1–22. https://doi.org/10.1016/j.cose.2022.102805

Zafir, E. I., Akter, A., Islam, M. N., Hasib, S. A., Islam, T., Sarker, S. K., & Muyeen, S. M. (2024). Enhancing security of Internet of Robotic Things: A review of recent trends, practices, and recommendations with encryption and blockchain techniques. Internet of Things, 28(April), 101357. https://doi.org/10.1016/j.iot.2024.101357




DOI: https://doi.org/10.31004/edukatif.v7i2.7775

Article Metrics

Abstract view : 20 times
PDF - 32 times

Refbacks

  • There are currently no refbacks.


Copyright (c) 2025 Saepudin, Khidhir Akbar Ghofar, Hendra Wibiksana, Adib4, Tarsinah, Ai Nurhayati

Creative Commons License
This work is licensed under a Creative Commons Attribution-ShareAlike 4.0 International License.