Penerapan ISO 31000:2018 untuk Analisis Manajemen Risiko pada Sistem Informasi Smart Operation di PT. XYZ

J Jericho(1), Endang Haryani(2*),

(1) Universitas Kristen Satya Wacana, Salatiga, Indonesia
(2) Universitas Kristen Satya Wacana, Salatiga, Indonesia
(*) Corresponding Author


This study objectives to analyze risk management on the Information System of Smart Operation at PT. XYZ, through identifying risks, describing the impact of these risks, and recommending risk treatment. This system manages sales transactions, from sales orders to financial reporting. This study is driven by the importance of information technology investment to improve a company’s efficiency. However, this investment has uncertainties about the values that can be attained and the risks that may occur. The research applied a qualitative method and ISO 31000:2018 as the referred framework. The analysis identified 12 risks in the 5 sectors. The research found that there is no high-level risk, 8 medium-level risks and 4 low-level risks. Based on these findings, the study concludes that related to the implementation of the information system, there are no risks that endanger and harm the company. Based on the risk impact, the recommended risk treatment is to mitigate or reduce risks. There are 4 medium risks that have the greatest score of 6, among others are order recording errors, number of goods decrease, accidental loss of goods/theft, and wrong goods selection. Actions to reduce the risk are regular log checking, training on the use of applications, regular stock-opname, placing goods within CCTV range and rechecking documents with goods sent. Meanwhile, the risk of counterfeit money has the least score of 1, because the company has an accurate detection device

Full Text:



K. Farina and S. Opti, “Pengaruh Pemanfaatan Sistem Informasi Akuntansi dan Penggunaan Teknologi Informasi Terhadap Kinerja UMKM,” Jesya, vol. 6, no. 1, pp. 704–713, Jan. 2023, doi: 10.36778/jesya.v6i1.1007.

N. K. A. Apriliani and P. Y. Wijaya, “Peran Komunikasi dan Penerapan Teknologi Informasi Dalam Meningkatkan Kinerja Pegawai Putu Yudy Wijaya,” Widya Amrita, Jurnal Manajemen, Kewirausahaan dan Pariwisata, vol. 1, no. 3, pp. 954–961, 2021, [Online]. Available:

E. Putri Primawanti and H. Ali, “Pengaruh Teknologi Informasi, Sistem Informasi Berbasis Web Dan Knowledge Management Terhadap Kinerja Karyawan (Literature Review Executive Support Sistem (Ess) for Business),” Jurnal Ekonomi Manajemen Sistem Informasi, vol. 3, no. 3, pp. 267–285, 2022, doi: 10.31933/jemsi.v3i3.818.

H. Sulistiani, D. Alita, and P. Dellia, “Pemanfaatan Analisis Biaya Dan Manfaat Dalam Perhitungan Kelayakan Investasi Teknologi Informasi,” Jurnal Ilmiah Edutic, vol. 6, no. 2, 2020, doi: 10.21107/edutic.v6i2.7220.

R. Salwa and N. M. I. Padli, “Inovasi Bisnis Organisasi Melalui Pemanfaatan Sistem Dan Teknologi Informasi,” CEMERLANG: Jurnal Manajemen dan Ekonomi Bisnis, vol. 4, no. 1, pp. 21–31, 2024, doi:

M. A. G. Wattimena and A. R. Tanaamah, “Analisis Manajemen Risiko Teknologi Informasi Menggunakan COBIT 5 (Studi Kasus: TSI/Teknologi dan Sistem Informasi Perpustakaan UKSW),” Journal of Information Systems and Informatics, vol. 3, no. 3, pp. 483–498, 2021, doi: 10.51519/journalisi.v3i3.183.

E. Sudarmanto et al., Manajemen Risiko. Bandung: Widina Bhakti Persada, 2020.

H. Anam, “Manajemen Risiko Operasional Bank Syariah; Teori dan Manfaat,” Jurnal At-Tamwil: Kajian Ekonomi Syariah, vol. 5, no. 1, pp. 16–31, 2023, doi: 10.33367/at.v5i1.1476.

G. W. Lantang, A. D. Cahyono, and M. N. N. Sitokdana, “Analisis Risiko Teknologi Informasi pada Aplikasi SAP di PT Serasi Autoraya Menggunakan ISO 31000,” Sebatik, vol. 23, no. 1, pp. 36–43, Jun. 2019, doi: 10.46984/


D. L. Ramadhan, R. Febriansyah, and R. S. Dewi, “Analisis Manajemen Risiko Menggunakan ISO 31000 pada Smart Canteen SMA XYZ,” JURIKOM (Jurnal Riset Komputer), vol. 7, no. 1, p. 91, Feb. 2020, doi: 10.30865/jurikom.v7i1.1791.

I. Setiawan, A. R. Sekarini, R. Waluyo, and F. N. Afiana, “Manajemen Risiko Sistem Informasi Menggunakan ISO 31000 dan Standar Pengendalian ISO/EIC 27001 di Tripio Purwokerto,” MATRIK : Jurnal Manajemen, Teknik Informatika dan Rekayasa Komputer, vol. 20, no. 2, pp. 389–396, May 2021, doi: 10.30812/matrik.v20i2.1093.

L. D. Ivander and S. F. Papilaya, “Analisis Manajemen Risiko Teknologi Informasi Menggunakan Framework Iso 31000:2009,” Jurnal Ekonomi Volume 18, Nomor 1 Maret201, vol. 2, no. 1, pp. 41–49, 2023, doi: 10.30865/klik.v4i2.1174.

M. M. Sine and E. Maria, “Analisis Manajemen Risiko pada Penerapan Sistem Informasi Pembangunan Daerah (SIPD) Menggunakan IEC/ISO 31010:2019,” Building of Informatics, Technology and Science (BITS), vol. 4, no. 1, Jun. 2022, doi: 10.47065/bits.v4i1.1531.

E. Malau and E. Maria, “Penerapan IEC/ISO 31010:2019 untuk Manajemen Risiko pada Sistem Informasi Kesejahteraan Sosial-Next Generation,” Journal of Information System Research, vol. 4, no. 4, pp. 1063–1071, 2023, doi: 10.47065/josh.v4i4.3459.

M. R. Fadli, “Memahami desain metode penelitian kualitatif,” Humanika, vol. 21, no. 1, pp. 33–54, Apr. 2021, doi: 10.21831/hum.v21i1.38075.

D. Makajić-Nikolić, “ISO 31000: Risk Management Guidelines,” in Encyclopedia of Sustainable Management, Cham: Springer International Publishing, 2023, pp. 2078–2080. doi: 10.1007/978-3-031-25984-5_314.

F. A. Hardianto and Y. S. Dharmawan, “Manajemen Risiko TI ISO 31000 Dengan Cobit 5 Dan FMEA (PT. XYZ),” Jurnal SITECH : Sistem Informasi dan Teknologi, vol. 4, no. 2, pp. 133–146, Feb. 2022, doi: 10.24176/sitech.v4i2.6649.

C. R. Vorst, D. S. Priyarsono, and A. Budiman, Manajemen Risiko Berbasis SNI ISO 31000. Jakarta: Badan Standardisasi Nasional, 2018.

International Electrotechnical Commission, International Standart Risk management – Risk assessment techniques, 2.0. 2019.

Usman and A. A. Yudhistira, “Jurnal It Risk Management Analisis Resiko Teknologi Informasi Pada Toko Puntadewa Outdoor,” Jurnal Syntax Fusion, vol. 1, no. 03, pp. 54–64, 2021, doi: 10.54543/fusion.v1i03.54.




  • There are currently no refbacks.

JURASIK (Jurnal Riset Sistem Informasi dan Teknik Informatika)
Published Papers Indexed/Abstracted By:

Jumlah Kunjungan : View My Stats