Information Technology Risk Analysis and Mitigation Using ISO 31000 and House of Risk (HOR) for SIAK in Western Seram Regency


  • Christine Pentury UKSW Salatiga
  • Johan Jimmy Carter Tambotoh System Information Department, Faculty of Technology Information, Satya Wacana Christian University



SIAK, ISO 31000, HOR, Risk, Mitigation


SIAK stands for population administration information system. It is a computerized system that was established according to administrative service regulations to organize the population administration system in Indonesia, more precisely in the Western Seram Regency. Given the critical function of this application in aiding in identifying regional demographic statistics, it is vital to examine potential dangers while also identifying mitigation measures that may be performed to avoid them. ISO 31000 was utilized in the study to map potential hazards for subsequent reduction using the House of Risk (HOR) methodology. According to the findings of this research, there is one danger that falls into the high category, namely the unstable network. Additionally, based on the results of risk mitigation identification, two mitigation steps are identified that can mitigate 60% of existing risks, namely the construction particular resistant to natural disasters for critical equipment storage and collaboration with internet providers to ensure stable internet and network connections.


Aprianto, K., Endroyono, E., & Nugroho, S. M. S. (2021). Analisis Manajemen Risiko SPBE Menggunakan COBIT 5 For Risk dan ISO 31000: 2018 di Kabupaten Magetan (E-Government Risk Management Analysis Using COBIT 5 For Risk and ISO 31000: 2018 in Magetan Regency). JURNAL IPTEKKOM (Jurnal Ilmu Pengetahuan & Teknologi Informasi), 23(2), 107-122.

Asmarawati, S. G., & Pangeran, P. (2021). ISO 31000-Based Risk Management and Balanced Scorecard to Improve Company Performance: A Case Study at Indonsian YNK Tour and Travel Company. International Journal of Multicultural and Multireligious Understanding, 8(3), 376-388.

Ayuningtyas, M., & Tanaem, P. F. (2022). Information Technology Asset Security Risk Management at the Secretariat of the Salatiga City DPRD Using ISO 31000. Journal of Information Systems and Informatics, 4(1), 92-105.

Butarbutar, N., & Tanaamah, A. R. (2021). Analisis Manajemen Risiko Menggunakan COBIT 5 Domain APO12 (Studi Kasus: Yayasan Bina Darma). Journal of Information Systems and Informatics, 3(3), 352-362.

Christian, H. C., & Sitokdana, M. N. (2022). Analisis Risiko Teknologi Informasi pada BANK ABC Menggunakan Framework ISO 31000. JATISI (Jurnal Teknik Informatika dan Sistem Informasi), 9(1), 745-755.

Dwiyanto, Agus. 2010. Manajemen Pelayanan Publik: Peduli, Inklusif, dan Kolaboratif. Yogyakarta: Gadjah Mada University Press.

Hardianto, F. A., & Dharmawan, Y. S. (2021). Manajemen Risiko TI ISO 31000 Dengan Cobit 5 Dan FMEA (PT. XYZ). Jurnal SITECH: Sistem Informasi dan Teknologi, 4(2), 133-146.

Ikhsan, H. M., & Eko Setiawan, S. T. (2021). Upaya Mitigasi Kebencanaan Di Kabupaten Sragen, Indonesia Dengan Menggunakan Pendekatan Quantitative Risk Assessment Dan House Of Risk Fase 2 (Doctoral dissertation, Universitas Muhammadiyah Surakarta).

Munarja, M. T. (n.d.). Pemanfaatan Data Siak Dalam Layanan Data Dan Informasi Administrasi Kependudukan di Kabupaten Gunungkidul. Dukcapil Gunungkidul. Retrieved April 17, 2022, from

Manuputty, G. P., Azis, A. A., & Pratami, N. A. N. (2022). Analisis Manajemen Risiko Berbasis Iso 31000 Pada Aspek Operasional Teknologi Informasi PT. Schlumberger Geophysics Nusantara. E-Prosiding Akuntansi, 3(1).

Monica, E. G., & Pangeran, P. (2020). The Integration of Balanced Scorecard and ISO 31.000 Based Enterprise Risk Management Process to Mitigate Supply Chain Risk: Case Study at PT Anugerah Bintang Meditama. International Journal of Multicultural and Multireligious Understanding, 7(10), 616-628.

Munawir, H., Astuti, F. T., Setiawan, E., & Sufa, M. F. (2021). Mitigation of Halal Risk in the Production Process of Processing Beef Using the FMEA Method in UMKM Dendeng Sapi Asri. Warta LPM, 24(4), 779-787.

Nugroho, R. L., & Pangeran, P. (2021). Application of ISO 31000-Based Risk Assessment to Improve Balanced Scorecard Performance at Shofa Pharmacy. International Journal of Multicultural and Multireligious Understanding, 8(2), 251-263.

Nuris, A. M., Maharani, A., & Rachmadita, R. N. (2021). Analisis Risiko Proyek Pengembangan Perangkat Lunak Menggunakan Kerangka Kerja ISO 31000. Jurnal Metris, 22(02), 73-81.

Pribadi, H. I., & Ernastuti, E. (2020). Manajemen Risiko Teknologi Informasi Pada Penerapan E-Recruitment Berbasis ISO 31000: 2018 Dengan FMEA (Studi Kasus PT Pertamina). JSINBIS (Jurnal Sistem Informasi Bisnis), 10(1), 28-35.

Pujawan, I. N., & Geraldin, L. H. (2009). House of risk: a model for proactive supply chain risk management. Business Process Management Journal.

Purwaningsih, R., Ibrahim, C. N., & Susanto, N. (2021). Analisis Dan Mitigasi Risiko Rantai Pasok Pada Pengadaan Material Produksi Dengan Model House of Risk (Hor) Pada Industri Pulp. MIX: Jurnal Ilmiah Manajemen, 11(01), 349337.

Putri, A. A., & Syafi'i, D. I. I. (2022). Analisis Risiko Teknologi Informasi Menggunakan ISO 31000 (Studi Kasus: Aplikasi J&T Express Indonesia). Aisyah Journal Of Informatics and Electrical Engineering, 4(1), 1-9.

Safitri, R., & Pangeran, P. (2020). Balanced Scorecard and ISO 31000, Risk Management Integration to Improve Performance: Case Study at Indonesian Credit Union. International Journal of Multicultural and Multireligious Understanding, 7(6), 527-538.

Utomo, W. S. T., & Eko Setiawan, S. T. (2021). Mitigasi Bencana Banjir Di Kota Surakarta Dengan Metode House Of Risk (HOR) (Studi Kasus: Kota Surakarta) (Doctoral dissertation, Universitas Muhammadiyah Surakarta).




How to Cite

Pentury, C., & Tambotoh, J. J. C. . (2022). Information Technology Risk Analysis and Mitigation Using ISO 31000 and House of Risk (HOR) for SIAK in Western Seram Regency . Jurnal AKSI (Akuntansi Dan Sistem Informasi), 7(2).


