Tampilkan postingan dengan label Security. Tampilkan semua postingan
Tampilkan postingan dengan label Security. Tampilkan semua postingan

Rabu, 23 Maret 2011

SECURITY POLICIES AND PROCEDURES (Teknik Penyusunan SOP Security)-(PASTI JALAN)

SECURITY POLICIES AND PROCEDURES (Teknik Penyusunan SOP Security)


Bandung| April 5-7, 2011 | Rp.5.250.000,-  (Pasti Jalan)


 


Kendati manajemen pengamanan korporat ditopang oleh tiga pilar utama yakni sistem pengamananperalatan pengamanan dan personil peng-amanan; dalam pelaksanaannya praktis bertumpu kepada personil peng-amanan sebagai ujung tombak. Hal ini dikarenakan dari ketiga pilar di atas, hanya personil pengamananlah yang menjadi subyek sekaligus obyek dua pilar lainnya. Sebagai konsekuensinya kendati memiliki personil yang kompeten dan peralatan yang memadai, pengamanan korporat tidak akan maksimal apabila tidak didukung dengan sistem pengamanan yang kuat.


Sebuah sistem pengamanan berisikan kebijakan pengamanan, master plan pengamanan, standard operating procedurespost standing order dan ke-lengkapan peralatan administratifnya. Sepintas membuat SOP Security tampak mudah, namun apabila tidak in-line dengan siklus security risk management, hasilnya tidak akan maksimal. Pada akhirnya, kualitas pengamanan yang diharapkan tidak maksimal juga.


 


Tujuan Training :


Setelah mengikuti training ini, peserta ditargetkan :




  1. Memahami ancaman keamanan terkini.

  2. Memiliki pengetahuan tentang dasar-dasar security risk management.

  3. Memiliki pengetahuan tentang cara menganalisa proses bisnis dari sisi keamanan.

  4. Memiliki pengetahuan tentang cara merumuskan perilaku standar petugas pengamanan yang dibutuhkan untuk mengantisipasi setiap ancaman.

  5. Memiliki pengetahuan dan ketrampilan dalam menuangkan rumusan perilaku standar di atas dalam bentuk Standard Operating Procedures


 


Who should attend ?


Security Manager, HR&GA Manager, Risk Management Manager dan personil lain yang terkait dengan keamanan/pengamanan perusahaan.


 


Metode Pelatihan :


Pelatihan ini menggunakan metode interaktif, dimana peserta dikenalkan kepada konsep, diberikan contoh aplikasinya, berlatih menggunakan konsep, mendiskusikan proses dan hasil latihan.




  1. Paparan materi

  2. Pemutaran film

  3. Diskusi interaktif

  4. Praktek.


 


MATERI WORKSHOP


Outline :




  1. Review ancaman keamanan terkini

  2. Dasar-Dasar Security Risk Management

  3. Analisa Keamanan Proses Bisnis

  4. Teknik Perumusan Perilaku Standar Petugas Pengamanan Terhadap Setiap Potensi Ancaman

  5. Teknik Penulisan SOP Pengamanan


 


 


Course Leader


HARYOKO R. WIRJOSOETOMO


Berlatar belakang pendidikan profesional psikologi industri (UGM), telah berpengalaman 20 tahun dalam menggeluti dunia konsultan security, safety dan anti fraud. Client yang pernah ditangani diantaranya PT. Bimantara Citra, Tbk., PT. Steady Safe, Tbk., PT. Sari Husada, Tbk., PT. Bank Central Asia, Tbk., PT. Industri Gelas (Persero) dan client-client lain yang tidak dapat disebutkan karena terikat pakta konfidensialitas.


Sertifikasi yang dimiliki adalah: Security Lead Auditor, Safety Lead Auditor, Licenced NLPTM Practitioner, Certified Hypnotherapist, Fasilitator Nasional, Pandemic Preparedness Plan Workshop yang diselenggara-kan Komnas FBPI – Unicef Indonesia di 10 kota di Indonesia. Sedangkan kompetensinya: Disaster Risk Management, Security Risk Management, Safety Risk Management, Fraud Risk Management, Security & Business Intelligence, Terrorism.


 


General Information


Certificate of Appreciation


All attendees will receive a certificate of appreciation attesting to their participant in the training. This certificate will be providing in exchange for a completed training questionnaire.


 


Documentation & Dress Code




  • Quality training material kits will be on registration, additional papers, & handouts assignment by Our partner.

  • Note-taking by participants is encourage. However, to ensure free and open discussions, no formal records will be kept.

  • Casual clothing is recommended. The training atmosphere is informal.


 




Facilities




  • Quality training material (hardcopy and softcopy)

  • Quality training kits included T-shirt or jacket, cap, ect.

  • Certificate of Completion

  • Exclusive flash disk.



 


**) Optional


 


Tuition Fee & Registration  Deadline


IDR 5.250.000,-/ Person, Registration deadline a weeks before training held.]


 


Kamis, 24 Februari 2011

Effective management of information security, and continually improve the security level - ISO 27001 : Qualification Training

Effective management of information security, and continually improve the security level - ISO 27001 : Qualification Training
Aryaduta Hotel Semanggi / Santika Hotel Jakarta | 14 - 15 Maret 2011 |08.30 – 16.30 | Rp  5.150.000,-



 



This qualification training covers the knowledge required to gain an understanding of the content and requirements of the international standard, ISO 27001: ISMS preparation. It covers the certification requirements of ISO 27001 and how the guidance in ISO 27001 based on BS 7799 and BS 17799 can be adopted by an organization to deliver effective management of information security, and continually improve the security level. The qualification is aimed at staff in internal and external service provider organizations who require knowledge and understanding of the ISO 27001 standard and its content.



 



The training provides:




  • Information Security Management System-ISMS, process and other security management staff with an awareness of and familiarity with the ISO 27001 standard

  • Individuals with the necessary knowledge to assess the relevance and importance of the ISO 27001 standard to the security management activities within their own organization

  • Managers and team leaders with a knowledge of a typical ISO 270001 IT security management system

  • Internal auditors, process owners, process reviewers and assessors with a good knowledge of the ISO 27001, BS 1779, BS 7799 standard, its contents and justification of the need for internal reviews, assessments and audits

  • Evidence that delegates have achieved a foundation level of knowledge of the ISO 27001 standard.



 



OBJECTIVES



At the completion of this course, the participants should be able to :




  • Have overview and peripheral understanding of the aims and use of the ISO 27001 Specification and Code of Practice through an understanding of the roles of the component parts of the standard

  • Explain appropriately their understanding of the integrated approach to maintaining IT security management systems and processes that conform with ISO/IEC 27001 certification

  • Have conditional scoping and eligibility requirements and options to achieve certification

  • Understand the common dialectics of Information Security Management System (ISMS) and the Plan, Do, Check Act cycle

  • To provide a detail explanation of ISO 27001 ISMS component and the PDCA Cycle. Including Comprehensive Coverage of the Managerial and Technical Aspect of 27001. The training will discuss on how the company management involve in the Information Security Management System. Various methods to do risk Assessment. The implementation process flow to prepare for ISO 27001 Certification

  • Have the understanding on the objectives and requirements of each section of the ISO 27001 Specification

  • Have and understanding on need to plan, schedule, implement, review of ISO 27001 standard implementation

  • Have understanding on reviews and internal audits of IT Security Management systems and ISMS against the requirements of the standard are used.



 



WHO SHOULD ATTEND



Target Audience :
The course is aimed at all levels within the organization who want to attain an overview of the elements of the ISO 27001 standard and the certification process, and professionals such as the followings:




  • IT Manager/ Director

  • Business Manager/ Director

  • IT Security Audit

  • Risk Management Function

  • Engineer in charge of IT Security Function



 



TRAINING METHOD
Pelatihan ini menggunakan metode interaktif, dimana peserta dikenalkan kepada konsep, diberikan contoh aplikasinya, berlatih menggunakan konsep, mendiskusikan proses dan hasil latihan.




  1. 50% Theory

  2. 50% Practices

  3. Dynamic and interactive training presentation.




TRAINING SYLLABUS



Understanding ISO 27001 scope, purpose and use



Understand the principles of the ISO 27001standard and be able to describe its scope, purpose and use. The principles of a service management system including the need for:




  • Overall quality management system on a structured hierarchy of policy, process and procedures

  • Taking an end to end security management approach

  • Management responsibility and control

  • Recognition of the contribution of staff on security management



Understanding ISO/27001 and Information Security Management (ISMS) Approach



Understand the principles and processes for security management and the requirements of the overall security management system.
Adopting the Plan, Do, Check, Act cycle to improve service



Understand the approach to planning and implementing IT service management to ensure the required processes are effectively implemented, services are continually improved and the requirements of the ISO/IEC 20000 standard are met.



Review, assessment and audit of ISMS



Understand the review, assessment and audit of ISMS activities, including the use of supporting systems, tools and techniques that will enable an organization to plan and conduct reviews, assessments and internal audits of IT security management systems.




  • Key Components Syllabus

  • Background to Information Security

  • PDCA Process Approach

  • Information Security Management Systems

  • Documentation Requirement

  • Management Responsibility

  • Internal ISMS Audit

  • Management Review of ISMS

  • ISMS Improvement

  • Risk Assessment

  • Detail Discussion on The Managerial and Technical Aspect of the ISO 27001 Control Framework

  • Certification Process Flow.



 



LEAD FACILITATOR



 



 



Date



14 - 15 Maret 2011,              08.30 – 16.30



 



Venue



Aryaduta Hotel Semanggi / Santika Hotel Jakarta



 



Investment :




  • Rp  5.150.000,- /Person

  • Early Bird : Rp   4.850.000,- (Paid 5 days Before 14 March 2011)

  • Group Price : Rp 13.500.000,- (3 participants from the same company)



 



Rabu, 09 Februari 2011

SECURITY AWARENESS COURSE

SECURITY AWARENESS COURSE



Bogor | March 16-18, 2011 | IDR 5.250.000,-/ Person






Kompol Karna, S.Pd.






INTRODUCTION:



Adequate control of people is essential for thorough security, although any breach of security could be committed by employee or non-employee, during or after the work day or during the day or night, during on-the-job or off-the-job, at industrial area or at private premises, such breaches or violations can be prevented if there is a commitment that security is everybody responsibility and everybody business, so that everybody shall have security awareness and consciousness.









OUTLINE :



1.    Opening, Emergency Response Plan/Procedure Briefing, HSE/SHE/EHS/HES Moments, Ice Breaker, Pre-Test
2.    Introduction to Loss Control Management
3.    Definitions, Functions and Principles of Security
4.    The Need for Security in Oil & Gas Industry
5.    On-The-Job Security Awareness in Oil & Gas Industry Activities :




  • Security Awareness during the process of Employee Hiring and Recruitment

  • Security Awareness during the Company Business Transportation and Lodging Facilities

  • Security Awareness before, during and after working at Office Buildings

  • Security Awareness at Exploration / Seismic Operations

  • Security Awareness at Explosives Storage/Godown Area

  • Security Awareness at Drilling and Well Work Rigs Operations Area

  • Security Awareness at Oil & Gas Producing Well Sites and Flowlines Area

  • Security Awareness at Gathering Stations/Metering Stations/Gas Dehydration Plants Area

  • Security Awareness at Oil & Gas Transmission Lines / Pipelines Area

  • Security Awareness at Workshops/Warehouses/Transportation Equipment Yards Area

  • Security Awareness at Water Treatment/Waste Treatment Facilities Area

  • Security Awareness at Land/Marine/Air Transportation Activities

  • Security Awareness at other facilities (Guest Houses, Mess Halls, Recreation Halls, Hospitals, etc.)



6.      Off-The-Job Security Awareness :




  • Security Awareness at Own Houses or Company Houses

  • Security Awareness in Personal Business Transportation

  • Security Awareness during vacation or annual leave

  • Security Awareness at Sport, Recreation and Movie Facilities

  • Security Awareness at other Off-The-Job Activities



7.    Cases Study, Group Discussions, Group Presentations, VCD Displays, Post-Test, Course Evaluation, Closing






CRUCIAL BENEFITS FROM ATTENDING:



After attending this valuable and interesting course, the course participants will be able to :




  1. Understand the basic principles of Loss Control Management in relation with security matters

  2. Understand and implement the definitions, functions and principles of security.

  3. Understand and implement the Security Awareness aspects especially in Oil & Gas Industry






WHO SHOULD ATTEND?



Whoever from all departments in Oil & Gas Industry include Contractors or Business Partners (BP)






OUTLINE:



Introduction




  • Bioengineering

  • Bioremediation engineering

  • Managing Bioremediation Project



Microbial System of Bioremediation




  • Microbial metabolism

  • Microbiology of bioremediation

  • Bioprocess control parameter



Optimizing Microbial Transformation of Hazardous Chemicals




  • Aerobic and anaerobic metabolism

  • Degradation of petroleum hydrocarbon

  • Biodegradation of halogenated compounds



Site characterization for Bioremediation




  • Assessment for Biological Process

  • Assessment for In-situ Bioremediation

  • Assessment for Ex-situ bioremediation

  • Assessment for Process Control



Ex-situ Bioremediation Technique




  • Preparation

  • Site excavation

  • Processing

  • Monitoring

  • Evaluation



In-situ Bioremediation Technique




  • Preparation

  • Construction

  • Monitoring

  • Evaluation



Bioremediation of Oil Sludge




  • Sludge Characterization

  • Biodegradability Test

  • Bioremediation Design

  • Monitoring & Evaluation



Bioremediation of Other Industrial Organic Pollutant




  • Biological Process for Liquid Waste

  • Activated Sludge for Oily Wastewater






YOUR COURSE LEADERS:



Kompol Karna, S.Pd. is master trainer interpersonal skill, coach ability development from Education and Training Institute Indonesian Police and  IOM. Course experience are Management Conflict, Nogotiator, Mass Control, Civil Unrest from  ICITAP USA. Now, he is a instructor in state police school Sukabumi and Master Trainer in Indonesian Police






General InformatioN



Facilities




  • Quality training material (hardcopy and softcopy)

  • Quality training kits included T-shirt or jacket, cap, ect.

  • Certificate of Completion

  • Exclusive flash disk.






Tuition Fee & Registration  Deadline




  • IDR 5.250.000,-/ Person

  • Registration deadline a weeks before training held






Minimum Participant



This training will be conducted if we receive registration letter from 3 (three) participants (Minimum)






Jumat, 28 Januari 2011

SECURITY MANAGEMENT PROGRAM

SECURITY MANAGEMENT PROGRAM



Wisma MM UGM, Yogyakarta & Laboratorium STTNAS | 21 – 23 Februari 2011 | 08.00 – 16.00 WIB | Rp. 4.500.000,-






DESKRIPSI



Pengelolaan Security (Fungsi Satuan Pengamanan) dalam suatu perusahaan merupakan suatu pekerjaan yang memiliki resiko bahaya yang tinggi, walaupun dalam pelaksanaanya bisa dibilang susah-susah gampang mengingat tugas-tugas rutin yang dilakukan seperti prosedur pengamanan, pemeriksaan maupun pengawalan.  Akan tetapi untuk mengoptimalkan Fungsi Satuan Pengaman Perusahaan disertai dengan improvisasi yang disesuaikan dengan bidang tugasnya, maka setiap personil atau tim yg ada dalam fungsi security harus dibekali pengetahuan managerial dan kepemimpinan, sehingga seluruh tugas & tanggung jawab dapat dilaksanakan secara effektif dan effisien.






Peserta :



HRD Manager, GA Manager, Security Manager, Chief of Security dan mereka yang ingin meningkatkan peran Security lebih baik lagi.






METODE



Presentation, Discussion, Case Study, Evaluation






MATERI




  1. Mengenali tugas-tugas rutin dan standar yang harus dijalankan oleh seorang Manajer Security

  2. Melakukan improvisasi Manajemen Security sesuai dengan bidang tugasnya

  3. Membangun rasa percaya diri bagi anggotanya bahwa security dapat memberi kontribusi yang positif terhadap citra perusahaan

  4. Dapat menentukan prioritas pekerjaan, mana yang harus didahulukan dan mana yang masih dapat ditunda

  5. Kepemimpinan seperti apa yang paling cocok diterapkan di departemen Security










INSTRUKTUR



TIM Pusdiklat Garuda Merah & Kepolisian






Waktu




  • 21 – 23  Februari 2011

  • 08.00 – 16.00 WIB






Tempat



Wisma MM UGM Yogyakarta dan Laboratorium STTNAS






Biaya



Rp. 4.500.000,- per orang non residential






FASILITAS



Certificate, Training Kit, Module / Handout, Lunch, Coffee Break, Souvenir



Selasa, 21 September 2010

IT SECURITY FOR NON IT PRACTITIONER

IT SECURITY FOR NON IT PRACTITIONER



Aryaduta Hotel Semanggi / Santika Hotel Jakarta| 29 - 30 October 2010 | 08.30 – 16.30 | Rp 2.950.000,-





 



BACKGROUND



Penerapan teknologi informasi di dalam suatu perusahaan sangat membutuhkan pengetahuan dan keterampilan dasar yang baik dalam aspek IT security untuk semua karyawan level manajer, kecuali IT practitioner. Hal ini dikarenakan tingkat kepentingan dan kebutuhan IT security terhadap informasi data yang dikelolanyapun berbeda-beda. Contoh ; department HRD, Accounting & Finance tentunya akan berbeda dalam tingkat kepentingan dan kebutuhan IT securitynya bila dibandingkan dengan department Production atau Puchasing.



Hal-hal tersebut juga harus dapat dipahami dari aspek resiko positif dan negative. Jika hal-hal demikian tersebut sudah dapat dimengerti dan dipahami oleh semua karyawan yang terlibat, baik secara langsung ataupun tidak langsung dalam penerapan teknologi informasi, maka akan sangat mengurangi problem yang timbul dan membuat sinergi positif kepada staf IT yang pada umumnya jumlahnya terbatas.



 



PURPOSE




  1. Membuat BIOS password system, windows user account password dan display properties password.

  2. Membuat file atau foldes menjadi Read-only atau Hidden.

  3. Dapat menjalankan software untuk memproteksi file atau folder yang ada di windows

  4. Membuat proteksi file dokument pada aplikasi Ms. Word 2003 dan Ms. Word 2007.

  5. Membuat proteksi file workbook dan worksheet pada aplikasi Ms.Excel 2003 dan Ms.Excel 2007.

  6. Mengkompress sejumlah folder data dibackup data hasil kompress ke CD atau DVD.

  7. Mengetahui & memahami general dokumen dan confidential dokumen.

  8. Mengetahui TCP/IP dan fungsinya.

  9. Menginstall software anti virus dan bagaimana mengupdate database antivirusnya.

  10. Mengetahui kebutuhan IT security untuk level service management



 



TRAINING METHOD



Pelatihan ini menggunakan metode interaktif, dimana peserta dikenalkan kepada konsep, diberikan contoh aplikasinya, berlatih menggunakan konsep, mendiskusikan proses dan hasil latihan.




  1. 25% Theory

  2. 75% Practices (Case study of Finance, HRD, Marketing, Production, Purchasing problems)

  3. Dynamic and interactive training presentation.



 



TRAINING SYLLABUS




  1. BIOS password system, Windows User Account Password and display properties

  2. Read-only or Hidden Files or Folder.

  3. Software proteksi file atau folder yang ada di windows.

  4. Proteksi file dokument pada aplikasi Ms. Word 2003 dan Ms. Word 2007.

  5. Proteksi file workbook dan worksheet pada aplikasi Ms.Excel 2003 dan Ms.Excel 2007.

  6. kompress folder data dan dibackup ke CD atau DVD.

  7. Mengetahui & memahami general documen dan confidential dokumen.

  8. Mengetahui TCP/IP dan fungsinya.

  9. Menginstall software anti virus dan bagaimana mengupdate database antivirusnya.

  10. Mengetahui kebutuhan IT security untuk level service management



 



WHO SHOULD ATTEND



Staff, Leader, Supervisor, Manajer yang sering menggunakan fasilitas dan aplikasi teknologi informasi.



 



FACILITATOR



ERAWAN SUPRIATNA, S. KOM & TIM



Praktisi & trainer yang mempunyai pengalaman lebih dari 15 tahun menjadi instructor / trainer di beberapa lembaga pelatihan swasta, instansi pemerintah / swasta di Jakarta, mulai tahun 1992 - 2003, antara lain di PT. Asiana IMI Industries, Tbk., PT. COMBIPHAR, di PT. LG Philips Display Devices Indonesia, PT. LG Electronics Indonesia, PT. LG Innotek Indonesia dan PT. Harita Prima Abadi Mineral (Mining Company). Pernah menjabat sebagai Manager EDP dan Manager Training & Development di perusahaan swasta dan perusahaan jasa konsultan. Jabatan terakhir beliau adalah sebagai Direktur di PT. Target Digital Solusindo. Beliau juga pernah memberikan pelatihan sebagai berikut : Mastering Microsoft Excel 2007 : Beyong Basic For Office Automation, Powerfull Data Analysis & Dashboard Reporting with Ms. Excel 2007, COBOL Programming, RPG Programming, FORTRAN Programming, RDBMS With SQL 2000, System Analyst and Design, VB6 Database programming, VF9 Database Programming, IT Security, ITIL, COBIT, dan lain-lain. Selain itu juga beliau adalah praktisi pelatihan dengan metode quantum teaching, quantum learning, mind mapping dan NLP di bagian pengembangan sumber daya manusia (HRD Training & Development) selama lebih dari 7 tahun. Dengan perpaduan metode pelatihan seperti itulah, pelatihan seberat apapun selalu dibawakan secara ringan, jelas dan tuntas. Sehingga proses pelatihan berlangsung dengan menyenangkan dan mencapai tujuan yang diinginkan oleh peserta pelatihan.








Date



29 - 30 October 2010 | 08.30 – 16.30






Venue



Aryaduta Hotel Semanggi / Santika Hotel Jakarta






Investment :




  • Rp 2.950.000,- /Person

  • Early Bird : Rp 2.800.000,- (Paid 5 days Before 29 October 2010)

  • Group Price : Rp 8.100.000,- (3 participants from the same company)









Selasa, 20 April 2010

INFORMATION SYSTEM SECURITY

INFORMATION SYSTEM SECURITY
KARTIKA CHANDRA HOTEL – Jakarta |  19  s/d  20  Mei   2010 | Rp.  3. 950.000,-






Course Contents and Descriptions




  1. IS Audit Process : Provide IS audit services in accordance with IS audit standards, guidelines, and best practices to assist the organization in ensuring that its information technology and business systems are protected and controlled

  2. IT Governance : To provide assurance that the organization has the structure, policies, accountability, mechanisms, and monitoring practices in place to achieve the requirements of corporate governance of IT

  3. System and Infrastructure Life cycle : To provide assurance that the management practices for the development/acquisition, testing, implementation, maintenance, and disposal of systems and infrastructure will meet the organization's objectives.

  4. IT Service Delivery and Support : To provide assurance that the IT service management practices will ensure the delivery of the level of services required to meet the organization's objectives

  5. Protection of Information Assets : To provide assurance that the security architecture (policies, standards, procedures, and controls) ensures the confidentiality, integrity, and availability of information assets.

  6. Business Continuity & Disaster Recovery : To provide assurance that in the event of a disruption the business continuity and disaster recovery processes will ensure the timely resumption of IT services while minimizing impact.






Target Audience  :



IT Operation Manager, MIS Manager, Internal Auditor, IT Operation functional roles.






Tuition Fee  :




  • Rp.  3. 950.000,- atau

  • Paket penginapan 3 malam Rp. 5.750.000,-



 



Senin, 08 Februari 2010

Pengamanan Objek Vital

Pengamanan Objek Vital


Ibis Slipi Hotel, Jakarta | March 1-3, 2010 | Rp.5.250.000,-



COURSE OBJECTIVES


After completion of this program participants will be able to:




  • Understand the functions and principles security

  • Understand HOW TO Identify consept security

  • How to Inpecting Building and propertry

  • Understand security and perform problem solving in hard situation.

  • Understand types of risk and risk management

  • Anticipate security problems in relation to Internal Control

  • Understand physical security , Lighting, Teror, teroris, and Document Control


COURSE OUTLINE



  • Introduction to security

  • Basic Security Consept

  • Setting up a crisis management team

  • Inpecting Building and propertry

  • Assessing threat

  • Physical security

  • Lighting

  • Teror,and, terorisme

  • Document Control


RECOMMENDED PARTICIPANT


The following category to professionals should attend:




  • Security & Loss Control Manager/ Coordinator/ Supervisor/ Engineer.

  • Emergency Management Team.

  • Building Tenant Manager/ Officer.

  • Public Relation Manager/ Officer.

  • Building Manager.

  • Field/ Operation Manager.


 


Instructor
Kom.Pol. Drs. H. Jayadi


AKBP Jayadi is a lecturer at Faculty of Industrial Engineering University Bhayangkara Jakarta Raya, Lecturer Criminalistik Ubhara Jaya, Coordinator of Industrial Security Management, Former Head of Sub Department Fire Forensic Puslabfor Polri, Fire Investigator, and Researcher in Industrial Safety and Fire Protection


Schedule
March 1-3, 2010
3 days

Venue
Ibis Slipi Hotel, Jakarta

Tuition Fee
Rp.5.250.000,- per participant, excluding accommodation & tax.

Selasa, 21 Juli 2009

Intro to ISO17799 IT Security Standard

Intro to ISO17799 IT Security Standard



Jakarta |  August  29th, 2009 | Rp. 2.250.000,-








Apakah perusahaan Anda memperlakukan informasi sebagai asset penting? Pernahkan Anda merasa gangguan pada bisnis Anda dikarenakan pesaing memiliki informasi yang sama dengan yang Anda pegang? Bagaimana Anda mengelola asset intangible ini? Sudahkah dilindungi dengan baik sehingga berdaya guna maksimal bagi perusahaan?



Informasi merupakan aset yang sangat penting bagi perusahaan. Dapat dikatakan bahwa penguasaan informasi merupakan salah satu senjata utama dalam persaingan bisnis. Pernahkah Anda merasa bahwa ide brilliant Anda dicuri pesaing? Pernahkah Anda melihat pesaing Anda mendapatkan proyek yang telah Anda incar dan baru Anda menyadari bahwa pesaing tersebut memenangkan proyek karena juga mengetahui informasi penting yang menurut Anda telah Anda rahasiakan sebaik mungkin?



Pernahkan Anda merasa bahwa hanya perusahaan Anda yang lebih tahu tentang suatu proyek baru, namun tiba-tiba pesaing Anda mampu mendapatkan proyek tersebut dan mengerjakan dengan baik seolah mereka juga memiliki semua informasi yang Anda kira hanya Anda yang tahu? Atau pernahkan Anda merasa bahwa seolah proyek internal perusahaan Anda banyak disalahgunakan oleh karyawan yang nampaknya mengetahui detail informasi tentang proyek tersebut walau seharusnya rahasia bagi mereka?



Jika Anda pernah mengalami hal-hal di atas atau yang sejenis, maka Anda harus mengikuti workshop ini – untuk dapat saling sharing info, experience, dll dengan sesama peserta maupun dengan fasilitator tentang bagaimana mengamankan aset paling penting bagi perusahaan, yaitu informasi, dan benchmarking dengan teknik perlindungan informasi berdasarkan ISO17799/BS7799, sebuah standar sistem manajemen keamanan informasi internasional yang berisi petunjuk dan best-practices dalam konteks keamanan informasi.



Dalam workshop ini juga akan didemokan bagaimana para hacker/cracker mendapatkan informasi rahasia di perusahaan Anda tanpa Anda mengetahuinya. Lebih istimewa lagi, Anda dapat ikut langsung mencoba menjadi hacker sehingga Anda memiliki sense yang diperlukan untuk menjaga keamanan informasi perusahaan Anda. Workshop ini bersifat pengantar umum, lebih menekankan pada sisi manajemen nya dan bukan pada sisi teknis IT nya.



 



Objective



Memahami konsep mendasar dalam keamanan informasi, bahwa keamanan informasi dalam dunia IT bukan sekedar firewall dan enkripsi.



Memahami standard untuk mengembangkan keamanan informasi



Mampu menciptakan budaya keamanan perusahaan



 



Outline





  • Introduction to IT Security

  • Introduction to ISO17799/BS7799

  • Kontrol ISO17799/BS7799

  • Struktur Organisasi Keamanan

  • Information Security Management System

  • Strategi Implementasi bagi SME/Enterprise

  • Demo Teknik Hacking & Securing System




 



Previous Participant



PT. Bursa Efek Jakarta (BEJ) PT. Sari Husada, Tbk, PT. Yusen Air & Sea Service Indonesia, PT. Steel Pipe Industry of Indonesia, PT. Leighton Contractors Indonesia, PT. Rotaryana Prima



 



Participant



CEO, CIO, IT/IS/IM Staff/Manager, Project Manager, HRD



 



Testimonial



” Sangat memuaskan, Materi sangat bermanfaat bagi kami karena penambahan pengetahuan dan Sharing ”



(Kasyono, , IT System Administration, PT Leighton Contractors Indonesia).



” Sangat baik sebagai pengenalan menuju ISO17799 dan dapat membuka wawasan lebih dalam pengembangan ISMS ”



(M. Henry Ratdithyo, Ka. Unit Pemeriksaan Dan Operational IT, Bursa Efek Jakarta)



 



Workshop  Leader



Hadibowo



Sejak 1996, Sovan telah aktif mengembangkan IT security management maupun business process internal, serta memimpin proyek implementasi open-source secara nasional di suatu perusahaan. Selain aktif memberikan seminar, pelatihan, workshop baik internal maupun eksternal/international, ia kini sebagai praktisi IT Security dari R&D salah satu BUMN besar di Indonesia.



 



Venue



Workshop akan dilaksanakan di Hotel Grand Flora (Kemang) / Arcadia / IBIS /Twin Plaza / Kartika Chandra / hotel lainnya di Jakarta yang akan kami konfirmasikan di dalam confirmation letter



 



Fee :





  • Rp. 1.450.000,- (Registration 3 person/more; payment before Aug 21th, 2009)

  • Rp. 1.750.000,- (reg  before Jul 14th, 2009; payment before Aug 21th, 2009)

  • Rp. 2.250.000,- (Full Fare)






Free : puluhan halaman template untuk membantu Anda memeriksa apakah perusahaan sudah sesuai dengan ISO17799.



Tambahkan dengan Rp 4.000.000, Anda akan mendapatkan ISO17799:2005 dan ISO27001:2005 ( diterima 2 minggu setelah pembayaran)