This is default featured slide 1 title

Go to Blogger edit html and find these sentences.Now replace these sentences with your own descriptions.

This is default featured slide 2 title

Go to Blogger edit html and find these sentences.Now replace these sentences with your own descriptions.

This is default featured slide 3 title

Go to Blogger edit html and find these sentences.Now replace these sentences with your own descriptions.

This is default featured slide 4 title

Go to Blogger edit html and find these sentences.Now replace these sentences with your own descriptions.

This is default featured slide 5 title

Go to Blogger edit html and find these sentences.Now replace these sentences with your own descriptions.

Selasa, 30 April 2019

tugas bahasa inggris bisnis how to enrich your vocab


25 Ways to Improve Your Writing Vocabulary


A great vocabulary is just one essential tool in a writer’s toolbox, along with punctuation, grammar, and many others. Vocabulary can make your writing more powerful and more effective and help you say exactly what you mean. This indispensable tool will help you choose the best word for every job and avoid vague words that do not give your readers a good sense of your meaning.

Building your vocabulary is one of the easiest ways to improve the power of your writing and make any writing task that much easier, as you will have several synonyms in your repertoire to pull from every time. Developing your vocabulary need not be difficult or painful. Here are 25 ways you can improve your writing vocabulary every day.

Use New Words

Use a word immediately after you learn it. Try to make a game out of using a new word as soon as you learn it. Every day, try to slip in a new word into the conversation, a journal entry, an assignment or an email to a friend. Do this as often as possible, and repeat the word to yourself.

Read Every Day

Once you’re out of school, word drills and assigned reading become things of the past. While these were tools for building your vocabulary repertoire while you were young, it doesn’t mean you should abandon reading. Try to read a well-written and edited essay, magazine article, book or news article every day. Nonfiction and technical books will quickly teach you new ways to think and speak with words you may be unfamiliar with, but any type of reading will help you along.

Learn Roots

Learn the roots of words. Most words in the English language are built from a common root, prefix, and suffix, usually with an origin in the Greek or Latin language. Once you learn a root, you’ll begin to understand more words that use the same root. For example, -duc- (Latin root word) means to lead or to make, such as in the words produce or deduce.

Use a Thesaurus

Keep a thesaurus handy. As you write, keep a thesaurus handy and use it when you find yourself using a word too often, or using a word that you know doesn’t quite convey the right meaning. This will help you better express yourself, and you’ll also learn a new word in the process.

Develop Practical Vocabulary

This means you should start by learning words that express what’s important to you for the task at hand. A good example of this is learning trade language or words you use often in a hobby or vocation. Rather than immediately turning to cliches or jargon that’s tossed around, look for clearer words to express to peers what you’re writing about.

Learn New Words Every Day

To improve your vocabulary quickly, make an effort to learn at least one new word every single day. There are plenty of ways to do this, such as a Word of the Day calendar or email list, or simply picking a word from a thesaurus or dictionary.

Look up Words You Don’t Know

How often do you come across words that are unfamiliar as you read? Don’t just gloss over them; take the time to look them up, and if you don’t have the time right then, write them down and look them up later.

Keep a Journal

Journaling won’t just help you develop your writing style, it will also help you improve your vocabulary. Try to use new or interesting words you’ve learned recently into a journal entry for the day or the week.

Identify Empty Words

You’re probably familiar with empty words in your speech (such as “uh” or “um”), but your writing probably has empty words as well. Look for these empty words in your writing that do not offer any substance to your reader and replace them with something more appropriate. The same principle applies to phrases and sentences, so make sure that you haven’t used six or seven phrases to say something that could be better communicated in one sentence filled with carefully-chosen words.

Diversify Your Reading List

If you tend to read the same sort of things day in and day out, you may not be exposing yourself to a wide enough range of vocabulary. Diversify the topics you read to include natural science, Shakespeare, contemporary literature, politics, history, philosophy or any other topics you think you may enjoy.

Do Word Puzzles

Word puzzles in the newspaper or a magazine aren’t just a fun way to fill time, they’re also perfect for boosting your working vocabulary. Crossword puzzles are a challenge that get your brain working hard to search your memory for words you do know but don’t use, and this can help you move words from your memory banks into your working set of vocabulary which will come across in your writing.

Try Word Board Games

There are plenty of word games on the market designed to improve vocabulary and language skills without being a bore. Some of these games you may have played as a child, so it’s time to break them out again and get to “work.” If you have a friend who could also use some help — or someone with a great vocabulary you think will challenge you — invite them over for a game night.

Practice New Words in Divergent Ways
It takes between 10 and 20 repetitions to make a new word a part of your vocabulary. To help the word settle into your mind and memory, write it down (both the definition and a sentence you make up using the word), use it in conversation, include it in an email or any other way you can think of.

Make up Associations

Start by saying the new word aloud, then relate it to a word you already know. A good example of this is gargantuan, which means “very large” or “gigantic.” Say a sequence aloud: small, medium, large, very large, gargantuan. Then list things you think are gargantuan.

Use Mnemonics
Mnemonic techniques are memory tricks you can use to remember new words. You may remember a word by sounding it out and thinking of a funny sentence that matches the meaning, such as turning egregious (extremely bad) into “Don’t let that smelly rotten egg reach us!”

Visualize New Words

Research shows that visualization is a great way to remember new words and their meanings. A good example of this is the word stratovolcano, which is a high, pointed mountain with a violent explosion. One way to remember this meaning is the fact that the prefix “strato” sounds like “straight-oh,” which may make you think of a straight ruler or a “straight-o-volcano,” which describes the word’s definition.

Make Your Own Vocabulary Tests

Keep a list of the new words you learn each week and incorporate into writing and conversation. At the end of each week, make yourself a quiz using the words to cement them in your memory.

Make Synonym Word Lists

Do you find yourself turning to the same word again and again in your writing? Grab a piece of paper and write it at the top. Next, brainstorm or use a thesaurus to generate a list of ten to twenty new words you can use instead. You can keep these lists in a vocabulary notebook and add to them whenever you learn a new synonym.

Take a Writing Course

There are plenty of online courses as well as in-person classes you can attend to boost your writing vocabulary and learn how to use new words correctly. Try to find a self-paced course that uses assignments and quizzes to hep you increase fluency and brush up on your writing skills. Some classes are aimed at essay writing or creative writing, so you can find a class that will help you improve the style you need the most help with.

Edit Your Own Writing

After you finish writing, be your own editor and go though the piece with a fine-toothed comb to identify overused and nondescript words with something more precise or colorful. Editing is an important process for spotting writing errors, but it’s also great for improving the tone, style, and clarity of your writing. It might help to read the sentences aloud, then note any lack of precision. Search through your memory for more descriptive words, or consult a thesaurus if you need to.

As you replace words, remember that using a large number of complex words won’t necessarily clarify the meaning, and it may just make your writing more pompous. Ask yourself, “Do I know a better word to use instead?” You may replace “use” with “acquire” or “obtain,” or “do” with “perform.”

Move Words from Comprehensive to Expressive Vocabulary
You actually have two types of vocabulary: one is a much larger set of words you understand, even if only vaguely, and the other is a smaller set of words you actually use to express yourself. Moving words from your comprehensive, but passive vocabulary, to your active, expressive vocabulary is easier than you think. To do this, you’ll need to know how to define, pronounce and spell the words. Say them out loud and use them at every opportunity to move them into your active set.

Ask for Feedback

Do you think your writing could use some help? If you’re struggling with your written vocabulary, try asking someone else for help. A second set of eyes can offer a great deal of insight and spot problems you may not notice yourself, including poor word choice. Don’t be afraid to ask a friend, teacher, co-worker or someone online to review your writing for feedback on your vocabulary.

Carry a Dictionary and Thesaurus with You

How often do you find yourself with free time and nothing to do? Carry a pocket thesaurus or dictionary with you and you’ll find time to beef up your vocabulary while you’re waiting for an appointment, commuting to work or waiting for a bus. Whenever you have a few minutes to spare, read a page or two and learn a new word to add to your writing. It’s also a great idea to look up obscure words you don’t quite grasp that come to you on the fly as you go about your day. You can also use the dictionary or thesaurus to look up unfamiliar words you come across in your daily life.

Use College Preparation Tests

College prep tests that use SAT and ACT-type words are a great way to take your writing to the next level. This form of advanced study will challenge your mind and give you a new set of words to use that are practical and offer your writing the clarity it needs. You’ll also get the chance to brush up on the most important Latin and Greek roots and get a new set of words with activities to help move them into your active vocabulary set.

Play Games

There are tons of non-board games that will help you improve your writing vocabulary while you have fun. Try downloading fun word games onto your phone or computer so you can get some practice while you unwind after a busy day. Some games are designed to build vocabulary skills, but there are plenty of others that will help you practice spelling, phonics, and even typing skills. There are even some designed for college students to prepare for testing and vocabulary-rich exams.


Hopefully, this list has given you an excellent place to start to build your vocabulary a bit at a time. If you think about it, there are opportunities all around you to develop this important skill, so spend time every day reading and listening to take in new words and then develop a system to incorporate these new words in your writing and speech. Before long, you’ll find your vocabulary has grown to a new level and your writing has gained the clarity you need with an ease you didn’t think possible.

Kamis, 08 Juni 2017

Review Jurnal (English Version)

Combining ITIL, COBIT, and ISO/IEC 27002
(in Order to Design a Comperhensive IT Framework in Organization
)

1.       Introduction
Management is an attempt to direct and control a group of one or more people or entities for the purpose of coordinating and harmonizing them towards accomplishing a special goal . At present Management encompasses several dimension like human resources ,financial resource and technological resource. One new area of management is information technology management (or IT management). It is a combination of two branches of study, information technology and management.
‘Information Technology’ has several definition from different perspective :
- From the first perspective , IT system are application and infrastructure which are components of a larger product. They enable or are embedded in processes and service.
- From the second perspective , IT is an organization with its own set of capabilities and resource. IT organization can be one of various types such as business function , shared service units and enterprise –level core units.
- From the third perspective , IT is a category of service utilized by business . They are typically IT application and infrastructure that are package and offered as service by internal IT organization of external service providers. In this perspective IT cost are treated as business expenses.
- From the fourth perspective , IT is a category of business assets that provide a stream of benefit for their owner , including but not limited to revenue , income and profit. In this perspective IT cost are treated as investment.

All definition emphasize the importance of IT in the organization . therefore it is crucial to manage and implement IT in the organizations. There are several standards , tools , frameworks, and best practice to manage and maintain IT service. The most applicable and widely used such standards are ISO/IEC 27002 in information security. Hence it is better to combine them to make a comprehensive IT framework in the organization . Based on previous studies the best combination should be between laying ITIL , COBIT and ISO/IEC 17799 together . But ITIL de-facto standard and ISO/IEC 17799 standard recently has been refreshed and changed.

2.       ITIL
ITIL (Information Technology Infrastructure Library) is a de-facto standard which introduced and distributed by Office of Government Commerce (OGC) in UK and includes all IT parts of organization. At present ITIL is the most widely accepted approach to IT service Management in the world. It has an iterative, multidimensional and lifecycle form structure. ITIL has an integrated approach as required by the ISO/IEC 20000 standard with following guidance.


·         Service Strategy
The service strategy provides guidance on how to design , develop and implement service management form organizational capability perspective and strategic asset. It provides guidance on the principles underpinning the practice of service management which are useful for developing service management policies, guidelines and processes across the ITIL service lifecycle . service strategy guidance is applicable in the context of other parts of ITIL lifecycle. Service strategy covers these parts of IT system : the development of markets , internal and external , service assets, service catalogue and implementation of strategy through the service lifecycle.

·         Service Design
It is guidance for the design and development of service and service management processes. It covers design principles and method for converting strategic objective into portfolios of service and service assets. The scope of Service Design is includes the changes and improvements necessary to increase or maintain value to costumer over the lifecycle of service, the continuity of service, achievements of service levels and conformance to standards and regulations. It guides organization on how to develop design capabilities for service management.

·         Service Transition
It is  guidance for the development and improvement of capabilities for transitioning new and changed service into operations. Service Transition provides guidance on how the requirements of service strategy encoded in Service Design are effectively realized in Service Operation while controlling the risk of failure and disruption . This part of ITIL framework combines practices in release management , program management and risk management and place them in the practical context of service management.

·         Service Operation
Service Operation tries to embody practice in the management of Service Operation. It includes guidance on achieving effectiveness and efficiency in the delivery and support of service so as to ensure value for the customer and the service provider. Strategic objectives are ultimately realized through Service Operation , therefore making it a critical capability.

·         Continual Service Improvement
This is including of instrumental guidance in creating and maintaining value for customers through better design , introduction and operation of service. It combines principles , practice and methods from quality management, Change Management and  capability improvement. Organization learn to realize incremental and large-scale improvements in service quality , operational efficiency and business continuity.

3.       COBIT
The control Objectives for Information and related Technology (COBIT) is a set of best practice (framework) for information technology management created by the Information System Audit and Control Association (ISACA), and the IT Governance Institute (ITGI) in 1992 . COBIT was released and used primarily by the IT community. Later Management Guidelines were added , and COBIT became the internationally accepted framework  for IT governance and control.
                COBIT provides managers , auditors, and IT users with a set of generally accepted measures , indicators, processes and best practice to assist them in maximizing the benefits derived through the use of information technology and developing appropriate IT governance and control in a company.
                The COBIT mission is to research , develop, publicize and promote an authoritative , up to date, international set of generally accepted information technology control objective for day-to-day use by business managers and auditors. Managers, auditors ,and users benefit from the development of COBIT because it helps them understand their IT system and decide the level of security and control that is necessary to protect their companies assets through the development of an IT governance model.

COBIT covers four domains:

·         Plan and Organize
The Planning and Organization domain covers the use of technology and how best it can be used in a company to help achieve the company’s goals and objective. It also highlights the organizational and infrastructural form IT is to take in order to achieve the optimal results and to generate the most benefits from the use of IT.

·         Acquire and Implement
The aim is to identify its IT requirements acquiring the technology and to implement it within the company’s current business processes.
This domain also addresses the development of a maintenance plan that a company should adopt in order to prolong the life of an IT system and its components.

·         Delivery and Support
This domain tries to manage delivery service which include:
§  Define and Manage Service Levels
§  Manage Third-party Service
§  Manage Performance and Capacity
§  Ensure Continuous Service
§  Ensure System Security
§  Identify and Allocated Costs
§  Educated and Train Users
§  Manage Service Desk and Incidents
§  Manage the configuration
§  Manage Problems
§  Manage Data
§  Manage the Physical Environment
§  Manage Operation

·         Monitor and Evaluate
The Monitoring and Evaluation domain deals with a company’s strategy in assessing the needs of the company and whether or not the current IT system still meets the objectives for which it was designed and the controls necessary to comply with regulatory requirements. Monitoring also covers the issue of an independent assessment of the effectiveness of IT system in its ability to meet business objective and the company’s control process by internal and external auditors.

4.       ISO/IEC 27002
This is an information security management system (ISMS) standard which is the code of practice for Information Security Management. It list security control objectives and recommended range of a specific security controls .

Organizations that implement an ISMS in accordance with the best practice advice in ISO/IEC 27002 are likely simultaneously to meet the requirements of ISO/IEC 27002, but certification is entirely optional (unless mandated by the organization’s stakeholder).

5.       ITIL related to COBIT
The strength within ITIL is the way processes are described with difference activities and flowcharts to use for target implementation . Cost/Benefit and Implementation issues are also described. There are also guidelines for reviews and Critical Success Factors, but these issues  are better described in COBIT, First of all COBIT is defined by the IT-audit community as a framework highly suitable for authority. COBIT is also stronger when it come to management issues where “Management Guidelines” provides the implementer with a reference where Critical Success Factors are describe together with Key Goal Indicators ,Key Performance Indicators  and Capability Maturity Models (CMM).

When ITIL is benchmarked with COBIT , it has been found that they correspond with each other to a high degree ,especially, when the processes  of COBIT are ITIL based as in its latest version . In spite of different words used for the same issues but they cover the same problem. It is only for incident Management in ITIL that there is not any equivalent in COBIT. This however ,does not mean that it is not covered at all. Instead it may be covered in the other part of the framework or with a different approach. As shown in table therefore it is better to borrow concepts/process, Activities, Cost/Benefits and planning to Implementation from ITIL standard and audits from COBIT to design a comprehensive framework.

6.       ITIL related to ISO/IEC 27002
As already mentioned, ISO/IEC 27002 is used for information security and not just IT issues, With such broad objective it is apparent that ISO/IEC 27002 does not correspond with ITIL as much as ITIL does with COBIT . ISO/IEC 27002 main straight is in its application for ensuring overall security at all levels within an organization.
Problem Management and Configuration Management in ITIL have not any equivalent in ISO 27002. Configuration Management has a huge impact on the IT environment and it should be handled in a secure manner. In addition in ISO/IEC 27002 security is characterized as the preservation of confidentially , integrity and Availability. In ITIL Availability is about quality aspect such as reliability, maintainability , serviceability & resilience. Another important finding in the benchmark it that financial issues are not handled at all in ISO/IEC27002 ,instead it is about only risk management, i.e. the implementer should mitigate risks to avoid costs. ITIL on the other hand , is about financing and cost allocation for the delivery of IT-services.
Therefore it is better to borrow Information Security process from ISO/IEC 270002 in designing a comprehensive framework.

Conclusion
In every organization today, IT service must be delivered in a cost efficient manner, mitigating security risk and complying with legal requirements. The equation is difficult to handle and in some cases it seems like an  impossible mission . To be able to survive in this environment a combination of ITIL, COBIT and ISO/IEC 27002 can be value able for organization targets , Implementers should use ITIL to define strategies , plans and processes, use COBIT for metrics, benchmarks and audits and use ISO/IEC 27002 to address security issues to mitigate the risk as below in Table 2.
ITIL
COBIT
ISO/IEC 27002
Concepts/process
Critical Success Factors
Information Security
Activities
Metric (CSF,KPI)

Cost/Benefits
Benchmarking (CMM)

Planning for Implementation



Audit


        

Review Jurnal

MANAJEMEN RESIKO TEKNOLOGI INFORMASI UNTUK KEBERLANGSUNGAN LAYANAN PUBLIK MENGGUNAKAN FRAMEWORK INFORMATION TECHNOLOGY INFRASTRUCTURE LIBRARY(ITIL VERSI 3)

ABSTRAKS
Kemajuan teknologi Informasi dan komunikasi (TIK) serta meluasnya perkembangan infrastruktur informasi global telah mengubah pola dan cara beraktivitas pada organisasi, institusi, industri, maupun pemerintahan. Fakta semakin meningkatnya ketergantungan organisasi kepada TI untuk mencapai tujuan strategi dan kebutuhan organisasi menjadi pendorong utama pentingnya TIK. Manajemen TI dan merencanakan strategi-strategi dalam keberlangsungan layanan TI harus dilakukan secara sistematis dan latihan yang terus menurus untuk meningkatkan dan memperbaiki layanan TI.
Kata Kunci: Manajemen resiko TI, ITIL,Layanan TI

1.      PENDAHULUAN
     Kemajuan teknologi informasi dan komunikasi (TIK) serta meluasnya perkembangan infrastruktur informasi global telah mengubah pola dan cara beraktivitas pada organisasi, institusi, industri, maupun pemerintahan. Fakta semakin meningkatnya ketergantungan organisasi kepada TI untuk mencapai tujuan strategi dan kebutuhan organisasi  menjadi pendorong utama pentingnya TIK. Ketergantungan tersebut menyebabkan tumbuhnya kebutuhan akan layanan TI berkualitas tinggi yang mengikuti kebutuhan organisasi dan user yang sesuai dengan perkembangannya.
     Penyelenggaraan pemerintahan dalam rangka pelayanan publik memerlukan tata kelola yang baik(Permenkominfo, 2007). Di sisi lain, penggunaan TIK oleh institusi pemerintahan sudah dilakukan sejak beberapa dekade lalu, dengan intensitas yang semakin meningkat. Dalam upaya memastikan penggunaan TIK tersebut benar-bbenar mendukung tujuan penyelenggaraan pemerintahan, dengan memperhatikan efisiensi penggunaan sumber daya dan pengelolaan risiko terkait dengan itu, maka diperlukan tata kelola TI (Permenkominfo, 2007).
              Untuk meminimilasi resiko tersebut, setiap instansi pemerintahan daerah diharapkan dapat menyusun langkah terpadu untuk menjamin keberlangsungan layanan agar tetap dapat berfungsi dengan baik terutama dalam penggunaan layanan TI.
       Information Technology Infrastructure Library (ITIL) sebagai suatu kerangka kerja manajemen layanan TI dapat digunakan sebagai panduan dalam menyusun langkah-langkah operasional tersebut. Dengan kerangka kerja ITIL diharapkan resiko yang mungkin terjadi dapat diminimalisasi serta dapat dilakukan mitigasi resiko dalam upaya menjaga keberlangsungan layanan TI.

2.      MANAJEMEN RESIKO TI
 Resiko merupakan fungsi kemungkinan (likelihood) sumber ancaman (threat-source) mengeksploitasi kerentanan (vulnerability) potensial, yang menghasilkan dampak (impact) kejadian yang merugikan organisasi (Spremic, 2008). Menurut Spremic, resiko yang terjadi pada pemanfaatan TI dapat memberikan dampak negatif terhadap aset TI (data, software, hardware), layanan TI, bisnis proses, serta organisasi secara keseluruhan.
                   Sedangkan menurut IT governance, IT Audit dan IT security, manajemen resiko TI adalah proses untuk memahami dan memberikan respon terhadap faktor yang dapat menyebabkan kegagalan dalam autentikasi, non-repudiation, kerahasiaan, integritas atau ketersediaan dari sistem informasi. Sesuai dengan kebijakan yang tertuang didalam Permenkominfo no 41 tahun 2007, bahwa dalam rangka melakukan tata kelola TI oleh institusi pemerintahan perlu dilakukan manajemen resiko yang mencakup resiko proyek, resiko atas informasi, dan resiko atas keberlangsungan layanan (Permenkominfo, 2007)

2.1 Perencanaan Manajemen Resiko TI
Menurut Spremic (2008) untuk keberhasilan dalam menjaga segala sesuatu yang dapat menyebabkan permasalahan, setiap organisasi harus membangun metode dan teknik untuk mengendalikan insiden-insiden yang terjadi pada TI dan untuk mengidentifikasi resiko yang mungkin terjadi. Terdapat tahapan-tahapan penting dalam perencanaan manajemen resiko TI:
Identifikasi dan klasifikasi resiko TI,
Penilaian resiko TI (Business Impact Analysis) dan menentukan prioritas,
Strategi penanggulangan resiko TI – identifikasi pengendalian TI,
Implementasi dan dokumentasi dari penanggulangan resiko (pengendalian TI),
Pendekatan portofolio resiko TI dan keselarasan dengan strategi bisnis,
Pengawasan berkala terhadap tingkat resiko TI dan audit.

2.2 Kerangka Kerja Manajemen Resiko TI
Prinsip M_o_R – prinsip-prinsip tersebut merupakan esensi dalam pengembangan praktik manajemen resiko yang baik dan diturunkan dari prinsip-prinsip tatakelola perusahaan (corporate governance).
   Pendekatan M_o_R – pendekatan organisasi untuk prinsip-prinsip tersebut dibutuhkan untuk mendefinisikan dan persetujuan dalam dokumen berikut:
Kebijakan manajemen resiko
Panduan proses
Perencanaan
Registrasi resiko
Permasalahan log
Proses M_o_R – berikut ini menjelaskan empat tahapan aktivitas dalam manajemen resiko:
Identifikasi – ancaman dan peluang dalam aktivitas yang dapat mempengaruhi kemampuan dalam mencapai tujuan.
Menilai – pemahaman net effect dari identifikasi ancaman dan peluang aktivitas yang dilakukan.
Merencanakan – mempersiapkan tanggapan manajemen secara spesifik yang dapat mengurangi ancaman dan memaksimalkan peluang.
Implementasi – penerapan rencana manajemen resiko, mengawasi efektivitas dan mengambil langkah yang diperlukan dalam menanggulangi ekspektasi yang tidak sesuai.
         Embedding dan reviewing M_o_R diperlukan review keberlanjutan dan peningkatan bahwa hal tersebut masih baik untuk digunakan Komunikasi diperlukan aktivitas komunikasi yang tepat dalam menjamin bahwa setiap orang tetap up to date dengan perubahan dalam ancaman, peluang dan seluruh aspek manajemen resiko.

2.3 Information Technology Service Continuity Management  (ITSCM)
        ITSCM merupakan salah satu proses area dari service design ITIL versi 3. Tujuan dari ITSCM adalah untuk mendukung seluruh proses manajemen keberlangsungan bisnis dengan memastikan bahwa kebutuhan teknis TI dan fasilitas layanan (termasuk sistem komputer, jaringan, aplikasi, data repositories, telekomunikasi, lingkungan, dukungan teknis dan service desk) dapat kembali beroperasi dan sesuai dengan timescale bisnis.

Sasaran dari ITSCM diantaranya adalah untuk :
Memelihara rencana-rencana berkelanjutan layanan TI (IT service continuity plans) dan rencana-rencana pemulihan TI yang mendukung kelanjutan bisnis
Melengkapi exercise business impact analysis (BIA) secara teratur untuk menjamin seluruh rencana-rencana berkelanjutan dikelola agar selaras dengan dampak perubahan dan kebutuhan bisnis
Menyediakan panduan dan saran untuk seluruh area bisnis dan TI yang berkaitan dengan kelanjutan dan pemulihan
Memastikan mekanisme yang tepat untuk kelanjutan dan pemulihan agar sesuai dengan tujuan kelanjutan bisnis
Menilai dan dampak perubahan pada rencanarencana kelanjutan layanan TI dan rencanarencana pemulihan TI
Memastikan bahwa ketersediaan layanan diimplementasikan sesuai dengan anggaran yang ditetapkan
3.      IMPLEMENTASI

3.1 Tahap Inisialisasi
Pada tahap ini dilakukan aktivitas-aktivitas sebagai berikut:
Penentuan kebijakan – hal ini harus dibangun dan dikomunikasikan sehingga semua orang yang ada di organisasi dapat terlibat. Dalam kebijakan ini ditentukan sasaran serta fokus dari manajemen. Peran dari pimpinan sangat menentukan keberhasilan dari kegiatan yang dilaksanakan.
Lingkup – pada tahap ini ditentukan lingkup serta tanggungjawab dari setiap staf yang ada diorganisasi. Kewenangan dan tanggungjawab dari setiap staf disesuaikan dengan kemampuan dan kapabilitas yang dimilikinya, agar mendukung terhadap setiap kegiatan yang akan dilaksanakan.
Alokasi Sumberdaya – keberlangsungan dari bisnis membutuhkan sumberdaya diantaranya uang dan sumberdaya manusia. Hal ini sangat penting untuk mendukung kelangsungan dari proses. Penentuan alokasi sumberdaya dengan tepat dapat mengefisiensikan kinerja yang dilakukan.
Struktur pengendali dan Organisasi Proyek – kegiatan yang dilakukan perlu diorganisir dan dikendalikan dengan baik, karena kegiatan yang bersifat kompleks sehingga perlu dilakukan langkah-langkah sistematis dan terkendali.
Perencanaan dan Proyek yang berkualitas – perencanaan yang baik dapat menjamin keberhasilan pencapaian kualitas kegiatan. Setiap kegiatan yang akan dilaksanakan perlu direncanakan dengan matang agar hasil yang diperoleh dapat dimaksimalkan serta meminimalisasi resiko-resiko yang terjadi.

3.2 Tahap Kebutuhan dan Strategi
3.2.1 Analisis Resiko
Pada tahap ini menilai level resiko dan membuat ranking resiko dengan mempertimbangkan faktor kecenderungan (likelihood) dan besarnya dampak resiko (impact). Pada proses penilaian ini memanfaatkan kerangka kerja Management of Risk (M_o_R). Pendekatan analisa resiko dapat secara kualitatif atau kuantitatif.

3.2.2 Strategi Keberlangsungan Layanan TI
Setelah mengetahui resiko-resiko yang terjadi serta prioritas yang harus dilakukan dari hasil analisis resiko maka dapat dirancang strategi-strategi untuk keberlangsungan layanan TI.
4.      
P   PENUTUP
Keberlangsungan layanan pada pelayanan publik merupakan salah satu hal yang perlu ditata kelola agar penyelenggaran pelayanan dapat terselenggara dengan baik sehingga masyarakat dan pengguna dapat terlayani sesuai dengan kebutuhannya. Manajemen resiko TI dan merencanakan strategistrategi dalam keberlangsungan layanan TI harus dilakukan secara sistematis dan latihan yang terus menerus untuk meningkatkan dan memperbaiki proses layanan TI.












Tugas (Softskill) Review Jurnal


PERBEDAAN ITIL DAN COBIT




Perbedaan ITIL & COBIT

COBIT atau Control OBjective of Information and related Technology merupakan sebuah pedoman bagi pengelolaan IT termasuk input, proses, output, serta process control yang terbagi kedalam 4 obyektif dan 34 area kunci. Masing-masing obyektif tersebut adalah: Planing & Organization (PO), Acquisition & Implementation (AI), Delivery & Support (DS) dan Monitoring.

Sedangkah ITIL merupakan sebuah kerangka pengelolaan layanan IT yang terbagi kedalam proses dan fungsi (lihat penjelasan tentang apa itu ITIL dalam artikel terpisah). Dua area/modul dalam ITIL, yaitu Service Support dan Delivery kemudian menjadi CORE dalam ITIL versi 2, yang kemudian kita kenal dengan IT Service Management.

Apabila dilihat dari posisi kedua pendekatan tersebut, maka dapat kita lihat hubungan secara langsung diantara Delivery & Support (COBIT) dan ITSM. Dimana COBIT mengatur masalah obyektif yang harus dicapai oleh sebuah organisasi dalam memberikan layanan IT, sedangkan ITIL merupakan best practice cara-cara pengelolaan IT untuk mencapai obyektif organisasi. Sehingga dapat dikatakan bahwa COBIT dan ITIL merupakan dua pendekatan dalam IT Governance dan tata kelola layanan teknologi informasi yang saling melengkapi. Apabila dibedah lebih jauh, relavansi ITIL tidak hanya berhenti di area Deliveri & Support, tetapi bisa kita petakan ke area COBIT lainnya.

Bagi anda yang sudah menggunakan COBIT sebagai standar kontrol terhadap pengelolaan IT, anda dapat juga mengimplementasikan ITIL dalam upaya meningkatkan tingkat kematangan IT perusahaan anda (Maturity Level). Bagi yang belum mengimplementasikannya dapat mengkombinasikan kedua pendekatan ini karena hubungannya satu dengan yang lain adalah saling melengkapi.






Referensi:


- https://id.wikipedia.org/wiki/ITIL


- http://aheva17.blogspot.co.id/2010/07/cobit.html


- http://itilindo.com/2009/03/17/posisi-itil-dan-cobit/

Sabtu, 08 April 2017

Tugas (Softskill) Puisi

“Pelangi Memudar ”



kulalui hari yang berawan
di bawah terik matahari
ku lupakan hari-hari yang tak bermakna
meskipun semua tak tertulis
bintang pun berkelip
disaat fajar masih terbenam
akankah mereka lenyap

hari esok yang indah
akankah kembali
Linang air mata kesedihan
jika aku mampu
kehilangan senyumanmu
saat itu aku tak bisa memetik nada
Untuk ku dendangkan

Jalan yang masih panjang
Kan bersarang dibenakku
Hembusan makna pun lenyap
aku tak sanggup lagi melihat
ketenangan panorama yang indah
pada ahirnya
kita kan bertemu
sebagai dua bintang diangkasa

Tugas (Softskill) Manajemen Layanan Sistem Informasi


Manajemen Layanan Sistem Informasi


Pengantar

#Bagaimana memahami manajemen layanan?


Dengan melakukan pengamatan proaktif pada pemberian layanan IT yang dilakukan untuk memastikan target akan menyepakati sebelumnya untuk tanggung jawab, kualitas dan ketersediaan secara konsisten dapat terpenuhi.


#Kenapa sangat penting untuk perusahaan?
karena ketika suatu perusahaan mulai banyak membutuhkan IT sebagai penyedia layanan, semakin penting untuk memperhatikan tingkat kebaikan dan kualitas layanan. Jika layanan IT ingin dikelola secara efektif, harus memperhatikan langkah-langkah yang akan diterapkan untuk memastikan bahwa kinerja yang sebelumnya telah sepakat untuk di toleransi.
#Bagaimana manajemen layanan dapat membantu penyedia layanan untuk memberikan dan mengelola layanannya?

Memastikan kinerja penyedia layanan berada dalam batas-batas yang ditentukan dan disepakati.
Pencegahan pelanggaran SLA/Service Level Agreement.
Identifikasi dan pemantuan Indikator Utama Kinerja (Key Performance Indicators or KPI)
Penyediaan informasi kepada fungsi desain layanan untuk memungkinkan peningkatan kualitas pelayanan.

Kerangka ITIL

IT Infrastructure Library (ITIL) merupakan standar yang dikeluarkan pemerintah United Kingdom (UK) sebagai kerangka kerja yang diacu oleh best practice proses dan prosedur manajemen operasional. Lebih spesifik, ITIL terutama memfokuskan terhadap pendefinisian fungsi, operasional dan atribut organisasi yang diperlukan agar manajemen operasional dapat dioptimasi secara penuh ke dalam dua kategori utama pengelolaan Aktivitas TI dalam perusahaan yaitu: Service Support Management dan Service Delivery Management.

ITIL atau Information Technology Infrastructure Library adalah suatu rangkaian konsep dan teknik pengelolaan infrastruktur, pengembangan, serta operasi teknologi informasi (TI). ITIL diterbitkan dalam suatu rangkaian buku yang masing-masing membahas suatu topik pengelolaan TI. Nama ITIL dan IT Infrastructure Library merupakan merek dagang terdaftar dari Office of Government Commerce (OGC) Britania Raya. ITIL memberikan deskripsi detail tentang beberapa praktik TI penting dengan daftar cek, tugas, serta prosedur yang menyeluruh yang dapat disesuaikan dengan segala jenis organisasi TI.

Walaupun dikembangkan sejak dasawarsa 1980-an, penggunaan ITIL baru meluas pada pertengahan 1990-an dengan spesifikasi versi keduanya (ITIL v2) yang paling dikenal dengan dua set bukunya yang berhubungan dengan ITSM (IT Service Management), yaitu Service Delivery (Antar Layanan) dan Service Support (Dukungan Layanan).
Pada 30 Juni 2007, OGC menerbitkan versi ketiga ITIL (ITIL v3) yang intinya terdiri dari lima bagian dan lebih menekankan pada pengelolaan siklus hidup layanan yang disediakan oleh teknologi informasi. Kelima bagian tersebut adalah:

Service Strategy
Service Design
Service Transition
Service Operation
Continual Service Improvement

Terdapat 2 komponen operasional ITIL yaitu :
Service Support (yaitu aktifitas yang dilaksanakan minimal setiap hari)
Service Delivery (yaitu aktivitas yang dilaksanakan minimal setahun/kuartal/bulanan)

Tujuan Information Technology Infrastructure Library (ITIL)

adalah untuk menyediakan petunjuk untuk praktek terbaik dalam manajemen layanan teknologi informasi. Ini mencakup pilihan yang dapat diapdopsi dan diadaptasi oleh organisasi berdasarkan kebutuhan bisnisnya, keadaan, dan kedewasaan dari penyedia layanan

Model Manajemen pelayanan I.T.I.L : Gambar kegiatan utama dari tahap siklus hidup layananan.



1. Service Strategy: Tahap perencanaan strategis dalam membangun kemampuan manajemen layanan (service management), dan penyelarasan layanan dan strategi bisnis.

Proses dan fungsi:
– Financial management

– Service portfolio management

– Demand management

2. Service Design: Tahap merancang dan mengembangkan layanan TI yang sesuai, termasuk arsitektur, proses, kebijakan dan dokumen; tujuan service desain adalah untuk memenuhi kebutuhan bisnis saat ini dan masa depan.

Proses dan fungsi:

− Service catalogue management

− Service level management

− Capacity management

− Availability management

− IT service continuity management

− Information security management

SUPPLIER management

3. Service Transition: Tahap mewujudkan kebutuhan dari tahapan sebelumnya, dan meningkatkan kemampuan dalam transisi layanan baru dan layanan modifikasi untuk dijadikan produksi.

Proses dan fungsi:

– Transition planning and support

– Change management

– Service asset and configuration management

– Release and deployment management

– Service validation and testing

– Evaluation

– Knowledge management

4. Service Operation: Tahap pencapaian efektivitas dan efisiensi dalam memberikan dan mendukung layanan dalam rangka untuk memastikan adanya nilai bagi pelanggan dan penyedia layanan.

Proses dan fungsi:

– Event management

– Incident management

– Request fulfillment

– Problem management

– Access management

– Monitoring and control

– IT operations

– Service desk

5. Continual Service Improvement: Fase menciptakan dan memelihara nilai bagi pelanggan dengan perbaikan desain, dan pengenalan layanan dan operasi.

Proses dan fungsi:

− The 7-step improvement process (CSI Improvement Process)

− Service reporting

STRATEGI LAYANAN:

Pengantar

Service Strategy memberikan panduan kepada pengimplementasi ITSM pada bagaimana memandang konsep ITSM bukan hanya sebagai sebuah kemampuan organisasi (dalam memberikan, mengelola serta mengoperasikan layanan TI), tapi juga sebagai sebuah aset strategis perusahaan. Panduan ini disajikan dalam bentuk prinsip-prinsip dasar dari konsep ITSM, acuan-acuan serta proses-proses inti yang beroperasi di keseluruhan tahapan ITIL Service Lifecycle.

Strategi layanan dari setiap penyedia layanan harus didasarkan atas dasar pengakuan bahwa pelanggan tidak membeli produk, mereka membeli kepuasan dari kebutuhan khusus. Oleh karena itu, untuk menjadi sukses, layanan yang disediakan harus dapat dirasakan oleh pelanggan untuk memberikan nilai yang cukup dalam bentuk manfaat yang ingin dicapai pelanggan.

Mencapai pemahaman yang mendalam mengenai kebutuhan pelanggan, dalam hal apa kebutuhannya, kapan dan mengapa itu terjadi, juga membutuhkan pemahaman yang jelas tentang persis yang pelanggan yang sudah ada atau potensi pengguna dari penyedia layanan. Hal ini, pada gilirannya, memerlukan penyedia layanan untuk memahami konteks yang lebih luas dari saat ini dan potensi pasar tempat beroperasi penyedia layanan, atau mungkin ingin beroperasi di dalamnya.

Strategi layanan tidak dapat diciptakan atau ada dalam isolasi strategi menyeluruh dan budaya organisasi yang dimiliki oleh penyedia layanan. Penyedia layanan mungkin ada dalam suatu organisasi semata‐mata untuk memberikan layanan pada satu unit bisnis yang spesifik, untuk layanan unit bisnis, atau mungkin beroperasi sebagai penyedia layanan eksternal yang melayani beberapa bisnis eksternal. Strategi yang diadopsi harus memberikan nilai yang cukup kepada pelanggan dan semua stakeholder penyedia layanan harus memenuhi

Jadi Service strategy/ Strategi Layanan adalah untuk melihat perspektif/sudut pandang, posisi, rencana kedepan, dan pola yang IT Service Provider harus jalankan agar menyokong bisnis yang organisasi kerjakan.

RESIKO

Setiap penyedia layanan tunduk pada kekuatan kompetitif. Semua penyedia layanan dan pelanggan beroperasi dalam satu atau lebih pasar internal atau eksternal. Penyedia jasa harus berusaha untuk mencapai pemahaman yang lebih baik dibandingkan pesaingnya dalam pasar yang dinamis, pelanggan di dalamnya, dan kombinasi dari faktor keberhasilan kritis pasar yang unik.

Jenis penyedia layanan TI

Services Strategy (SS), meliputi perencanaan strategis manajemen layanan dan keterpaduan pelayanan dengan strategi bisnis.
Services Design (SD), outlines desain danpengembangan layanan jasa dan prosesmanajemen.
Services Transition (ST), mengilustrasikanbagaimana persyaratan tahapan sebelumnya(strategi dan desain) untuk layanan yangberkelanjutan dan dapat dipertahankan.
Services Operation (SO), meliputi penyampaianyang efektif dan efisien dan dukungan layanan,juga menyediakan referensi untuk kegiatanoperasional dalam proses-proses lain.
Continual Service Improvement (CSI),perbaikan layanan yang berkelanjutan danpengukuran kinerja proses yang diperlukanuntuk layanan

Empat Strategi 'P':

Perspektif: visi yang khas
Position: keunikan posisi sebagai dasar untuk berkompetisi
Plan: bagaimana provider layanan akan mencapai visi
Pattern: pola dasar yang berulang dalam decision making, biasanya berdasarkantema pokok‟ atau guiding principles‟ atau kebijakan umum‟.

Manajemen Layanan sebagai Aset Strategis:
Penggunaan ITIL untuk mengubah kemampuan manajemen layanan menjadi aset strategis, dengan menggunakan Manajemen Layanan untuk memberikan dasar bagi kompetensi inti, kinerja khusus dan keuntungan tahan lama, serta meningkatkan potensi penyedia layanan dari:

kapabilitas: kemampuan penyedia layanan (dalam hal manajemen, organisasi proses, pengetahuan dan orang‐orang) untuk mengkoordinasikan, mengendalikan dan menyebarkan sumber daya.
sumber daya: masukan langsung untuk memproduksi layanan, misalnya keuangan, modal, infrastruktur, aplikasi, informasi dan orang‐orang.

Mengapa Desain Layanan itu Penting?

Desain Layanan adalah tahap dalam siklus hidup layanan secara keseluruhan dan merupakan elemen penting dalam proses perubahan bisnis.

Peran Desain Layanan dalam proses perubahan bisnis dapat didefinisikan sebagai:

Desain yang tepat dan inovatif layanan TI, termasuk arsitekturnya, proses, kebijakan dan dokumentasi, untuk memenuhi kebutuhan sekarang dan masa depan bisnis yang telah disepakati.

Lima Aspek Utama Dari Desain Layanan ?

Solusi layanan baru atau perubahan.
Sistem manajemen layanan dan perangkatnya, khususnya Portfolio Layanan.
Arsitektur teknologi dan sistem manajemen.
Proses, peran dan kemampuan.
Metode pengukuran dan satuan.

Tujuan dan sasaran utama Desain Layanan adalah sebagai berikut:

Desain layanan untuk mempertemukan manfaat bisnis yang telah disetujui.
Desain proses untuk menunjang sikus hidup layanan.
Mengidentifikasi dan mengelola resiko.
Desain keamanan dan kerentanan infrastuktur TI, lingkungan layanan, arsitektur, kerangka kerja, dan dokumen untuk menunjang desain dari kuaitas solusi TI.
Membangun keahlian dan kemampuan dalam TI.
Berkontribusi terhadap keseluruhan peningkatan kualitas layanan TI.

SUMBER :

Brinkman, Richard. 1999. “Startegic Asset Management Framework”. South Australia: Government of South Australia.


Glovia International. 2013. “Asset Lifecycle Management”. USA: Worldwide Headquarters, Inc.


Harlow, V. Kenneth, Brown, Caldwell. “Asset Management”. Irvine.