Honeypot-Integrated CSIRT Model Based on ISO 27001/27035

https://doi.org/10.22146/ijccs.117482

Ni Putu Suci Meinarni(1*), I Putu Agus Eka Darma Udayana(2)

(1) Institut Bisnis dan Teknologi Indonesia
(2) Institut Bisnis dan Teknologi Indonesia
(*) Corresponding Author

Abstract


Higher education institutions are evolving into digital entities that manage critical assets, including sensitive personal data and academic records. However, many universities in Indonesia still lack a structured and legally compliant approach to information security, leaving them vulnerable to cyber threats such as defacement attacks and data breaches. This paper proposes a conceptual model for a Computer Security Incident Response Team (CSIRT) specifically designed for academic environments. The model integrates international standards ISO/IEC 27001 for Information Security Management Systems and ISO/IEC 27035 for incident handling, with proactive threat detection using honeypot technology. The framework consists of four layers: governance, operational procedures, technology infrastructure, and legal compliance. Designed using a systems-thinking approach and validated through expert review, the model addresses institutional readiness and outlines a roadmap for phased implementation. It aims to support early threat detection, structured response workflows, and digital forensic readiness in alignment with Indonesian cybersecurity law. This honeypot-integrated CSIRT model contributes a strategic reference for universities seeking to enhance their security capabilities in a sustainable and lawful manner.

Keywords


CSIRT; Honeypot; ISO/IEC 27001; ISO/IEC 27035; Information Security

Full Text:

PDF


References

N. P. Suci Meinarni and H. B. Sari, “Analisis Potensi Kejahatan di Dalam Dunia Maya Terkait Data,” Kertha Wicaksana, vol. 14, no. April 2019, pp. 9–15, 2020, doi: https://doi.org/10.22225/kw.14.1.1530.9-15.

L. Anastasia, T. Dewi, M. Kenotariatan, N. Putu, and S. Meinarni, “ANALISIS EKONOMI TERHADAP HUKUM DALAM KEGAGALAN PERLINDUNGAN DATA PRIBADI PENGGUNA E-COMMERCE ECONOMIC ANALYSIS OF LAW IN FAILURE TO PERSONAL DATA PROTECTION OF E-COMMERCE USERS I Dewa Gede Dana Sugama,” Jurnal IUS Kajian Hukum dan Keadilan, vol. 9, no. 3, 2021, [Online]. Available: http://jurnalius.ac.id/ojs/index.php/jurnalIUSDOI:http://dx.doi.org/10.29303/ius.v9i3.978

W. Villegas-Ch., I. Ortiz-Garces, and S. Sánchez-Viteri, “Proposal for an Implementation Guide for a Computer Security Incident Response Team on a University Campus,” Computers, vol. 10, no. 8, p. 102, Aug. 2021, doi: 10.3390/computers10080102.

Republik Indonesia, Undang-undang (UU) Nomor 1 Tahun 2024 tentang Perubahan Kedua atas Undang-Undang Nomor 11 Tahun 2008 tentang Informasi dan Transaksi Elektronik. Accessed: Aug. 04, 2024. [Online]. Available: https://peraturan.bpk.go.id/Details/274494/uu-no-1-tahun-2024

“Permen PAN & RB No. 89 Tahun 2020,” Database Peraturan | JDIH BPK. Accessed: Oct. 31, 2025. [Online]. Available: http://peraturan.bpk.go.id/Details/170670/permen-pan-rb-no-89-tahun-2020

A. E. Bernal, S. M. M. Monterrubio, J. P. Fuente, R. G. Crespo, and E. Verdu, “Methodology for Computer Security Incident Response Teams into IoT Strategy,” KSII Transactions on Internet and Information Systems (TIIS), vol. 15, no. 5, pp. 1909–1928, 2021, doi: 10.3837/tiis.2021.05.018.

H. Mouratidis, S. Islam, A. Santos-Olmo, L. E. Sanchez, and U. M. Ismail, “Modelling language for cyber security incident handling for critical infrastructures,” Computers & Security, vol. 128, p. 103139, May 2023, doi: 10.1016/j.cose.2023.103139.

N. Tendikov et al., “Security Information Event Management data acquisition and analysis methods with machine learning principles,” Results in Engineering, vol. 22, p. 102254, June 2024, doi: 10.1016/j.rineng.2024.102254.

“Information security incident management using iso 27035 standard | Gema Wiralodra.” Accessed: Oct. 30, 2025. [Online]. Available: https://gemawiralodra.unwir.ac.id/index.php/gemawiralodra/article/view/487

“Deployment of Honeypot and SIEM | PDF | Computer Security | Security,” Scribd. Accessed: Oct. 30, 2025. [Online]. Available: https://www.scribd.com/document/887554170/Deployment-of-Honeypot-and-SIEM

G. Lee, S. Kim, I. Lee, S. Brown, and Y. A. Carbajal, “Adapting cybersecurity maturity models for resource-constrained settings: A case study of Peru,” THE ELECTRONIC JOURNAL OF INFORMATION SYSTEMS IN DEVELOPING COUNTRIES, vol. 91, no. 1, p. e12350, 2025, doi: 10.1002/isd2.12350.



DOI: https://doi.org/10.22146/ijccs.117482

Article Metrics

Abstract views : 0 | views : 0




Copyright (c) 2026 IJCCS (Indonesian Journal of Computing and Cybernetics Systems)

Creative Commons License
This work is licensed under a Creative Commons Attribution-ShareAlike 4.0 International License.



Copyright of :
IJCCS (Indonesian Journal of Computing and Cybernetics Systems)
ISSN 1978-1520 (print); ISSN 2460-7258 (online)
is a scientific journal the results of Computing
and Cybernetics Systems
A publication of IndoCEISS.
Gedung S1 Ruang 416 FMIPA UGM, Sekip Utara, Yogyakarta 55281
Fax: +62274 555133
email:ijccs.mipa@ugm.ac.id | http://jurnal.ugm.ac.id/ijccs



View My Stats1
View My Stats2