Telkom University Strengthens Digital Security Through ISO 27001:2022 — A Concrete Step by the PuTI Directorate Towards a Safe and Smart Campus

The Directorate of Information Technology Center (PuTI) of Telkom University has once again demonstrated its commitment to building a secure and resilient campus ecosystem through the implementation of ISO 27001:2022 Surveillance. This program includes documentation updates, cross-unit coordination, and external audit visits. ISO 27001 is proof that Telkom University maintains the security of academic, research, and administrative data according to global standards.
With the support of modern infrastructure, an information security culture, and integration with ISO 20000 and ISO 21001, PuTI continues to drive the transformation towards a Smart and Secure Campus. This step confirms Telkom University's position as a leading digital campus that is not only academically superior but also technologically reliable.

Information Security, the Foundation of Telkom University’s Digital Transformation

In recent years, Telkom University has developed into one of the most digital universities in Indonesia. Nearly all academic activities—from course registration and attendance to scientific publications—are now conducted online.
But behind this digital convenience lies a significant responsibility: protecting information security .

The Telkom University Information Technology Center (PuTI) Directorate , as the primary driver of the campus’ IT infrastructure, continues to strengthen its systems to remain resilient to cyber threats. One manifestation of this commitment is maintaining ISO/IEC 27001:2022 certification , the highest international standard for information security management.

“Digitalization will only be successful if its security can be trusted. We ensure that Telkom University’s systems and data are protected according to global standards.”— Director of PuTI Telkom University


Why ISO 27001:2022 is Important for Higher Education

Many people know ISO 27001 simply as “data security certification.” However, its meaning is much broader.
ISO 27001 regulates the entire information security management system (ISMS) —from policies and operational procedures to risk management and cyber incident preparedness.

In the world of education, implementing this standard is very important because universities manage thousands of sensitive data:

  • Student and alumni data,
  • Academic and research information,
  • Financial system, and
  • Digital service infrastructure.

ISO 27001:2022 serves as a guideline for ensuring that all activities are carried out safely, measurably, and documented , thereby increasing the reputation and public trust in Telkom University.


Surveillance Implementation Timeline 2025–2026: Systematic and Planned Steps

2025 marks a significant milestone for Telkom University. According to the official schedule, the PuTI Directorate will conduct an ISO 27001:2022 Surveillance Audit from August 2025 to January 2026. This
audit aims to ensure that the implemented information security system remains effective and aligned with campus dynamics.

Here are the steps in brief:

  1. August–October 2025: Preparation and updating of ISO standard documentation, including updated security policies, access controls, and risk records.
  2. September–October 2025: Cross-unit coordination with auditees and university leadership to ensure readiness for the audit process.
  3. November 2025: Implementation of external audit visitation by an independent certification body.
  4. December 2025: Evaluation of visitation results and completion of PTPP (Request for Corrective and Preventive Action).
  5. January 2026: Finalization of report and follow-up on continuous improvement .

This entire series is carried out by the SMKI Implementation Team of the PuTI Directorate with support from IT Quality Management (ManMutI) and various campus functional units.


Collaboration between IT Teams and Leadership: The Key to Effective Implementation

The implementation of ISO 27001 at Telkom University is more than just an administrative exercise. It is the result of close collaboration between the technical team , auditees , and university leadership .
The PuTI Directorate ensures that every process—from system configuration to user access policies—is implemented consistently across all work units.

“We want a culture of information security to become part of the daily lives of the entire academic community. Not just the IT team, but all system users.”— SMKI Coordinator, PuTI Directorate, Telkom University

In addition to management support, successful implementation is also supported by internal systems such as:

  • Change Management System (CMS) that records every configuration change,
  • Incident Response Portal for IT incident reporting and analysis, and
  • Helpdesk Monitoring Dashboard that ensures real-time follow-up of every request or incident.

Infrastructure Readiness: From Servers to SAFE AI

Behind the ISO 27001 certification lies a digital infrastructure under constant development.
Telkom University’s PuTI Directorate is currently strengthening its technology architecture with a Secure, Agile, and FAIR (SAFE AI) approach —a combination of security, service speed, and algorithmic fairness.

The steps currently being implemented include:

  1. Implementation of the Zero Trust Security Framework , where every user access must go through a multi-factor authentication process.
  2. Integration of security logs between servers using SIEM (Security Information and Event Management).
  3. AI-based monitoring , to automatically detect user behavior anomalies and potential attacks.
  4. Risk-based internal system audit , according to ISO 27005 (Information Security Risk Management) guidelines.

This innovation shows that Telkom University not only complies with ISO standards, but also anticipates future security challenges .


From Certification to Information Security Culture

Certification is only the first step. More important is how Telkom University instills a culture of information security throughout the organization.
Through various internal programs, the PuTI Directorate is building awareness that digital security is a shared responsibility.

Some of the leading initiatives that have been implemented include:

  • “Think Before You Click” campaign to prevent phishing and malware,
  • Cyber ​​attack simulation (Cyber ​​Drill) in campus system environment,
  • Information risk management training for lecturers and staff,
  • Cloud security and password hygiene education for new students.

These activities are held regularly, in collaboration with the information security unit and national certification bodies, ensuring that each individual understands their role in maintaining the integrity of the university system.


Integration with Other ISOs: Pillars of Campus Digital Governance

Telkom University’s PuTI Directorate has long been a leading example of multi-standard IT management integration in the education sector.
In addition to ISO 27001:2022, PuTI also maintains and implements:

  • ISO/IEC 20000-1:2018 — IT service management standard,
  • ISO 21001 : 2018 — educational organization management system, and
  • COBIT 2019 Framework — value creation-based information technology governance.

The synergy of these three standards ensures that every university digital service — from academics and administration to research — runs efficiently, securely, and measurably.

“The integration of ISO 20000 and 27001 enables us to provide not only reliable IT services, but also secure and user-oriented ones.”— IT Service Quality Management PuTI Telkom University


Real Impact on Students and Academic Community

Information security may sound technical, but its impact is felt directly by all users of campus systems:

  • Students enjoy a stable digital experience without data disruptions.
  • Lecturers and researchers feel safer in sharing research results and academic documents.
  • Administrative units can manage sensitive data with guaranteed protection.
  • University leaders have full visibility into IT performance and risks.

The end result is a more mature, transparent, and trustworthy campus digital ecosystem — a crucial foundation towards Telkom University’s vision as a Smart Campus for the Future .


Looking to the Future: Towards a Digital Resilience Campus

The PuTI Directorate isn’t stopping there. Following ISO 27001:2022 Surveillance, the next development direction is to build a Digital Resilience Campus —a campus that is resilient to cyber threats and ready to face technological disruption.

The main strategies being prepared include:

  1. Development of Business Continuity Management (BCM) across units,
  2. Integration of cloud security and data center based on container security,
  3. Utilizing an AI governance framework to ensure the university’s artificial intelligence models run ethically and safely,
  4. Enhanced endpoint security for academic and administrative systems.

These steps strengthen Telkom University’s commitment to not only be a superior campus in academics, but also a pioneer in educational technology governance and security in Indonesia .


Telkom University is ready to step into the digital future

Through the implementation and monitoring of ISO/IEC 27001:2022 , Telkom University affirms the role of the PuTI Directorate as the vanguard in maintaining information security and digital trust.
This step is not only a fulfillment of certification obligations, but also a reflection of the university’s philosophy:
“Innovation with Integrity.”

With robust infrastructure, adaptive policies, and an ingrained security culture, Telkom University is poised to move towards a safer, smarter, and more sustainable digital future .

ManMuTI PuTI
ManMuTI PuTI

https://dataverse.telkomuniversity.ac.id/

Articles: 61

Leave a Reply

Your email address will not be published. Required fields are marked *

Discover more from Direktorat Pusat Teknologi Informasi

Subscribe now to keep reading and get access to the full archive.

Continue reading

Secret Link