Social Engineering SWOT Analysis in Government-Owned Commercial Banks and National Private Commercial Banks

Authors

DOI:

https://doi.org/10.24002/kinerja.v27i2.6685

Keywords:

social engineering, cybercrime, banking

Abstract

This research examines the phenomenon of social engineering at government-owned commercial banks and national private commercial banks. The research method used is descriptive qualitative with a literature study. The research results show the bank's strengths, weaknesses, opportunities, and threats. In addition, several strategies are recommended for banks to prevent social engineering attacks, namely building information technology in banking according to the standards and regulations of the Financial Service Authority (Otoritas Jasa Keuangan), utilizing social media as an educational tool, training employees, monitoring and optimizing data security and banking information technology networks, suppressing the circulation of social issues on behalf of banks that can trigger social engineering, increasing financial literacy and awareness of data security personal customers and employees. To prevent social engineering attacks, banks can implement strategies that are considered adequate.

References

Abubakar, L. and Handayani, T., 2022. Penguatan regulasi: Upaya percepatan transformasi digital perbankan di era ekonomi digital. Masalah-Masalah Hukum, 51(3), pp. 259–270. doi: 10.14710/mmh.51.3.2022.259-270.

Airehrour, D., Nair, N. V. and Madanian, S., 2018. Social engineering attacks and countermeasures in the New Zealand Banking System: Advancing a user-reflective mitigation model. Information (Switzerland), 9(5). doi: 10.3390/info9050110.

Alalie, H. M., Harada, Y. and Noor, I. M., 2019. Impact of strength, weakness, opportunities, threats (SWOT) analysis on realizing sustainable competitive advantage in banking industry sector in Iraq. International Journal of Scientific and Research Publications (IJSRP), 9(3), p. p8708. doi: 10.29322/ijsrp.9.03.2019.p8708.

Aldawood, H. and Skinner, G., 2019. Reviewing cyber security social engineering training and awareness programs-pitfalls and ongoing issues. Future Internet, 11(3). doi: 10.3390/fi11030073.

Alzahrani, A., 2020. Coronavirus social engineering attacks: Issues and recommendations. International Journal of Advanced Computer Science and Applications, 11(5), pp. 154–161. doi: 10.14569/IJACSA.2020.0110523.

Anggraeni, R. and Djuwita, D, 2019. Analisis pemanfaatan social media marketing terhadap customer loyalty yang menggunakan brand trust sebagai variabel mediasi. Jurnal Riset Manajemen dan Bisnis (JRMB) Fakultas Ekonomi UNIAT, 4(3), pp. 445–455. Available at: http://jrmb.ejournal-feuniat.net/index.php/JRMB/article/view/304.

Arofah, N. R. and Priatnasari, Y., 2020. Internet banking and cyber crime: A case study in national banking. Jurnal Pendidikan Akuntansi Indonesia, 18(1), pp. 107–119.

Baidhowi, B., 2018. Sharia banking opportunities and challenges in the digital era. Proceedings of the 1st International Conference on Indonesian Legal Studies (ICILS 2018). doi:10.2991/icils-18.2018.30.

Bank Central Asia, 2021. Annual Report 2021 - Innovation and Collaboration for a Better Tomorrow. Available at: https://www.bca.co.id/-/media/Feature/Report/File/S8/Laporan-Tahunan/2022/20220217-buku-ar-bca-2021-EN.pdf.

Bank Rakyat Indonesia, 2021. Digitalisasi: Go Smaller, Go Shorter, Go Faster. Available at: https://www.ir-bri.com/newsroom/a970f6d946_3a26c95533.pdf

Bidari, A. S., Simangunsong, F. and Siska, K., 2020. Sektor perbankan di COVID-19’, Jurnal Pro Hukum : Jurnal Penelitian Bidang Hukum Universitas Gresik, 9(1), pp. 1–9. doi: 10.55129/jph.v9i1.1129.

Cheng, M., Qu, Y., Jiang, C. and Zhao, C., 2022. Is cloud computing the digital solution to the future of banking? Journal of Financial Stability, 63, p. 101073. doi:10.1016/j.jfs.2022.101073.

Chetioui, K., Bah, B., Alami, A.O. and Bahnasse, A., 2022. Overview of social engineering attacks on social networks. Procedia Computer Science, 198, pp.656-661 doi: 10.1016/j.procs.2021.12.302.

Citta, A.B., Dekrita, Y.A., Yunus, R. and Ridha, A., 2019, August. SWOT analysis of financial technology in the banking industry of south sulawesi: Banking survey in South Sulawesi. In 3rd International Conference on Accounting, Management and Economics 2018 (ICAME 2018), pp. 119-126. Atlantis Press. doi: 10.2991/icame-18.2019.13.

Fitriani, Y., 2021. Pemanfaatan media sosial sebagai media penyajian konten edukasi atau pembelajaran digital. Journal of Information System, Applied, Management, Accounting and Research, 5(4), pp. 1006–1013. doi: 10.52362/jisamar.v5i4.609.

Grimes, R. A., 2020. Social engineering attacks. Hacking Multifactor Authentication, 4(6), pp. 259–273. doi: 10.1002/9781119672357.ch12.

Gürel, E., 2017. SWOT analysis: A theoretical review. Journal of International Social Research, 10(51), pp. 994–1006. doi: 10.17719/jisr.2017.1832.

Hanafi, F., 2021. Serangan siber di masa pandemi: Banyak agresi minim proteksi. Jurnal Almishbah: Jurnal Ilmu Dakwah dan Komunikasi, 17(1), pp. 1–20.

Herdiana, Y., Munawar, Z. and Indah Putri, N., 2021. Mitigasi ancaman resiko keamanan siber di masa pandemi COVID-19. Jurnal ICT: Information Communication & Technology, 20(1), pp. 42–52. doi: 10.36054/jict-ikmi.v20i1.305.

Hijji, M. and Alam, G., 2021. A multivocal literature review on growing social engineering based cyber-attacks/threats during the COVID-19 pandemic: Challenges and prospective solutions. IEEE Access, 9, pp. 7152–7169. doi: 10.1109/ACCESS.2020.3048839.

Indonesian Bankers Association, 2015. Risk Management (First Edition). PT Gramedia Pustaka Tama: Jakarta.

Jahan, H., Rahman, M.W., Islam, M.S., Rezwan-Al-Ramim, A., Tuhin, M.M.U.J. and Hossain, M.E., 2022. Adoption of agroforestry practices in Bangladesh as a climate change mitigation option: Investment, drivers, and SWOT analysis perspectives. Environmental Challenges, 7, p.100509. doi: 10.1016/j.envc.2022.100509.

Junaedi, D. I., 2017. Antisipasi dampak social engineering pada bisnis perbankan. Infoman's, 11(1), pp. 1–10. doi: 10.33481/infomans.v11i1.13.

Kapoor, S. and Kaur, M., 2017. Basel III norms: A SWOT and TOWS approach. Vision, 21(3), pp. 250–258. doi: 10.1177/0972262917716759.

Kasmir, 2019. Bank dan Lembaga Keuangan Lainnya. Revision Edition. PT Raja Grafindo Persada: Jakarta.

Khoirunnisaa, J., 2022. Marak Penipuan & Kejahatan Siber, Ini Upaya BRI Lindungi Data Nasabah, detikNews, 20 September. Available at: https://news.detik.com/berita/d-6302038/marak-penipuan--kejahatan-siber-ini-upaya-bri-lindungi-data-nasabah.

Kusnandar, V. B., 2022. Tingkat Literasi Keuangan Masyarakat Indonesia Masih Rendah, Katadata.co.id, p. 2021. Available at: https://databoks.katadata.co.id/datapublish/2022/09/26/tingkat-literasi-keuangan-masyarakat-indonesia-masih-rendah.

Masyrifah, I. and Oktaroza, M.L., 2022, January. Pengaruh Penerapan Standar ISO 27001: 2013 terhadap Keamanan Data Pribadi Pengguna Teknologi Finansial. In Bandung Conference Series: Accountancy (Vol. 2, No. 1, pp. 604-610).

Nathanael, J. J. and Puspita, N. Y., 2021. Perlindungan data nasabah terkait pemanfaatan artificial intelligence dalam aktifitas perbankan di Indonesia. Jurnal Komunikasi Hukum, 7, pp. 387–402.

Nur, E., 2021. Nur, E., 2021. Peran media massa dalam menghadapi serbuan media online. Majalah Semi Ilmiah Populer Komunikasi Massa, 2(1), 01 Juni, pp. 51–64. Available at: https://jurnal.kominfo.go.id/index.php/mkm/article/download/4198/1561.

Otoritas Jasa Keuangan, 2019. Cetak Biru Transformasi Digital Perbankan, pp. 9–25. Available at: https://ojk.go.id/id/berita-dan-kegiatan/info-terkini/Pages/Cetak-Biru-Transformasi-Digital-Perbankan.aspx

Otoritas Jasa Keuangan, 2021. Consultative Paper 2021. Available at: https://www.ojk.go.id/id/kanal/perbankan/implementasi-basel/Documents/Pages/Consultative-Papers/Consultative%20Paper%20Manajemen%20Risiko%20Keamanan%20Siber%20Bank%20Umum.pdf

Owusu-tucker, E., 2019. An exploratory study assessing the role cloud computing has in achieving strategic agility with the banking industry. Presented at the Hawaii International Conference on System Sciences (HICSS-51), Hawaii, 3rd-6th January 2018, pp. 0–10. Available at: https://hdl.handle.net/2134/26905

Pahlevi, R., 2022. Ini 4 Bank Indonesia Terbesar Berdasarkan Nilai Modal Inti. Available at: https://databoks.katadata.co.id/datapublish/2022/08/26/ini-4-bank-indonesia-terbesar-berdasarkan-nilai-modal-inti

Palinggi, S. and Allolinggi, L. R., 2020. Analisa deskriptif industri fintech di Indonesia: Regulasi dan keamanan jaringan dalam perspektif teknologi digital. Ekonomi dan Bisnis, 6(2), pp. 177–192. doi: 10.35590/jeb.v6i2.1327.

Parulian, S., Pratiwi, D. A. and Cahya Yustina, M., 2021. Ancaman dan solusi serangan siber di Indonesia. Telnect, 1(2), pp. 85–92. Available at: https://ejournal.upi.edu/index.php/TELNECT/article/view/40866.

Pratiwi, T. H., 2021. Pentingnya Pelindungan Data Pribadi di Era Digital, aptika.kominfo.go.id, 17 October. Available at: https://aptika.kominfo.go.id/2021/10/pentingnya-pelindungan-data-pribadi-di-era-digital/.

Rangkuti, F., 2016. Analisis SWOT: Teknik Membedah Kasus Bisnis Cara Perhitungan Bobot, Rating, dan OCAI. PT Gramedia Pustaka Utama: Jakarta.

Ratulangi, C., Wahongan, A. and Mewengkang, F., 2021. Tindak pidana cyber crime dalam kegiatan perbankan. Lex Privatum, IX(5), pp. 179–187.

Rinaldi, R. and Krisnadi, I., 2019. Analisis dampak revolusi industri 4.0 terhadap keamanan data digital. Universitas Mercubuana, Manjemen ICT, pp. 1–8.

Ririh, K.R., Laili, N., Wicaksono, A. and Tsurayya, S., 2020. Studi komparasi dan analisis SWOT pada implementasi kecerdasan buatan (artificial intelligence) di Indonesia. Jurnal Teknik Industri, 15(2), pp.122-133. Available at: https://ejournal.undip.ac.id/index.php/jgti/article/view/29183.

Rofi, N., 2022. Analisis manajemen resiko operasional pengguna aplikasi e-wallet “Dana” dengan implementasi PCI DSS. NUSANTARA: Jurnal Ilmu Pengetahuan Sosial, 9(5), pp.1786-1794.

Saptoyo, R. D. A. and Galih, B., 2022. KABAR DATA: Kesadaran Keamanan Data Pribadi Masyarakat dalam Angka, Kompas.com. Available at: https://www.kompas.com/cekfakta/read/2022/02/10/090900082/kabar-data-kesadaran-keamanan-data-pribadi-masyarakat-dalam-angka?page=all.

Salahdine, F. and Kaabouch, N., 2019. Social engineering attacks: A survey. Future Internet, 11(4). doi: 10.3390/FI11040089.

Setyadi, D.K., 2019. Peran Twitter dalam digital customer relation management di industri perbankan. Journal Communication Spectrum: Capturing New Perspectives in Communication, 9(2), pp.110-124.

Syafie, S., 2022. Kesiapan teknologi informasi perbankan hadapi revolusi industri era 4.0. JATISI (Jurnal Teknik Informatika dan Sistem Informasi), 9(1), pp. 533–546. doi: 10.35957/jatisi.v9i1.1540.

Tamara, A., 2016. Implementasi analisis SWOT dalam strategi pemasaran produk mandiri tabungan bisnis. Jurnal Riset Bisnis dan Manajemen, 4(3). 395–406.

Walfajri, M., 2022. Perkuat Pengawasan IT Perbankan, OJK Rilis POJK 11 Tahun 2022, Available at: https://keuangan.kontan.co.id/news/perkuat-pengawasan-it-perbankan-ojk-rilis-pojk-11-tahun-2022

Wang, Z., Sun, L. and Zhu, H., 2020. Defining social engineering in cybersecurity. IEEE Access, 8, pp. 85094–85115. doi: 10.1109/ACCESS.2020.2992807.

Wang, Z., Zhu, H. and Sun, L., 2021. Social engineering in cybersecurity: Effect mechanisms, human vulnerabilities and attack methods. IEEE Access, 9, pp. 11895–11910. doi: 10.1109/ACCESS.2021.3051633.

Wardoyo, P., 2011. Alat Analisis Manajemen. First Edition, Semarang University Press, ISBN 978.602.9019.26.1.

Wicaksana, R.H., Munandar, A.I. and Samputra, P.L., 2020. Studi Kebijakan Perlindungan Data Pribadi dengan Narrative Policy Framework: Kasus Serangan Siber Selama Pandemi Covid-19 (A Narrative Policy Framework Analysis of Data Privacy Policy: A Case of Cyber Attacks During the Covid-19 Pandemic). JURNAL IPTEKKOM (Jurnal Ilmu Pengetahuan & Teknologi Informasi), 22(2), pp.143-158. Available at: http://dx.doi.org/10.33164/iptekkom.22.2.2020.143-158.

Wulannata, A. I., 2017. Analisis SWOT implementasi teknologi finansial terhadap kualitas layanan perbankan di Indonesia. Jurnal Ekonomi Dan Bisnis, 20(1), pp. 133–144.

Yenew, M. (2019) 'Designing Cloud Computing Architecture for Bank Industry : The Case of Dashen Bank', Digitalcommons.Kennesaw.Edu, pp. 1–8.

Published

2023-09-24

Issue

Section

Articles