SlideShare una empresa de Scribd logo
1 de 13
idEA E Commerce Short Course
Sutedjo Tjahjadi
Managing Director,
Datacomm Cloud Business
cloud.datacomm.co.id
e-Commerce Sales Growth
Source: Internet Retailer Top 500 | eMarketer | SHOP.org State of Retail Online Report 2014
E-Commerce Platform Consideration
3
Scalability Reliability User ExperienceSecurity
Common e-Commerce Lifecycle
Technical Elements of e-Commerce Strategy
Source: Rackspace, Building Your e-Commerce Strategy
http://www.rackspace.com/knowledge_center/whitepaper/building-your-ecommerce-strategy
1
Pemilihan Platform,
termasuk strategi re-
platforming
2
Security dan
compliance, sesuai
standar industri
etc
....... ....... ....... ....... ....... .......
....... ....... ....... ....... ....... .......
....... ....... ....... ....... ....... .......
Why e-Commerce Need Security?
Customer sangat memperhatikan keamanan data,
privacy, dan keamanan pembayaran
50% 80% 17%
50% customer menyatakan
bahwa keamanan data
adalah faktor utama ketika
mereka memilih tempat
belanja online
80% customer memilih untuk
belanja dari online shop yang
mereka rasa dapat memberikan
keamanan terhadap
informasi personal mereka
customer membatalkan
belanja mereka karena
khawatir terhadap
keamanan
pembayaran.
Sumber:
1.Deloitte University Press: http://dupress.com/articles/consumer-data-privacy-strategies/
2.Statista: http://www.statista.com/statistics/232285/reasons-for-online-shopping-cart-abandonment/
e-Commerce Security Breaches
The malicious software, or malware, was placed on Home Depot point-of-sale terminals, or cash registers, from April to
September, the company said in a news release. The malware was found in Home Depot stores in the USA and Canada.
e-Commerce Security Breaches
In the Target breach, hackers were able to steal information on up to 110 million customers during the holiday shopping
season, including the financial information of up to some 40 million people.
e-Commerce Security Perspective
Customer Perspective
•Data and information
security
•Privacy
Platform Perspective
•Code and Database
Security
•Web Security
•Payment Security
•Fraud Prevention
System Perspective
•System Hardening
•Patch and Update
Management
Network Perspective
•Detection and
Prevention System
•Perimeter Security
•Access Control
What Can You Do?
Ada banyak pendekatan dalam keamanan e-commerce. Dengan adanya sertifikasi standar
keamanan dalam industri, hal tersebut dapat dijadikan tolak ukur.
Menyatakan bahwa Anda memiliki
sistem dan metodologi yang
dapat menjamin keamanan
informasi perusahaan.
Menyatakan bahwa sistem Anda
terlindungi dalam hal keamanan,
ketersediaan, kerahasiaan data,
dan privasi
Standar yang dibuat untuk
meyakinkan pelanggan
mengenai keamanan informasi
kartu kredit mereka.
Sebagai penyedia jasa e-commerce, memiliki semua sertifikasi di atas merupakan
hal kunci, namun sertifikasi PCI DSS adalah hal yang harus Anda fokuskan.
PCI DSS Requirements
Firewall
Management
Vendor Default
Controls
Data Protection
Data
Transmission
Encryption
Anti-virus
Controls
System and
Application
Security
Data Access
Controls
Personal Access
Controls
Physical Access
Controls
Data and
Network Access
Controls
Security Testing
Organization
Policy
People
Policy
Process
Policy
Technology
Policy
Build and
Maintain
Secure
Network
Protect
Cardholder
Data
Vulnerability
Management
Program
Strong
Access
Control
Measures
Monitor and
Test Network
Information
Security
Policy
What We Can Help
Link Encryption,
Token Based,
Access Control,
Intrusion Detection
Firewalls, Content
and Malware
Protection, System
Authentication
User
Authentication,
Smart Cards and
Token, Content,
Assurance,
Privacy
Secure Application
Portals,
Permissions
Management,
Single Sign-On
Open Domain PKI,
CA, Transaction
Signing, Trust
Schemes,
Messaging
Trusted Business
Applications,
Payments,
Brokerage,
Exchanges,
Tendering
Consulting, Design, System Integration, Vulnerability Management, Monitoring
PKI, Smart Card, Digital Signature, Certificate Processing, Mobile
Trust Application Development
Terima Kasih
www.idea.or.id

Más contenido relacionado

Destacado

Vocabulary List 25
Vocabulary List 25Vocabulary List 25
Vocabulary List 25
BehnkeNeadM
 

Destacado (6)

Needs assessment
Needs assessmentNeeds assessment
Needs assessment
 
Архітектура світу
Архітектура світуАрхітектура світу
Архітектура світу
 
TTS Presentation
TTS PresentationTTS Presentation
TTS Presentation
 
PeopleLink e-Podium
PeopleLink e-PodiumPeopleLink e-Podium
PeopleLink e-Podium
 
Sql server ___________data control language
Sql server  ___________data control languageSql server  ___________data control language
Sql server ___________data control language
 
Vocabulary List 25
Vocabulary List 25Vocabulary List 25
Vocabulary List 25
 

Más de PT Datacomm Diangraha

Más de PT Datacomm Diangraha (20)

Openshift Workshop
Openshift Workshop Openshift Workshop
Openshift Workshop
 
Start Your Cloud Native Journey with Containerization
Start Your Cloud Native Journey with ContainerizationStart Your Cloud Native Journey with Containerization
Start Your Cloud Native Journey with Containerization
 
Disaster Recovery Cook Book
Disaster Recovery Cook BookDisaster Recovery Cook Book
Disaster Recovery Cook Book
 
Converting Your Existing SAP Server Infrastructure to a Modern Cloud-Based Ar...
Converting Your Existing SAP Server Infrastructure to a Modern Cloud-Based Ar...Converting Your Existing SAP Server Infrastructure to a Modern Cloud-Based Ar...
Converting Your Existing SAP Server Infrastructure to a Modern Cloud-Based Ar...
 
Sutedjo - open banking may 27, 2021
Sutedjo - open banking may 27, 2021Sutedjo - open banking may 27, 2021
Sutedjo - open banking may 27, 2021
 
Darwin - PT IMI
Darwin - PT IMIDarwin - PT IMI
Darwin - PT IMI
 
Sutedjo - Introduction to Cloud
Sutedjo - Introduction to CloudSutedjo - Introduction to Cloud
Sutedjo - Introduction to Cloud
 
Aditya - Connecting Future
Aditya - Connecting FutureAditya - Connecting Future
Aditya - Connecting Future
 
Wiranto
WirantoWiranto
Wiranto
 
Sutedjo - Digital Transformation for SAP
Sutedjo -  Digital Transformation for SAPSutedjo -  Digital Transformation for SAP
Sutedjo - Digital Transformation for SAP
 
Nam Khong - SAP on Cloud for Your Intelligent Enterprise
Nam Khong - SAP on Cloud for Your Intelligent EnterpriseNam Khong - SAP on Cloud for Your Intelligent Enterprise
Nam Khong - SAP on Cloud for Your Intelligent Enterprise
 
Micro services container - Nam Khong
Micro services container - Nam KhongMicro services container - Nam Khong
Micro services container - Nam Khong
 
Kubernetes Benefits - Sutedjo Tjahjadi
Kubernetes Benefits - Sutedjo TjahjadiKubernetes Benefits - Sutedjo Tjahjadi
Kubernetes Benefits - Sutedjo Tjahjadi
 
OCP Datacomm RedHat - Kubernetes Launch
OCP Datacomm RedHat - Kubernetes LaunchOCP Datacomm RedHat - Kubernetes Launch
OCP Datacomm RedHat - Kubernetes Launch
 
Cloud computing for making indonesia 4.0
Cloud computing for making indonesia 4.0 Cloud computing for making indonesia 4.0
Cloud computing for making indonesia 4.0
 
Cloud technology for hospitality
Cloud technology for hospitalityCloud technology for hospitality
Cloud technology for hospitality
 
Why build sap on cloud
Why build sap on cloudWhy build sap on cloud
Why build sap on cloud
 
Sap migration to cloud
Sap migration to cloudSap migration to cloud
Sap migration to cloud
 
Disaster Recovery: Understanding Trend, Methodology, Solution, and Standard
Disaster Recovery:  Understanding Trend, Methodology, Solution, and StandardDisaster Recovery:  Understanding Trend, Methodology, Solution, and Standard
Disaster Recovery: Understanding Trend, Methodology, Solution, and Standard
 
Hot Disaster Recovery Using Zerto
Hot Disaster Recovery Using ZertoHot Disaster Recovery Using Zerto
Hot Disaster Recovery Using Zerto
 

Último

Challenges and Opportunities: A Qualitative Study on Tax Compliance in Pakistan
Challenges and Opportunities: A Qualitative Study on Tax Compliance in PakistanChallenges and Opportunities: A Qualitative Study on Tax Compliance in Pakistan
Challenges and Opportunities: A Qualitative Study on Tax Compliance in Pakistan
vineshkumarsajnani12
 
The Abortion pills for sale in Qatar@Doha [+27737758557] []Deira Dubai Kuwait
The Abortion pills for sale in Qatar@Doha [+27737758557] []Deira Dubai KuwaitThe Abortion pills for sale in Qatar@Doha [+27737758557] []Deira Dubai Kuwait
The Abortion pills for sale in Qatar@Doha [+27737758557] []Deira Dubai Kuwait
daisycvs
 
Mckinsey foundation level Handbook for Viewing
Mckinsey foundation level Handbook for ViewingMckinsey foundation level Handbook for Viewing
Mckinsey foundation level Handbook for Viewing
Nauman Safdar
 
Jual Obat Aborsi ( Asli No.1 ) 085657271886 Obat Penggugur Kandungan Cytotec
Jual Obat Aborsi ( Asli No.1 ) 085657271886 Obat Penggugur Kandungan CytotecJual Obat Aborsi ( Asli No.1 ) 085657271886 Obat Penggugur Kandungan Cytotec
Jual Obat Aborsi ( Asli No.1 ) 085657271886 Obat Penggugur Kandungan Cytotec
ZurliaSoop
 

Último (20)

GUWAHATI 💋 Call Girl 9827461493 Call Girls in Escort service book now
GUWAHATI 💋 Call Girl 9827461493 Call Girls in  Escort service book nowGUWAHATI 💋 Call Girl 9827461493 Call Girls in  Escort service book now
GUWAHATI 💋 Call Girl 9827461493 Call Girls in Escort service book now
 
Challenges and Opportunities: A Qualitative Study on Tax Compliance in Pakistan
Challenges and Opportunities: A Qualitative Study on Tax Compliance in PakistanChallenges and Opportunities: A Qualitative Study on Tax Compliance in Pakistan
Challenges and Opportunities: A Qualitative Study on Tax Compliance in Pakistan
 
Lundin Gold - Q1 2024 Conference Call Presentation (Revised)
Lundin Gold - Q1 2024 Conference Call Presentation (Revised)Lundin Gold - Q1 2024 Conference Call Presentation (Revised)
Lundin Gold - Q1 2024 Conference Call Presentation (Revised)
 
Organizational Transformation Lead with Culture
Organizational Transformation Lead with CultureOrganizational Transformation Lead with Culture
Organizational Transformation Lead with Culture
 
SEO Case Study: How I Increased SEO Traffic & Ranking by 50-60% in 6 Months
SEO Case Study: How I Increased SEO Traffic & Ranking by 50-60%  in 6 MonthsSEO Case Study: How I Increased SEO Traffic & Ranking by 50-60%  in 6 Months
SEO Case Study: How I Increased SEO Traffic & Ranking by 50-60% in 6 Months
 
The Abortion pills for sale in Qatar@Doha [+27737758557] []Deira Dubai Kuwait
The Abortion pills for sale in Qatar@Doha [+27737758557] []Deira Dubai KuwaitThe Abortion pills for sale in Qatar@Doha [+27737758557] []Deira Dubai Kuwait
The Abortion pills for sale in Qatar@Doha [+27737758557] []Deira Dubai Kuwait
 
Mckinsey foundation level Handbook for Viewing
Mckinsey foundation level Handbook for ViewingMckinsey foundation level Handbook for Viewing
Mckinsey foundation level Handbook for Viewing
 
Chennai Call Gril 80022//12248 Only For Sex And High Profile Best Gril Sex Av...
Chennai Call Gril 80022//12248 Only For Sex And High Profile Best Gril Sex Av...Chennai Call Gril 80022//12248 Only For Sex And High Profile Best Gril Sex Av...
Chennai Call Gril 80022//12248 Only For Sex And High Profile Best Gril Sex Av...
 
New 2024 Cannabis Edibles Investor Pitch Deck Template
New 2024 Cannabis Edibles Investor Pitch Deck TemplateNew 2024 Cannabis Edibles Investor Pitch Deck Template
New 2024 Cannabis Edibles Investor Pitch Deck Template
 
UAE Bur Dubai Call Girls ☏ 0564401582 Call Girl in Bur Dubai
UAE Bur Dubai Call Girls ☏ 0564401582 Call Girl in Bur DubaiUAE Bur Dubai Call Girls ☏ 0564401582 Call Girl in Bur Dubai
UAE Bur Dubai Call Girls ☏ 0564401582 Call Girl in Bur Dubai
 
PARK STREET 💋 Call Girl 9827461493 Call Girls in Escort service book now
PARK STREET 💋 Call Girl 9827461493 Call Girls in  Escort service book nowPARK STREET 💋 Call Girl 9827461493 Call Girls in  Escort service book now
PARK STREET 💋 Call Girl 9827461493 Call Girls in Escort service book now
 
Berhampur 70918*19311 CALL GIRLS IN ESCORT SERVICE WE ARE PROVIDING
Berhampur 70918*19311 CALL GIRLS IN ESCORT SERVICE WE ARE PROVIDINGBerhampur 70918*19311 CALL GIRLS IN ESCORT SERVICE WE ARE PROVIDING
Berhampur 70918*19311 CALL GIRLS IN ESCORT SERVICE WE ARE PROVIDING
 
Call 7737669865 Vadodara Call Girls Service at your Door Step Available All Time
Call 7737669865 Vadodara Call Girls Service at your Door Step Available All TimeCall 7737669865 Vadodara Call Girls Service at your Door Step Available All Time
Call 7737669865 Vadodara Call Girls Service at your Door Step Available All Time
 
Jual Obat Aborsi ( Asli No.1 ) 085657271886 Obat Penggugur Kandungan Cytotec
Jual Obat Aborsi ( Asli No.1 ) 085657271886 Obat Penggugur Kandungan CytotecJual Obat Aborsi ( Asli No.1 ) 085657271886 Obat Penggugur Kandungan Cytotec
Jual Obat Aborsi ( Asli No.1 ) 085657271886 Obat Penggugur Kandungan Cytotec
 
Nashik Call Girl Just Call 7091819311 Top Class Call Girl Service Available
Nashik Call Girl Just Call 7091819311 Top Class Call Girl Service AvailableNashik Call Girl Just Call 7091819311 Top Class Call Girl Service Available
Nashik Call Girl Just Call 7091819311 Top Class Call Girl Service Available
 
Arti Languages Pre Seed Teaser Deck 2024.pdf
Arti Languages Pre Seed Teaser Deck 2024.pdfArti Languages Pre Seed Teaser Deck 2024.pdf
Arti Languages Pre Seed Teaser Deck 2024.pdf
 
PHX May 2024 Corporate Presentation Final
PHX May 2024 Corporate Presentation FinalPHX May 2024 Corporate Presentation Final
PHX May 2024 Corporate Presentation Final
 
Unveiling Falcon Invoice Discounting: Leading the Way as India's Premier Bill...
Unveiling Falcon Invoice Discounting: Leading the Way as India's Premier Bill...Unveiling Falcon Invoice Discounting: Leading the Way as India's Premier Bill...
Unveiling Falcon Invoice Discounting: Leading the Way as India's Premier Bill...
 
Getting Real with AI - Columbus DAW - May 2024 - Nick Woo from AlignAI
Getting Real with AI - Columbus DAW - May 2024 - Nick Woo from AlignAIGetting Real with AI - Columbus DAW - May 2024 - Nick Woo from AlignAI
Getting Real with AI - Columbus DAW - May 2024 - Nick Woo from AlignAI
 
How to Get Started in Social Media for Art League City
How to Get Started in Social Media for Art League CityHow to Get Started in Social Media for Art League City
How to Get Started in Social Media for Art League City
 

Technology Management-Platform, Security & Content

  • 1. idEA E Commerce Short Course Sutedjo Tjahjadi Managing Director, Datacomm Cloud Business cloud.datacomm.co.id
  • 2. e-Commerce Sales Growth Source: Internet Retailer Top 500 | eMarketer | SHOP.org State of Retail Online Report 2014
  • 3. E-Commerce Platform Consideration 3 Scalability Reliability User ExperienceSecurity
  • 5. Technical Elements of e-Commerce Strategy Source: Rackspace, Building Your e-Commerce Strategy http://www.rackspace.com/knowledge_center/whitepaper/building-your-ecommerce-strategy 1 Pemilihan Platform, termasuk strategi re- platforming 2 Security dan compliance, sesuai standar industri etc ....... ....... ....... ....... ....... ....... ....... ....... ....... ....... ....... ....... ....... ....... ....... ....... ....... .......
  • 6. Why e-Commerce Need Security? Customer sangat memperhatikan keamanan data, privacy, dan keamanan pembayaran 50% 80% 17% 50% customer menyatakan bahwa keamanan data adalah faktor utama ketika mereka memilih tempat belanja online 80% customer memilih untuk belanja dari online shop yang mereka rasa dapat memberikan keamanan terhadap informasi personal mereka customer membatalkan belanja mereka karena khawatir terhadap keamanan pembayaran. Sumber: 1.Deloitte University Press: http://dupress.com/articles/consumer-data-privacy-strategies/ 2.Statista: http://www.statista.com/statistics/232285/reasons-for-online-shopping-cart-abandonment/
  • 7. e-Commerce Security Breaches The malicious software, or malware, was placed on Home Depot point-of-sale terminals, or cash registers, from April to September, the company said in a news release. The malware was found in Home Depot stores in the USA and Canada.
  • 8. e-Commerce Security Breaches In the Target breach, hackers were able to steal information on up to 110 million customers during the holiday shopping season, including the financial information of up to some 40 million people.
  • 9. e-Commerce Security Perspective Customer Perspective •Data and information security •Privacy Platform Perspective •Code and Database Security •Web Security •Payment Security •Fraud Prevention System Perspective •System Hardening •Patch and Update Management Network Perspective •Detection and Prevention System •Perimeter Security •Access Control
  • 10. What Can You Do? Ada banyak pendekatan dalam keamanan e-commerce. Dengan adanya sertifikasi standar keamanan dalam industri, hal tersebut dapat dijadikan tolak ukur. Menyatakan bahwa Anda memiliki sistem dan metodologi yang dapat menjamin keamanan informasi perusahaan. Menyatakan bahwa sistem Anda terlindungi dalam hal keamanan, ketersediaan, kerahasiaan data, dan privasi Standar yang dibuat untuk meyakinkan pelanggan mengenai keamanan informasi kartu kredit mereka. Sebagai penyedia jasa e-commerce, memiliki semua sertifikasi di atas merupakan hal kunci, namun sertifikasi PCI DSS adalah hal yang harus Anda fokuskan.
  • 11. PCI DSS Requirements Firewall Management Vendor Default Controls Data Protection Data Transmission Encryption Anti-virus Controls System and Application Security Data Access Controls Personal Access Controls Physical Access Controls Data and Network Access Controls Security Testing Organization Policy People Policy Process Policy Technology Policy Build and Maintain Secure Network Protect Cardholder Data Vulnerability Management Program Strong Access Control Measures Monitor and Test Network Information Security Policy
  • 12. What We Can Help Link Encryption, Token Based, Access Control, Intrusion Detection Firewalls, Content and Malware Protection, System Authentication User Authentication, Smart Cards and Token, Content, Assurance, Privacy Secure Application Portals, Permissions Management, Single Sign-On Open Domain PKI, CA, Transaction Signing, Trust Schemes, Messaging Trusted Business Applications, Payments, Brokerage, Exchanges, Tendering Consulting, Design, System Integration, Vulnerability Management, Monitoring PKI, Smart Card, Digital Signature, Certificate Processing, Mobile Trust Application Development

Notas del editor

  1. Greetings: *) Selamat Sore Bapak2 & Ibu2. Saya mengetahui bahwa anda sudah mendengarkan pelajaran tentang e-commerce sejak pagi hari. Saya mendapat tugas yang paling berat hari ini untuk menjaga anda utk tetap semangat walaupun ini merupakan pelajaran yang terakhir untuk hari ini. Saya berjanji akan membuat session ini singkat, padat dan menarik Introductions: *) Nama saya adalah Sutedjo Tjahjadi, saya adalah managing director untuk Datacomm Cloud Business. Merupakan suatu kehormatan bagi saya untuk membagi pengalaman kami pada bidang e-commerce platform dan security. *) Pada kesempatan ini saya akan dibantu oleh dua rekan saya!: Anton dan Ilmi. Anton adalah Cyber Security Expert dan Ilmi mempunyai banyak pengalaman di bidang computer systems servers dan platform Objectives: *) Tujuan utama dari session ini adalah untuk memberikan visibility kepada anda tentang potential bahaya dari Cyber Security dan bagaimana dampak dari Cyber threats untuk business e-commerce anda dan yang lebih penting bagaimana kita dapat mencegahnya. *) kami akan memberikan presentasi tentang impact dari Cyber Security untuk e-commerce dan bagaimana cara anda dapat menghandle-nya. Pada saat demonstation section kami akan memberikan demo bagaimana Infrastructure as Services dapat memberikan tambahan “USER EXPERINCE” *)
  2. *) Tidak dapat dipungkiri bahwa e-commerce adalah industry yang sedang berkembang. Bukan hanya di indonesia tetapi hampir di seluruh dunia. Trend ini merupakan trend yg tidak bisa di stop tetapi yang kita harus lakukan adalah mengerti dan memanfaatkan sebagai tools perusahaan kita untuk menuju kepada goal kita lebih cepat dan effient. *) Ada gula – ada semut. Dengan pesat perkembangan dari e-commerce industry. Security threats juga sangat berkembang di area e-commerce. Perkembangannya bukan hanya dari Jumlah, tetapi juga dari lokasi dan komplesitas dari serangan dan bagaimana pihak security team kita harus memperbaikinya. Yang sangat mengerikan adalah penjahat ini di diukung oleh tools2 yang dengan sangat mudah di dapat di internet dan didownload dengan cuma2
  3. *) Anda telah memutuskan untuk terjun membangun dari business e-commerce. Anda mungkin sudah memikirkan dan memiliki beberapa technology, creative, design dan lain sebagainya. *) Saya ingin memberikan sebuah prespective tentang berapa penting nya platform perusahaan anda di dunia digital. Platform anda merupakan satu2nya representation anda di depan customer anda *) The ultimate goal dari anda menyediakan platform yang terbaik sehingga menentukan keberhasilan dan sustanablitas business anda adalah END USER EXPERIENCE *) Ada tiga hal harus dipertimbangkan di area platform untuk memastikan anda dapat mempunyai fondation yang kuat untuk terus dapatkan continueal improvement di END USER EXPERIENCE – SCLABILITY, RELIABILITY & SECURITY *) Jelaskan and berikan contoh dari SCALABILITY issue *) Jelaskan and berikan contoh dari RELIABILITY issue *) Jelaskan and berikan contoh dari SECURITY issue
  4. *) kita sudah melihat flow ini beberapa kali di workshop ini. Mungkin semua dari instrukur mempergunakan diagram ini sebagai refrence. Saya ingin menunjukan bagaimana impact dari Cyber Security kepada e-commerce flow digram *) Impact dari Cyber Threats kepada market place / website area *) impact dari Cyber Threats kepada payment gateway dan Finance System *) Impact dari Cyber Threats kepada inventory system *) impact dari Cyber Threats kepada CRM system *) Impact dari Cyber Threats kepada Shipping and Tracking
  5. *) Ada yang bisa kita lakukan *) memasukan 3 konsideration didalam anda mulai membangun system anda *)
  6. *) mari kita lihat impact kepada pelangan. Anda telah begitu besar mem