PT. HM. SAMPOERNA, Tbk. - Pasuruan Jawa Timur




O-Shop, SCTV, Infotech (Jakarta)




Bank Fama International - Bandung


Thursday, September 29, 2022

Risk management definition


Risk management is the process of identifying, assessing and controlling threats to an organization's capital and earnings. These risks stem from a variety of sources including financial uncertainties, legal liabilities, technology issues, strategic management errors, accidents and natural disasters.

A successful risk management program helps an organization consider the full range of risks it faces. Risk management also examines the relationship between risks and the cascading impact they could have on an organization's strategic goals.


Undangan Mengajar silahkan Hubungi

Hery Purnama

Whatsapp : 081-223344-506



Halo semuanya. Saya berharap teman-teman semua sehat dan bahagia selalu ya. Dengan rendah hati saya sampaikan bahwa mulai bulan ini saya mendapatkan gelar CGEIT (Certified in the Governance of Enterprise IT). Saya berkomitmen untuk selalu menuliskan tips lulus setiap ujian sertifikasi yang saya ikuti sebagai ungkapan kesyukuran dan juga untuk membantu setiap kandidat ujian sertifikasi di luar sana. Jadi, inilah tips lulus ujian CGEIT versi saya :


(P.S.: beberapa di antaranya mirip dengan tips untuk lulus ujian CISA yang diposting sebelumnya karena saya yakin keduanya memerlukan persiapan yang serupa)


1. Kalibrasi Ulang Pola Pikir


Satu hal yang paling saya sadari dari materi CGEIT adalah sudut pandang dan cara berpikirnya sedikit berbeda dari yang saya miliki. Sementara sebagai praktisi terkadang saya harus berpikir praktis, ujian CGEIT mengharuskan kita untuk berpikir secara strategis dan ideal. Jadi sebelum memulai perjalanan belajar, saya mengkalibrasi ulang pola pikir. Saya juga mempersiapkan diri untuk berpikir berdasarkan peran yang diberikan misalnya komite audit, CIO, CEO, dll, serta memahami jargon/istilah yang digunakan oleh mereka.


2. Pelajari CGEIT Review Manual dan CGEIT Review Questions, Answers & Explanations Manual (QAE)


Seperti yang saya sebutkan dalam post tentang tips ujian CISA, review manual dan QAE adalah dua referensi sakral untuk semua orang yang ingin meraih sertifikasi ISACA. Luangkan waktu untuk membaca kedua buku ini dari sampul ke sampul terutama QAE karena memperkenalkan kita pada jenis pertanyaan yang akan kita hadapi. Pahami penjelasan dari jawaban-jawaban yang disarankan buku tersebut untuk mendapatkan logika, perspektif, dan kearifan yang ditetapkan ISACA. Saya juga mengidentifikasi kesenjangan pengetahuan saya dan membuatnya menjadi catatan. Saya membacanya lagi saat waktu luang.


Undangan Mengajar silahkan Hubungi

Hery Purnama

Whatsapp : 081-223344-506

Wednesday, September 28, 2022


Diterjemahkan dari bahasa Inggris-
CISSP adalah sertifikasi keamanan informasi independen yang diberikan oleh Konsorsium Sertifikasi Keamanan Sistem Informasi Internasional, juga dikenal sebagai (ISC)². Per Januari 2022, terdapat 152.632 (ISC)² anggota yang memegang sertifikasi CISSP di seluruh dunia. Wikipedia (Inggris)
Lihat deskripsi asli
CISSP is an independent information security certification granted by the International Information System Security Certification Consortium, also known as (ISC)². As of January, 2022 there are 152,632 (ISC)² members holding the CISSP certification worldwide.

Undangan Mengajar Silahkan
Hery Purnama
Whatsapp : 081-223344-506


IBM Cognos Business Intelligence is a web-based integrated business intelligence suite by IBM. It provides a toolset for reporting, analytics, scorecarding, and monitoring of events and metrics. The software consists of several components designed to meet the different information requirements in a company. IBM Cognos has components such as IBM Cognos Framework Manager, IBM Cognos Cube Designer, IBM Cognos Transformer.

Undangan Mengajar Silahkan
Hery Purnama
Whatsapp : 081-223344-506

Tuesday, September 27, 2022


Apa itu Power Query? Power Query menyediakan kemampuan pengumpulan dan pembentukan data yang cepat dan mudah. Power Query memungkinkan Anda menyambungkan, menggabungkan, dan memperbaiki sumber data untuk memenuhi kebutuhan analisis Anda.

Undangan Mengajar Silahkan
Hery Purnama
Whatsapp : 081-223344-506

tips and trick power BI

1. Use measures to carry out calculations. Avoid adding unnecessary calculated columns to a table as they just add to your model. ...
2. Hide Unnecessary Columns. ...
3. Format Measures. ...
4. Write DAX like code. ...
5. Avoid data transformations steps using DAX. ...
6. Keep the structure of the model simple.

Undangan Mengajar Silahkan
Hery Purnama
Whatsapp : 081-223344-506

Monday, September 26, 2022


Primavera Risk Analysis is a full lifecycle risk analytics solution integrating cost and schedule risk management. It provides a comprehensive means of determining confidence levels for project success with quick and easy techniques for determining contingency and risk response plans.

Undangan Mengajar Silahkan
Hery Purnama
Whatsapp : 081-223344-506


Python is a computer programming language often used to build websites and software, automate tasks, and conduct data analysis. Python is a general-purpose language, meaning it can be used to create a variety of different programs and isn't specialized for any specific problems

Undangan Mengajar silahkan Hubungi
Hery Purnama
Whatsapp : 081-223344-506

Friday, September 23, 2022

How to Pass ISACA CGEIT Certification Exam Dumps Practice Test

ISACA CGEIT certification is mainly targeted to those candidates who want to build their future in IT Governance domain. CGEIT exam can provide those within an information technology related governance field with great benefits, both with potential employers, and unlock a network of like-minded individuals. ISACA's Certified in the Governance of Enterprise IT (CGEIT) exam certification is framework agnostic and the only IT governance certification for the individual. CGEIT can put you in the role of a trusted advisor to your enterprise. CGEITs maintain an adequate level of current knowledge and proficiency in the field of information systems audit, control and security.

The technical skill requirement of CGEIT is that the candidate has relevant professional work experience supporting organizational enterprise information technology. CGEIT is a vendor-neutral enterprise IT governance certification which can help take your career to new heights.

Free Exam Practice Question and Answer

ISACA CGEIT Certification Practice Test
ISACA CGEIT Certification Practice Test
ISACA CGEIT Certification Practice Test
Get Ready To Prepare Like You've Never Prepared Before
As we often say at Exam Topics, work smarter not harder. You are about to see a study guide that took hours of hard collection work, expert preparation, and constant feedback. That's why we know this exam prep will help you get that high-score on your journey to certification. Our study guides are the real thing. Our study guides are so accurate, we have to fight the droves of clone test prep sites that actually steal our material. Don't worry though, we believe by offering our material free and upholding good values, ExamTopics will always have a strong community and a coveted place in the certification world.

Are you ready to crush the Certified in the Governance of Enterprise IT and get certified?
Today is a competitive world and the smartest, best, and most qualified get paid a lot of money to work in amazing fields. But you don't need a college degree, certification is an amazing path that opens up new opportunities and shows employers that you are the cream of the crop. We know that Isaca certification will add some flair to that resume and help you get amazing new roles. Certification from Isaca shows that you have the ability to be successful but it's still not a simple process. You need to study, make your qualifications, and actually learn the skills to be successful at work if you want any chance of being successful.

Undangan Mengajar silahkan hubungi
Hery Purnama
Whatsapp : 081-223344-506

Wednesday, September 14, 2022


The CISM (Certified Information Systems Manager) is a professional certification sponsored by ISACA for those who oversee, or seek to oversee, an information security program.

The CISM is meant for existing or aspiring managers, and is growing in relevance as cybersecurity at the enterprise level increasingly is becoming a c-level and board initiative. The thinking behind this certification is that as programs and needs grow, professionals will require management credentials alongside the various technical certifications that exposure to a large enterprise cybersecurity operation would require.

The Information Systems Audit and Control Association, which is known only by its acronym ISACA, is an international professional association that sponsors the CISM. The certification requirements include five years experience in the field, a single exam consisting of 200 questions taken over four hours, and a fee.

Undangan Mengajar silahkan hubungi :
Hery Purnama
Whatsapp : 081-223344-506

Tuesday, September 13, 2022


Power Query is a tool used to manipulate data and is commonly used for data analysis and business intelligence.

High-quality analysis relies on well-organized data that is free from errors and that draws data from a single source of truth. Whilst many analysts spend hours of time manipulating data, combining data, and performing look ups, Power Query allows all of these steps to be automated with simple, repeatable steps.

Power Query is one of the most transformative tools available to any analyst working with data in Excel. Not only will it save analysts hours of time, but it will result in reduced manual errors and a better ability to source data from a single source of truth.

Undangan Mengajar silahkan hubungi
Hery Purnama
Whatsapp : 081-223344-506

Monday, September 12, 2022


Python is an interpreted, object-oriented, high-level programming language with dynamic semantics. Its high-level built in data structures, combined with dynamic typing and dynamic binding, make it very attractive for Rapid Application Development, as well as for use as a scripting or glue language to connect existing components together. Python's simple, easy to learn syntax emphasizes readability and therefore reduces the cost of program maintenance. Python supports modules and packages, which encourages program modularity and code reuse. The Python interpreter and the extensive standard library are available in source or binary form without charge for all major platforms, and can be freely distributed.

Often, programmers fall in love with Python because of the increased productivity it provides. Since there is no compilation step, the edit-test-debug cycle is incredibly fast. Debugging Python programs is easy: a bug or bad input will never cause a segmentation fault. Instead, when the interpreter discovers an error, it raises an exception. When the program doesn't catch the exception, the interpreter prints a stack trace. A source level debugger allows inspection of local and global variables, evaluation of arbitrary expressions, setting breakpoints, stepping through the code a line at a time, and so on. The debugger is written in Python itself, testifying to Python's introspective power. On the other hand, often the quickest way to debug a program is to add a few print statements to the source: the fast edit-test-debug cycle makes this simple approach very effective.

Undangan Mengajar silahkan hubungi
Hery Purnama
Whatsapp : 081-223344-506

Friday, September 9, 2022


CISA is recognized the world over as proof of competency and

experience in providing assurance that critical business assets

are secured and available.
CISA affirms your credibility to offer conclusions on the state

of an organization's IS/IT security, risk and control solutions.
CISA confirms to stakeholders your abilities to identify critical

issues and recommend enterprise specific practices to support and

safeguard the governance of information and related technologies.
CISA offers proof of your competency in IT controls and your

understanding of how IT relates to business.
CISA assures your understanding of policies, standards,

procedures, and controls to ensure the confidentiality,

integrity, and availability of information assets.

Undangan mengajar silahkan hubungi:
Hery Purnama
Whatssapp: 0812-23344-506

Wednesday, September 7, 2022


CRISC is the only certification that prepares and enables IT professionals for the unique challenges of IT and enterprise risk management, and positions them to become strategic partners to the enterprise. The official Certified Risk Information Systems Control (CRISC) certification is a powerful manifestation of proficiency and expertise regarding various areas of risk. As well as this, CRISC demonstrates a commitment to IT security operations and enterprises, and a willingness to deliver quality within their profession. CRISC has been established as one of the most desirable and preferable IT security certifications worldwide.

Undangan Mengajar silahkan hubungi
Hery Purnama
Whatsapp : 081-223344-506

Tuesday, September 6, 2022


The Certified in Governance of Enterprise IT (CGEIT) certification is a vendor-neutral certification offered through the ISACA. It's designed for IT professionals in large organizations who are responsible for directing, managing and supporting the governance of IT.

The exam consists of 150 multiple-choice questions and you'll have four hours to complete the in-person exam. Testing locations can be found through PSI Online and, depending on your location, you'll likely be able to choose between a testing center or a kiosk. At a testing center, you'll take a live proctored exam with other exam-takers, but at a kiosk location, you'll take the exam alone at a small work station in a "managed, yet self-service way." The ISACA offers more information on each testing experience to help you choose the best option for you.

[ Get ahead with the top certs for big data, project management, agile, data science, IT management and the cloud, as well as the top-paying certs and emerging certifications for today's hottest skills. | Get weekly career tips by signing up for our CIO Leader newsletter. ]

Exams are offered during three specific testing windows during the year — the first testing window in 2019 will run from February 1 to May 24. The two other testing windows for 2019 haven't been announced yet, but they typically run for three-month periods.

What's on the CGEIT exam?
The ISACA organizes the exam by five main CGEIT domains, which includes:

Domain 1: Framework for the governance of enterprise IT (25% of the exam)
Domain 2: Strategic management (20% of the exam)
Domain 3: Benefits realization (16% of the exam)
Domain 4: Risk optimization (24% of the exam)
Domain 5: Resource optimization (15% of the exam)
Domain 1 includes establishing a framework for governance of enterprise IT that helps the organization realize its goals and objectives, while considering risk and optimization. It also covers all the basic requirements, policies, principles, processes, organizational structures, infrastructure, skills and competencies necessary to build, oversee, and manage a framework IT governance.

Domain 2 focuses on aligning IT with enterprise objectives creating a strategic plan that helps the organization understand how changes to business strategy will impact IT strategy. This domain covers knowledge of IT roles and responsibilities, prioritization processes, documentation and communication methods, potential barriers for strategic alignment and current and future technologies.

Domain 3 covers benefits realization, which is the process of managing, tracking and reporting on the performance of IT investments to ensure they deliver optimized business benefits. This domain includes knowledge of KPIs, benefit calculation techniques, how to measure and monitor outcome and performance, and knowledge of continuous improvement concepts and principles.

Domain 4 encompasses risk optimization, which is the process of ensuring IT risk management frameworks help identify, analyze, mitigate, manage, monitor and communicate IT-related business risk and that they're aligned with the enterprise risk management (ERM) framework. Risk optimization also includes an understanding of appropriate legal and compliance regulations and the ability to communicate risk to senior-level executives. You'll need knowledge of disaster recovery planning (DRP), business continuity planning (BCP), standard risk management frameworks, key risk indicators (KRIs) and the skills to report on analytical data.

Domain 5 covers the optimization of IT resources, including information, services, infrastructure and applications, and people. This domain includes everything you need to know to ensure the correct processes are in place to reach enterprise goals. You'll need knowledge of IT resource management, service level agreements (SLAs), operation level agreements (OLAs) and data management and data governance.  

For a more in-depth look at the tasks and knowledge areas for each domain, you can visit the ISACA website.

CGEIT qualifications
To qualify for the exam, you'll need at least five years of relevant work experience with one year working in Domain 1 (managing frameworks) and the other four years spent working in at least two out of the five other domains. You won't have to take a course to pass the CGEIT; instead your work experience and background serve as your CGEIT education. This certification is designed for professionals who have "significant management, advisory, or assurance role relating to the governance of IT and the knowledge required to perform these tasks," according to the ISACA

Undangan Mengajar silahkan hubungi
Hery Purnama
Whatsapp : 081-223344-506