Author Profile
Tyas Suci
ISMS & Compliance Consultant, Alpha Code Technologies
Tyas guides Indonesian organisations through ISO/IEC 27001 implementation and certification, from gap analysis to surveillance audits.
LinkedInArticles by Tyas Suci
DPAs and vendor agreements under UU PDP: what the law actually requires
UU PDP has no GDPR Article 28 equivalent, so there is no mandatory data processing agreement form. What Pasal 51 requires is processing on instruction, written consent for sub-processors, and a clear split of liability. Here is what that means for your vendor contracts.
CompliancePCI DSS for Indonesian Businesses: Who Must Comply and How to Meet It
A PCI DSS guide for Indonesian businesses that handle payment card data: who must comply, the four merchant levels, the twelve core requirements, and practical steps toward compliance.
CybersecurityCybersecurity Careers in Indonesia: Roles, Skills, and Salary Outlook
A guide to starting a cybersecurity career in Indonesia: the most in-demand roles, the skills and certifications employers look for, salary ranges, and entry paths for beginners and career changers.
ComplianceISO 27001 Certification in Indonesia: A Step-by-Step Guide (2026)
Step-by-step ISO 27001 certification in Indonesia: the 93 Annex A controls, stage 1 and 2 audits, 6 to 18 month timelines, and realistic cost ranges in rupiah.