Analisis Tematik Hambatan dan Kebutuhan Kebijakan Keamanan Data Pribadi Sistem Informasi Laboratorium
Downloads
Sistem Informasi Laboratorium (SIL) mengelola data kesehatan pribadi spesifik yang diatur Undang-Undang Pelindungan Data Pribadi No. 27/2022 dan Peraturan Menteri Kesehatan No. 24/2022, namun hambatan praktis dan kebutuhan kebijakan dari perspektif pengguna SIL belum terpetakan. Penelitian ini bertujuan memetakan kesadaran regulasi, hambatan implementasi, dan kebutuhan kebijakan keamanan data pada Ahli Teknologi Laboratorium Medik (ATLM). Sebagai komponen kualitatif dari studi mixed-methods concurrent embedded, tiga pertanyaan terbuka wajib diberikan kepada 310 ATLM DPC PATELKI Kota Semarang, menghasilkan 773 kutipan yang dianalisis dengan analisis tematik dua siklus pada ATLAS.ti 23 (41 kode aktif, 18 kelompok kode). Kesadaran regulasi relatif tinggi (58,4%). Kategori hambatan tunggal terbesar justru ketiadaan hambatan yang dirasakan (23,2%); hambatan manusia dan organisasi melampaui hambatan teknis, sementara keluhan bahwa prosedur memperlambat layanan nyaris nihil (0,6%) berbanding 60 kutipan yang menuntut penegakan lebih tegas. Kebutuhan kebijakan utama adalah pelatihan berkala, penegakan prosedur operasional standar, kontrol akses berbasis peran, dan autentikasi dua faktor. Temuan mendukung kerangka intervensi tiga pilar yang mencakup teknologi, proses, dan tata kelola, serta menunjukkan bahwa sosialisasi keamanan sebaiknya menekankan efikasi dan komitmen institusional, bukan ancaman. Fasilitas kesehatan, organisasi profesi, dan pengembang SIL dapat menggunakan peta berbasis pengguna ini untuk memprioritaskan intervensi keamanan yang selaras dengan mandat regulasi.
Aisyah, D. N., Setiawan, A. H., Mayadewi, C. A., Lokopessy, A. F., Kozlakidis, Z., & Manikam, L. (2025). Understanding health information systems utilization across public health centers in Indonesia: cross-sectional study. JMIR Medical Informatics, 13(1), e68613.
Alanazi, M. H., & Soh, B. (2019). Behavioral intention to use IoT technology in healthcare settings. Engineering, Technology & Applied Science Research, 9(5), 4769-4774.
Braun, V., & Clarke, V. (2006). Using thematic analysis in psychology. Qualitative Research in Psychology, 3(2), 77-101.
Creswell, J. W., & Plano Clark, V. L. (2018). Designing and conducting mixed methods research (3rd ed.). Sage Publications.
Crossler, R., & Belanger, F. (2014). An extended perspective on individual security behaviors: Protection motivation theory and a unified security practices instrument. The Data Base for Advances in Information Systems, 45(4), 51-71.
Dinev, T., & Hart, P. (2006). An extended privacy calculus model for e-commerce transactions. Information Systems Research, 17(1), 61-80.
Edayan, J. M., Gallemit, A. J., Sacala, N. E., Palmer, X. L., Potter, L., & Rarugal, J. (2024). Integration technologies in laboratory information systems: A systematic review. Informatics, 11(3), 54.
Etylusfina, E. (2024). Tinjauan kelengkapan data dan informasi rekam medis untuk mendukung pengambilan keputusan kesehatan. Jurnal Rekam Medis dan Informasi Kesehatan, 7(1), 32-39.
Herath, T., & Rao, H. R. (2009). Protection motivation and deterrence: A framework for security policy compliance in organisations. European Journal of Information Systems, 18(2), 106-125.
Kementerian Kesehatan Republik Indonesia. (2022). Peraturan Menteri Kesehatan Nomor 24 Tahun 2022 tentang Rekam Medis. Kementerian Kesehatan RI.
Kokolakis, S. (2017). Privacy attitudes and privacy behaviour: A review of current research on the privacy paradox phenomenon. Computers & Security, 64, 122-134.
Lee, E., & Seomun, G. (2021). Structural model of the healthcare information security behavior of nurses applying protection motivation theory. International Journal of Environmental Research and Public Health, 18(4), 2084.
Maddux, J. E., & Rogers, R. W. (1983). Protection motivation and self-efficacy: A revised theory of fear appeals and attitude change. Journal of Experimental Social Psychology, 19(5), 469-479.
Malhotra, N. K., Kim, S. S., & Agarwal, J. (2004). Internet users' information privacy concerns (IUIPC): The construct, the scale, and a causal model. Information Systems Research, 15(4), 336-355.
Maxwell, J. A. (2010). Using numbers in qualitative research. Qualitative Inquiry, 16(6), 475–482. https://doi.org/10.1177/1077800410364740
Posey, C., Roberts, T. L., & Lowry, P. B. (2015). The impact of organizational commitment on insiders' motivation to protect organizational information assets. Journal of Management Information Systems, 32(4), 179-214.
Republik Indonesia. (2022). Undang-Undang Nomor 27 Tahun 2022 tentang Pelindungan Data Pribadi. Sekretariat Negara.
Riana, D., Hidayanto, A. N., Hadianti, S., & Napitupulu, D. (2021). Integrative factors of e-health laboratory adoption: A case of Indonesia. Future Internet, 13(2), 27.
Rogers, R. W. (1975). A protection motivation theory of fear appeals and attitude change. The Journal of Psychology, 91(1), 93-114.
Sari, P. K., Candiwan, C., & Trianasari, N. (2022). Information security behavior in health information systems: A review of research trends and antecedent factors. Healthcare, 10(12), 2531.
Sari, P. K., Handayani, P. W., Hidayanto, A. N., & Sandhyaduhita, P. I. (2021). Information security cultural differences among health care facilities in Indonesia. Heliyon, 7(6), e07272.
Smith, H. J., Dinev, T., & Xu, H. (2011). Information privacy research: An interdisciplinary review. MIS Quarterly, 35(4), 989-1015.
Syahrial, S., & Sara, R. (2024). Health data protection and patient privacy in the context of digitalization of public health services in Indonesia. EAI Endorsed Transactions.
Tangdililing, M. L., & Pramarta, V. (2023). Peran sistem informasi laboratorium dalam meningkatkan mutu pelayanan laboratorium. Jurnal Manajemen dan Administrasi Rumah Sakit Indonesia, 7(2), 112-120.
Tyler, T. R. (1990). Why people obey the law. Princeton University Press.
Weinstein, N. D. (1980). Unrealistic optimism about future life events. Journal of Personality and Social Psychology, 39(5), 806-820.
Witte, K. (1992). Putting the fear back into fear appeals: The extended parallel process model. Communication Monographs, 59(4), 329-349.
Copyright (c) 2026 Nurul Huda, Feby Artwodini Muqtadiroh, Reny Nadlifatin, Rr. Sri Isjworowati

This work is licensed under a Creative Commons Attribution-ShareAlike 4.0 International License.
Authors who publish with this journal agree to the following terms:
- Authors retain copyright and grant the journal right of first publication with the work simultaneously licensed under a Creative Commons Attribution-ShareAlike 4.0 International (CC-BY-SA). that allows others to share the work with an acknowledgement of the work's authorship and initial publication in this journal.
- Authors are able to enter into separate, additional contractual arrangements for the non-exclusive distribution of the journal's published version of the work (e.g., post it to an institutional repository or publish it in a book), with an acknowledgement of its initial publication in this journal.
Authors are permitted and encouraged to post their work online (e.g., in institutional repositories or on their website) prior to and during the submission process, as it can lead to productive exchanges, as well as earlier and greater citation of published work.





