Implementation of role-based access control (RBAC) in a web-based mosque information system
Main Article Content
Abstract
This study addresses the challenges of mosque administrative and financial management, which are still predominantly handled manually, resulting in inefficiency, limited transparency, and potential security risks. To address these issues, this research designs and implements a web-based mosque information system incorporating Role-Based Access Control (RBAC) to regulate user access based on predefined organizational roles. The system supports the management of mosque activities, financial transactions, announcements, and public information services. RBAC is applied to ensure that each user can only access system functionalities relevant to their responsibilities, including administrators, mosque management staff, treasurers, and public users. System evaluation includes functional testing, role-based access testing, a basic security assessment, and an initial performance evaluation using page-load time measurements. The performance evaluation shows that the most resource-intensive module achieves an average page load time of approximately 2.3 seconds, indicating acceptable performance for a small-scale community-based information system. The results suggest that the proposed system supports structured administrative workflows, improves access organization, and enhances transparency while maintaining controlled access to sensitive information. The proposed system provides a practical foundation for secure and accountable digital mosque management.
Downloads
Article Details

This work is licensed under a Creative Commons Attribution 4.0 International License.
Authors retain copyright of their work and grant Jurnal Ilmiah Teknologi Informasi Asia the right of first publication. The work is simultaneously licensed under a Creative Commons Attribution 4.0 International License (CC BY 4.0) that allows others to share the work with an acknowledgment of the work's authorship and initial publication in this journal.
While the editorial board endeavors to ensure accuracy, they accept no responsibility for the content of articles. Liability rests solely with the respective authors.
This is an open-access journal. All articles are immediately available to read and reuse upon publication under the CC BY 4.0 license. Users may share and adapt the material for any purpose, including commercial use, provided they comply with the license terms.
References
Alsamaualy, I. A. C., Raisi, L., Al-Azzawi, M. I. Q., & Ashrafi, M. (2024). The Boundaries of Freedom in the Use of the Internet in Cyberspace. Isslp, 3(2), 180–190. https://doi.org/10.61838/kman.isslp.3.2.18
Amin, M., & Muhammadah, S. (2024). Improving Mosque Management: Strategies Towards A Center For Islamic Activities. Dedica, 1(1).
Ardian, Z., Abdullah, D., Bintoro, A., Yusra, M., Akbar, A. H., & Lubis, F. A. (2024). A Smart Accounting System for Real-Time Mosque Financial Fund Management Based On Android and Web Mobile through The Implementation of The Agile Development Scrum Method. JINAV: Journal of Information and Visualization, 5(2), 220–228. https://doi.org/10.35877/454ri.jinav3044
Aspizain, C. (2025). Improving Transparency and Efficiency of Administrative and Organizational Governance Through Smart Digital Technology and Cloning Systems. Journal of Educational Technology and Learning Creativity, 3(2), 554–570. https://doi.org/10.37251/jetlc.v3i2.2481
Budhy, E., Dewi, R., & Negara, H. F. (2021). Sistem Informasi Manajemen Masjid Berbasis Website (Studi Kasus: Masjid Baitul Ikhwan). Jurnal Sistem Informasi, 22(2).
Chaniago, S., Nurlaila, N., & Rokan, M. K. (2024). Transparency and Accountability in the Management of Independent Mosque Funds: A Case Study of Medan City Mosque. Society, 12(2). https://doi.org/10.33019/society.v12i2.730
Goroz, D., Polonetsk, J., & Tene, O. (2017). Privacy Protective Research: Facilitating Ethically Responsible Access to Administrative Data. AAPSS, 675(1). https://doi.org/10.1177/0002716217742605
Grandhi, V. S. K. (2025). The Role of Identity and Access Management (IAM) in Modern Cybersecurity: Implementing Zero Trust Principles for Enhanced Enterprise Security. World Journal of Advanced Engineering Technology and Sciences, 15(3), 179–186. https://doi.org/10.30574/wjaets.2025.15.3.0907
Haryono, K., & Sujarwo, A. (2023). Peningkatan Layanan Jemaah Melalui Implementasi Sistem Pengelolaan Keuangan Dan Aset Masjid Berbasis Web. Transformasi Jurnal Pengabdian Masyarakat, 19(1), 22–34. https://doi.org/10.20414/transformasi.v19i1.5992
Kaleru, A. K. (2025a). Converged IAM: Transforming Enterprise Identity Management in the Cloud Era. Journal of Computer Science and Technology Studies, 7(2), 598–603. https://doi.org/10.32996/jcsts.2025.7.2.64
Kaleru, A. K. (2025b). Identity and Access Management: Foundations, Principles, and Best Practices. World Journal of Advanced Engineering Technology and Sciences, 15(1), 1894–1904. https://doi.org/10.30574/wjaets.2025.15.1.0393
Kaur, H., Reddy, K. K., Reddy, M. K., & Hanafiah, M. M. (2025). Collaborative Approaches to Navigating Complex Challenges and Adapting to a Dynamically Changing World. Integration of AI, Quantum Computing, and Semiconductor Technology. https://doi.org/10.4018/979-8-3693-7076-6.ch010
Kinsta. (2025). The Laravel PHP Framework: Web App Construction for Everyone.
Kirom, C., Cahyadi, I. F., Afandi, J., Adni, R., Cahya, B. T., & Muflih, B. K. (2024). Assistance in Management and Technology-Based Mosque Digitalization to Improve the Quality of Community Services. Jurnal Pengabdian Undikma, 5(2), 205. https://doi.org/10.33394/jpu.v5i2.10920
Marquis, Y. A. (2024). From Theory to Practice: Implementing Effective Role-Based Access Control Strategies to Mitigate Insider Risks in Diverse Organizational Contexts. Journal of Engineering Research and Reports, 26(5), 138–154. https://doi.org/10.9734/jerr/2024/v26i51141
Mutambik, I., Lee, J., Almuqrin, A., Alkhanifer, A., & Baihan, M. S. (2023). Gulf Cooperation Council Countries and Urbanisation: Are Open Government Data Portals Helping? Sustainability, 15(17), 12823. https://doi.org/10.3390/su151712823
Nurrahman, S., Saefullah, A., Abas, F., Tohiroh, T., Saksana, J. C., Azzahra, S. A., Hajar, E. S., Farsiah, L., Zainudidin, Z., & Nurdin, N. (2025). Pemberdayaan Pengurus Dan Jamaah Masjid Melalui Implementasi Sistem Informasi Manajemen Terpadu Berbasis Digital. Jurnal Pengabdian Masyarakat Dan Riset Pendidikan, 4(1), 2373–2382. https://doi.org/10.31004/jerkin.v4i1.1974
Piasecki, J., Walkiewicz-Żarek, E., Figas-Skrzypulec, J., Kordecka, A., & Dranseika, V. (2021). Ethical Issues in Biomedical Research Using Electronic Health Records: A Systematic Review. Medicine Health Care and Philosophy, 24(4), 633–658. https://doi.org/10.1007/s11019-021-10031-6
Pina, E., Ramos, J., Jorge, H., Váz, P., Silva, J., Wanzelle, C., Abbasi, M., & Martins, P. (2024). Data Privacy and Ethical Considerations in Database Management. Journal of Cybersecurity and Privacy, 4(3). https://doi.org/10.3390/jcp4030024
Premsai, R. (2024a). Cybersecurity Risks in Identity and Access Management Using an Adaptive Trust Authenticate Protocol. Interantional Journal of Scientific Research in Engineering and Management, 08(12), 1–5. https://doi.org/10.55041/ijsrem25645
Premsai, R. (2024b). Mitigating Cyber Threats With Robust Identity and Access Management Techniques. Interantional Journal of Scientific Research in Engineering and Management, 08(12), 1–7. https://doi.org/10.55041/ijsrem17705
Rahmawati. (2024). Improving Mosque Information Media Based on Web Applications Using the System Development Life Cycle Method.
Renuka, O., RadhaKrishnan, N., Priya, B. S., Jhansy, A., & Ezekiel, S. (2024). Data Privacy and Protection: Legal and Ethical Challenges. Emerging Threats and Countermeasures in Cybersecurity. https://doi.org/10.1002/9781394230600.ch19
Rizki, A., & Ekawati, N. (2023). Sistem Informasi Manajemen dan Keuangan Masjid Berbasis Web. Jurnal Sistem Informasi.
Rosidin, M., H., M. H. Z., & Sulistyo, W. Y. (2025). Perancangan Sistem Informasi Manajemen Asosiasi dengan Metode Waterfall dan RBAC di Majelis Diktilitbang Muhammadiyah. Jurnal Teknologi Dan Sistem Informasi Bisnis, 7(3), 401–409. https://doi.org/10.47233/jteksis.v7i3.2012
Ross‐Hellauer, T., Reichmann, S., Cole, N. L., Fessl, A., Klebel, T., & Pontika, N. (2022). Dynamics of Cumulative Advantage and Threats to Equity in Open Science: A Scoping Review. Royal Society Open Science, 9(1). https://doi.org/10.1098/rsos.211032
Sa’ari, H., Mohammad, A., & Othman, R. (2025). Smart Mosque Information System (SMIS): A Framework for Digital Daʿwa and Religious Tourism in Malaysia. International Journal Of Academic Research In Business And Social Sciences, 15(9). http://dx.doi.org/10.6007/IJARBSS/v15-i9/26428
Siregar, N. H., Oktavia, A., & Nusantara, A. P. (2023). Sistem Informasi Manajemen Masjid Al-Ikhlas Berbasis Web. Jurnal Bisantara Informatika, 7(2).
Sutrisno, N. A., Kamarulzaman, M. H., & Ibrahim, S. S. (2022). Digitalisation Empowerment in Mosque Tourism Management; A Potential and Current Practice. International Journal of Academic Research in Business and Social Sciences, 12(7). https://doi.org/10.6007/ijarbss/v12-i7/14324
Vitla, S. (2023). Pioneering IAM Innovations: Securing Data, Mitigating Cyber Threats, and Driving Compliance in the Cybersecurity Landscape. International Journal of Science and Research Archive, 10(1), 1130–1150. https://doi.org/10.30574/ijsra.2023.10.1.0714