Institutional Repository

Towards a framework for online information security applications development: A socio-technical approach

Show simple item record

dc.contributor.author Mujinga, Mathias
dc.contributor.author Eloff, Mariki M
dc.contributor.author Kroeze, Jan H
dc.date.accessioned 2022-03-17T14:39:28Z
dc.date.available 2022-03-17T14:39:28Z
dc.date.issued 2019-07-27
dc.identifier.citation Mujinga, M., Eloff, M.M. and Kroeze, J.H. (2019). Towards a framework for online information security applications development: A socio-technical approach. South African Computer Journal 32(1), 24–50.https://doi.org/10.18489/sacj.v31i1.587 en
dc.identifier.issn 2313-7835
dc.identifier.uri https://hdl.handle.net/10500/28629
dc.description.abstract The paper presents a validated socio-technical information security (STInfoSec) framework for the development of online information security (InfoSec) applications. The framework addresses both social and technical aspects of InfoSec design. The preliminary framework was developed using a mixed methods research design that collected data from 540 surveys by online banking users and six interviews with online banking personnel. The preliminary framework was presented in another publication and it is beyond the scope of this paper. The scope of this paper is limited to the validation findings of the evaluation process that involves seven evaluators. In the socio-technical context, the STInfoSec framework facilitates acceptance and usability of online applications based on online banking as a case study. The authors argue that usability of online InfoSec applications such as online banking significantly affects the adoption and continued use of such applications. As such, the paper investigates design principles for usable security and proposes a validated STInfoSec framework that consists of 12 usable security design principles. The design principles have been validated through heuristic evaluation by seven field experts for inclusion in the final STInfoSec framework. The development of InfoSec applications can be improved by applying these design principles. en
dc.language.iso en en
dc.publisher South African Computer Journal en
dc.subject online banking, socio-technical, information security, usable security, STInfoSec, South Africa en
dc.title Towards a framework for online information security applications development: A socio-technical approach en
dc.type Article en
dc.description.department School of Computing en


Files in this item

This item appears in the following Collection(s)

Show simple item record

Search UnisaIR


Browse

My Account

Statistics