dc.contributor.author |
Mujinga, Mathias
|
|
dc.contributor.author |
Eloff, Mariki M
|
|
dc.contributor.author |
Kroeze, Jan H
|
|
dc.date.accessioned |
2022-03-17T14:39:28Z |
|
dc.date.available |
2022-03-17T14:39:28Z |
|
dc.date.issued |
2019-07-27 |
|
dc.identifier.citation |
Mujinga, M., Eloff, M.M. and Kroeze, J.H. (2019). Towards a framework for online information security applications development: A socio-technical approach. South African Computer Journal 32(1), 24–50.https://doi.org/10.18489/sacj.v31i1.587 |
en |
dc.identifier.issn |
2313-7835 |
|
dc.identifier.uri |
https://hdl.handle.net/10500/28629 |
|
dc.description.abstract |
The paper presents a validated socio-technical information security (STInfoSec) framework for the development of online information security (InfoSec) applications. The framework addresses both social and technical aspects of InfoSec design. The preliminary framework was developed using a mixed methods research design that collected data from 540 surveys by online banking users and six interviews with online banking personnel. The preliminary framework was presented in another publication and it is beyond the scope of this paper. The scope of this paper is limited to the validation
findings of the evaluation process that involves seven evaluators. In the socio-technical context, the STInfoSec framework facilitates acceptance and usability of online applications based on online banking as a case study. The authors argue that usability of online InfoSec applications such as online banking significantly affects the adoption and continued use of such applications. As such, the paper investigates design principles for usable security and proposes a validated STInfoSec framework that consists of 12 usable security design principles. The design principles have been validated through heuristic evaluation by seven field experts for inclusion in the final STInfoSec framework. The development of InfoSec applications can be improved by applying these design principles. |
en |
dc.language.iso |
en |
en |
dc.publisher |
South African Computer Journal |
en |
dc.subject |
online banking, socio-technical, information security, usable security, STInfoSec, South Africa |
en |
dc.title |
Towards a framework for online information security applications development: A socio-technical approach |
en |
dc.type |
Article |
en |
dc.description.department |
School of Computing |
en |