Reconciling usability and security: Interaction design guidance and practices for on-line user authentication

Research output: Chapter in Book or Conference Publication/ProceedingConference Publicationpeer-review

Abstract

Usability and security are often portrayed as though they are competing priorities in information systems development. Given that both are essential to the design of an effective system, it is important that these two prerogatives should be reconciled. In recent years, there is growing concern with the rising incidence of on-line impersonation, theft and other types of fraud. It is therefore important that an information system must have a secure and rigorous way of authenticating a user's identity. This paper reviews the sources of literature on interactive design guidance for on-line user authentication, and then compares the actual practices of a purposefully selected sample of twelveWebsites against the recommendations from the literature. Alarmingly, the findings of this study are that manyWebsites have user authentication processes which contain basic design flaws that are potentially open to exploitation by Internet criminals.

Original languageEnglish
Title of host publicationInformation Systems Development - Business Systems and Services
Subtitle of host publicationModeling and Development
Pages397-416
Number of pages20
DOIs
Publication statusPublished - 2011
Externally publishedYes
Event19th International Conference on Information Systems Development, ISD 2010 - Prague, Czech Republic
Duration: 25 Aug 201027 Aug 2010

Publication series

NameInformation Systems Development - Business Systems and Services: Modeling and Development

Conference

Conference19th International Conference on Information Systems Development, ISD 2010
Country/TerritoryCzech Republic
CityPrague
Period25/08/1027/08/10

Fingerprint

Dive into the research topics of 'Reconciling usability and security: Interaction design guidance and practices for on-line user authentication'. Together they form a unique fingerprint.

Cite this