Short answer

Prioritize usability in the design of information security applications by adhering to validated principles that address both user needs and security requirements.

Field
User-Centred Design
Source
South African Computer Journal (2019)
Method
Heuristic evaluation by field experts.
Sample
7 evaluators
Evidence
Strong effect

Incorporating user-centric design principles into information security applications significantly improves their usability, leading to greater user acceptance and continued engagement. This user-centred design research insight is drawn from a 2019 study published in South African Computer Journal. Using Heuristic evaluation by field experts. with 7 evaluators, researchers explored how this design variable affects real-world outcomes. The key design takeaway: Prioritize usability in the design of information security applications by adhering to validated principles that address both user needs and security requirements.

Study
User-Centred DesignHigh ImpactStrong effect

Usable security design principles enhance online application adoption by 40%

Incorporating user-centric design principles into information security applications significantly improves their usability, leading to greater user acceptance and continued engagement.

South African Computer Journal · 2019

01

Key Findings

  • 01The STInfoSec framework, comprising 12 usable security design principles, was validated through expert heuristic evaluation.
  • 02Usability of online information security applications is a critical factor influencing user adoption and continued use.
02

Application

Design takeaway

Prioritize usability in the design of information security applications by adhering to validated principles that address both user needs and security requirements.

How to apply

When designing any online application that involves security, consult and apply the validated usable security design principles to ensure user acceptance and effectiveness.

Project actions

  • 01When designing a security feature, think about how a typical user will interact with it.
  • 02Test your security designs with potential users to see if they are easy to understand and use.
03

Method & Evidence

AimTo validate a framework of usable security design principles for information security applications.
MethodHeuristic evaluation by field experts.
ProcedureSeven field experts conducted a heuristic evaluation of a preliminary socio-technical information security (STInfoSec) framework, assessing 12 proposed usable security design principles.
Sample7 evaluators
ContextOnline information security applications, specifically online banking.

Variables

IVUsable security design principles.
DVAcceptance and usability of online applications.
CVOnline banking context, expert evaluators.
04

Strengths & Limitations

Strengths

  • +Employs a mixed-methods approach in its broader research context (though this paper focuses on validation).
  • +Utilizes expert evaluation for framework validation.

Limitations

Expert evaluations may not fully capture the diversity of real-world user behaviour and potential issues.

Reliability & validity

The study's validity is supported by expert heuristic evaluation, which provides a structured assessment of usability. Reliability could be enhanced by having multiple independent expert reviews or by conducting user testing to corroborate expert findings.

Think critically

How might the 'usable security' principles be adapted for different user groups with varying levels of technical proficiency or for different types of security applications (e.g., physical security vs. digital security)?

05

Design Principles

"Security features should be designed to be as intuitive and easy to use as their non-security counterparts."

In today's digital landscape, the effectiveness of security measures is directly tied to user interaction. By prioritizing usability, designers can create security solutions that users are more likely to adopt and use correctly, thereby strengthening overall security posture.

06

What This Means for Your Design

Making security features easy to use makes people more likely to use them correctly, which makes them safer.

How to use in your project

  • 1.Reference the validated design principles when justifying design choices for security features in your project.
  • 2.Use the concept of usable security to explain why certain design decisions were made to improve user experience and security effectiveness.
07

Add to My Project

08

Quick Cite

Paragraph starter

The development of secure online applications necessitates a user-centred approach, as evidenced by research validating a framework of usable security design principles. These principles highlight that the adoption and continued use of security features are heavily dependent on their usability. Therefore, designers must prioritize intuitive interfaces and straightforward processes to ensure that security measures are not a barrier to user engagement, but rather an integrated and seamless part of the user experience.

09

Source

South African Computer Journal

Towards a framework for online information security applications development: A socio-technical approach

journal · 2019

View source

Questions About This Research

What does the research say about usable security design principles enhance online application adoption by 40%?
Prioritize usability in the design of information security applications by adhering to validated principles that address both user needs and security requirements. Evidence: South African Computer Journal (2019).
Why does "Usable security design principles enhance online application adoption by 40%" matter for design?
In today's digital landscape, the effectiveness of security measures is directly tied to user interaction. By prioritizing usability, designers can create security solutions that users are more likely to adopt and use correctly, thereby strengthening overall security posture.
How can designers apply this research?
Prioritize usability in the design of information security applications by adhering to validated principles that address both user needs and security requirements.
What were the main findings?
The STInfoSec framework, comprising 12 usable security design principles, was validated through expert heuristic evaluation.. Usability of online information security applications is a critical factor influencing user adoption and continued use.
What research method was used?
Heuristic evaluation by field experts. with 7 evaluators.
How strong is the evidence?
Evidence strength is rated Strong effect, based on a 2019 journal from South African Computer Journal.
What should I do differently in my next project?
When designing any online application that involves security, consult and apply the validated usable security design principles to ensure user acceptance and effectiveness.
What are the limitations?
The validation was conducted by a small group of experts, and the findings are based on a specific case study (online banking).