当前位置: X-MOL 学术Int. J. Account. Inf. Syst. › 论文详情
Our official English website, www.x-mol.net, welcomes your feedback! (Note: you will need to create a separate account there.)
Information security risk items and management practices for mobile payment using non-financial-institution service providers: An exploratory study
International Journal of Accounting Information Systems ( IF 4.1 ) Pub Date : 2024-05-30 , DOI: 10.1016/j.accinf.2024.100684
Shaio-Yan Huang , Tawei Wang , Yu-Ting Huang , Tzu-Ning Yeh

Mobile payment has become increasingly popular in recent years. However, concerns remain about the information security risk management practices implemented by non-financial-institution mobile payment service providers, such as mobile phone carriers and technology companies, using tokenization systems and encryption mechanisms. Using the modified Delphi method and building on the COBIT 2019 framework, this study explores and suggests how these non-financial-institution mobile payment service providers can consider a more holistic list of information security risk items and their corresponding management practices. We believe the proposed practices will help non-financial-institution mobile payment service providers focus on the valuable aspects of information security risks.



近年来,移动支付日益普及。然而,对于移动电话运营商和科技公司等非金融机构移动支付服务提供商使用代币化系统和加密机制实施的信息安全风险管理实践仍然存在担忧。本研究采用修改后的德尔菲法,并以COBIT 2019框架为基础,探讨并建议这些非金融机构移动支付服务提供商如何考虑更全面的信息安全风险项目清单及其相应的管理实践。我们相信,拟议的做法将有助于非金融机构移动支付服务提供商关注信息安全风险的有价值的方面。