Information security risk items and management practices for mobile payment using non-financial-institution service providers: An exploratory study

Shaio-Yan Huang,Tawei Wang,Yu-Ting Huang,Tzu-Ning Yeh
DOI: https://doi.org/10.1016/j.accinf.2024.100684
IF: 5.111
2024-06-01
International Journal of Accounting Information Systems
Abstract:Mobile payment has become increasingly popular in recent years. However, concerns remain about the information security risk management practices implemented by non-financial-institution mobile payment service providers, such as mobile phone carriers and technology companies, using tokenization systems and encryption mechanisms. Using the modified Delphi method and building on the COBIT 2019 framework, this study explores and suggests how these non-financial-institution mobile payment service providers can consider a more holistic list of information security risk items and their corresponding management practices. We believe the proposed practices will help non-financial-institution mobile payment service providers focus on the valuable aspects of information security risks.
management,business, finance
What problem does this paper attempt to address?