Designing secure information infrastructure is a function of design and usability. However, security is seldom given priority when systems are being developed. Secure design practices should balance between functionality (i.e., proper design) to meet minimum requirements and user-friendliness. Design recommendations such as those with a user-centric approach (i.e., inclusive of only relevant information, user liberty) and presenting information within its proper context in a clear and engaging manner has been scientifically shown to improve user response and experience.
翻译:设计安全的信息基础设施是设计功能与可用性的共同结果。然而,在系统开发过程中,安全性很少被优先考虑。安全设计实践应在满足最低要求的功能性(即合理设计)与用户友好性之间取得平衡。研究表明,采用以用户为中心的设计建议(例如仅包含相关信息、赋予用户自由权),并以清晰且引人入胜的方式在适当情境中呈现信息,能够科学地提升用户响应与体验。