Designing secure information infrastructure is a function of design and usability. However, security is seldom given priority when systems are being developed. Secure design practices should balance between functionality (i.e., proper design) to meet minimum requirements and user-friendliness. Design recommendations such as those with a user-centric approach (i.e., inclusive of only relevant information, user liberty) and presenting information within its proper context in a clear and engaging manner has been scientifically shown to improve user response and experience.
翻译:设计安全的信息基础设施需兼顾其设计功能与易用性。然而,在系统开发过程中,安全性很少被置于优先考虑的地位。安全设计实践应当平衡功能性(即恰当的设计)以达成最低要求与用户友好性。科学证据表明,采用以用户为中心的设计建议(例如,仅包含相关信息、赋予用户自由度)以及在恰当的语境中以清晰且引人入胜的方式呈现信息,均能显著改善用户的响应与体验。