Security is a critical priority in mobile banking systems, where diverse risks threaten system stability and consumer trust. This paper presents a risk assessment framework for mobile banking systems, integrating dynamic information flows and static threats models to identify and analyze vulnerabilities. First, a dynamic information flow model captures the exchange of information among key entities, while a static threat model categorizes major security threats arising from human error, malicious activity, and natural disasters. Combining these models facilitates a detailed assessment of potential risks. Additionally, a relative weighted assessment is applied to classify risk factors into high, medium, and low levels, providing a targeted view of vulnerabilities within mobile banking operations. To refine our assessment, we employ agglomerative hierarchical clustering to group security risks into three clusters. This framework offers insights for mobile banking developers and decision-makers to strengthen security measures and effectively allocate resources for risk mitigation.
Related links
Details
Title
Risk Assessment Framework Development for Mobile Banking Systems
Publication Details
The Journal of computer information systems, pp.1-18