A Study on Information System Security Management Strategies of the Douyin Online Platform
Main Article Content
Abstract
This study aimed to: 1) investigate users’ needs regarding information security management of the Douyin online platform; and 2) examine strategies for managing information security of the Douyin online platform. A mixed methods research design was employed, comprising quantitative and qualitative approaches. For the quantitative phase, the sample consisted of 400 users of the Douyin online platform. The sample size was determined using Yamane’s formula, and an appropriate sampling method was employed to obtain participants representing relevant platform users. Data were collected using a questionnaire and analyzed using descriptive statistics, including percentage, mean, and standard deviation. For the qualitative phase, 20 key informants, comprising government officials, executives, and bloggers or platform developers who were responsible for or involved in information security governance and management, were selected through purposive sampling. Data were collected using semi-structured interviews focusing on approaches and strategies for information security management. The qualitative data were analyzed using content analysis, and the credibility of the findings was established through triangulation.
The findings revealed that: 1) users of the Douyin online platform had an overall need for information security management at the highest level; and 2) five strategies for information security management of the Douyin online platform were identified: (1) establishing an information security management system; (2) defining information security objectives; (3) establishing security governance policies; (4) developing personnel competencies in information security; and (5) building user confidence in the online platform.
Article Details

This work is licensed under a Creative Commons Attribution-NonCommercial-NoDerivatives 4.0 International License.
References
Cyberspace Administration of China, Ministry of Industry and Information Technology, Ministry of Public Security, & State Administration for Market Regulation. (2022). Provisions on the administration of algorithmic recommendation services in internet information services. Official text of the provisions
Cyberspace Administration of China. (2025). Cybersecurity Law of the People’s Republic of China. Cyberspace Administration of China
International Organization for Standardization. (2022). ISO/IEC 27001:2022 Information security, cybersecurity and privacy protection—Information security management systems—Requirements. ISO.
Liu, L., & Chen, Y. (2024). A triple-layered comparative approach to understanding new privacy policy practices of digital platforms and users in China after implementation of the PIPL. Social Media + Society, 10(4). https://doi.org/10.1177/20563051241301265
Liu, X. Z., Ling, S., & Liu, Y. (2024). How internet use affects personal privacy risk perception: Empirical evidence from China. Online Information Review, 48(4), 676–693. https://doi.org/10.1108/OIR-02-2023-0078
National Institute of Standards and Technology. (2020). Data integrity: Detecting and responding to ransomware and other destructive events (NIST Special Publication 1800-26). National Cybersecurity Center of Excellence.
National Institute of Standards and Technology. (2020). Data integrity: Detecting and responding to ransomware and other destructive events. in NIST Special Publication 1800-26). U.S. Department of Commerce. https://doi.org/10.6028/NIST.SP.1800-26
Pascoe, C., Quinn, S., & Scarfone, K. (2024). The NIST Cybersecurity Framework (CSF) 2.0 (NIST Cybersecurity White Paper 29). National Institute of Standards and Technology. https://doi.org/10.6028/NIST.CSWP.29
Quinn, S., Eliot, D., Prebil, M., Witte, G., & Smith, M. (2026). NIST Cybersecurity Framework 2.0: Cybersecurity, Enterprise Risk Management, and Workforce Management Quick-Start Guide (NIST Special Publication 1308). National Institute of Standards and Technology. https://doi.org/10.6028/NIST.SP.1308
United Nations Educational, Scientific and Cultural Organization. (2023). Guidelines for the governance of digital platforms: Safeguarding freedom of expression and access to information through a multistakeholder approach. UNESCO. https://doi.org/10.54676/UZID6630
Wu, B., & Zhang, Z. (2024). An inquiry into user perceptions of algorithmic recommendations in short video platforms: A case study of TikTok. Journal of Hangzhou Dianzi University, 20(2), 27–35. https://doi.org/10.13954/j.cnki.hduss.2024.02.003