A Study on Information System Security Management Strategies of the Douyin Online Platform

Main Article Content

liuyin yin
Puripat Keawtathanawatthana
Jamroen Kangsri
Nisakorn Yindeechan

Abstract

This study aimed to: 1) investigate users’ needs regarding information security management of the Douyin online platform; and 2) examine strategies for managing information security of the Douyin online platform. A mixed methods research design was employed, comprising quantitative and qualitative approaches. For the quantitative phase,  the sample consisted of 400 users of the Douyin online platform. The sample size was determined using Yamane’s formula, and an appropriate sampling method was employed  to obtain participants representing relevant platform users. Data were collected using  a questionnaire and analyzed using descriptive statistics, including percentage, mean,  and standard deviation. For the qualitative phase, 20 key informants, comprising government officials, executives, and bloggers or platform developers who were responsible for or involved in information security governance and management, were selected through purposive sampling. Data were collected using semi-structured interviews focusing on approaches                         and strategies for information security management. The qualitative data were analyzed using content analysis, and  the credibility of the findings was established through triangulation.


            The findings revealed that: 1) users of the Douyin online platform had an overall need for information security management at the highest level; and 2) five strategies for information security management of the Douyin online platform were identified: (1) establishing an information security management system; (2) defining information security objectives;  (3) establishing security governance policies; (4) developing personnel competencies in information security; and (5) building user confidence in the online platform.


 

Article Details

How to Cite
yin, liuyin, Keawtathanawatthana, P., Kangsri, J., & Yindeechan, N. (2026). A Study on Information System Security Management Strategies of the Douyin Online Platform. Journal of Scholar Community, 4(4), 285–300. retrieved from https://so12.tci-thaijo.org/index.php/watmahasawat_jsc/article/view/5511
Section
บทความวิจัย

References

Cyberspace Administration of China, Ministry of Industry and Information Technology, Ministry of Public Security, & State Administration for Market Regulation. (2022). Provisions on the administration of algorithmic recommendation services in internet information services. Official text of the provisions

Cyberspace Administration of China. (2025). Cybersecurity Law of the People’s Republic of China. Cyberspace Administration of China

International Organization for Standardization. (2022). ISO/IEC 27001:2022 Information security, cybersecurity and privacy protection—Information security management systems—Requirements. ISO.

Liu, L., & Chen, Y. (2024). A triple-layered comparative approach to understanding new privacy policy practices of digital platforms and users in China after implementation of the PIPL. Social Media + Society, 10(4). https://doi.org/10.1177/20563051241301265

Liu, X. Z., Ling, S., & Liu, Y. (2024). How internet use affects personal privacy risk perception: Empirical evidence from China. Online Information Review, 48(4), 676–693. https://doi.org/10.1108/OIR-02-2023-0078

National Institute of Standards and Technology. (2020). Data integrity: Detecting and responding to ransomware and other destructive events (NIST Special Publication 1800-26). National Cybersecurity Center of Excellence.

National Institute of Standards and Technology. (2020). Data integrity: Detecting and responding to ransomware and other destructive events. in NIST Special Publication 1800-26). U.S. Department of Commerce. https://doi.org/10.6028/NIST.SP.1800-26

Pascoe, C., Quinn, S., & Scarfone, K. (2024). The NIST Cybersecurity Framework (CSF) 2.0 (NIST Cybersecurity White Paper 29). National Institute of Standards and Technology. https://doi.org/10.6028/NIST.CSWP.29

Quinn, S., Eliot, D., Prebil, M., Witte, G., & Smith, M. (2026). NIST Cybersecurity Framework 2.0: Cybersecurity, Enterprise Risk Management, and Workforce Management Quick-Start Guide (NIST Special Publication 1308). National Institute of Standards and Technology. https://doi.org/10.6028/NIST.SP.1308

United Nations Educational, Scientific and Cultural Organization. (2023). Guidelines for the governance of digital platforms: Safeguarding freedom of expression and access to information through a multistakeholder approach. UNESCO. https://doi.org/10.54676/UZID6630

Wu, B., & Zhang, Z. (2024). An inquiry into user perceptions of algorithmic recommendations in short video platforms: A case study of TikTok. Journal of Hangzhou Dianzi University, 20(2), 27–35. https://doi.org/10.13954/j.cnki.hduss.2024.02.003