Control and Assurance in E-Commerce: Privacy, Integrity and Security at eBay
Rong-Ruey Duh (),
Karim Jamal () and
Shyam Sunder
Additional contact information
Rong-Ruey Duh: Department of Accounting
Karim Jamal: Department of Accounting & Management Information Systems
Yale School of Management Working Papers from Yale School of Management
Abstract:
Growth of online auctions and other forms of e-commerce has been hampered by concerns about the privacy, integrity, and security of online transactions. To earn the trust of their participants, new e-commerce organizations, like traditional organizations, have to reach the state of expectations equilibrium or control - a state where the actual behavior of participants corresponds to what others expect them to do. Since e-commerce companies provide electronic platforms where buyers and sellers interact directly with each other (as well as with the platform operator), establishing control in e-commerce enterprises requires broadening of the traditional definition of "internal control" to encompass the activities of "outsiders" such as customers, and suppliers. This paper presents a framework for analyzing the control environment of online auctions and identifies privacy and denial of service attacks as two new classes of risks faced by e-commerce companies. Using the control policies and practices of a leading consumer online auction company (eBay) as an illustrative example, we suggest possible ways of controlling these risks. This analysis identifies the demand for new kinds of assurance services for e-commerce to support privacy, integrity and security of online transactions. E-commerce assurance services available at the end of year 2000 (e.g. WebTrust) fall short of what is needed to establish expectations equilibrium or control in online auction firms. The merits of developing proprietary (e.g., PWC privacy standards) versus industry standards (e.g. WebTrust) for e-commerce assurance services are also discussed.
Keywords: E-commerce; Online auctions; Control; Assurance; Privacy; Integrity; Security (search for similar items in EconPapers)
JEL-codes: M40 M49 (search for similar items in EconPapers)
Date: 2001-01-09
References: Add references at CitEc
Citations: View citations in EconPapers (5)
Downloads: (external link)
http://papers.ssrn.com/sol3/papers.cfm?abstract_id=254270 (application/pdf)
Related works:
Working Paper: Control and Assurance in E-Commerce: Privacy, Integrity, and Security at eBay (2003) 
Working Paper: Control and Assurance in E-Commerce: Privacy, Integrity, and Security at eBay (2003) 
This item may be available elsewhere in EconPapers: Search for items with the same title.
Export reference: BibTeX
RIS (EndNote, ProCite, RefMan)
HTML/Text
Persistent link: https://EconPapers.repec.org/RePEc:ysm:somwrk:ysm170
Access Statistics for this paper
More papers in Yale School of Management Working Papers from Yale School of Management Contact information at EDIRC.
Bibliographic data for series maintained by ().