Risk โ€“ Based Authentication Enhancement of University Digital Portal Security
Nexus Global Research Journal of Multidisciplinary | Vol.2 Issue 7 | 2026
Risk โ€“ Based Authentication Enhancement of University Digital Portal Security
Samuel F.Camorongan, Diosdado C.Caronongan
Graduate School, University of Luzon, Master in Information Technology Program, University of Eastern Pangasinan.
Published: 25 July 2026 | DOI:

Abstract

With the rapid advancement of digital systems, academic institutions increasingly utilized centralized digital platforms to support academic services and communication. The University of Eastern Pangasinan currently utilizes a digital portal that has a traditional password-based authentication system, which depends on username and password. This study analyzed user perceptions to the existing authentication method of the digital portal, focusing on three key indicators: (1) accessibility, (2) usability, and (3) security effectiveness. Using a descriptive - developmental research design, data were collected through online surveys and focus group discussion with the administrative staff and students. The findings revealed that while the portal performs well in accessibility and usability, its security effectiveness scored lower, indicating limited user confidence in password โ€“ based authentication. Based on data gathered, a prototype for risk โ€“ based authentication system was developed. This adaptive system evaluates risk through factors such as device and location trust, IP reputation, login patterns, failed attempts, user behavior, and adjusts verification requirements accordingly. Low risk access uses a single โ€“ factor authentication, medium risk triggers one โ€“ time code verification via email, and high risk requires one โ€“ time pin (OTP) verification and hardware token. By conducting a post โ€“ test with the developed prototype, a side-by-side comparison of the weighted means between the existing password - base and the developed risk-based authentication system, the developed system indicates a higher level of satisfaction in terms of accessibility, usability, and security features. The study concludes that the developed prototype for risk โ€“ based authentication system significantly shows the security effectiveness of the system without compromising user experience, offering a practical solution for academic institutions.

Keywords: Risk โ€“ Based Authentication, Digital Portal Security, Security Effectiveness, Accessibility, Usability,

1. Introduction

The increasing reliance of higher education institutions on digital technologies has transformed the delivery of academic services, making university portals essential for managing enrollment, grades, student records, and institutional transactions. As these systems store sensitive personal and academic information, ensuring secure user authentication has become a critical concern. The University of Eastern Pangasinan currently employs a traditional password โ€“ based login system that relies solely on single โ€“ factor authentication. Although convenient, this approach remains vulnerable to unauthorized access, password theft, and other cybersecurity threats, showing the need for stronger authentication mechanism. Recent studies have emphasized the effectiveness of multi-factor authentication (MFA) in enhancing digital security. A systematic literature review by Cahyanto et al. (2025) found that multi โ€“ factor authentication significantly reduces the risk of data breaches and unauthorized access while improving user confidence in digital systems. However, the successful implementation of multi โ€“ factor authentication depends not only on its security capabilities but also on users' perceptions of its accessibility, usability, and reliability. Authentication models with a multi - factor usually requires the user to confirm their identity by using an additional step, such as a one โ€“ time pin (OTP) or mobile device verification. With this added layer of security, it will help to secure the accounts, but its success is not determined by the technology alone. The user acceptance is being shaped by accessibility, ease of use, and perceived of reliability plays a crucial role in its overall effectiveness.

2. Results

This section presents the results, analysis, and interpretation of the data gathered to address the objectives of the study. Specifically, it discusses: (1) the user perception to the existing university digital portal's authentication system across three aspects โ€” accessibility, usability, and security effectiveness; (2) the development and key features of the proposed risk-based authentication system; (3) the satisfaction level of the respondents on the developed authentication system; and (4) a synthesis of the findings drawn from the data analysis.

3. Discussion

This section summarizes the studyโ€™s findings by combining the user perception results of the existing portal and user level satisfaction results of the developed risk-based authentication system.

4. Conclusion

The proponent of the study draws upon the accumulated findings and insights from this research project to present a comprehensive and meaningful conclusion that addresses the effectively and incorporation of risk โ€“ based authentication model. Mentioned below are the following conclusions drawn from the project:

References

[1] Cahyanto, I., Madihah, H., Budiarso, I., Sutrisno, A., & Hidayat, T. (2025). Effectiveness of multifactor authentication technology for protecting student privacy: A systematic literature review

[2] Gura, M., & Chen, Q. (2010). Factors affecting adoption of a student portal

[3] Severn, L. (March, 2021). The Process of Gathering Requirements for Software Development.

[4] Lal, R. (February, 2023). What Is Software Prototyping and Why Do You Need It? Medin, D. (2022). Using Data Sources in Research. Research Square

[5] Adam, J. (March, 2023). What is the software development life cycle (SDLC) and why is it important? A brief introduction to SDLC phases, methodologies.

Full reference list available in the PDF version.