SlideShare a Scribd company logo
cybersecurity product
design challenges
Jen  Andre
about me
• not  Dus)n  Webber  
• not  a  designer  
• developer/entrepreneur  
• co-­‐founded  Threat  Stack  
• formerly  Mandiant,  Symantec  
• @fun_cuddles,  jandre@gmail.com
previously @ threat stack
*  the  work  of  my  talented  co-­‐founder,  Dus)n  Willis  Webber,  from  whom  I  learned  the  
importance  of  good  design  even  in  a  B2B/enterprise  product.
challenges
• many  cybersecurity  products  are  technical  products  
• helping  find  or  prevents  aKacks  and  breaches.  
• helping  developers  write  safer  code
security is seen as
inconvenient
… a lot of these products
are designed by
engineers.
Design talk
challenges for startups
• Higher  level  of  product  maturity  is  expected  from  
security  products.  
• Sales  require  credibility.    Customers  are  relying  on  
you  to  supplement  security  exper)se.    
great design can make
up for both of these.
key success factors
• Subject  ma<er  exper>se  plus  
• Good  UX  plus  
• Good  design  polish  from  the  start  ins)lls  confidence  
in  your  company  and  product.
the consequences of bad UX
real life examples
• Mul>-­‐factor  auth  too  annoying?    Users  will  not  use  it.  
• Too  many  alarms  generated?    Users  stop  looking  at  
them.  
• Crypto  too  hard  to  use?      No  one  uses  crypto.  
• Performance  too  slow?  Users  disable  the  security  
mechanisms.
emotional design factors
credible
fun practical
security productconsumer products
B2B productcute
reliablecreative
Design talk
beware of alarm fatigue
challenge for designer:
avoiding alarm fatigue
• Some  ideas:  
• Rollup  repeated  events.  
• Is  this  alert  really  cri)cal?    
• If  you  are  making  the  user  take  ac)on,  be  specific.
it’s ok to tell the user things
are fine
challenge for designers:
too much data
The  sad  state  of  many  security  event  management  consoles.  :(
It’s possible to make this information
beautiful and engaging!
*  cybereason.com
in conclusion
• Design  is  a  first  class  ci>zen.  For  B2B/Enterprise  
products,  great  design  is  a  differen)ator.      
• You  can  make  an  impact.  Great  design  and  usability  
in  a  security  product  actually  can  make  the  online  
world  safer.

More Related Content

PDF
Design Sprints
PPTX
Difference between traditional and agile software development
PPTX
Pragmatic guide to AB testing - Agile and Automation days 2019
DOCX
Defining Test Competence
PPTX
Testers developers think differently
PPTX
Engineer - Mastering the Art of Software
PDF
Software Defect Prevention
PPS
CS101- Introduction to Computing- Lecture 24
Design Sprints
Difference between traditional and agile software development
Pragmatic guide to AB testing - Agile and Automation days 2019
Defining Test Competence
Testers developers think differently
Engineer - Mastering the Art of Software
Software Defect Prevention
CS101- Introduction to Computing- Lecture 24

What's hot (20)

PDF
Graham Thomas - Software Testing Secrets We Dare Not Tell - EuroSTAR 2013
PPTX
Test automation: do we still need test specialists?
DOCX
Why all deadlines are bad for quality
PPTX
While You Are Coding
ODP
Test Aided Development - A gateway drug to TDD
PDF
Testing is a team problem
PDF
Id camp x dicoding live : persiapan jadi software engineer hebat 101
PDF
ANI | Agile Mindset Day @Gurugram | Agile Planning: Effective Practices and C...
PPT
Founder Institute Product Development Workshop
PPT
Hsu2 engdesignprocessbv
PDF
I Don't Code, Am I No Longer Useful
PDF
Holistic testing in DevOps
PDF
Acm productivity-webinar-2016-slides
PDF
Tips sukses berkarir sebagai developer dan programmer 2021
PDF
Using your testing mindset to explore requirements
PDF
Bad metric, bad!
PPTX
Pertanyaan dan jawaban (graham et.al 2011) part 1
PPTX
A Test Manifesto 2014.03.26
PDF
How I learned to stop worrying and love to deploy
PDF
Dont be a tool
Graham Thomas - Software Testing Secrets We Dare Not Tell - EuroSTAR 2013
Test automation: do we still need test specialists?
Why all deadlines are bad for quality
While You Are Coding
Test Aided Development - A gateway drug to TDD
Testing is a team problem
Id camp x dicoding live : persiapan jadi software engineer hebat 101
ANI | Agile Mindset Day @Gurugram | Agile Planning: Effective Practices and C...
Founder Institute Product Development Workshop
Hsu2 engdesignprocessbv
I Don't Code, Am I No Longer Useful
Holistic testing in DevOps
Acm productivity-webinar-2016-slides
Tips sukses berkarir sebagai developer dan programmer 2021
Using your testing mindset to explore requirements
Bad metric, bad!
Pertanyaan dan jawaban (graham et.al 2011) part 1
A Test Manifesto 2014.03.26
How I learned to stop worrying and love to deploy
Dont be a tool
Ad

Viewers also liked (19)

DOCX
Rincian minggu efektif
PPTX
Orbex webinario il primo passo al trading intraday
PDF
Offline first solutions highland web group - december 2015
PPTX
The Human Body and Reprodution
PPT
Chapter 2 demand &amp; supply new
DOC
Ashley J Dalessandri 2016
PPTX
Unit 5 ecosystems
PDF
Catalogo biella 2016 ok 2
PDF
Wood and multi fuel stoves brochure - Docherty Group
DOCX
інформатика 5 клас урок 7
PPT
10-Minute PhD
PPTX
Unidad 1 Los Paisajes de España
PDF
GBT Group Prezentacja
PDF
самоосвіта завуч
PDF
David Chen at Rubinstein
PPTX
Unidad 1 Los Paisajes de España
PDF
CV_Lone Bredgaard Thuesen_rev_07102015
PPTX
tecnología?
PPTX
LAS DROGAS_99
Rincian minggu efektif
Orbex webinario il primo passo al trading intraday
Offline first solutions highland web group - december 2015
The Human Body and Reprodution
Chapter 2 demand &amp; supply new
Ashley J Dalessandri 2016
Unit 5 ecosystems
Catalogo biella 2016 ok 2
Wood and multi fuel stoves brochure - Docherty Group
інформатика 5 клас урок 7
10-Minute PhD
Unidad 1 Los Paisajes de España
GBT Group Prezentacja
самоосвіта завуч
David Chen at Rubinstein
Unidad 1 Los Paisajes de España
CV_Lone Bredgaard Thuesen_rev_07102015
tecnología?
LAS DROGAS_99
Ad

Similar to Design talk (20)

PDF
Security And Usability Designing Secure Systems That People Can Use Lorrie Fa...
PPT
Chapter 1 id2e_slides
PPTX
Security Snake Oil Cycle 2019
PDF
Re-Thinking BYOD Policy.pptx
PPTX
Leveraging Human Factors for Effective Security Training, for ISSA Webinar Ma...
PPT
Chapter-10.pptytfjyjrdjrtjfdthdfrthrdthrd
PPT
Chapter-1 (1).pptdydidydydy6dydyyfydyuyd
PDF
The 5 Layers of Security Testing by Alan Koch
PDF
The 5 Layers of Security Testing by Alan Koch
PDF
Threat modelling & apps testing
PPTX
Ryan Elkins - Simple Security Defense to Thwart an Army of Cyber Ninja Warriors
PPTX
Lecture 1 _ Introduction to ID and HCI.pptx
PDF
Building security into the internetofthings
PDF
Getting users to care about security
PPTX
Practical SME Security on a Shoestring
PPT
What Is Interaction Design
PPTX
CS_UNIT 2(P3).pptx
PPTX
Challenges2013
PPT
Maloney Slides
PPTX
ARC's Bob Mick's Cyber Security Standards Presentation at ARC's 2008 Industry...
Security And Usability Designing Secure Systems That People Can Use Lorrie Fa...
Chapter 1 id2e_slides
Security Snake Oil Cycle 2019
Re-Thinking BYOD Policy.pptx
Leveraging Human Factors for Effective Security Training, for ISSA Webinar Ma...
Chapter-10.pptytfjyjrdjrtjfdthdfrthrdthrd
Chapter-1 (1).pptdydidydydy6dydyyfydyuyd
The 5 Layers of Security Testing by Alan Koch
The 5 Layers of Security Testing by Alan Koch
Threat modelling & apps testing
Ryan Elkins - Simple Security Defense to Thwart an Army of Cyber Ninja Warriors
Lecture 1 _ Introduction to ID and HCI.pptx
Building security into the internetofthings
Getting users to care about security
Practical SME Security on a Shoestring
What Is Interaction Design
CS_UNIT 2(P3).pptx
Challenges2013
Maloney Slides
ARC's Bob Mick's Cyber Security Standards Presentation at ARC's 2008 Industry...

Recently uploaded (20)

PPTX
rorakshsjppaksvsjsndjdkndjdbdidndjdbdjom.pptx
PPTX
Entre CHtzyshshshshshshshzhhzzhhz 4MSt.pptx
PPTX
Computers and mobile device: Evaluating options for home and work
PPTX
"Fundamentals of Digital Image Processing: A Visual Approach"
PDF
Printing Presentation to show beginners.
PDF
20A LG INR18650HJ2 3.6V 2900mAh Battery cells for Power Tools Vacuum Cleaner
PDF
Dozuki_Solution-hardware minimalization.
PDF
2_STM32&SecureElements2_STM32&SecureElements
PDF
Maxon CINEMA 4D 2025 Crack Free Download Latest Version
PPTX
Wireless and Mobile Backhaul Market.pptx
PDF
SAHIL PROdhdjejss yo yo pdf TOCOL PPT.pdf
PDF
Topic-1-Main-Features-of-Data-Processing.pdf
PDF
Tcl Scripting for EDA.pdf
PPTX
Subordinate_Clauses_BlueGradient_Optimized.pptx
PPTX
5. MEASURE OF INTERIOR AND EXTERIOR- MATATAG CURRICULUM.pptx
PPTX
A Clear View_ Interpreting Scope Numbers and Features
PPT
Lines and angles cbse class 9 math chemistry
PDF
PakistanCoinageAct-906.pdfdbnsshsjjsbsbb
PPTX
Group 4 [BSIT-1C] Computer Network (1).pptx
PPTX
AI_ML_Internship_WReport_Template_v2.pptx
rorakshsjppaksvsjsndjdkndjdbdidndjdbdjom.pptx
Entre CHtzyshshshshshshshzhhzzhhz 4MSt.pptx
Computers and mobile device: Evaluating options for home and work
"Fundamentals of Digital Image Processing: A Visual Approach"
Printing Presentation to show beginners.
20A LG INR18650HJ2 3.6V 2900mAh Battery cells for Power Tools Vacuum Cleaner
Dozuki_Solution-hardware minimalization.
2_STM32&SecureElements2_STM32&SecureElements
Maxon CINEMA 4D 2025 Crack Free Download Latest Version
Wireless and Mobile Backhaul Market.pptx
SAHIL PROdhdjejss yo yo pdf TOCOL PPT.pdf
Topic-1-Main-Features-of-Data-Processing.pdf
Tcl Scripting for EDA.pdf
Subordinate_Clauses_BlueGradient_Optimized.pptx
5. MEASURE OF INTERIOR AND EXTERIOR- MATATAG CURRICULUM.pptx
A Clear View_ Interpreting Scope Numbers and Features
Lines and angles cbse class 9 math chemistry
PakistanCoinageAct-906.pdfdbnsshsjjsbsbb
Group 4 [BSIT-1C] Computer Network (1).pptx
AI_ML_Internship_WReport_Template_v2.pptx

Design talk

  • 2. about me • not  Dus)n  Webber   • not  a  designer   • developer/entrepreneur   • co-­‐founded  Threat  Stack   • formerly  Mandiant,  Symantec   • @fun_cuddles,  jandre@gmail.com
  • 3. previously @ threat stack *  the  work  of  my  talented  co-­‐founder,  Dus)n  Willis  Webber,  from  whom  I  learned  the   importance  of  good  design  even  in  a  B2B/enterprise  product.
  • 4. challenges • many  cybersecurity  products  are  technical  products   • helping  find  or  prevents  aKacks  and  breaches.   • helping  developers  write  safer  code
  • 5. security is seen as inconvenient
  • 6. … a lot of these products are designed by engineers.
  • 8. challenges for startups • Higher  level  of  product  maturity  is  expected  from   security  products.   • Sales  require  credibility.    Customers  are  relying  on   you  to  supplement  security  exper)se.    
  • 9. great design can make up for both of these.
  • 10. key success factors • Subject  ma<er  exper>se  plus   • Good  UX  plus   • Good  design  polish  from  the  start  ins)lls  confidence   in  your  company  and  product.
  • 12. real life examples • Mul>-­‐factor  auth  too  annoying?    Users  will  not  use  it.   • Too  many  alarms  generated?    Users  stop  looking  at   them.   • Crypto  too  hard  to  use?      No  one  uses  crypto.   • Performance  too  slow?  Users  disable  the  security   mechanisms.
  • 13. emotional design factors credible fun practical security productconsumer products B2B productcute reliablecreative
  • 15. beware of alarm fatigue
  • 16. challenge for designer: avoiding alarm fatigue • Some  ideas:   • Rollup  repeated  events.   • Is  this  alert  really  cri)cal?     • If  you  are  making  the  user  take  ac)on,  be  specific.
  • 17. it’s ok to tell the user things are fine
  • 18. challenge for designers: too much data The  sad  state  of  many  security  event  management  consoles.  :(
  • 19. It’s possible to make this information beautiful and engaging! *  cybereason.com
  • 20. in conclusion • Design  is  a  first  class  ci>zen.  For  B2B/Enterprise   products,  great  design  is  a  differen)ator.       • You  can  make  an  impact.  Great  design  and  usability   in  a  security  product  actually  can  make  the  online   world  safer.