What Security can learn from Design Douglas Wilson Nguyet Vuong - - PowerPoint PPT Presentation

what security can learn from design
SMART_READER_LITE
LIVE PREVIEW

What Security can learn from Design Douglas Wilson Nguyet Vuong - - PowerPoint PPT Presentation

What Security can learn from Design Douglas Wilson Nguyet Vuong Security Person, Design Person, Formerly at Uptycs, Mandiant VP of Design at Civil Media Company @dallendoug @nguyetv INTRO / Who We Are We are Nguyet & Doug Collectively,


slide-1
SLIDE 1

What Security can learn from Design

Douglas Wilson

Security Person, Formerly at Uptycs, Mandiant @dallendoug

Nguyet Vuong

Design Person, VP of Design at Civil Media Company @nguyetv

slide-2
SLIDE 2

INTRO / Who We Are

We are Nguyet & Doug

Collectively, we have lived in and analyzed the worlds of Design and Security for a combined 36 years.

slide-3
SLIDE 3

Let us know if this sounds familiar:

You must challenge the status quo to succeed You spend a lot of time examine unusual and unintended behaviors Despite amazing technology, success is often dependent on a few skilled humans Your area of expertise is often an afterthought at a lot of tech companies You are much more effective if included at the beginning of most processes

INTRO / Why Are We Here

slide-4
SLIDE 4

First thought

Security is the Yin to Design’s Yang

INTRO / Why Are We Here

slide-5
SLIDE 5

“Reframe problems - there are a number of very well known cognitive biases that can limit our thinking and restrict our choices. Indeed, studies have even shown that the way we frame things can play a significant part in whether we get started or procrastinate. By reframing our problems we can often look at situations in a new light and come up with much better solutions to them.”

INTRO / Why Are We Here

Adi Gaskell - 5 Steps To Help You To Design Your Life https://www.forbes.com/sites/adigaskell/2016/09/16/5-steps-to-help-you-to-design-your-life/

Reframing

Security is a design problem

slide-6
SLIDE 6

But wait. I can’t draw. I don’t do graphics. How am I a designer?

INTRO / Why Are We Here

slide-7
SLIDE 7

“Everyone is a designer. Not everyone is a good designer. Everyone can become a better designer.”

INTRO / Why Are We Here

  • Jared Spool
slide-8
SLIDE 8

In going through this journey, we ask:

How might we improve security solutions by applying insights from the design industry?

INTRO / Why Are We Here

slide-9
SLIDE 9

Phases of Design Thinking according to Stanford Design School

slide-10
SLIDE 10

What is Design Thinking?

slide-11
SLIDE 11

Human-Centered Design

Successful solutions solve problems for people. Human-centered design starts with human desires. Successful solutions emerge in the overlap of these three lenses.

Viability Desirability Feasibility Starts here Solution

WHAT IS DESIGN THINKING?

slide-12
SLIDE 12

A set of activities we use to align teams, practice user empathy together, and deliver outcomes that successfully meet our users’ needs.

A set of activities

WHAT IS DESIGN THINKING?

slide-13
SLIDE 13

IBM The Loop

WHAT IS DESIGN THINKING?

OBSERVE REFLECT MAKE

slide-14
SLIDE 14

IDEO

WHAT IS DESIGN THINKING?

Inspiration Ideation Implementation

Credit: IDEO

slide-15
SLIDE 15

Empathize

Stanford School of Design

WHAT IS DESIGN THINKING?

Define Ideate Prototype Test

Learn about the users Sharpen key questions Brainstorm and create solutions Build representations of

  • ne idea

Test and gain user feedback

slide-16
SLIDE 16

UNDERSTAND DEFINE IDEATE PROTOTYPE TEST

The Methodology

slide-17
SLIDE 17

This is not a linear process

UNDERSTAND DEFINE IDEATE PROTOTYPE TEST

slide-18
SLIDE 18

Design Thinking Activities

More constructed according to the needs of the workshop. This framework is flexible, and can be done in 1 week, 1 or 2 days or half day according to your needs.

1 day One week Half day 2 hour

slide-19
SLIDE 19

DEFINE IDEATE PROTOTYPE TEST UNDERSTAND

slide-20
SLIDE 20

Understanding is gaining an empathic insight into the people you’re designing for and the challenges they are experiencing.

Understand

slide-21
SLIDE 21

DEFINE IDEATE UNDERSTAND PROTOTYPE TEST

slide-22
SLIDE 22

Defining is unpacking the findings from your understanding into needs and insights. And then turning those needs into a problem statement.

Define

slide-23
SLIDE 23

IDEATE DEFINE DEFINE IDEATE UNDERSTAND PROTOTYPE TEST

slide-24
SLIDE 24

Ideating is generating a large number of ideas. Not perfect ideas, but lots of potential answers and

  • solutions. No judgement. No evaluation.

This is the time to let imaginations run wild!

Ideate

slide-25
SLIDE 25

DEFINE DEFINE UNDERSTAND PROTOTYPE TEST IDEATE

slide-26
SLIDE 26

Prototyping is giving concrete form to abstract ideas. It is creating something that allows for interaction and experience, but doesn’t have to be fully functional. This is about learning, not about getting it right the first time.

Prototype

slide-27
SLIDE 27

DEFINE IDEATE UNDERSTAND PROTOTYPE TEST

slide-28
SLIDE 28

Test

Testing your prototype is putting it in the hands of the right people to gather feedback and maximize your learning.

slide-29
SLIDE 29

UNDERSTAND DEFINE IDEATE PROTOTYPE TEST

slide-30
SLIDE 30

Real life feelings

Stefanie Di Rossi - https://ithinkidesign.wordpress.com/2012/01/18/a-brief-history-of-design-thinking-the-theory-p1/

slide-31
SLIDE 31

How can we apply this in the security field?

slide-32
SLIDE 32
  • Told to implement a solution - “solve a problem”
  • Create a technology-first solution
  • Define the problem based on what’s affordable or available
  • Implement dictated solution instead of exploring ideas
  • End up with frustration and unhappy users

This happens more than we’d like

slide-33
SLIDE 33

Phases of Design Thinking according to Stanford Design School

slide-34
SLIDE 34

Understand

Are you identifying with people in your organization? Did you get diverse input from different sources?

Define

Are you tackling solvable problems? If not, can you reframe them?

Ideate

Don’t just accept the first idea. Conduct structured brainstorming.

Prototype

Are you trying out ideas small before you go big? Are you getting feedback before committing to final products?

Test

Are you testing with your users and listening to feedback? Are you answering the right questions?

slide-35
SLIDE 35
  • Talk to your users
  • Engage your team
  • Seek out designers in your organization.

○ Ask for help

  • Go to design talks

How to get started

slide-36
SLIDE 36

This is just the beginning of a journey.

We thank you for taking it with us.

slide-37
SLIDE 37

Design Thinking Workshop

Friday at 9:15 am - 10:45 am Lowther Room LIMITED CAPACITY

slide-38
SLIDE 38

Thank you!

Douglas Wilson

Security Person, Formerly at Uptics, Mandiant @dallendoug

Nguyet Vuong

Design Person, VP of Design at Civil Media Company @nguyetv

slide-39
SLIDE 39

Resources for further learning

Stanford “D” School: https://dschool.stanford.edu/resources (new virtual crash course coming this fall!) IBM: https://www.ibm.com/design/thinking/page/framework Ideo: https://designthinking.ideo.com/ & http://www.designkit.org/ Designing Your Life - a book by Bill Burnett & Dave Evans: https://blog.marvelapp.com/shh-dont-tell-theres-no-magic-design-thinking/