Streamlined Custom Roles for Tailored Access

Streamlined Custom Roles for Tailored Access

Streamlined Custom Roles for Tailored Access

Feb 2023 - Jun 2023

Feb 2023 - Jun 2023

Trend Vision One is Trend Micro’s flagship security platform, offering over 30 protection services for enterprise customers. The Role-Based Access Control (RBAC) feature allows admins to manage user access to each service, ensuring that individuals see only the information relevant to their role. As the UX designer for RBAC, I proposed a redesign that secured an enterprise customer renewal and increased usage by 6.8x.

Role-based access control (RBAC), a security feature on the Trend Micro platform, faced challenges meeting enterprise customer needs. Collaborating with researchers, I explored customer requirements and strategized with the PM to devise a solution addressing user problems while collecting valuable data. This effort resulted in a remarkable fivefold increase in custom usage, retaining enterprise customers.

Role-based access control (RBAC), a security feature on the Trend Micro platform, faced challenges meeting enterprise customer needs. Collaborating with researchers, I explored customer requirements and strategized with the PM to devise a solution addressing user problems while collecting valuable data. This effort resulted in a remarkable fivefold increase in custom usage, retaining enterprise customers.

My Role

My Role

Team: 1 Product Manager, 1 UX Designer (Me), 1 Visual Designer, 1 Technical Writer, and 10+ Software Engineers.

Team: 1 Product Manager, 1 UX Designer (Me), 1 Visual Designer, 1 Technical Writer, and 10+ Software Engineers.

As a UX designer, upon receiving the request, I took several actions:

As a UX designer, upon receiving the request, I took several actions:

As a UX designer, upon receiving the request, I took several actions:

Cross-functional collaboration

Cross-functional collaboration

Cross-functional collaboration

Led the end-to-end design process, collaborating closely with cross-functional teams, including product managers, engineers, researchers, and data analysts.

Led the end-to-end design process, collaborating closely with cross-functional teams, including product managers, engineers, researchers, and data analysts.

User Research

User Research

User Research

Collaborated with researchers to conduct user interviews and defined the design problem based on research insights.

Collaborated with researchers to conduct user interviews and defined the design problem based on research insights.

Develop Strategy

Develop Strategy

Develop Strategy

Co-worked with the product manager to consolidate the design solutions.

Co-worked with the product manager to consolidate the design solutions.

Design

Design

Design

Designed and iterated information architecture, visual, and interaction experiences.

Designed and iterated information architecture, visual, and interaction experiences.

INTRO
INTRO

What is RBAC?

What is RBAC?

Role-based access control (RBAC) empowers administrators to define user access to the service, ensuring essential permissions while restricting access to unauthorized information.

Role-based access control (RBAC) empowers administrators to define user access to the service, ensuring essential permissions while restricting access to unauthorized information.

BUSINESS PROBLEM
BUSINESS PROBLEM

83% of users with full permissions poses a significant risk to the customer.

83% of users with full permissions poses a significant risk to the customer.

With most users having full access, there is a risk that sensitive credentials are accessible to many, potentially jeopardizing the organization and leading to the loss of Trend Micro's customers

Enterprise Customer:
No RBAC improvement, no renewal approval.

Enterprise Customer:
No RBAC improvement, no renewal approval.

The enterprise customer has requested enhancements to the current RBAC, Without improvements, they are reluctant to invest in the Trend Micro platform.

USER PROBLEM
USER PROBLEM

I partnered the researcher to conduct in-depth interviews. We interviewed 2 customers from North America and the UK, as well as an internal security team admin. We explored the division of responsibilities within the security team and the process of how admin setting up RBAC.

I partnered the researcher to conduct in-depth interviews. We interviewed 2 customers from North America and the UK, as well as an internal security team admin. We explored the division of responsibilities within the security team and the process of how admin setting up RBAC.

1

1

Can't find a suitable role for the member.

Can't find a suitable role for the member.

2

2

Don't know where to customize a role.

Don't know where to customize a role.

3

3

Setting custom roles is too complex.

Setting custom roles is too complex.

DESIGN OUTCOME
DESIGN OUTCOME

01

01

Enhance custom role feature for better user-tailored creation.

Enhance custom role feature for better user-tailored creation.

1

1

Simplifying configuration with fewer options to reduce cognitive load.

Simplifying configuration with fewer options to reduce cognitive load.

Previously, users had to configure all services and functions individually, which was complex and technical. After enhancement, I've grouped the services and provided just three options, reducing cognitive load.

Previously, users had to configure all services and functions individually, which was complex and technical. After enhancement, I've grouped the services and provided just three options, reducing cognitive load.

Before

Before

After

After

2

2

One click to enable all dependency permissions.

One click to enable all dependency permissions.

Users complained about having to remember, search, and enable dependent permissions. Now, they can enable all dependencies with one click.

Users complained about having to remember, search, and enable dependent permissions. Now, they can enable all dependencies with one click.

Before

Before

After

After

02

02

Raise awareness of the custom role feature.

Raise awareness of the custom role feature.

User account creation is a cross-service process. Admins need to create accounts in the user account management service and create a custom role in the user role management service.

User account creation is a cross-service process. Admins need to create accounts in the user account management service and create a custom role in the user role management service.

1

1

Streamlining cross-service process with role creation navigation.

Streamlining cross-service process with role creation navigation.

Before the enhancement, when admins couldn't find a suitable role for a user, they struggled to locate where to create a custom role. After the enhancement, I added a "Create Custom Role" button to streamline the process.

Before the enhancement, when admins couldn't find a suitable role for a user, they struggled to locate where to create a custom role. After the enhancement, I added a "Create Custom Role" button to streamline the process.

Before

Before

After

After

DESIGN IMPACT
DESIGN IMPACT

Number of Custom Roles

Number of Custom Roles

6.8x

6.8x

The rise from 695 to 4,712 indicates significant improvement brought by the enhancement for users.

The rise from 695 to 4,712 indicates significant improvement brought by the enhancement for users.

Securing enterprise customer renewal.

Securing enterprise customer renewal.

LESSON LEARNED
LESSON LEARNED

Embracing Complexity for Better Design

Embracing Complexity for Better Design

The sheer number of permissions was daunting and made the service seem overly complex. However, a deeper understanding revealed the flaws in the original direction, highlighting that embracing complexity and thoroughly grasping the product are crucial for better design.

The sheer number of permissions was daunting and made the service seem overly complex. However, a deeper understanding revealed the flaws in the original direction, highlighting that embracing complexity and thoroughly grasping the product are crucial for better design.

STAKEHOLDERS FEEDBACK
STAKEHOLDERS FEEDBACK

It was happy time to work with Zoe because she had always been very passionate to what she was doing and constantly provided constructive opinions.

It was happy time to work with Zoe because she had always been very passionate to what she was doing and constantly provided constructive opinions.

Sophie Chiang (Senior Product Manager)

Sophie Chiang (Senior Product Manager)

Zoe really knows how to match what the client wants with tech solutions. She always came up with a couple of design options, making it super easy for everyone to see what's best and why.

Zoe really knows how to match what the client wants with tech solutions. She always came up with a couple of design options, making it super easy for everyone to see what's best and why.

Darren Lee (Engineer Lead)

Darren Lee (Engineer Lead)

MORE PROJECTS
MORE PROJECTS

#Design System

#Design System

#Visual Design

#Visual Design

#User Research

#User Research

#UX Design

#UX Design

#Officially Launched

#Officially Launched

#B2B Platform

#B2B Platform

#UX Design

#UX Design

#Dasboard

#Dasboard

Feel free to contact me through

Made with love © 2024 Zoe Sun

Feel free to contact me through