Human-Centered Security cover logo

Bake Security Into the DNA of Your Product and Improve the Security User Experience with Darren Thomas and Margaret Cunningham

41m · Human-Centered Security · 03 Apr 09:00

We start the episode discussing a very serious topic: emojis. Then we get back to your regularly scheduled programming.

How would you approach security if you were building something from scratch? How would you address security user experience challenges? Darren Thomas and Margaret Cunningham from Wethos AI talk about how they’ve built security into their product and how cross-disciplinary collaboration helps them improve the security user experience.

In this episode, we talk about:

  • How to build security into your product development lifecycle when you need move quickly.
  • How to anticipate—and design for—security and privacy concerns.
  • Why getting users to the product’s value faster and relates to the security user experience.

Darren Thomas is the co-founder and Chief Product Officer at Wethos AI, a platform that helps people and teams connect and understand one another to improve both individual and team performance. Darren is also the founding team member and head of product at NumberOne AI. A veteran in product management within the security industry, Darren has previously worked at Tenable and McAfee.

Margaret Cunningham is an experimental psychologist and is Chief Scientist at Wethos AI. Previously, Margaret was Senior Staff Behavioral Engineer, Security & Privacy at Robinhood and Principal Research Scientist for Human Behavior at Forcepoint’s X-Lab. Check out the Margaret’s first interview on the Human-Centered Security podcast (Episode 9).

The episode Bake Security Into the DNA of Your Product and Improve the Security User Experience with Darren Thomas and Margaret Cunningham from the podcast Human-Centered Security has a duration of 41:09. It was first published 03 Apr 09:00. The cover art and the content belong to their respective owners.

More episodes from Human-Centered Security

Include Users with Disabilities in Your Security UX Research with Joyce Oshita

Are you inadvertently designing a security user experience that makes it less likely your users will choose the most secure option for them? Are security-related roadblocks preventing people from using your service? In order to design inclusive experiences—including accessible experiences—you must include users with disabilities in your research.

In this episode, we talk about:

  • Including users with disabilities as a co-creation exercise—not something you “check off” as part of your UX research.
  • Why flexibility is so important when it comes to the security user experience.
  • The importance of storytelling to help teams design accessible experiences.
  • Joyce’s experience when encountering a CAPTCHA using a screen reader (and listen to an example), where she is prevented from completing a form.
  • Why Joyce believes “today’s frustration will be the field for tomorrow’s innovation.”

Joyce Oshita is a Certified Professional in Web Accessibility, accessibility trainer and educator, and advisor for the FIDO Alliance task force. Joyce created the Digital Overload series, which documents her experiences using digital services while using a screen reader.

Also check out the W3C Web Accessibility Initiative (WAI) Web Accessibility Perspective Videos.

Leveraging Data Science to Help Security Teams with Serge-Olivier Paquette

How do you help security teams understand what happened and what to do next? Data science can help with that. Serge-Olivier Paquette, CPO at threat intelligence and analytics platform Flare, combines product, cybersecurity, and data science expertise to develop cutting-edge products and experiences that help security teams make informed decisions.

In this episode:

  • The best explanation of data science you’ve ever heard.
  • Why you need to skeptical of data science models.
  • How to leverage data science to be more helpful to security teams.
  • How to build trust—particularly when tools can increasing perform actions on behalf of users.

Serge-Olivier Paquette is CPO at Flare, a cybersecurity platform that helps organizations proactively identify security threats. He works at the intersection of product management, data science, cybersecurity, and platform engineering. Serge-Olivier was previously tech lead and senior manager at Secureworks.

What Designers Need to Know About Digital Identity and Access with David Mahdi

What do the terms digital identity and access mean for the user experience? David Mahdi, CIO at Transmit Security and digital identity and cybersecurity expert, breaks it all down in this episode.

We talk about:

  • Access-related terms you need to understand: Digital identity, authentication, and authorization.
  • Why so many security problems are, in fact, access problems.
  • User experience implications.
  • The future of digital identity and what it might mean for your product and your users.

David Mahdi is the CIO at Transmit Security, former Gartner research VP, and was previously CSO at Sectigo. An IAM leader and visionary, David is an expert in digital identity, cryptography, and cybersecurity.

Bake Security Into the DNA of Your Product and Improve the Security User Experience with Darren Thomas and Margaret Cunningham

We start the episode discussing a very serious topic: emojis. Then we get back to your regularly scheduled programming.

How would you approach security if you were building something from scratch? How would you address security user experience challenges? Darren Thomas and Margaret Cunningham from Wethos AI talk about how they’ve built security into their product and how cross-disciplinary collaboration helps them improve the security user experience.

In this episode, we talk about:

  • How to build security into your product development lifecycle when you need move quickly.
  • How to anticipate—and design for—security and privacy concerns.
  • Why getting users to the product’s value faster and relates to the security user experience.

Darren Thomas is the co-founder and Chief Product Officer at Wethos AI, a platform that helps people and teams connect and understand one another to improve both individual and team performance. Darren is also the founding team member and head of product at NumberOne AI. A veteran in product management within the security industry, Darren has previously worked at Tenable and McAfee.

Margaret Cunningham is an experimental psychologist and is Chief Scientist at Wethos AI. Previously, Margaret was Senior Staff Behavioral Engineer, Security & Privacy at Robinhood and Principal Research Scientist for Human Behavior at Forcepoint’s X-Lab. Check out the Margaret’s first interview on the Human-Centered Security podcast (Episode 9).

What UX Designers Need to Know About Privacy with Michelle Finneran Dennedy

When your website says, “we value your privacy,” how do users interpret that statement? How do they experience “privacy” in your product? What messages are you conveying--perhaps unintentionally? Privacy expert Michelle Finneran Dennedy helps designers think about privacy in the context of the user experience.

In this episode, we talk about:

  • What does privacy mean?
  • How, as designers, we give the user ideas of what to expect around privacy—an opportunity to erode or foster trust.
  • The approach her team took at McAfee when it came to redesigning their privacy policy.
  • Starting with ethics—and revving that “ethical engine.”
  • Who should designers reach out to about privacy at their organization? What should they ask?

Michelle Finneran Dennedy is a privacy expert, the co-founder of Privacy Code, and was formerly Chief Privacy Officer at McAfee. She is the co-author of The Privacy Engineer’s Manifesto.

Every Podcast » Human-Centered Security » Bake Security Into the DNA of Your Product and Improve the Security User Experience with Darren Thomas and Margaret Cunningham