Rosenverse

Log in or create a free Rosenverse account to watch this video.

Log in Create free account

100s of community videos are available to free members. Conference talks are generally available to Gold members.

To Protect People, You Have to Protect Information: A Human-Centered Design Approach to Cybersecurity

Thursday, January 23, 2025 • Rosenfeld Community
Share the love for this talk
To Protect People, You Have to Protect Information: A Human-Centered Design Approach to Cybersecurity
Speakers: Heidi Trost
Link:

Summary

If you design digital products, you’re already influencing the security user experience—even if you don’t realize it. Your design choices impact how users handle security and privacy decisions. We live in an ecosystem where everything increasingly relies on the security of systems: from hospitals, to our water supply, to cars and robots. So the stakes are high: disruptions to these systems mean people can get hurt. Further, technology like AI agents—services that will know nearly everything about us and will take actions on our behalf—mean security and privacy are more important than ever. As a UX designer, you understand your product better than your users ever will. This gives you the power to protect users by developing safer systems. By the end of this talk, you’ll learn how to: Apply human-centered design principles to security: human-centered security. Identify key areas where security impacts users most. Understand the dynamics of the security ecosystem. Collaborate with your security UX allies. Ask better questions to balance security and usability. You’ll leave with a human-centered security framework that you and your team can use immediately. Start asking the right questions to improve security outcomes and keep people and systems safer.

Key Insights

  • Security means different things to different roles, making cross-disciplinary collaboration essential.

  • Users (Alice) often do not think about security until it directly interrupts their tasks.

  • Charlie personifies the security systems and communications users interact with; their unhelpfulness harms user trust.

  • Improving the relationship between Alice and Charlie is critical to enhancing security behaviors and outcomes.

  • Threat actors understand users and security systems better than many security teams do, exploiting weak points.

  • Onboarding and signup are crucial moments to influence secure user behaviors because users are motivated and captive.

  • Security messaging must balance clarity and avoiding fatigue caused by false positives or jargon.

  • AI-driven social engineering and deepfakes will make future attacks more convincing and harder to detect.

  • Designers should anticipate user objections and behaviors when creating security flows.

  • Clear standard protocols for unusual financial requests reduce vulnerability to phishing scams.

Notable Quotes

"Security means protecting business, productivity, safety."

"The user is the weakest link is an unhelpful and harmful perspective."

"You cannot improve security outcomes until you improve the relationship between Alice and Charlie."

"Threat actors can masquerade as Charlie to trick users like Alice."

"Most security work happens below the surface where users don’t need to think about it."

"If users have to look things up, they often won’t, so policies must be easy and fast to respond to."

"Onboarding is often fleeting, so influencing security behavior there has an outsized impact."

"With AI, phishing will get worse; attackers will craft messages users are more likely to believe."

"We need to get really good at strategy board games to outsmart threat actors."

"Clear outcomes and defined secure behaviors are better than vague goals like 'be more secure'."

Ask the Rosenbot
Bria Alexander
Opening Remarks
2022 • DesignOps Summit 2022
Gold
Jason Mesut
Shaping design, designers and teams
2018 • DesignOps Summit 2018
Gold
Tricia Wang
The most popular design thinking strategy is BS
2022 • Enterprise Community
Changying (Z) Zheng
Practical DesignOps: From Ideas to Tools That Teams Actually Use
2025 • Rosenfeld Community
Samuel Proulx
Designing beyond caricatures: Embracing real, diverse user needs
2024 • Advancing Service Design 2024
Gold
Bria Alexander
Day 2 Welcome
2024 • DesignOps Summit 2024
Gold
Jessica Norris
ADHD: A DesignOps Superpower
2022 • DesignOps Summit 2022
Gold
Kristen Guth, Ph.D.
Out of the FOG: A Non-traditional Research Approach to Alignment
2023 • Advancing Research 2023
Gold
Corey Nelson
Layoffs
2022 • Advancing Research Community
Alison Rand
Scaling Impact with Service Design
2021 • DesignOps Community
Patrizia Bertini
Pushing DesignOps’ Influence into New Global Markets
2022 • DesignOps Summit 2022
Gold
Marissa Cui
Climate Design Product Showcase
2024 • Climate UX Interest Group
Uday Gajendar
From AI to Zeitgeist: Theory as the design antidote to AI hype
2025 • Rosenfeld Community
Llewyn Paine
[Demo] Deploying AI doppelgangers to de-identify user research recordings
2024 • Designing with AI 2024
Gold
Jess Greco
Creating a Basis for Change: Scaling Design Maturity
2022 • Design at Scale 2022
Gold
Vincent Brathwaite
Opener: Past, Present, and Future—Closing the Racial Divide in Design Teams
2020 • DesignOps Summit 2020
Gold

More Videos

Kate Towsey

"We’re not trying to change behavior, but help researchers in their existing processes to make research faster."

Kate Towsey Basel Fakhoury Oren Friedman Graham Gardner

Participant Recruitment and Management Tools

March 12, 2026

Jennifer Kong

"The edit rate, our metric of human-added characters over total characters, tracks AI output quality without burdening users."

Jennifer Kong

Journeying toward AI-assisted documentation in healthcare

June 5, 2024

Kevin M. Hoffman

"Content is created all over and inconsistently; leadership needs to see content as the fuel driving the experience."

Kevin M. Hoffman

Theme 2: Enterprise Team Journey

June 3, 2019

Amy Marquez

"The culture between buyer and user impacts feature adoption and overall satisfaction."

Amy Marquez

INVEST: Discussion

June 15, 2018

Gretchen Anderson

"Invite yourself to the table by bringing actual deliverables, like storyboards and prototypes."

Gretchen Anderson

Scaling the Human Center

June 8, 2017

April Reagan

"Foresight is a team sport—the more perspectives you have, the better your future scenarios become."

April Reagan

Look, Think, Act: The Futures-Smart Design Organization

October 1, 2021

Dante Guintu

"Only 12% of employees strongly agree their organization does a great job onboarding new employees."

Dante Guintu

How to Crush the Talent Crunch

September 8, 2022

Jaime Creixems

"Keeping styles separate from symbols makes it much easier to update colors or typography across your entire system."

Jaime Creixems

Best Practices when Creating and Maintaining a Design System

June 7, 2023

Billy Carlson

"Wireframes are like an idea in time you can use for conversation."

Billy Carlson

Principles of Team Wireframing

October 2, 2023