Building Robust and Seamless API Security Systems

Background

Businesses use APIs to connect services and to transfer data. Broken, exposed, or hacked APIs are behind major data breaches, even practitioners struggle to discover, monitor, and secure APIs. Digital transformation and cloud migration trends are driving the increased usage of APIs across the enterprise

API Security System is responding to mitigate these risks by creating a revolutionary API security system which is an end to end solution that goes beyond the gateway to provide and give users a full picture of their environment which safely helps them create secure networks. 

They approached us to increase adoption rates and advocacy for their product.

We worked with them closely to drive their intended outcomes and redefined how users use their product seamlessly by helping the Secops Engineer a targeted user, whose primary goal is to maintain the information privacy for any enterprise and needs a big-picture and detailed view of his company’s network and information security, but its biggest challenge falls in understanding the raw data and driving the insights from it

ROLE/TEAM

Role - UX Designer
Responsibilities - Conducted secondary research, persona creation, workflow mapping, and ideation of key features such as automated notifications and self-service lockers
Team
- Cross-functional collaboration involving UX designers, property managers, and software developers

TOOLS

Figma, User Testing, Heuristic Evaluation

CLIENT/DATE/DURATION

API Security, 2022, 12 Weeks, 

The Challenge


"API Security System challenged to redesign their product to create an eXperience that would help drive adoption and advocacy"​​​​​​​

12 weeks to design an effective API security systems

Understood the users and their challenges in the domain by quickly adapting to the concept of API security systems

Before exploring possible design approaches, it was critical to establish design principles that would keep our ideations relevant to the user's context given what we knew about the complexity involved in the user's work. 

we decided that the design should provide: - Minimum time to value - Data should be meaningful and actionable

After evaluating the problems, we had a big opportunity to disrupt the API security industry,the current workflows are time-consuming, lack of data processing, and are focused on making the user reactive, instead of proactive.Few of the major user challenges and solutions which solved the problem of lower adoption and advocacy in the product are

Inefficient Navigation: Users goes through multiple layers to find information 

Solution: By understanding the user's needs and wants, how they digest the information, we structured the information in a way that similar types of data are placed together, which helps in quickly identifying required data

Lack of Visibility: There is a high probability of missing the most important data as there is no proper visibility due to large volume of data in the system 

 Solution: Designed a nested notification system that logically groups data according to context and showcases the most important data to the user upfront and also allows viewing the volume of the data as well aesthetically.

No Findability: Spending more time in accessing the safety/risk level in the business, as the information is not helping the user to quickly identify the risk

Solution: Surfaced information sequentially by having severity-wise risk breakdown which makes it easier to consume and identify the riskiest one quickly

Results & Impact

Outcome Metrics:

  • Enable user to quickly assess the safety/risk level of their business
  • Increased efficiency by 45% in task accomplishment
  • Helped API Security System achieve an award-winning design