← All Projects

Two problems.
One Security Center.

Cloud Administrators didn’t know Cyber Resiliency capabilities—and even when they did, baseline security lived across 6 Scattered Pages. I designed discovery onboarding plus a Readiness Score for Mandatory and Recommended setup in place.

Security Readiness Score widget
Role End-to-End UX
Scope One readiness score and path to close security gaps
Domain Cybersecurity · Enterprise B2B
Stakeholders Cloud Admins · InfoSec · Engineering
Product Managers Security PM
Designers Sole designer

Confidentiality note: This project is under NDA. Design is complete and moving into development. Interface redrawn and figures synthesized for case study presentation — core architectural logic and UX constraints remain true to production.

Problem 01

Admins had security tools — but nothing explained what they did.

  • Features hid in the menu — Cyber Resiliency lived in the nav with no plain explanation of what each capability does
  • New admins started cold — first login dropped them into Security Center with no tour
  • Impact: people underused protections they already paid for, and future features had no place to be introduced

Problem 02

They could see security gaps — but not a simple path to fix them.

  • A list, not a plan — Security Center showed pass/fail risks with no next steps
  • Fixes lived on 6 pages — MFA, SSO, geofencing, alerts, and more meant leaving the page over and over
  • Impact: gaps stayed open longer, and audits got harder because nobody had one clear “are we ready?” answer

Solution

Learn the tools. Then close the gaps.

  • Explore Cyber Resiliency Features — a guided tour that also works when new features ship later
  • Readiness Score — Mandatory and Recommended tasks in one score, with Gauge or List view
  • Fix in place — close gaps without leaving Security Center

Existing

Existing Security Center with Posture Security Risks checklist, Backup Risks, New Location Events, Access Risks, and Threat Summary — no readiness score widget
Before. Reactive Security Center — posture risks as a flat checklist, no consolidated readiness score or in-place remediation path.

Shipped

Security Center with Explore Cyber Resiliency Features button and Cyber Resiliency Readiness Score widget
01

Explore Cyber Resiliency Features → solves Problem 01

02

Cyber Resiliency Readiness Score → solves Problem 02

“I don’t have time to check six settings pages. I need to know what’s wrong and fix it before InfoSec asks.”

Jordan opens Security Center in the morning, then jumps into other IT work. When InfoSec asks whether basic controls are configured, Jordan has to prove it fast. The hard part: learning what the product offers, seeing what’s misconfigured, and fixing it — without becoming a full-time compliance person.

Goals
  • Know what the security tools do on day one
  • Show that basic protections are actually on
  • Fix gaps before an audit becomes a fire drill
Frustrations
  • Settings scattered across separate pages
  • No fast answer to “are we okay right now?”
  • Leaving the page just to flip one switch
Behaviors
  • Scans Security Center at the start of the day
  • Answers InfoSec questions under time pressure
  • Fixes the most urgent gap first
Needs
  • A plain tour of what each feature does
  • Clear “must fix” vs “nice to fix” order
  • Ways to fix gaps without leaving the page

Three morning questions

  1. Macro Are we in good shape right now?
  2. Micro What’s the biggest risk today?
  3. Action Can I fix it here without leaving this page?

Problem 01 · Onboarding

New admins open Security Center and don’t know what Cyber Resiliency includes.

The tools were already in the product — buried in the sidebar with no plain explanation. First-time Cloud Admins landed cold. Paid protections went unused, and when new features shipped later, there was still no reusable place to introduce them.

Solution: Explore Cyber Resiliency Features

  • For new users — opens as a guided explanation of Built in Security, Ransomware Recovery, and Incident Investigation
  • For anytime rediscovery — always available from Security Center so admins can re-explore capabilities anytime
  • For future features — the same modal can surface and explain newly shipped features without redesigning onboarding from scratch
Explore Cyber Resiliency Features modal on Built in Security tab showing Air-Gapped Backup, Managed Data Detection and Response, Rollback Actions, and Data Lock
01 · Built in Security — default protections like Air-Gapped Backup, Managed DDR, Rollback Actions, and Data Lock.
Explore Cyber Resiliency Features modal on Ransomware Recovery tab showing Restore Scan, Curated Snapshots, Sandbox Recovery, and Quarantine Bay
02 · Ransomware Recovery — Restore Scan, Curated Snapshots, Sandbox Recovery, and Quarantine Bay.
Explore Cyber Resiliency Features modal on Incident Investigation tab showing Data Anomalies and Threat Hunting
03 · Incident Investigation — Data Anomalies and Threat Hunting for proactive detection.
Explore Cyber Resiliency Features with Learn More panel open for Data Lock explaining immutable recovery points and edition availability
04 · Learn More — deep-dive panel for a selected feature (e.g. Data Lock) without leaving Security Center.

Problem 02 · Security posture

Security Center listed what was wrong — but not how to fix it.

Basic protections — Multi-Factor Authentication, Single Sign-On, Geofencing, Reports, Alerts, and Restore Scan — lived across six separate pages. The old screen only showed a static risk list. It did not walk admins through Mandatory vs Recommended tasks, so gaps stayed open longer.

Posture Security Risks card showing 4 risks with pass-fail status for Single Sign-On, Geofencing, Multi-factor Authentication, Minimum 2 Cloud Administrators, and Audit Trail Retention Period
Posture Security Risks. A flat checklist of configuration gaps — same presentation for every admin, with no prioritized next steps.

What was broken

A list of problems — no path to fix them

  • It only showed the risk. Pass/fail rows told Jordan something was wrong — not what to do next, or why it mattered.
  • Same list for everyone. New admins saw the same static checklist. Nothing ordered “must fix” vs “nice to fix” for their setup.

The goal

Make readiness feel like guided setup — walk the user through Mandatory and Recommended tasks so they actively strengthen security, instead of staring at a static risk list.

Before

Fragmented path

Six disconnected settings menus for one hygiene check.

  1. 1MFA settings page
  2. 2SSO settings page
  3. 3Geofencing settings page
  4. 4Alert subscriptions
  5. 5Reports configuration
  6. 6Restore Scan settings

After

Readiness hub

One Security Center anchor with in-context fix.

  1. 1Open Security Center
  2. 2Scan Readiness Score
  3. 3Toggle to List for gaps
  4. 4Pencil → in-context modal
  5. ✓Done — no route change, no state loss

Time spent

Multi-page hunt across disconnected settings before Jordan even knew what was missing.

Reduced friction

Single-hub remediation — scan, locate the gap, and fix without leaving the dashboard.

Problem 02 · Iterations

Solving the gauge dilemma

Two failed visual models, then a shipped hierarchy: Mandatory and Recommended cannot share equal visual weight.

Failed · Equal urgency

Split donuts

Configuration Status widget with separate Required and Optional donut charts side by side and a three-column security controls checklist

Why it failed: Equal scale implied recommended controls held equal operational urgency to mandatory audit blockers.

Failed · Hidden blockers

Single arc + checklist

Cyber Security Readiness widget with a single semi-circular gauge showing 3 of 7 configured and a side-by-side checklist of security controls

Why it failed: Concealed mandatory audit blockers behind small asterisks in an adjacent text list.

Shipped · Hierarchy + toggle

Concentric arcs + Gauge / List toggle

Shipped Cyber Resiliency Readiness Score in gauge view with inner Mandatory ring, outer Recommended ring, and tooltip on Cyber Resiliency Reports
Shipped Cyber Resiliency Readiness Score in list view with pass-fail status and pencil edit affordances

What shipped: Inner arc (Mandatory) + outer arc (Recommended) + interactive Gauge/List toggle + in-context configuration modals.

Problem 02 · Shipped

Feature deep dive

Inner arc tracks Mandatory progress; outer arc tracks Recommended. A Gauge/List toggle lets Jordan switch between macro compliance and a granular action list—then fix gaps in place.

Cyber Resiliency Readiness gauge with nested Mandatory and Recommended arcs, tooltip on incomplete Cyber Resiliency Reports showing subscribe to minimum 3 reports

01 · Macro

Dual-ring concentric gauge

Answers “is my environment protected?” at a glance. Inner ring = audit-blocking Mandatory controls. Outer ring = risk-reducing Recommended controls. Hover reveals the exact gap.

02 · Micro

Actionable granular list

Answers “where is the immediate exposure?” Direct pass/fail status with pencil edit affordances per row, plus Mandatory asterisks and subscription minimums.

Cyber Resiliency Readiness list view showing 3 of 6 controls with Mandatory and Recommended breakdown and pencil edit affordances

03 · Action

Zero-navigation in-context modals

Answers “can I fix it without leaving?” Local modals let admins configure missing settings — SSO, Alerts, Geofencing, and more — without changing routes or losing page state.

Edit Single Sign-on Settings in-context modal over Security Center, with ID provider URL, certificate, and administrator SSO options
SSO — configure identity provider settings without leaving Security Center.
New Subscription for Alerts in-context modal over Security Center, with alert type, severity, and category selection
Alerts — subscribe to the right events without a separate settings page.
Edit Geofencing Settings in-context modal over Security Center, with public gateway IPs and administrator geofencing controls
Geofencing — restrict admin access to approved gateway IPs in place.

Final screens

Same Security Center hub — switch between Gauge (macro scan) and List (remediation checklist).

Security Center gauge view with Cyber Resiliency Readiness Score showing 2 of 6 controls and concentric Mandatory and Recommended arcs

Gauge ↔ List. Concentric arcs for scanning; list mode for fixing gaps without leaving the hub.

Key design decisions

Decision 01

Gauge / List toggle

Supports two mental modes—scanning the high-level score (gauge) or reviewing specific failed controls (list).

Decision 02

In-context modals

Edit opens configuration flows in a local modal so admins fix gaps without leaving Security Center.

Decision 03

Macro → micro hierarchy

Dashboard arranged top-to-bottom from macro readiness down to active risk triage and threat hunting.

Deliberate tradeoff: Nested arcs alone weren’t enough for micro-tasking. We kept the concentric hierarchy for scanning, then offloaded the full checklist into a toggleable List view so the widget stayed scannable without sacrificing actionability.

Impact

Outcomes across both problems

Feature discovery onboarding

Explore Cyber Resiliency Features gives new admins a guided tour on first login—and a reusable surface when future capabilities ship.

Zero-navigation remediation

Reduced 6-page setting navigation to in-context local modals—higher baseline adoption without leaving Security Center.

Mandatory / Recommended clarity

Clear visual hierarchy plus Gauge/List toggle supports both executive macro-scanning and admin micro-tasking on one card.

Product demo

See the Security Center in action

Druva's official walkthrough of the Security Center — real-time visibility into backup security risks, readiness scoring, and threat triage in one unified dashboard.

Watch product demo →

Confidentiality note: This project is under NDA. Design is complete and moving into development.
Interface redrawn and figures synthesized for case study presentation.
The core architectural logic and UX constraints remain true to production.

More work View all work