secure by design

28
SECURE BY DESIGN

Upload: fastly

Post on 16-Apr-2017

765 views

Category:

Technology


0 download

TRANSCRIPT

Page 1: Secure by design

SECURE BY

DESIGN

Page 2: Secure by design

JADE APPLEGATE

User Experience Engineer

@jadeapplegate

Page 3: Secure by design
Page 4: Secure by design

THE HAPPY PATH

Page 5: Secure by design
Page 6: Secure by design
Page 7: Secure by design
Page 8: Secure by design
Page 9: Secure by design

IMPROVING

SSLWARNINGS

Page 10: Secure by design
Page 11: Secure by design

“Click Through Rate”

Page 12: Secure by design

“Our goal is to decrease the number of users who click

through (i.e., ignore) Google Chrome’s SSL warnings.”

- Felt, et al.

Page 13: Secure by design

Imagery

Page 14: Secure by design

Default Chrome styling

Page 15: Secure by design

Firefox mockup

Page 16: Secure by design

Firefox warning with Chrome styling

Page 17: Secure by design
Page 18: Secure by design

“An ideal SSL warning would empower users to make informed decisions and, failing that, guide

confused users to safety. ” - Felt, et al

Page 19: Secure by design

Comprehension❏Threat source❏Data at risk❏False positive potential

Page 20: Secure by design
Page 21: Secure by design

Language❏Brevity❏Reading level❏Specific risks

Page 22: Secure by design
Page 23: Secure by design

“Opinionated Design”

Page 24: Secure by design

Choice Attractiveness

Page 25: Secure by design

Choice Visibility

Page 26: Secure by design
Page 27: Secure by design

THETAKEAWAY

Page 28: Secure by design

QUESTIONS?

github.com/jadeapplegate/AllThingsOpen2015

@jadeapplegate