Human-Centered Security: How to Design Systems That Are Both Safe and Usable

$46.74
by Heidi Trost

Shop Now
In our interconnected world, we face a complex cybersecurity ecosystem where digital vulnerabilities can have far-reaching consequences. Threats to digital infrastructure often impact critical physical systems, potentially causing real-world harm. With AI agents set to handle extensive personal information, data security and privacy are more crucial than ever. Human-Centered Security targets professionals designing digital products that handle sensitive data: UX designers, engineers, and product managers. It's also for those responsible for securing organizational data and systems: security engineers, CISOs, CIOs, and teams focused on risk management, legal, privacy, and compliance. These professionals influence security-related behaviors and possess deep knowledge of threats to their products or organizations. This places a significant responsibility on them to design resilient systems that encourage safer outcomes. As the stakes continue to rise in our digital landscape, their role in protecting users from evolving cybersecurity risks becomes increasingly vital. This book will help you: Focus on areas of the user experience where security impacts users the most. These are places where users are signing up, configuring a product for the first time, handling customer or patient data, or when confronted with a security or privacy-related message or warning, to name a few. Understand the dynamics of the security ecosystem. Looking at the security ecosystem from a single vantage point won’t work. Instead, you need to understand how the system design impacts users, how user actions prompt changes to the system design, how threat actors take advantage, how threat actors actions prompt changes to the system design, how users react, and on and on. Find your security UX allies. Think of a Venn diagram, with circles representing the security team, the UX team, the product team, the engineering team, the legal and privacy teams, as so on. To improve the security user experience, these circles must overlap. In other words, each group’s expertise and perspective are required to understand and design for the dynamic cybersecurity ecosystem. Ask better questions when talking to your cross-disciplinary team. These questions will help your team anticipate how users might react and how threat actors might take advantage. What to consider when designing for secure outcomes. The book examines some of the most common security user experience issues. Embrace iteration. Users will do things you didn't expect or account for. Even more importantly, threat actors will act in ways you couldn't have predicted. What was effective yesterday might not be as effective today. “An excellent introduction to human-centered security thinking, and a step-by-step guide to developing security that people can and want to use." — M. Angela Sasse,PhD Professor of Human-Centered Security, Ruhr University Bochum “Trost's  Human-Centered Security  is an opportunity to reexamine not just what security behaviors are, but how we design for them, translating applied behavioral science into a practical method for security designers.” — Matt Wallaert Founder at BeSci.io and author of Start at the End: How to Build Products That Create ChangeM/em> “ Human-Centered Security is an excellent blend of human factors, design, and cybersecurity.” — Nikki Robinson, DSc, PhD Author of Mind the Tech Gap and Effective Vulnerability Management, lead security architect at IBM and adjunct professor " Human-Centered Security provides clear guideposts and resources for anyone designing for security or with security in mind, which should be everyone." — Lindsey Wallace, PhD Director of Design Research and Strategy, Cisco Security Heidi Trost is a UX leader who helps cross-disciplinary teams improve the security user experience. With a background in UX research, Heidi does this by helping teams better understand the people they are designing for, as well as the security threats that may impact people and systems negatively. Heidi is also the host of the podcast, Human-Centered Security, where she interviews security experts and people who design for the security user experience. When not thinking about security, you can find her in a sunny spot reading a book, hiking, or riding horses.

Customer Reviews

No ratings. Be the first to rate

 customer ratings


How are ratings calculated?
To calculate the overall star rating and percentage breakdown by star, we don’t use a simple average. Instead, our system considers things like how recent a review is and if the reviewer bought the item on Amazon. It also analyzes reviews to verify trustworthiness.

Review This Product

Share your thoughts with other customers