GitHub Advanced Security

After sometime leading the Microsoft Developer Division Design Team, I was offered a position in GitHub as Design Manager for Advanced Security, a premium paid service, available with GitHub Enterprise and we designed the GitHub Security Center.

The Security Center allows users to access security data at the org level. GitHub already offered security monitoring and scans at the repo level, but Enterprises needed a broader view and richer functionalities, and they were willing to pay a premium price for it. Winning solution in usability tests was the possibility of browsing security alerts across repositories, allowing to answer questions like, “what are the security vulnerabilities with the highest severity in my org?”, “What is the trend? Are we getting better or more exposed?”, “How long does it take developers to fix them?”. And then to drill down into a specific alert and see which are the repos affected by it.

Date

April 12, 2020