Enhancing Cloud Permissions Analysis

Unveiling Insights with Graph Visualization

Project's lead designer | Research | Ideation | Wireframing | Design

About identity and access (IAM) management

Overly permissive roles, poor credential hygiene, and accidental public exposure have all caused significant breaches of enterprise cloud environments.

Prisma Cloud gives control over permissions across multi-cloud environments by monitoring permissions and continuously enforce least-privileged access.

Ask any identity-related question to quickly gain deeper insight

Quickly gain deeper insight into specific entitlements and their effective permissions by using Query Language (RQL).

User feedback highlighted the challenges of extracting insights from the table view

Adding a high-level overview of all cloud identity permissions and access risks

Choosing a graph view

Provide users with an engaging and insightful initial perspective, coupled with the freedom to delve deeper into the data at their own pace.

Grouped data

Following in-depth learning sessions with the Project Manager, I prioritized 'Source,' 'Granter,' and 'Destinations' as the essential attributes. These formed the primary grouping level in the connections graph, allowing users to swiftly focus on key data points during their analysis.

Additionally, the second level of grouping was implemented based on the cloud provider, providing users with a structured and intuitive exploration experience.

Focus Mode

Highlighting the relevant connections will help understanding the next step of the investigation.

Data Filtering

When clicking on an entity, the graph filters to display selected connections. Additionally:

Data Hierarchy

While the table encompasses various columns and information, the graph narrows its focus to just three key attributes. Additional data will be accessible at deeper levels of the investigation, including specific value details and connections between three distinct values.

UI Alignments

After my experience at PANW, the design team underwent a UI makeover for the product, which included updating all graph interfaces. I was pleased to observe that the core UX of the graphs I designed remained intact.

Takeaways and learnings

Both ongoing communication with the PM and Dev team, and my technical background, contributed to this project.