Threat Center
We designed the investigation platform to enable internal operations team to deliver Managed Detection and Response (MDR) services, including 24/7 monitoring, alert correlation, threat hunting, and investigations.
Role
UX Designer
Role
UX Designer
Role
UX Designer
Service
UX design, Design research
Service
UX design, Design research
Service
UX design, Design research
Year
2018-2019
Year
2018-2019
Year
2018-2019



DISCOVER
DISCOVER
DISCOVER
Enterprises face increasingly sophisticated cyber threats, while many in-house IT teams lack the expertise for effective threat investigation. To uncover these challenges, we conducted stakeholder interviews and internal workshops, identifying pain points and opportunities to strengthen Trend Micro’s Managed Detection and Response (MDR) offering.
Enterprises face increasingly sophisticated cyber threats, while many in-house IT teams lack the expertise for effective threat investigation. To uncover these challenges, we conducted stakeholder interviews and internal workshops, identifying pain points and opportunities to strengthen Trend Micro’s Managed Detection and Response (MDR) offering.
Enterprises face increasingly sophisticated cyber threats, while many in-house IT teams lack the expertise for effective threat investigation. To uncover these challenges, we conducted stakeholder interviews and internal workshops, identifying pain points and opportunities to strengthen Trend Micro’s Managed Detection and Response (MDR) offering.
DEFINE
DEFINE
DEFINE
As a service delivered by Trend Micro’s global operations team, MDR required clear alignment on value and objectives. We hosted a Value Proposition workshop to unify stakeholders, producing research outputs and frameworks to validate the service externally and ensure it addressed real operational gaps while supporting strategic goals.
As a service delivered by Trend Micro’s global operations team, MDR required clear alignment on value and objectives. We hosted a Value Proposition workshop to unify stakeholders, producing research outputs and frameworks to validate the service externally and ensure it addressed real operational gaps while supporting strategic goals.
As a service delivered by Trend Micro’s global operations team, MDR required clear alignment on value and objectives. We hosted a Value Proposition workshop to unify stakeholders, producing research outputs and frameworks to validate the service externally and ensure it addressed real operational gaps while supporting strategic goals.
DESIGN
DESIGN
DESIGN
The Threat Investigation Center brings together log aggregation, heuristic analysis, and essential investigation tasks like sweeping and sample collection. With data coming from multiple Trend Micro products, the platform is inherently complex.
Our challenge was to simplify the interface, create consistent usage flows, and focus on presenting analytic results clearly. We also designed UI solutions for API errors to ensure a smooth and reliable investigation experience, making complex operations feel intuitive for users.
The Threat Investigation Center brings together log aggregation, heuristic analysis, and essential investigation tasks like sweeping and sample collection. With data coming from multiple Trend Micro products, the platform is inherently complex.
Our challenge was to simplify the interface, create consistent usage flows, and focus on presenting analytic results clearly. We also designed UI solutions for API errors to ensure a smooth and reliable investigation experience, making complex operations feel intuitive for users.
The Threat Investigation Center brings together log aggregation, heuristic analysis, and essential investigation tasks like sweeping and sample collection. With data coming from multiple Trend Micro products, the platform is inherently complex.
Our challenge was to simplify the interface, create consistent usage flows, and focus on presenting analytic results clearly. We also designed UI solutions for API errors to ensure a smooth and reliable investigation experience, making complex operations feel intuitive for users.
To enhance data readability and reduce eye strain, we switched from a light to a dark theme. When users drill down into a specific case, they can view a clear attack summary and create follow-up investigation tasks.
To enhance data readability and reduce eye strain, we switched from a light to a dark theme. When users drill down into a specific case, they can view a clear attack summary and create follow-up investigation tasks.
To enhance data readability and reduce eye strain, we switched from a light to a dark theme. When users drill down into a specific case, they can view a clear attack summary and create follow-up investigation tasks.



Created an Alert Rules management page, enabling users to define query criteria and configure related details.
Created an Alert Rules management page, enabling users to define query criteria and configure related details.
Created an Alert Rules management page, enabling users to define query criteria and configure related details.



Leverage the platform’s rich data to create and track customized metrics for users.
Leverage the platform’s rich data to create and track customized metrics for users.
Leverage the platform’s rich data to create and track customized metrics for users.



Built on an agile methodology with monthly releases, I collaborated closely with product and project managers to define a clear yearly roadmap. This allowed me to plan both long- and short-term research with the team. While scheduling sometimes required compromises on ideal solutions, I documented all UX gaps in the product backlog and tracked them continuously.
Built on an agile methodology with monthly releases, I collaborated closely with product and project managers to define a clear yearly roadmap. This allowed me to plan both long- and short-term research with the team. While scheduling sometimes required compromises on ideal solutions, I documented all UX gaps in the product backlog and tracked them continuously.
Built on an agile methodology with monthly releases, I collaborated closely with product and project managers to define a clear yearly roadmap. This allowed me to plan both long- and short-term research with the team. While scheduling sometimes required compromises on ideal solutions, I documented all UX gaps in the product backlog and tracked them continuously.
DELIVER
DELIVER
DELIVER
In May 2018, Managed Detection and Response (MDR) services were launched globally. Since July, Trend Micro’s MDR operations team has served over ten enterprise customers, with numbers continuing to grow. Each release has been informed by both qualitative and quantitative research.
Qualitative Research
I conducted job shadowing and interviews with our operations team in Dallas to uncover pain points, gather feedback, and understand requirements.
Quantitative Research
We implemented tracking codes on the console to capture user behavior data. These insights allowed me to continuously refine the design, ensuring the platform delivers meaningful and impactful solutions.
In May 2018, Managed Detection and Response (MDR) services were launched globally. Since July, Trend Micro’s MDR operations team has served over ten enterprise customers, with numbers continuing to grow. Each release has been informed by both qualitative and quantitative research.
Qualitative Research
I conducted job shadowing and interviews with our operations team in Dallas to uncover pain points, gather feedback, and understand requirements.
Quantitative Research
We implemented tracking codes on the console to capture user behavior data. These insights allowed me to continuously refine the design, ensuring the platform delivers meaningful and impactful solutions.
In May 2018, Managed Detection and Response (MDR) services were launched globally. Since July, Trend Micro’s MDR operations team has served over ten enterprise customers, with numbers continuing to grow. Each release has been informed by both qualitative and quantitative research.
Qualitative Research
I conducted job shadowing and interviews with our operations team in Dallas to uncover pain points, gather feedback, and understand requirements.
Quantitative Research
We implemented tracking codes on the console to capture user behavior data. These insights allowed me to continuously refine the design, ensuring the platform delivers meaningful and impactful solutions.
