← Back to Products
Policy Assistant
CybersecuritySaaS

Policy Assistant

Introduced a Policy Assistant to proactively detect unknown misconfigurations in customer security policies, helping organisations reduce their attack surface from within the product.


The Problem & User Research

Customers managing complex endpoint privilege management policies had no way to know if their configurations contained security misconfigurations. Policies grew organically over time, creating blind spots that increased attack surface without any visibility from within the product. Security teams were left reactive rather than proactive.


Product Strategy & Approach

I identified this gap through customer interviews and support ticket analysis. Working with the engineering team, I defined a Policy Assistant that would analyse policy configurations against security best practices and surface actionable recommendations. I wrote the PRD, prioritised the feature into the backlog, and worked closely with UX to design an intuitive in-product experience that surfaced findings without overwhelming users.


Outcome & Impact

The Policy Assistant saw steady adoption across our 2,500+ customer base and was well received in customer feedback, with users noting it gave them more visibility into their security posture. The feature allowed us to track the volume of policy issues customers had in their policy, enabling me to share this data with our Customer Success Teams whilst monitoring the overall reduction of issues highlighted over time.