Overview
Magnet OUTRIDER enables Digital Forensic Examiners and non-technical stakeholders to quickly triage Mac and Windows computers, mobile devices, and external drives for illicit content such as CSAM (Child sexual abuse material), usernames, and contacts in the field or the lab with automated insights.
My responsibilities
Lead UX Designer
User research - survey and user interviews
Competitive analysis
Mockups and Prototype
User testing
Problem space
Law enforcement agencies are overwhelmed with the growth and complexity of digital evidence. Whether you’re triaging mobile devices and computers in the field or working through a backlog of evidence in the lab, time to evidence is critical. Examiners and non-technical stakeholders need a way to quickly and easily find information that is imperative to their case. The latest iteration of OUTRIDER proved to be cumbersome, demanding a technical background for users to grasp its functionalities accurately. Unfortunately, it didn't operate as intended, and its steep learning curve, coupled with the need for technical expertise, led to minimal adoption in the field.
Previous UI OUTRIDER 2.0
Our solution
Rapid Triage
Uncover CSAM and other illicit content from mobile devices, computers, and hard drives in the field or the lab in under 6 minutes (based on field use) without performing a full extraction.
Actionable Insights
Quickly identify apps and other key insights on a phone, computer, or hard drive at the outset of an investigation to give the investigative team real-time intel for interviews, warrants, and seizures.
No More Manual Scans
Start running the software in less than three clicks by using preconfigured artifact categories that automatically count and display the number of captured hits during scans.
How we got to the solution
User research through surveys and user interviews
Understanding the significance of Time-To-Evidence for Investigators and Forensic Examiners, we set out to gather some insights on the use of triage tools in this field. We had questions about how often these tools were used, where, and by whom. To get answers, we sent out a survey to our global customers, and the response from over 200 customers gave us a decent snapshot.
From this feedback, we got a clearer picture of who's using or interested in triage tools, what they're using them for, when they find them handy, and why they want them in the first place. To dig deeper, we had video chats with specific customers in multiple interviews. What I found:
Triage tools are out there, but they're not great.
Some users find them slow.
If you're not tech-savvy, there’s a learning curve.
There’s still a time lag when dealing with critical evidence.
Competitive analysis
After looking at what our competitors were doing this is what we found the pros and cons to be:
Pros:
Quick to process large data sets
Powerful search and analysis capabilities
Free
Support a wide range of mobile devices
Detailed analysis
Cons:
Steep learning curve
Some tools can be expensive–having to purchase the entire suite for the triage tool
Resource extensive–too much information and not giving just the critical evidence that wanted in a rapid triage tool
Supports only certain data sources and evidence types
Designs
My primary objective was to design an efficient triage tool designed for swift examination of diverse digital evidence on both computers and mobile devices. This tool aims to be user-friendly, requiring no specialized technical knowledge for operation.
Users: Investigators, Police officers, Parole officers, Digital Forensic Examiners
UI Library: Given time constraints and our team's size, I opted to leverage a third-party UI library (Microsoft Fluent). I aligned the colour palettes and iconography to maintain consistency with our existing products, ensuring a consistent visual experience.
Features:
Preconfigured scan setups for different cases
Critical evidence-actionable items on a report
Start running software in less than 3 clicks
See how Magnet OUTRIDER works
Launch feedback from users
Next Steps
What I learned–the balance between user needs, business needs and the capabilities of our developers.
While the idea of creating a modern and polished product is tempting, it's crucial to be realistic. Consider the needs of your user base, especially when dealing with older, less tech-savvy individuals accustomed to a more dated software aesthetic.
In our case, our users aren't heavy app users, and their computer usage outside of work is minimal. Expecting them to seamlessly adopt a cutting-edge UI might be a stretch, especially when their comfort zone lies with older interfaces.
Given OUTRIDER’s small team's limitations, achieving pixel perfection everywhere wasn't feasible. We made the practical choice to focus on core functionalities and launched our MVP. The plan is to gather user feedback quickly, ensuring that any necessary improvements, including refining the look and feel, are informed by real user experiences.
For OUTRIDER
To broaden its user base, OUTRIDER is now available as a complimentary product alongside our flagship product, Magnet AXIOM. While the current product has the potential to cater to a diverse range of users within the field, our focus is on understanding which specific users will derive the most benefit and the likely scenarios in which the product will be utilized. We aim to pinpoint the primary beneficiaries and optimal usage patterns within the field to enhance the product's relevance and impact.