• Client

    Bahwan CyberTek

  • Service

    UX Research & Design

  • Industry

    Cybersecurity & GRC

  • Company Size

    5000+

The client

Bahwan CyberTek — a technology and cybersecurity company with a significant presence across the Middle East and Asia — had built a Governance, Risk, and Compliance platform designed to help enterprise clients manage risk registers, compliance frameworks, and audit processes through a unified digital environment. But the platform’s technical sophistication had not been matched by a user experience making its capabilities accessible to the business users, compliance managers, and risk officers who needed to use it daily — creating adoption challenges and accuracy risks threatening both client satisfaction and the platform’s competitive positioning.

The problem

The GRC platform was experiencing the usability challenges common to technically sophisticated enterprise software developed with greater attention to feature completeness than user experience quality. Complex navigation, high task completion times, and broken workflow modules were creating a steep learning curve limiting adoption and introducing the risk of inaccurate risk reporting — a critical failure mode for a product whose entire value proposition depended on the quality and reliability of its governance outputs.

 

  • Complex Navigation Creating a Steep Learning Curve for GRC Users — Platform navigation was organised around functional modules rather than user workflows — creating a learning curve requiring significant training investment before new users could operate the system with confidence. For busy compliance managers and risk officers in the Middle East and Asia, unintuitive complexity was a persistent source of frustration and adoption resistance.
  • Time-Consuming Risk Registration Slowing GRC Reporting Adoption — Registering a risk event required too many steps across too many screens — a design failure making the most routine compliance task feel unnecessarily burdensome and discouraging the habitual reporting behaviours that made a GRC platform valuable. Slow risk registration was directly suppressing the completeness and timeliness of the risk register.
  • Broken Workflows in GRC Modules Causing Reporting Inaccuracies — Workflow failures in specific GRC modules were misleading users into completing actions incorrectly or leaving required fields incomplete — introducing inaccuracies into risk registers and compliance records that undermined the platform’s reliability as a governance tool and created audit risk for the clients depending on it.

OUR SOLUTION

Worxwide conducted over 50 user interviews with business stakeholders — including risk officers, compliance managers, and audit leads — to identify the specific navigation failures, workflow breaks, and information architecture gaps suppressing platform effectiveness. Task completion steps were rationalised and layouts simplified to reduce interaction complexity. The information architecture and breadcrumb hierarchy were redefined for faster navigation across all modules, and usability testing with behavioral and task flow validation ensured that the redesigned workflows improved accuracy and adoption before deployment.

 

  • 50+ User Interviews with Risk and Compliance Stakeholders Across Regions — Qualitative research with the platform’s primary user groups — risk officers, compliance managers, and audit leads across the Middle East and Asia — generated precise, actionable insights about the specific navigation failures, workflow complications, and module-level design issues constraining adoption and introducing risk reporting inaccuracies.
  • Simplified Interactions and Rationalised Task Completion Steps — A systematic reduction in task completion steps across high-frequency workflows — particularly risk registration and compliance record creation — made the platform’s core activities significantly more efficient and less cognitively demanding. Every unnecessary interaction removed from a routine task compounded across thousands of risk entries made each year.
  • Redefined Information Architecture and Navigation Hierarchy Across Modules — A redesigned information architecture and breadcrumb navigation system gave users clear, consistent orientation across all GRC modules — reducing the time spent navigating between related functions and eliminating the lost-navigation experiences that had previously prompted support escalations.

Our work in action

This GRC Consulting Services case study explores how Bahwan CyberTek redesigned its Governance, Risk, and Compliance platform to streamline workflows, improve risk reporting accuracy, and reduce task completion time with an intuitive user experience.

The Impact

Reduced Task Completion Time Across All GRC Workflows

Simplified navigation, rationalised task steps, and fixed workflow modules collectively reduced the time required to complete routine GRC tasks — improving analyst and compliance manager productivity and making the platform competitive with best-in-class enterprise software on the dimension most critical to daily usability.

Improved Accuracy of Risk Reporting Across Client Deployments

Fixed workflows and clearer task guidance eliminated the module-level design failures introducing inaccuracies into risk registers and compliance records — improving the reliability of the platform’s governance outputs and reducing the audit risk associated with incomplete or incorrectly completed risk entries.

More Intuitive Platform Driving Higher GRC Adoption Across the Middle East and Asia —

A substantially improved user experience drove higher adoption rates among Bahwan CyberTek’s GRC clients — ensuring that the platform’s technical capabilities were accessed and utilised rather than bypassed, and strengthening the platform’s competitive positioning in the Middle East and Asian enterprise market.

Download