Skip to content

GovLab

CATEGORY

AI Product Exploration · Compliance Systems

WHAT WAS BUILT

Working product with structured entity logic, AI document processing, and compliance workflow modeling.

INSIGHT

Early-stage AI systems require clear decision boundaries – assistance accelerates work, but authority must remain human.

Context

GovLab was an early-stage AI-driven GRC platform exploring how cybersecurity maturity, compliance workflows, and risk management can operate as a connected system, not fragmented modules.

Instead of layering AI on top of compliance, the goal was to embed AI inside operational workflows while maintaining human decision authority.

I worked closely with two developers to design and refine the product experience and internal logic.

The Challange

Compliance tools often:

  • Digitize paperwork without structuring relationships
  • Separate maturity tracking, assessments, risks, and evidence
  • Add AI superficially without workflow integration

GovLab aimed to explore a more cohesive model:

Maturity → Assessment → Controls → Evidence → Risk → Audit Readiness

What We Explored

Human–AI Interaction Design

AI was integrated in document workflows through:

  • Automated summarization
  • Context-aware overviews
  • Structured tagging support


My focus was defining how AI suggestions appear and how humans validate them.

System Relationship Refinement (Collaborative)

Together with the developers, I helped refine how:

  • Assessments link to evidence
  • Controls relate to frameworks
  • Risks connect to mitigation strategies
  • Uploaded documents become structured assets


The focus was coherence, not just  isolated features.

Experience & Information Architecture

I designed the full user experience and structured how users navigate between:

  • Dashboard
  • Document management
  • Assessments
  • Risk registry
  • Framework support

I worked on filtering logic, visibility states, and how maturity indicators and automation progress are displayed.

Dashboard & Maturity Logic

I designed the dashboard experience, including:

  • Radar charts for cybersecurity maturity
  • Current vs Next Level vs Goal progression
  • Compliance-as-Code automation tracking
  • Audit timeline visibility


The dashboard communicates system health, not just data.

What This Project Demonstrates

GovLab represents early exploration of:

  • AI-native compliance systems
  • Human-in-the-loop validation design
  • Structured maturity modeling
  • Compliance-as-Code thinking
  • System-level product logic

It marks my transition from interface-focused UX toward AI workflow and product architecture thinking.