Case Study · UI Revamp
A UI-first rebuild of a dense SSO plugin into a Jira-native admin console for customer identity.
Context
Jira Service Management help centers serve customers, not employees. I rebuilt a dense SAML and OAuth plugin into a Jira-native admin console that covers sign-in, organizations, portal access, and branding in one structure. Six of its areas are recreated below as working interfaces you can operate yourself.
Confidentiality note
Due to NDA restrictions, the interfaces here are anonymized, white-labelled recreations with fictional companies and data. The product logic and UX decisions are preserved.
Why
Admins here configure sign-in for people outside their company, so whatever they get wrong, a customer finds first. Break the same sign-in below for an employee and for a customer, and watch who absorbs the failure.
One sign-in configuration, two people who might hit it. Choose who signs in next, break the setup, and watch where the failure lands.
One sign-in configuration
Set up by an admin · fictional model
Who signs in next
The configuration
The admin ships it. Whoever signs in next inherits it.
What happens next
Help center SSO breaks outside the company. The customer gives up. Whatever the admin got wrong, a customer found it first.
No IT desk stands between this mistake and a customer. That is why the stakes are different.
Workforce SSO fails inward, toward an IT desk. Help center SSO fails outward, toward a customer. Every screen in this console lives with that difference.
Customer and vendor support conversations, support tickets, and stakeholder input were triangulated to separate identity-provider configuration problems from Jira configuration, portal access, mapping, and terminology confusion. That distinction is what shaped the more coherent, Jira-native administration experience.
Ownership
Working one-on-one with product owners and alongside the developers who shipped each screen, I led the UI craft, the console structure, and the interaction design. Every control is keyboard-reachable and every state announced, so an admin using a screen reader can configure identity as confidently as anyone else.
Configurations
Portal settings
Status
Impact
Before
After
Before
A plugin that looked bolted onto Jira
After
A console that follows Jira's patterns and chrome
Before
One identity provider assumed
After
Search, filters, and pagination for a fleet
Before
Access rules hidden in configuration fields
After
Organization and portal access readable at a glance
The product stopped reading as a third-party tool, following Jira's patterns, chrome, and behavior.
SAML and OAuth share the same console language, so the second setup already feels familiar.
Organization rules, portal access, and branding decide what each customer sees, previewable before rollout.
Customer feedback
Direct appreciation for the interface and workflow clarity of the Jira-native customer SSO console.
Judgment
The hard part was what native actually means: matching Jira’s look took a component library, matching its manners took most of the design work. Product owners sat with me one-on-one for every section and developers were behind each screen while it was still taking shape, so feasibility was resolved in the design far more often than after it.
The plugin already had the depth. The new console made it operable.
Next Project
SCIM Provisioning for Jira →