Andrew Do

Experience Analytics Security Review

Balancing cross-domain tracking coverage with privacy, trust and approval gates.

Outcome

Architecture and security review completed; deployment not launched

Period
2026
Role
Local implementation lead
State
completed not launched
Systems
Experience analytics · Tag management · Cross-domain tracking

The delivery path and its ownership gates.

  1. Four web properties — Market storefronts (Partner-owned delivery)
  2. Cross-domain tracking requirement — Vendor analytics (Partner-owned delivery)
  3. Architecture options — Solution design (Partner-owned delivery)
  4. Cyber-security review — Andrew-led local compliance (Andrew led)
  5. Legal and budget gates — Budget holders (Partner-owned delivery)
  6. Deployment decision — Final state (External approval gate)

Situation and constraints

Cross-domain analytics needed to connect sessions without ignoring browser privacy or organisational trust boundaries.

A local implementation review was required to coordinate security and legal alignment.

From constraint to result

Constraint

Cross-domain analytics needed to connect sessions without ignoring browser privacy or organisational trust boundaries.

Decision

Balanced cross-domain tracking requirements with local privacy and security review constraints

Why it mattered: Protected browser-side user privacy and organisational trust boundaries.

Result

Architecture and cyber-security documentation were completed. Deployment remained gated on budget and legal approval.

What I owned and moved forward

Andrew owned or led

  • Local implementation review coordination
  • Security and compliance documentation assembly

Partner or external ownership

  • Vendor analytics implementation architecture
  • Legal and budget approval gates

Execution actions

  • Assembled cyber-security and data-processing documentation.
  • Led implementation review across vendor, IT security, and legal teams.

Result and attribution

Outcome and system change

Architecture and cyber-security documentation were completed. Deployment remained gated on budget and legal approval.

My contribution and boundary

Coordinated local cyber-security review, assembled documentation, and aligned legal/IT stakeholders.