Case studies

Security projects for businesses

Representative examples of how our solutions reduce cyber risk and improve regulatory compliance.

Vulnerability Management — manufacturing SME

VMaaS Scanning Phishing

Problem

Networks and servers were not monitored regularly; critical vulnerabilities were only discovered after an intrusion attempt. There was no structured remediation process and no staff phishing awareness.

Solution

Deployment of VMaaS with monthly scans, reports prioritised by CVSS, a remediation plan shared with internal IT, quarterly phishing campaigns and ticketing for employee reports.

Technologies

Network scanner, vulnerability dashboard, phishing module, integrated ticketing system.

Timeline

Initial setup: 3 weeks. Continuous scan and remediation cycle.

Result

Critical vulnerabilities cut by 78% in 6 months. Simulated phishing click rate down from 34% to 9%. Average remediation time for P1 issues: from 45 to 12 days.

Encrypted backup — professional firm

TonisBak Encryption

Problem

Client documents and case files were kept on local PCs with no automatic backup. A disk failure had caused partial data loss. There was no encryption on the existing copies.

Solution

TonisBak with nightly jobs on critical folders, AES encryption of copies, a centralised repository and recovery tests scheduled every quarter.

Technologies

Desktop backup agent, encrypted storage, scheduler, restore module.

Timeline

Deployment: 2 weeks. Continuous operation with quarterly checks.

Result

100% of critical documents under automatic backup. Recovery successfully tested in under 2 hours. Zero data loss in the last 18 months.

GDPR compliance — B2B services company

GDPR Privacy Cookies

Problem

An outdated privacy policy, a non-compliant cookie banner and an incomplete record of processing. Enterprise clients required evidence of compliance before signing new contracts.

Solution

GDPR Compliance Assessment, review of the privacy and cookie policies, implementation of a banner with granular consent, and an update of the record of processing and data subject rights procedures.

Deliverables

Gap analysis, legal documentation, record of processing, DPIA on critical processing, and a concise briefing for management.

Timeline

Assessment: 4 weeks. Documentation and technical alignment: 8 weeks.

Result

Documented compliance for client audits. Due diligence passed on 3 B2B tenders. No complaints to the data protection authority in the period after the alignment.

Endpoint monitoring — company with remote work

Logger System Audit

Problem

Remote staff with no visibility into workstation activity. An incident involving an untracked copy of data to USB. A need for a documented policy on the use of company tools.

Solution

Logger System on company workstations: logging of programs, files, USB, browsing and periodic screenshots. Weekly reports for IT and HR with a formalised usage policy.

Technologies

Monitoring agent, reporting engine, centralised log storage, screenshot module.

Timeline

Pilot on 20 workstations: 3 weeks. Full rollout: 2 months.

Result

Full traceability of sensitive operations. Incident investigation time reduced by 70%. Policy accepted by 100% of the staff involved.

Case study data is representative of real projects and has been anonymised. Results depend on scope and context.

Want similar results in your company?

Contact us for an assessment of your security perimeter and intervention priorities.

Request an assessment