Industry

"Prevention is cheaper than a breach"

Success Story

A manufacturing company, exporter of machinery for the transformation of materials and owner of over 100 brevetti, had discovered the subtraction of technical drawings and several attempts to collect information for personal purposes by two people seriously disloyal to the company. The technical office, with more than 15 designers, represented the heart of the company's know-how. WhySecurity conducted the forensic analyses, identified those responsible and designed and implemented a new cyber defense model, introducing a model ofsecurity based on accountability, traceability and access control. DLP systems, encryption, and rules were implemented to prevent the exfiltration of sensitive information. Furthermore, the company was protected from a massive phishing campaign thanks to multi-layered controls capable of detecting and blocking internal and external threats, reducing residual risk and protecting continuity, intellectual property, and competitive advantage.

The challenges

1
An undefined digital perimeter, with assets, access, and responsibilities lacking clear and certain boundaries.
2
Inconsistent, outdated, and uncontrolled perimeter security policies
3
Excessive permissions allowed users to access, copy, and transfer sensitive information.
4
A permissive culture accustomed staff to operating without limits, controls or concrete checks.
5
There was a lack of formal responsibility documents, shared rules, and real corporate accountability.

The solution

1
Designing the company perimeter concept from scratch
2
Implementation of Zero Trust Policy and with certain identification of anyone
3
Redesign of the information architecture and permissions logic
4
Periodic audits and constant monitoring systems on systems and information
5
Drafting of a specific company IT regulation
Scroll to top