All Case Studies
Cyber SecurityInsurance / Finance2 months2023

ShieldNet — Comprehensive Security Overhaul

Client: ShieldNet Insurance Group

ShieldNet — Comprehensive Security Overhaul

47

Vulnerabilities identified and resolved

100%

Compliance achieved before deadline

85%

Staff passed phishing awareness test

0

Security incidents since remediation

Overview

The Project

ShieldNet Insurance, handling sensitive customer data for 50,000+ policyholders, discovered vulnerabilities after a failed penetration test by a third party. They needed an urgent security audit and remediation plan to meet their insurance industry compliance deadlines.

The Challenge

What We Were Up Against

A critical 6-week compliance deadline, multiple legacy applications with known vulnerabilities, lack of internal security expertise, and the need to implement security improvements without disrupting daily operations serving 50,000+ customers.

Our Solution

How We Solved It

We conducted a comprehensive security assessment including network penetration testing (OWASP methodology), vulnerability scanning across all 8 web applications, employee phishing simulation and security awareness training, and implementation of a SIEM solution for continuous monitoring. We then provided a prioritised remediation roadmap and executed the critical fixes.

Technologies Used

Burp SuiteNessusMetasploitOWASP ZAPSplunk SIEMCrowdStrikeWiresharkHashiCorp Vault
Our Approach

How We Delivered

01

Threat Assessment

Conducted reconnaissance, mapped the attack surface across all digital assets, and performed automated and manual vulnerability scanning.

02

Penetration Testing

Executed controlled penetration tests on all 8 web applications and the internal network, documenting 47 findings ranked by severity.

03

Remediation

Fixed all 12 critical and 18 high-severity vulnerabilities, implemented WAF rules, hardened server configurations, and set up intrusion detection.

04

Training & Monitoring

Ran phishing simulation campaigns for 200 employees, deployed Splunk SIEM for 24/7 security monitoring, and created an incident response playbook.

SKN IT's team identified critical vulnerabilities that our previous auditors missed entirely. Their remediation plan was clear, actionable, and delivered on time. We now sleep better at night.

David Thompson

Head of IT, ShieldNet Insurance Group

Want similar results?

Let's discuss your project and make it happen.