Category
Case Studies

Hospital Network Security: 4-Site Case
A flat /16 network spanning four hospitals reorganised into 12 VLANs with host-based microsegmentation and EDR rollout. Lateral-movement contained in red-team test.
Apr 28, 2026

VAPT Case Study India: NBFC Pre-IPO
A CERT-In-aligned web + API + network VAPT engagement on a tight 90-day pre-IPO timeline. 23 findings, 6 weeks to closure, RBI inspection passed.
Apr 28, 2026

Vicidial Multi-Server Migration: BPO Case
How we migrated a single-server Vicidial deployment hitting capacity at 350 concurrent agents into a 5-node cluster handling 2,000 agents — without a service interruption window.
Apr 28, 2026

Active Directory Hardening: Critical Case
A password-spray attack from 80+ source IPs compromised three service accounts. We rebuilt the AD trust model, deployed Defender for Identity, and implemented conditional access. Twelve months on: zero successful sprays.
Apr 28, 2026

API Security Testing: Healthtech Case Study
A healthtech startup's APIs had grown faster than their auth model. We pen-tested, refactored OAuth, added rate limiting and schema validation. 18 high/critical findings closed; p99 latency improved.
Apr 28, 2026

DPDP Compliance for Vicidial: 7-Week Case
A licensed debt collections agency needed to align its Vicidial deployment with India's DPDP Act — call recording handling, agent access, retention, and consent. Audit cleared, customer complaints down 60% YoY.
Apr 28, 2026

Cyber Insurance Readiness: 60-Day Case
A 200-person manufacturer received a renewal denial unless seven specific controls were in place within 60 days. We delivered all seven, ran a tabletop, and the underwriter approved at 18% lower premium.
Apr 28, 2026

Bug Bounty Program Launch: SaaS Case Study
A B2B SaaS founding team wanted external security feedback but feared scope creep, payout sustainability, and triage overhead. We designed and launched their HackerOne private program — 14 valid findings in the first 90 days, budget held.
Apr 28, 2026

WordPress Incident Response: 90-Min Case
A direct-to-consumer brand discovered an attacker exfiltrating order data through a compromised admin account. We contained the incident in 90 minutes from notification and walked away with a hardening brief the client actually adopted.
Apr 28, 2026

Toll-Fraud Prevention: 92% Reduction Case
A wholesale voice carrier was losing roughly $25k a month to toll fraud and routing abuse. We rebuilt the SBC tier on OpenSIPS HA, added behavioural rate-limits, and got fraud down 92%.
Apr 28, 2026
