Skip to content
VITI Security

Blog · Topic

Case Studies

Real VICIdial deployments start to finish: multi-server migrations, toll-fraud prevention and compliance projects, with the numbers before and after.

7 articles

Hospital Network Security: 4-Site Case - VITI Security
Information Technology

Hospital Network Security: 4-Site Case

A flat /16 network spanning four hospitals reorganised into 12 VLANs with host-based microsegmentation and EDR rollout. Lateral-movement contained in red-team test.

Apr 28, 2026Illustrative scenarioRead
VAPT Case Study India: NBFC Pre-IPO - VITI Security
IT Services

VAPT Case Study India: NBFC Pre-IPO

A CERT-In-aligned web + API + network VAPT engagement on a tight 90-day pre-IPO timeline. 23 findings, 6 weeks to closure, RBI inspection passed.

Apr 28, 2026Illustrative scenarioRead
Active Directory Hardening: Critical Case - VITI Security
Information Technology

Active Directory Hardening: Critical Case

A password-spray attack from 80+ source IPs compromised three service accounts. We rebuilt the AD trust model, deployed Defender for Identity, and implemented conditional access. Twelve months on: zero successful sprays.

Apr 28, 2026Illustrative scenarioRead
API Security Testing: Healthtech Case Study - VITI Security
IT Services

API Security Testing: Healthtech Case Study

A healthtech startup's APIs had grown faster than their auth model. We pen-tested, refactored OAuth, added rate limiting and schema validation. 18 high/critical findings closed; p99 latency improved.

Apr 28, 2026Illustrative scenarioRead
Cyber Insurance Readiness: 60-Day Case - VITI Security
Information Technology

Cyber Insurance Readiness: 60-Day Case

A 200-person manufacturer received a renewal denial unless seven specific controls were in place within 60 days. We delivered all seven, ran a tabletop, and the underwriter approved at 18% lower premium.

Apr 28, 2026Illustrative scenarioRead
Bug Bounty Program Launch: SaaS Case Study - VITI Security
Case Studies

Bug Bounty Program Launch: SaaS Case Study

A B2B SaaS founding team wanted external security feedback but feared scope creep, payout sustainability, and triage overhead. We designed and launched their HackerOne private program — 14 valid findings in the first 90 days, budget held.

Apr 28, 2026Illustrative scenarioRead
WordPress Incident Response: 90-Min Case - VITI Security
Case Studies

WordPress Incident Response: 90-Min Case

A direct-to-consumer brand discovered an attacker exfiltrating order data through a compromised admin account. We contained the incident in 90 minutes from notification and walked away with a hardening brief the client actually adopted.

Apr 28, 2026Illustrative scenarioRead
Case Studies - VITI Security Blog