Growing National Provider of Parking Facilities and Services Engages ePlus for Assistance Building Security Program
Industry leader enables its business to excel with unique and market-differentiated services on Microsoft Azure
Smart city and communication network concept. 5G. IoT (Internet of Things). Telecommunication.
Business Challenges
Challenge 1
The organization is growing through acquisition and is considering expanding internationally, presenting it with increasing compliance and governance requirements.
Group210
Challenge 2
These increased demands were stressing the organization’s existing security and compliance resources.
Group210
Why ePlus?
- Prior ePlus engagements were well received and helped to establish an environment of trust.
- ePlus Advisory Services offers a flexible and affordable vCISO service that allows the clients to complement their own resources and move faster.
Solution
- Conducting a Cybersecurity Maturity Assessment helped provide a clear picture of the status of current security efforts and the customer’s program, as well as help identify gaps and targets for improvement. A prioritized strategic and tactical roadmap was built out of the results of this assessment, followed by several common activities (policy review, data discovery and classification/protection, review of IR, BC and DR processes) and work on the customer’s highest priority needs.
- The customer chose ePlus vCISO Service, part of our extensive advisory services catalogue, providing guidance and recommendations for strategic and tactical improvements to the security program, beyond just compliance needs.
- The vCISO, along with ePlus solutions architects, are reviewing possible Data Loss Prevention (DLP) solutions to be implemented, and Incident Response (IR) tabletop exercises are being arranged to help the organization practice their IR skills and meet additional cybersecurity insurance requirements.
Business Outcomes
- An initial data mapping exercise led to satisfaction of some immediate requirements and kicked off the effort to help the customer establish a more formalized data governance program.
- Feedback during the first briefing led to efforts to establish Data Loss Prevention (DLP) capabilities as part of the security program.
- A review of existing policies and standards, along with recommendations for improvement, helped expand the Security Policy to cover identified issues and also reinforce compliance.
- The organization now has enhanced compliance and governance parameters it will use as a benchmark as it grows and is considering additional steps to maximize security of their overall infrastructure.
Similar Stories
Customer Success
Cloud
3
technology-area
true
similar-stories