Open Nav
Sign Up

Case Study: Streamlining Cybersecurity for a Leading Business Information Provider

Background

A prominent US-based business information provider, with a workforce of 3,000 employees and offices in the US, approached OP. The company specializes in offering subscription-based services, providing access to business contacts and company profiles.

Statement of Work (SOW)

The client sought OP’s expertise for an integrated security solution, encompassing PTaaS, ASM (24/7 automated penetration testing), and manual penetration testing for over 20 diverse web and mobile applications and APIs.

Added Value through PT, PTaaS, and ASM

  • Streamlined Testing Management: The use of OP’s Web Application Security Platform (WASP) and ASM significantly streamlined the management of multiple penetration tests, saving time and effort. WASP enabled the client to schedule each test efficiently and prepare their R&D team for dedicated fixing sprints.
  • Enhanced Risk and Vulnerability Management: The integration with Jira (via jira2jira) allowed the client’s R&D team to quickly address and remediate findings. This capability dramatically reduced the Mean Time to Mitigate (MTTM) vulnerabilities by weeks, significantly lowering the associated risks and costs.

Impact

  • Rapid Vulnerability Response: The client experienced a substantial reduction in MTTM, as their R&D team could promptly respond to vulnerabilities detected in the penetration tests.
  • Cost and Risk Reduction: The integration of automated and manual testing processes resulted in a dramatic decrease in both the risk and cost associated with each identified vulnerability.

Recommendations

  • Integrated Security Platform: Managing both manual and automated penetration tests via a dedicated, actionable, and intelligent platform like WASP is crucial for cost and risk mitigation.
  • Customized Approach for Complex Environments: For companies with multiple applications, addressing diverse security challenges effectively requires a tailored approach that combines PTaaS, ASM, and manual testing, as demonstrated by the WASP platform.
Under Cyber Attack?

Fill out the form and we will contact you immediately.