Client work

Real engagements.
Measurable outcomes.

Every project below is a real client: different industries, different risk profiles, same result: security that works. Details adjusted to protect client confidentiality.

7
Engagements
6
Industries
4
Service types
100%
Audits passed
Filter:
scroll
Showing 7 of 7 engagements
IAM & Access Healthcare · 750 staff
Automating the Joiner-Mover-Leaver Lifecycle for a 750-Person Healthcare Organisation
<15 min
Joiner provisioning time. Down from 3 to 7 days.

750-person healthcare org with fully manual JML, 38% of leavers retaining active credentials, and a CQC audit approaching. Automated identity pipeline deployed using Workday and Entra ID.

Read case study
IAM & Access Healthcare · 62 staff
HIPAA-aligned IAM for a 3-location medical group: audit passed first attempt
Zero
Shared EHR logins remaining after rollout.

Three clinic locations sharing EHR credentials, no MFA, disconnected Active Directory environments. Full identity unification and HIPAA documentation in 8 weeks.

Read case study
SSO & MFA Retail · 200+ staff
11 logins replaced with one: SSO & MFA across 8 retail locations, PCI flag resolved
70%
Drop in password reset tickets. Instant offboarding.

Multi-location retail chain managing 11 separate login systems and shared POS credentials. SSO deployed via Entra ID, MFA rolled out chain-wide, PCI flag from payment processor resolved.

Read case study
Penetration Testing E-commerce · $4M revenue
14 critical vulnerabilities found on a live e-commerce platform: all closed before PCI audit
14
Critical & high findings. 100% remediated in 30 days.

Platform never formally tested. SQL injection in 3 parameters, unauthenticated admin panel, IDOR on order API, and 5 CVE plugins: all found and remediated before PCI pre-audit.

Read case study
Assessment Legal · 12 attorneys
23 security gaps at a regional law firm: 8 critical issues closed in 90 days
23
Security gaps mapped to a prioritised 90-day remediation plan.

No policies, no MFA, no email authentication, and unsegmented client drives. Full assessment with prioritised roadmap: 8 critical findings closed in 30 days.

Read case study
Assessment Distribution · OT/IT
31 findings at a wholesale distributor: retail audit passed in 4 weeks
31
Security findings across IT and OT. 12 vendor accounts removed.

Flat IT/OT network, 12 inactive vendor accounts with remote access, and internet-exposed RDP. Full assessment, immediate remediation, and retail chain audit passed.

Read case study
Cloud Security B2B SaaS · AWS
AWS hardening closes 3 public S3 buckets and 19 overprivileged IAM roles: enterprise deal unlocked
Passed
Enterprise security review. Deal closed in 4 weeks.

Public S3 buckets (one with customer data), AdministratorAccess on every service, no CloudTrail, and an internet-accessible RDS. CIS-aligned hardening completed with questionnaire support.

Read case study

Ready to Strengthen Your Cybersecurity Posture?

Get a free 30-minute consultation with a GarrisonOne expert.

Get a Free Consultation

No obligation: just clarity on your next step.

SECURITYIAMComplianceVA/PTgarrisonone.com