All case studies
Financial servicesIllustrative scenario
Replacing legacy VPN with zero-trust for a distributed trading firm
A financial-services firm cut its attack surface and met stringent access-control requirements while letting analysts work securely from anywhere.
Solution: Remote workforce access100%
of access least-privilege
60%
smaller attack surface
0
VPN concentrators to maintain
The challenge
A flat, VPN-based network gave authenticated users far too much reach. Regulators wanted demonstrable least-privilege access, and the firm wanted to support remote analysts without widening exposure.
What we did
- Per-application access replacing broad VPN tunnels
- Continuous verification tied to identity and device health
- Segmented access to trading and back-office systems
- Tamper-evident logging mapped to control requirements
The outcome
Analysts connect securely from anywhere, access is provably least-privilege, and the firm cleared its access-control audit with evidence pulled straight from the platform.
“Auditors asked who can reach what, and for the first time we could answer in minutes with evidence — not a spreadsheet and a prayer.”