Empowering and strengthening trainline’s cybersecurity

4 min read

Company size

Large size | 1000-5000+ employees

Solution

The Rootshell Platform

Industry

Transport & logistics

Result

Stay ahead of the game
Loading

The challenge

Sphere, an innovative tech company that has created a new, immersive, and non-linear way of browsing the internet, is a client of our Penetrating Testing and Managed Vulnerability Scanning (MVS) services, delivered through Rootshell’sPlatform.

Sphere creates immersive online experiences for their diverse range of enterprise clients, which Sphere hosts on their own servers. This makes IT security paramount to protecting not only their own business, but also their clients’ reputations.

The team is global and remote, so Sphere is seeking a better way to coordinate remediation efforts and manage vulnerabilities within their global IT security infrastructure.

Sphere also requires a better solution for presenting IT security updates to clients; one that doesn’t rely on manually creating reports.

For several years now we’ve trusted Rootshell for their penetration testing as a service, which is a testament to their excellence. What truly sets them apart is the innovative Rootshell Platform, which forms the core of their service offering. This platform empowers us to access real-time test data and apply our unique business logic or asset values. The integration of ongoing active exploit threat intelligence further enhances our security posture by providing timely alerts about changes in threat levels. This continuous monitoring ensures the ongoing prioritization of vulnerabilities, facilitating swift remediation.

Rootshell Security goes beyond being a service provider; they are a vital component of our cybersecurity strategy. Their expertise, coupled with the game-changing Rootshell Platform, has significantly strengthened our cybersecurity management, enabling us to adapt swiftly and bolster our overall security posture.

Munawar Valiji, CISO

The solution

Sphere now uses The RootshellPlatform to manage results from its penetration tests and vulnerability scans, as well as its global vulnerability and remediation management processes.

Sphere’s results are uploaded directly to the platform by Rootshell’s RedForce consultants, which provides the Sphere team with a standardized, dynamic, and up-to-date database of their vulnerability data.

The dashboards generate useful insights from Sphere’s data, so the Sphere team can see the status of their threat landscape at a glance, such as the number of open critical issues, remediated issues, and whether active exploits are available.

Richard Sacré, Sphere’s IT and Operations Director, said the platform’s dashboards are “vital for us to understand and manage our weaknesses”.

The Rootshell Platform also allows the Sphere team share IT security insights with third-parties. Richard said, “I love the platform interface, it looks slick and professional for our clients.”

The platform’s automated reports make presenting their vulnerability data effortless, saving the Sphere team the time it takes to manually create their own.

The platform also empowers Sphere’s remote team, allowing those who are located across the world to collaborate more effectively. Issues can easily be assigned to colleagues, and collaboration can take place within the platform.

Rootshell’s Platform is very useful for coordinating a global, remote team, and invaluable at helping us stay on top of our critical issues and delegating them accordingly.

Richard Sacré, IT and Operations Director

Partnership

The Rootshell team supported Sphere throughout the implementation of the platform. Rootshell’s Client Engagement Team ensured Sphere’s successful onboarding, and ongoing support is provided by Sphere’s Account Manager, so the Sphere team can quickly make use of platform’s newest features as soon as they are released.

Sphere can ask Rootshell’s RedForce consultants questions about specific issues directly in the platform, which aids seamless communication and creates useful paper trails that are far easier to track than back-and-forth emails.

Key takeaways