Select Page

A Local Domestic Abuse Charity – Vulnerability Scanning and Windows 11 Upgrade Project

Challenges

A local domestic abuse support organisation, needed to strengthen its cybersecurity posture to meet Cyber Essentials standards. Their infrastructure had several vulnerabilities, including:

  • Outdated operating systems and unpatched software.
  • Insecure local administrator access.
  • Lack of visibility into external threats and internal vulnerabilities.
  • No automated vulnerability scanning or remediation tools in place.

These issues posed a risk to sensitive client data and threatened compliance with industry standards.

 

Solution

To address these challenges, a multi-layered security enhancement strategy was implemented. This included:

  • Upgrading all systems to supported operating systems.
  • Applying critical security patches.
  • Removing local admin credentials.
  • Deploying RoboShadow, a vulnerability management platform, to provide continuous scanning, reporting and remediation support.

RoboShadow was selected for its integration with Microsoft Intune, Defender, and its ability to automate vulnerability healing through Cyber Heal Auto Pilot.

 

Implementation / Process

The implementation was phased and collaborative:

  • Infrastructure Audit & Planning: A full audit identified vulnerable systems and prioritised remediation tasks.
  • System Hardening: Machines were upgraded and patched. Local admin access was removed to reduce privilege escalation risks.
  • RoboShadow Deployment: RoboShadow agents were installed across the estate. The platform was configured to scan for CVEs, open ports and misconfigurations. False positives, such as a CVE for Adobe Acrobat, were resolved in collaboration with RoboShadow support.
  • Monitoring & Reporting: Daily reports were generated, highlighting vulnerabilities, patch status, and endpoint protection metrics.
  • Training & Handover: Internal teams were briefed on interpreting RoboShadow dashboards and managing licences for new or removed devices.

 

Results/Benefits

The project delivered significant improvements:

  • Improved Security Posture: The systems are now compliant with Cyber Essentials and protected by continuous vulnerability scanning.
  • Operational Efficiency: Automated patching and vulnerability healing reduced manual workload and response times.
  • Stakeholder Confidence: The visible commitment to cybersecurity reassured funders, partners, and service users.
  • Scalability: The RoboShadow MSP Enterprise model allows for seamless expansion and integration with future compliance frameworks.

 

Key Takeaways

  • Automation Enhances Security: Tools like RoboShadow streamline vulnerability detection and remediation, reducing human error.
  • Vendor Collaboration Matters: Working closely with RoboShadow support helped resolve false positives and optimise deployment.
  • Security is a Journey: Continuous monitoring and regular reviews are essential to maintain compliance and resilience.
  • Tailored Solutions Work Best: The combination of infrastructure upgrades and RoboShadow’s capabilities provided a solution aligned with the customers unique needs.

For more information about our services, please call us today on 01604 790979