Home/Case studies

Our work

We work where mistakes cost the most.

Due to confidentiality agreements, we do not disclose client names. Full references with contact details are available after signing an NDA or at a meeting with the client's board.

AuditCritical infrastructure · public sector

DORA compliance audit for an institution of national importance

Audit planning and delivery: ICT risk, incidents, resilience testing and third-party risk — under strict confidentiality.

460+hours of work
5DORA pillars
Read the case study →
IT SecurityBanking · ING Bank Śląski S.A.

12-month penetration testing program for ING Bank Śląski

A year-long penetration testing cycle for critical infrastructure and web applications in a sprint model, aligned with DORA and OWASP, with official references.

12 monthscontinuous program
OWASPASVS · black-box
Read the case study →
IT SecurityCooperative banking

Annual security audit of a Cooperative Bank's infrastructure and systems

A comprehensive annual security audit of a cooperative bank's critical infrastructure, banking application and email systems in light of DORA requirements.

3 monthstesting cycle
100%fix effectiveness in re-tests
Read the case study →
AuditFinTech · Kanga Exchange

Kanga Exchange: from intensive pentests to a 3-year strategic partnership

Crypto-asset security with MiCA and DORA compliance: exchange app pentests, Pentest as a Service, Hybrid Vulnerability Scanner and a MiCA RTS audit.

3 monthsof intensive testing in Phase I
3 yearsPtaaS contract + MiCA audit
Read the case study →
IT SecuritySoftware House · B2B applications

Securing the software development lifecycle (SDLC) with the Reconmore scanner

How Reconmore continuous vulnerability scanning supports developers: nearly 60 vulnerabilities found over 6 years with a software house building B2B apps.

~60vulnerabilities found
6 yearsof ongoing cooperation
Read the case study →
IT SecurityFinTech · cryptocurrency exchange

Deploying the Reconmore scanner at a cryptocurrency exchange

Protecting a crypto platform from development flaws: 17 vulnerabilities found in month one and 24 months of continuous protection with the Reconmore scanner.

17vulnerabilities found in the first month
24 monthsof continuous protection
Read the case study →
Cloud ComputingHealthcare · MedCan Clinics

Digital patient services and administrative processes across the MedCan Clinics network

Private cloud for a process platform, digital patient onboarding, SLA-driven case handling and ReconMore vulnerability monitoring for a medical clinic network.

100%of documentation requests on time
DEV/TEST/PRODprivate cloud as a managed service
Read the case study →
Cloud ComputingTelemedicine · Receptax

Standardizing operational processes at Receptax, a fast-growing telemedicine organization

Operational audit, a low-code process platform in a private cloud and ReconMore vulnerability monitoring for a high-volume telemedicine organization.

100%of tickets with a measurable SLA
1standard physician onboarding
Read the case study →
Cloud ComputingManufacturing · Topical (functional food)

Digital procurement and quality processes at a functional food manufacturer

Purchase approval workflows, complaint handling with SLAs, electronic CAPA/HACCP records and a single unified environment maintained by Remote Admin.

days → hourspurchase approval cycle
on demandCAPA / HACCP audit readiness
Read the case study →
IT SecurityFinance · leasing company

Penetration testing under a regulatory deadline

Scope, pricing and schedule for application and infrastructure testing prepared within 48 hours of first contact. Report in board-level language.

48 hto a ready proposal
2testing areas
AuditBanking · ICT vendor due diligence

Passing a bank's security questionnaire

A complete set of answers and evidence for the ICT vendor questionnaire: policies, procedures and records required under banking outsourcing rules.

100%of areas covered
0follow-up questions

A similar project?

We'll show you how we would do it for you.

Every case study started with a single conversation. Just describe your situation — we will propose the rest.

Book a consultation

30 minutes, no slide decks. We will identify the area, scope and ballpark budget.

Go to contact