Applying Thought   
About Wipro
Newsroom
Investors
Careers
  
   
Wipro Technologies Consulting IT Services Product Design Business Process Outsourcing CONTACT US
 
Case Studies
Ideas
 
Search
Technology Infrastructure Home
Global Command Center
Data Centers
Servers & Mainframe Services
Networks
DBA Services
Messaging Infrastructure
Telecom Infrastructure
Desktop Management
IT Help Desk
Security Services
Global Delivery Model
 
Global Sourcing Lounge
 
 
 
TECHNOLOGY INFRASTRUCTURE SERVICES
Case Study
Technology Infrastructure Services
 
Application security audit for a leading insurance company
 
 

The Client

The client is a leading general insurer providing products in commercial, household motor fleet and aviation areas. The client is focused on utilizing information technology to service its nationwide client base in the best possible way. In order to provide desired service level to the end user and comfort level to its own employees, client has deployed and developed industry standard applications.

 

The Challenge

The client's set up consists of a variety of applications on different operating systems. Application types include client server & Web-based applications and the major operating system type includes Windows NT/2000 and OS/400 operating systems. Our challenge was to do security audit on the existing applications, employee security policy & architecture and provide a comprehensive technical document. We also had to evaluate the existing employee security policy, deployment of applications & network architecture and recommend the future security roadmap.

 

The Solution

Wipro has provided recommendations on application security, AS/400 security and employee security policy.

Wipro consultants have considered client's requirements in application security, studied the application functionality and various architectural components, considered the type of data flowing between various components and completed the audit on various components of application. Based on this information our consultants have discussed the risks and recommended the best of the breed security solutions to achieve desired level of data security.

In order to improve the overall security level on AS/400 systems hosting applications like claim handling applications and telemarketing applications, our consultants have provided the guideline and project plan for upgrading the security level from Level 30 to Level 40.

We have created a standard employee security policy by considering client's requirements through a set of discussions with the client and followed various international standards like security policy guidelines from SANS and other sources. The employee security policy document includes policies for physical security policy, computers/systems security policy, electronic mail and Internet usage policy, virus/ network worm protection policy, information classification policy and incident handling policy.

 

The Benefits

Enhancement in security level for business critical applications
Improvement in AS/400 security level
Evaluation and standardization of employee security polic

 
  Send us an email
Request proposal for services
Subscribe to our monthly newsletter
  CASE STUDIES
Offshore support feasibility study for a leading application service and web hosting provider in the US
Orbit - The answering center for Sun Soft, USA
Star 21 networks
  More case studies

 
Contact us Terms of use Privacy Sitemap