Case Study

Cloud Security Posture Modernization

Challenge

Rearc partnered with Rodo to strengthen their cloud governance program and security posture ahead of new product launches. Rearc delivered a mature organizational structure based on compliance needs, granular security controls, and CSPM integrations, using AWS Control Tower, Organizations, and related services. Ultimately, Rodo was delivered a strong foundation, maturing their cloud security posture and protecting their product portfolio.

Solution

Rodo Security Diagram

  • Governance: helped Rodo successfully establish their new and revamped security posture, allowing them to work towards their SOC 2 certification.
  • Observability: integrated Drata with Rodo’s AWS footprint automating compliance validation, and AWS native services for preventive security measures.
  • Account Vending: scalable account creation with access controls, observability, and CSPM integration by default, enabling effortless workload isolation.

Outcome

  • Strong identity and access management controls meeting NIST IAL2/AAL2 identity verification requirements.
  • A solidified cloud security posture, preparing Rodo for SOC II compliance, and protecting future product launches.
  • Integration with Rodo’s GRC & CSPM tool of choice, Drata, enabling C-Suite visibility into Rodo’s security posture.
  • Rodo’s new products benefit from GRC/CSPM integrations, with automated security and compliance validation.
  • AWS Landing Zone and Account Factory automation for increased workload isolation as Rodo expands their product catalog.

Latest Articles

Read more about the latest and greatest work Rearc has been up to.

AWS Tenancy Migration And Azure Integration

Rearc performed an application portfolio assessment and designed a migration strategy for Avesis as they moved to a new AWS Organization. Post planning, Rearc leveraged infrastructure as code to deliver a new cloud landing zone in AWS and created an account factory for future growth. Rearc integrated Avesis's new AWS environment with their new Azure environment.

Cloud
AWS
Azure

Securing CI/CD Pipelines for Databricks Platform

This project for a Fortune 500 company strengthened the security of Databricks-integrated data lake pipelines by implementing automated vulnerability detection, secure credential management, and third-party dependency scanning, resulting in a compliant and resilient infrastructure.

Financial Services
Data
AWS

Bringing Product Security to the Public Cloud

Rearc upskilled a Product Security team in public cloud infrastructure as code, developing a secure Terraform module for AWS SNS, and tracking remediation of Trusted Advisor findings.

Media
Cloud Security
Financial Media

Accelerating and Securing Innovation

As organizations strive to innovate rapidly, enhancing development velocity for their applications have become crucial. Rearc partnered with a Fortune 250 customer with the primary objective of streamlining the creation of net-new applications with built-in best practices. Key challenges included ensuring seamless integration with existing systems, maintaining robust security practices, accelerating time-to-market, retaining quality, and more.

Insurance
Modernization
Fortune 250
Next steps

Ready to talk about your next project?

1

Tell us more about your custom needs.

2

We’ll get back to you, really fast

3

Kick-off meeting

Let's Talk