← ALL CASE STUDIESCYBERSECURITY · 2024

Hospital zero-trust rollout.

How a 14-site hospital group rolled out zero-trust networking and device posture — without a single day of clinical downtime.

CLIENT14-site hospital group
SERVICESSecurity, managed IT
TIMELINE16 months, team of 6
HEADLINE RESULT0 days clinical downtime
RJP-2024-007 · NETWORK POSTUREALL SYSTEMS NOMINAL
0DAYS CLINICAL DOWNTIME · 14 SITES · 16 MONTHS
IDENTITY ▸ OKSEGMENT ▸ OKDEVICE ▸ OKMONITOR ▸ OK

01The challenge

A flat network connected everything from MRI machines to visitor Wi-Fi across 14 sites. One ransomware incident at a peer hospital group made the board's risk appetite very clear — but clinical systems can't take maintenance windows, and 30% of connected devices ran operating systems too old to patch.

02The approach

We rolled out zero-trust site by site: identity-based access first, then network segmentation that isolates clinical devices without touching them, then continuous device posture monitoring. Legacy equipment that couldn't be patched was fenced behind microsegments. Every change was rehearsed on a shadow network before it touched production.

BEFORE
FLAT NETWORK
14 SITES · SHARED BLAST RADIUS
AFTER — ZERO-TRUST SEGMENTS
IDENTITY
SEGMENT
DEVICE
MONITOR

03The result

0DAYS CLINICAL DOWNTIME
14SITES FULLY SEGMENTED
24/7MONITORING UNDER MANAGED SLA

The group passed its next insurance security audit with no exceptions, and our monitoring team still watches the estate around the clock under a managed SLA.

"Every vendor promised zero disruption. Rajrappa was the only one who could explain exactly how — and then it just happened."
CI
CIO, CLIENT NAME
NEXT CASE STUDYRetail ERP escape
Start a project