Securing a Small Law Firm's Network
A 12-person law firm needed to overhaul their flat network architecture and meet client security requirements for handling sensitive case files.
The Challenge
The firm operated on a completely flat network — every device could see every other device. There was no segmentation between guest Wi-Fi, employee workstations, and the server holding confidential case files. A major corporate client had sent a security questionnaire that the firm could not pass, threatening to pull their business.
Services Used
Our Approach
- 1
Performed a comprehensive network security audit, mapping all devices, open ports, and traffic flows.
- 2
Identified 12 critical vulnerabilities including default router credentials, unencrypted file shares, and an exposed RDP port.
- 3
Designed and implemented a segmented network with 4 VLANs: staff workstations, servers, guest Wi-Fi, and IoT devices.
- 4
Deployed a zero-trust VPN solution for remote access, replacing the previously open RDP connection.
- 5
Configured firewall rules to isolate sensitive case file storage from general network traffic.
- 6
Developed security policies covering password requirements, device management, and incident response procedures.
Results
4
VLANs Implemented
12
Vulnerabilities Remediated
Passed
Security Questionnaire
3 weeks
Time to Complete
“We went from failing our client's security questionnaire to passing with flying colors. The network segmentation gives us confidence that client data is properly isolated.”
— Small Business Client