We helped Respect a.s. improve the security and efficiency of its IT environment through managed services and Microsoft 365 technologies.
Respect a.s. is a Czech insurance brokerage group that has been operating in the market for over 30 years. It specializes in insurance for companies and entrepreneurs, offering comprehensive insurance services, including risk management and claims settlement. The company has more than 880 insurance experts and handles over 60,000 insurance claims annually.
The initial situation was characterized by several key issues. Workstations were managed solely in an on-premises environment using Group Policy Objects (GPOs), which limited the flexibility and efficiency of device management. iOS and Android devices were not managed at all, posing a significant security risk. No access policies for corporate data were in place, meaning that access to sensitive information was not adequately protected. It was not possible to effectively audit and monitor the security status of devices, leading to potential vulnerabilities and risks.
Our solution for Respect involved deploying and managing several key technologies to ensure that the IT infrastructure is always up to date and properly configured. As part of the Microsoft Intune deployment, we began managing more than 375 Windows, iOS, and Android devices. We set up configuration policies based on the original GPOs, enforced compliance policies, and ensured fully managed updates for these devices. Defender for Business was deployed on Windows, iOS, and Android devices, and we migrated from another third-party security solution. Using new technology, we were able to identify key vulnerabilities. By deploying Conditional Access, we ensured that only devices secured by Defender for Business, with a low risk level, and managed via Microsoft Intune can now connect to the customer’s environment. User identity security has also significantly improved through the implementation of MFA and the restriction of logins to specific geolocations.
To manage the environment at Respect, we utilized several key technologies and services that ensured successful implementation and subsequent operation.
Microsoft Intune: This technology enables centralized management of Windows, iOS, and Android devices. It allows for the setup of configuration policies, enforcement of compliance policies, and fully managed device updates.
Defender for Business: This tool provides protection against security threats on Windows, iOS, and Android devices. It helps identify key vulnerabilities and mitigate them.
Conditional Access: This technology ensures that only authorized and secure devices can access corporate data. It ensures that devices meet security standards and do not pose a high risk.
Managed Microsoft 365: This service includes regular maintenance and monitoring of all deployed technologies to ensure they are always up to date and properly configured.
After deploying Intune policies, the secure score increased by 14%. All devices were fully updated to the latest builds of Windows 10/11. Security for iOS, Android, and Windows devices was achieved using an EDR solution. Risks on endpoints are continuously assessed using Defender for Business and managed via Intune policies. All deployed technologies require regular maintenance, which we handle as part of our regular Microsoft Managed 365 service. This ensures that the customer can be confident the entire environment is always up to date, regularly monitored, and that policies are updated regularly in accordance with new standards.
Thanks to the implementation of Microsoft 365 technologies, we have achieved significant improvements in the security and efficiency of our IT environment. We now have centralized management of all our devices and a clear overview of security threats. Only authorized and secure devices have access to our company data, which has significantly enhanced the protection of our user identities. Overall, we are very satisfied with the results and look forward to continued collaboration and development.