Case study Healthcare · Multi-site clinic · Q1 2026

From paper-thin security
to HIPAA-ready in
under 90 days.

Client

West LA medical group

Industry

Healthcare · 4 sites

Engagement

Managed IT + Security

Timeline

12 weeks

Endpoint EDR
Identity / SSO
Patch & RMM
Backup & DR
Network & firewall
VOIP
HIPAA controls
24/7 monitoring
Challenge

The problem.

A four-site medical group had grown the way most clinics grow — one acquisition at a time, with the IT stack inherited from each. The result: three different EHRs, two domain controllers, four wifi vendors, and zero documentation.

Their cyber insurance was up for renewal, and the underwriter wanted answers they couldn't give: who has admin access, where is patient data stored, when was the last successful backup test, what's the incident response plan?

They had 60 days. They came to us on day 47.

Approach

What we did.

Day one, we ran a 48-hour discovery — every endpoint, every account, every cloud service, every network device. Day three, we delivered a written gap analysis mapped to the HIPAA Security Rule and the insurer's questionnaire.

Then we executed in parallel: identity consolidation, EDR rollout, backup verification, network segmentation, and policy documentation — all with zero disruption to patient-facing systems.

"They walked in, told us what was wrong in plain English, and had us back in good standing with our insurer before the renewal deadline." — Practice administrator
Stack

What we deployed.

A best-in-class, fully-documented stack across identity, endpoint, cloud and network — chosen for HIPAA fit, total cost of ownership, and how cleanly we could hand off to internal staff.

Microsoft 365 E3
Entra ID + MFA
SentinelOne EDR
Datto Backup
Meraki Network
Duo for VPN
NinjaOne RMM
KnowBe4 Training
DocuSign + Vanta
Results

The outcome.

Insurance renewed at a lower rate. HIPAA controls in place. A team that finally trusts their tech.

90days
Time to compliance

Full HIPAA control set deployed and documented in under three months.

−32%
Cyber premium

Insurance renewed at a 32% lower rate after the controls upgrade.

0
Patient impact

Zero downtime and zero disrupted appointments through the entire migration.

Timeline

How it ran.

Week 1

Discovery & gap analysis

Inventory of endpoints, accounts, services and network. Written HIPAA gap report with priorities.

Week 2–3

Identity consolidation

Single Entra ID tenant, MFA enforced, admin tiering. SSO across all key apps.

Week 4–6

Endpoint & backup rollout

SentinelOne deployed to every device. Datto backups installed and first restore tested across all sites.

Week 7–9

Network & segmentation

Meraki cutover with guest, staff and clinical VLANs. Firewall rulebase rewritten with logging.

Week 10–12

Policy & handoff

Written HIPAA policies, IR plan, training rolled out. Insurer questionnaire submitted & accepted.

Could be your story next. Let's start.

Book a free assessment See services