Ipcium: Early Stage Startup IT Management & Security Leadership

Ipcium is a growing Brisbane-based tech firm that turned to Securitribe for end-to-end security support. Over a 12-month engagement, we stepped in to resolve an internal governance crisis, lock down their corporate platform and lay the groundwork for ISO 27001 certification.

Overview

Results

Challenge

Overview

Ipcium is a growing Brisbane-based tech firm that turned to Securitribe for end-to-end security support. Over a 12-month engagement, we stepped in to resolve an internal governance crisis, lock down their corporate platform and lay the groundwork for ISO 27001 certification. ​

Challenge

  • Fair Work dispute: Ipcium needed clear, impartial findings to support a Fair Work dispute and limit financial exposure.

  • Weak account security: User accounts lacked emergency-access controls, and there was no centralised vault or “break-glass” process. Critical credentials were scattered, increasing risk of IP leakage.

  • Immature security posture: Their Office 365 tenancy had only baseline settings in place, no consistent backup regime and no information asset register. With ISO 27001 on the horizon, they needed policies, processes and artefacts drafted.

Results

  • Governance & savings

    • Delivered an independent investigation report that underpinned Ipcium’s Fair Work claim—saving the company a substantial sum in potential penalties.

    • Recovered access to all business systems and implemented “break-glass” accounts where possible, ensuring continued access to critical accounts without compromising security.

  • Platform security uplift

    • Hardened Office 365: tightened conditional-access policies, enforced multi-factor authentication and applied secure baseline configurations.

    • Rolled out continuous security-awareness training to 100 percent of staff, embedding a security-first culture.

    • Established regular backups across their corporate platform, guaranteeing data recoverability.

    • Security review and architecture guidance for their med-tech SaaS solution.

  • ISO 27001 foundations

    • Drafted and deployed the core Information Security policy along with several supporting policies (Access Control, Change Management, Acceptable Use).

    • Built an Information Asset Register to identify, classify and prioritise critical data.

Ask the Experts

We’re on standby to answer all your questions and provide tailored support, architecture or security solutions.

Please fill in your details for a call back or give us a call on 1300 271 407

How does your Security Check up?

Take our free cybersecurity gap assessment to understand if your business is doing enough!