November 15, 2020
Huddinge municipality is the second-largest municipality in the metropolitan region, with over 110,000 inhabitants and about 6,700 employees. Just 15 minutes from Stockholm Central, Huddinge is characterized by strong development, unique natural environments, and a diverse business community.
As IT Security Manager at Huddinge municipality, Arne Göranson is responsible for the internal operations of the IT section and ensuring that the IT systems in the municipality’s other operations maintain a high-security level. Having worked actively over the years to increase IT security, two years ago Huddinge municipality decided to evaluate their need for other security-enhancing measures.
Trying to avoid the mistake many other municipalities make and invest large amounts into products that would remain unused, they came across Holm Security. Recognizing Holm Security VMP (Vulnerability Management Platform) as an affordable alternative, allowing a better understanding of the vulnerabilities present in the municipality’s IT environment today and in the future.
Arne describes the actual implementation of Holm Security VMP as quick and simple. Provided with information and support from Holm Security’s support team, he encountered no major problems.
Arne emphasizes that Holm Security VMP has been a good tool for familiarizing with vulnerabilities as it at first it was not entirely clear-cut what they wanted to get out of the scans and what the work processes would look like. However, over time the municipality has set up systems and processes, focusing their scans and remediation on vulnerabilities in systems deemed essential and business-critical. Scans are performed regularly and completely automated, reducing human hand-laying.
Concentrating on systems where social services, elderly care, and childcare are affected or systems that could cause extensive damage in the event of intrusion or interruption, the scan details have helped Arne to make demands on operations managers within the municipality and external suppliers of various systems.
Arne explains that while they were previously aware of system vulnerabilities, they were not readily apparent before employing Holm Security VMP. The platform has helped to visualize shortcomings and simplify communication internally. Additionally, Holm Security’s Customer Success team and experts have assisted when needed.
For Huddinge municipality, the platform has been a very affordable alternative to increase IT security for creating a more systematic IT security work - according to laws and recommendations such as RSA (Risk and Vulnerability Assessment) and NIS (Network & Information Security).
Being able to visualize vulnerabilities is a budget and resource issue, far from all municipalities have an IT Security Manager. However, with a product like Holm Security VMP, even smaller municipalities with fewer available resources can create routines and processes to reduce the number of weak points in the IT environment and increase general IT security.