Case Study – IT & Data

The client delivers application development, managed services and data operations to global customers across regulated industries. Thousands of employees had access to client systems, sensitive data and proprietary code, often working in hybrid and offshore-onshore delivery models.

While the company held key security certifications, leadership was concerned that people-related risks—inside delivery teams and vendor ecosystems—could still undermine client trust and contractual commitments.

The engagement surfaced three primary challenge areas:

Data theft risks

Contract breaches

Global client compliance expectations

Leadership wanted a partner who could align people-risk governance with the organisation’s security posture and contractual landscape.

HRMP designed an intervention centred on whistleblowing, policy strengthening and ERA governance tailored to IT/ITES realities.

DWF Portal deployment

Policy & process strengthening

ERA governance

Over the subsequent review periods, the client observed tangible risk and business outcomes.

Averted contract termination

Penalties avoided

Improved client trust scores

Internally, the leadership gained a much clearer view of insider risk trends and the effectiveness of controls, beyond formal security metrics.

HRMP helped us connect our security controls with real, day-to-day people behaviour. When a sensitive incident occurred, the combination of the DWF Portal, clear policies and ERA governance meant we could act fast, be transparent with our client and preserve a strategic relationship that was at risk.

Business Head & CISO

Global IT Consulting Firm