Request a demo →
← All case studies Medical Device Manufacturing · MFA, SSO, IAM, PAM & Team Access

The Team Password Was in a Text File on the Desktop.

An India-based medical-device manufacturer brought 800 employees, six application environments and customer administrators into one governed identity model.

800 employees under one access model
14 export markets
6+ cloud, SAP, SaaS and custom environments
THE CHALLENGE

Why a stronger solution was needed

Employee credentials had appeared in breach data, shared team passwords were stored in plain-text files, and access was administered separately across Microsoft 365, Google Cloud, SAP, Zoom, Zoho and custom PHP applications. Joiners waited for manual setup, leaver access could remain active, standing administrative privilege created risk, and the customer administrator tier reached order and clinical information.

RAINBOW SECURE APPROACH

How the engagement was structured

Rainbow Secure deployed multidimensional MFA across protected sign-ins, replaced shared passwords with named Team Access, unified supported applications through SSO, coordinated joiner-mover-leaver changes through IAM, governed cloud and SAP administration through PAM, and extended stronger controls to the customer administrator tier. Access and attempted-sign-in records made the operating model easier to explain during audits and customer reviews.

WHY RAINBOW SECURE

Why the customer selected this approach

Rainbow Secure could address the complete access journey across cloud, SAP, SaaS and custom applications while combining human verification, lifecycle governance, privileged access and shared-account control in one operating model.

WHAT WE DID

From problem to governed access

01

Close the exposed-credential path

Applied multidimensional MFA across protected sign-ins.

02

Remove desktop password files

Replaced identified shared credentials with named Team Access.

03

Unify application access

Connected supported cloud, SAP, SaaS and custom applications through SSO.

04

Automate workforce changes

Applied IAM workflows to joiner, mover and leaver events.

05

Govern privileged access

Brought cloud and SAP administration under PAM.

06

Make access reviewable

Recorded assignments, authority checks and attempted access for governance and audit.

FEATURES IN PRACTICE

What was used, where and why

Rainbow Secure capability Where it was used How it helped
rSecureKey multidimensional MFA Employee, administrator and customer-administrator sign-in Made credentials discovered in breach data insufficient to complete login on their own.
Team Access Shared departmental and operational functions Replaced passwords stored in desktop text files with named access that could be removed individually.
SAML SSO Microsoft 365, Google Cloud, SAP, Zoom, Zoho and supported custom applications Reduced separate application credentials and provided a governed entry point.
IAM lifecycle management Employee joiner, mover and leaver processes Coordinated provisioning and timely removal through workflow instead of relying on memory.
PAM Cloud and SAP administrative access Brought high-risk access under controlled, accountable administration.
Audit evidence Access assignments, authority checks and attempted sign-ins Created reviewable records for audits, customer due diligence and internal governance.
WHAT WAS BEING PROTECTED

The business impact behind the technology

Device design and manufacturing records

Unauthorized access could create regulatory exposure and intellectual-property loss.

SAP operations

Orders, finance and supply-chain activity are central to continued production.

Customer clinical information

The customer platform can contain sensitive information for healthcare organizations.

Export-market access

Control findings can affect customer confidence and the ability to sell internationally.

Customer trust

Manufacturers must demonstrate reliable control over people, systems and records.

THREATS REDUCED

Risk connected to control

Threat or weakness Control that addressed it
Credentials exposed in breach data Multidimensional MFA makes a password insufficient on its own
Shared passwords stored on endpoints Team Access replaces the identified text-file credentials
Access retained after role change or departure IAM joiner-mover-leaver workflow
Standing cloud and SAP privilege Governed PAM
Weak access to custom applications Unified SSO and MFA
Scattered audit evidence Central access and attempted-sign-in records
BUSINESS OUTCOME

What changed

Eight hundred employees moved to a unified sign-in and access model across cloud, SAP, SaaS and custom applications. The identified shared passwords were removed from desktop text files and replaced with governed Team Access, lifecycle changes became workflow-driven, privileged access became accountable, and customer-administrator access received stronger protection.

Operational details and scale reflect the supplied customer engagement. Regulatory references describe how the controls support the broader compliance program; they do not constitute certification or attestation.
YOUR ENVIRONMENT WILL BE DIFFERENT

Start with one customer problem and build the right identity-security path.

We can map the users, applications, access risks and evidence requirements involved in your first use case.

Discuss your use case →