A meeting in a bright meeting room

References from real engagements

Selected mandates from real projects, from security leadership through ISMS to recovery. Out of confidentiality we name no clients; the tasks and results are real.

Mandates from practice

Filter by discipline. Every mandate is anonymized; industry and size are real.

CISO mandate for an international industrial company Fractional CISO · Industry CISO mandate for an international industrial company From cybersecurity strategy through governance to incident coordination: senior leadership without creating a full-time position. View case Ransomware recovery after full encryption Ransomware recovery · Industry Ransomware recovery after full encryption After full encryption, secure the rebuild, connect an external SOC and harden the infrastructure for the long term. View case ISMS and supplier management for a critical-infrastructure energy provider ISMS · Energy / Critical infrastructure ISMS and supplier management for a critical-infrastructure energy provider Asset inventory, protection needs, risk analysis, data protection and third-party risk management, aligned with the ICT minimum standard. View case Zero-Trust cybersecurity program across all of IT Program · Industry Zero-Trust cybersecurity program across all of IT Identities, endpoints, applications, network and data under one shared target picture, with concepts and management reporting. View case Gap assessment against CIS Controls with an implementation roadmap Assessment · Industry Gap assessment against CIS Controls with an implementation roadmap Measure maturity against CIS Controls, benchmark against other companies and derive a prioritized roadmap that actually gets implemented. View case Privileged Identity & Access Management with Entra ID IAM · Industry Privileged Identity & Access Management with Entra ID A clean role model, just-in-time access and complete logging for privileged accounts with Microsoft Entra ID. View case Cybersecurity strategy and governance from a maturity assessment Strategy & Governance · Industry Cybersecurity strategy and governance from a maturity assessment Turn a maturity assessment into a load-bearing strategy and a governance that holds in daily operations. View case Coordinating a group-wide IT security program Program coordination · Retail Coordinating a group-wide IT security program Guide product teams through a security program, from policy to measurable implementation. View case Hardening a Microsoft 365 tenant including MacOS device management Microsoft 365 · Training Hardening a Microsoft 365 tenant including MacOS device management Secure an M365 tenant to the CIS benchmark and manage MacOS devices under control. View case Email migration for a university with 12,000 mailboxes IT project leadership · Higher education Email migration for a university with 12,000 mailboxes A migration from IBM Notes to Outlook, planned and led without downtime for operations. View case Process automation with Power Apps and Power Automate Automation · Retail Process automation with Power Apps and Power Automate Automate recurring workflows instead of doing them by hand. View case

Experience in numbers

Breadth across industries and sizes

21+

mandates and projects delivered, from SME to enterprise

10 to 160,000

employees in the organizations we have supported

8

industries: manufacturing, energy and critical infrastructure, insurance, retail, public sector, higher education and more

Collaboration in a modern office setting

More work in practice

Not every mandate becomes a case study

We deliver these services repeatedly across industries and company sizes.

  • Microsoft 365 security reviewsTenant review and hardening at more than ten companies: licenses, identities, Conditional Access and Defender configuration.
  • Security Operations CenterBuilt with Microsoft Sentinel and Defender XDR: 24/7 monitoring, KQL detection to MITRE, RBAC and incident response.
  • Cloud security requirementsCloud security requirements at companies up to 25,000 employees, iterative and with know-how transfer to the team.
  • Zero-Trust trainingTrainer at five German institutes on transforming companies towards Zero-Trust security.
Working together on a security question

Network & extended team

For larger programs, an established network

At our core we work lean. For larger programs and peak load, a fixed network of experienced consultants extends the team. An anonymized selection from their projects:

Cloud transformation

Program lead of an Azure cloud migration

Modernizing and migrating the infrastructure to Azure, agile with SAFe.

Industry · ~2,600 employees
Change & adoption

Global rollout across 36 countries

Migrating more than 22,000 distribution lists, coordinating over 36 service desks.

Retail · ~400,000 employees
M365 & governance

Global M365 licensing strategy and automation

License consolidation and automated assignment across the entire public cloud estate.

Retail · ~500,000 employees
FinOps & cost optimization

Building a FinOps team

Transparency over cloud cost, a tagging strategy and KPI models, coaching IT and finance.

~1,800 employees
Incident response

Cyber incident response and recovery

Initial containment, leading a task force, a recovery plan and communication coordination.

~1,800 employees
Network security

Global SASE rollout

Introducing a standardized, secure network service, integrated into existing IT.

~1,800 employees
"ODCUS supports us as a partner on questions and challenges around IT and ensures that the digital and technological resources in use are secure and protected."
Samir Aliyev, CEO, Swiss Cyber Institute

A similar topic on your desk?

Tell us in 30 minutes where you stand. We assess it and tell you honestly whether and how we can help.

Two people in conversation