Skip to navigation Skip to main content Skip to footer

Case Study:
Securing iRostrum’s Online Auction Platform

16 January 2025

By NCC Group

Client testimonial:

NCC Group stands at the forefront of the cyber security domain and through their exceptional technical expertise and capabilities we’re building a security and proactive risk mitigation programme fit for our business. For iRostrum, our partnership with NCC Group is invaluable to ensuring the security and reliability of our online auction platform and providing a unrivalled experience for our customers.

Greg Horne | CPTO iRostrum

At a glance

Organization: iRostrum

Industry/Sector: Retail & Consumer Markets

Situation: iRostrum wanted to enhance online auction experiences for their customers further as they recognized the importance of maintaining robust cyber security standards across their platform.

Challenge: In collaboration with iRostrum’s security team, NCC Group had to first test and analyze the web application and then improve the platform’s access control mechanisms.

Solution: NCC Group security experts relentlessly trawled through iRostrum’s platform to identify vulnerabilities, resolve issues when applicable, and flag complex vulnerabilities (with suggested fixes) for the team to consider.

Results: iRostrum considers NCC Group’s work ‘invaluable’ for ensuring trust and reliability in their platform as they strive to continue providing a secure and unrivaled customer experience.

Situation

iRostrum operates an innovative multi-tenant, Software as a Service (SaaS) powered online auction platform. Their software allows auctioneers and businesses of all sizes to run professional, customizable online auctions for various markets and sectors, including Fine Art, Antiques, Jewlery, Property & Real Estate, Charities & Not-for-Profit, Classic Cars, Fine Wine, and more. 

With a commitment to providing secure and reliable auction experiences for their customers, iRostrum recognized the importance of maintaining robust cyber security measures across their platform. They approached NCC Group to conduct a comprehensive security assessment of their web application and to test (and later demonstrate) their approach to cyber security.

iRostrum selected NCC Group based on several key factors:

  • The promise of detailed, actionable cyber security assessments
  • The ability to clearly communicate findings and remediation steps
  • Competitive pricing
  • 30+ years sector experience
  • World-leading cyber research and threat intelligence

Challenge

Working in partnership with iRostrum’s team, a critical security concern emerged regarding the platform’s access control mechanisms. NCC Group’s team spotted an opportunity to work closely together and layer in extra safeguards to restrict access to higher-privilege users only.

Without these safeguards, there would be significant risks to the platform’s security and data integrity and the potential to compromise its trading environment. It was clear that iRostrum’s leadership team strives to maintain a trusted, secure auction environment for their clients.

Solution

After understanding the challenges at hand, NCC Group’s experts proposed a comprehensive cyber security assessment and remediation solution. Essentially, the team would relentlessly trawl through iRostrum’s platform to identify as many vulnerabilities as possible, resolve any issues, and flag complex vulnerabilities with suggested fixes for the iRostrum team to consider. 

Throughout the assessment process, NCC Group communicated regularly with iRostum’s team to fix the security issue. This collaborative approach ensured that all platform aspects were thoroughly evaluated and understood.

Result

The partnership between iRostrum and NCC Group proved highly successful, with immediate positive outcomes:

Swift Implementation: Following the delivery of NCC Group’s final report, iRostrum promptly implemented the recommended security fixes, particularly addressing the access control vulnerabilities.

Collaborative Success: Despite facing technical challenges during the assessment, the strong partnership between both teams enabled efficient problem-solving and clarification of complex technical questions.

Long-term Security Benefits: The engagement provided iRostrum with valuable insights and strategies for maintaining a secure environment, supporting their future cyber security initiatives.

The successful completion of this security assessment and remediation project demonstrates our commitment to delivering high-quality cyber security services. Both NCC Group and iRostrum left this engagement particularly proud of the impactful, clear communication and collaboration demonstrated.

 

 

NCC Group

NCC Group

NCC Group exists to make the world safer and more secure.

As global experts in cyber security and risk mitigation, NCC Group is trusted by over 14,000 customers worldwide to protect their most critical assets from the ever-changing threat landscape.

Get started on your cyber security journey.

Our experts are ready to help you stay ahead in a constantly changing threat landscape. Contact us today to learn more about what NCC Group can do for your organization's unique cyber security needs.