CUIC: a mass-claim platform with security-first as its foundation
Cybersecurity

CUIC: a mass-claim platform with security-first as its foundation

After the Odido data breach, Reemo built the website and backend with pentesting, hardening and threat modeling at the core, not as an afterthought.

When CUIC launched a mass claim following the Odido data breach, Reemo built the full platform: website and backend. Precisely because the case is about a data breach, its own security had to be impeccable.

Sector
Legal / mass claim
Context
Odido data breach
Focus
Security-first
Compliance
GDPR
Security

Security by design

We designed a secure architecture: encryption at rest and in transit, tight least-privilege access control, secure secrets management and a hardened, locked-down backend. Threat modeling came at the start, not the end.

CUIC: a mass-claim platform with security-first as its foundation

Pentesting and continuous hardening

We ran penetration testing and vulnerability management along OWASP lines, with a secure SDLC, a WAF, and extensive logging and monitoring. Claimants' personal data is GDPR-compliant and protected with defense in depth.

Pentesting

The team

Security in every layer

1
Security Engineer
Pentesting, threat modeling, hardening
2
Backend developers
Secure APIs & data encryption
1
Frontend developer
Claim portal
1
DevSecOps
CI/CD, WAF, monitoring

Security stack

Jargon included

Threat modelingOWASP Top 10Penetration testingEncryption (at rest/in transit)WAFLeast-privilege IAMSecure SDLCSIEM & monitoring

Outcome

A resilient, secure platform

0
critical findings open at go-live
100%
encrypted personal data
24/7
logging & monitoring

Build something like this with Reemo?

Tell us what you are building and we will assemble the right team.

Book a call   More cases