Seville, Spain
Seville, Spain
+(34) 624 816 969
Table of contents [Show]
A financial company with over 500 employees needed to enable remote work without compromising the security of its critical data. The existing infrastructure lacked a robust corporate VPN, and the firewalls were not optimized for modern threats. At ForgeNEX, we designed a comprehensive solution combining secure VPNs and next-generation firewalls, following industry best practices.

We conducted a vulnerability analysis and penetration test, similar to what we describe in our article on Ethical Hacking and Penetration Testing for Companies. This allowed us to identify gaps in network segmentation and access policies. We designed an architecture with VPN tunnels based on IPsec and SSL/TLS, multi-factor authentication (MFA), and firewalls with deep packet inspection (DPI).
We deployed a remote access VPN solution using standard protocols such as IKEv2 and OpenVPN, with AES-256 encryption. Each employee received a unique digital certificate and was integrated with the active directory for permission management. Additionally, we implemented a site-to-site VPN tunnel to connect the headquarters with branches, ensuring all traffic was encrypted.

We installed firewalls with intrusion prevention system (IPS) capabilities, content filtering, and application control. We configured access rules based on the principle of least privilege and segmented the network into zones: internal, DMZ, and remote access. This allowed isolating critical systems and monitoring traffic in real time.
We conducted stress tests and simulated attack scenarios to verify the effectiveness of the configuration. We used continuous monitoring tools to detect anomalies, an approach we also recommend in our guide on Observability for Processes and Automations.

The company achieved a 95% reduction in security incidents related to unauthorized access. Employees were able to work remotely with the same security as in the office. This case demonstrates that a proper secure VPN and firewall configuration is key to digital transformation, especially in regulated sectors like finance. At ForgeNEX, we continue to help companies protect their networks; if you want to learn more, visit our Network Security category.