Innovapost is live, working proof that technology creates value. The leadership at Innovapost thinks beyond the immediate. They prepare for the future by improving efforts and teamwork between the Canada Post Group of Companies. They cut overhead and waste by providing tailored IT Strategy, Governance, Development, and Support.
Innovapost knows the value of building security into IT strategy and development. They understand that they save resources in the future by expending less resources now to train employees to comply with standards and eliminate vulnerabilities in their designs and builds.
CHALLENGE: Elevate security awareness and compliance amongst diverse teams.
One of the forward thinking Subject Matter Experts at Innovapost, Ahsen Subhani, Senior Security Architect, Risk, & Compliance Consultant, contacted Security Compass and explained their unique training goals and challenges. He said,
"We have a large increase in compliance regimes and PCI Compliance obligations. We have been working on this area for a number of years and work to increase the security abilities and awareness of all the teams. We want to be sure that in security testing and scanning, we are not seeing the same issues again and again."
Other companies face similar challenges as they work to increase security awareness and compliance. Ahsen’s advice for those companies is to make security awareness training a mandatory practice for all teams, "It is always a challenge. The way we are navigating through this is by working with our teams to develop a mandatory program. SSP has been helpful in kickstarting an initiative for enhancing secure development practices for our Application Development teams. Moving forward, we are targeting to bake-in secure development practices in the development culture and tools like SSP will be very helpful in achieving our goals."
While security awareness is a mandatory practice for Innovapost developers, the organization’s leadership encourages their staff to develop their own understanding and skills, so developers continuously work on personal goals to gain certification. They looked to Security Compass to provide training for their teams which Innovapost sees as a way to encourage employee retention.
SOLUTION: Implement a unique and comprehensive Security Awareness and Compliance training program.
Security Compass worked with Innovapost to help the organization reach their security training goals. Ahsen explained, "The experience overall has been positive. Prior to this, I was unaware of the eLearning solutions for secure development, so it has added to our understanding of what Security Compass offers."
"When security awareness and compliance training is not mandatory, there is mixed participation," Ahsen said. He worked closely with Security Compass’s executives, Michelle and Donnie, to develop the logical steps to kick start Innovapost’s ambitious initiative. He said,
"As a first step, one of many. We nominated a few, key people in different groups with different focuses like .NET and Java. We had encouraging participation. Moving forward, this will help us take the next steps toward our goals."
With the positive and encouraging participation in Security Compass’s language specific security awareness training, Innovapost will move into a future of integrated security awareness and compliance. Ahsen and other innovative security leaders at Innovapost can fulfill their vision of building security into their strategies, services, development lifecycle, and "become part of our day-to-day operations."
Security Compass continues to work with Innovapost to provide eLearning that fulfills security goals. As Ahsen said, "This is an evolving area. There needs to be a continuous learning program. It is not good to implement a one-off." With this strategy, Innovapost raises security awareness while innovating and maintaining a security savvy workforce who are technically skilled to alleviate security risks for the Canada Post Group of Companies.
If you want to know more about SSP Suites and how they can help you reach your security training goals, visit our securitycompass.com. You can discover which secure training solution fits your team and sign up for a free demonstration.