“The first sweep found a global admin who had left the company seven months earlier. That one finding paid for the year.”
SOC 2 Type II · ISO 27001 · 1,400 security teams
SOC 2 Type II · ISO 27001 · 1,400 security teams
Palisade
Palisade
Risk score82/100open
Next page/
Home
Case 02 · Logistics · 2,400 seats
Patch lag went from 41 days to three.
Northwind FreightDarius Okafor · Infrastructure Lead

- 3days from patch release to installed
- 180unknown devices found
- 97%devices encrypted, up from 71%
- 01
Challenge
Found openNorthwind runs depots in nine countries with laptops that spend weeks on the road. Critical patches took 41 days on average to reach every device, and nobody could say which ones were missing.
- 02
Approach
In progressThe Endpoint product read patch state from Intune and from an agent on the unmanaged machines, then told each driver and dispatcher exactly what to do.
- One message per person, in their language
- A deadline of three days for critical fixes
- The depot manager sees only their own devices
- 03
Result
SecuredCritical patches now land in three days. The laptops nobody knew about, 180 of them, are either enrolled or locked out.
Case 02 · Logistics · 2,400 seats
Patch lag went from 41 days to three.
Northwind FreightDarius Okafor · Infrastructure Lead

- 3days from patch release to installed
- 180unknown devices found
- 97%devices encrypted, up from 71%
- 01
Challenge
Found openNorthwind runs depots in nine countries with laptops that spend weeks on the road. Critical patches took 41 days on average to reach every device, and nobody could say which ones were missing.
- 02
Approach
In progressThe Endpoint product read patch state from Intune and from an agent on the unmanaged machines, then told each driver and dispatcher exactly what to do.
- One message per person, in their language
- A deadline of three days for critical fixes
- The depot manager sees only their own devices
- 03
Result
SecuredCritical patches now land in three days. The laptops nobody knew about, 180 of them, are either enrolled or locked out.
Case 02 · Logistics · 2,400 seats
Patch lag went from 41 days to three.
Northwind FreightDarius Okafor · Infrastructure Lead

- 3days from patch release to installed
- 180unknown devices found
- 97%devices encrypted, up from 71%
- 01
Challenge
Found openNorthwind runs depots in nine countries with laptops that spend weeks on the road. Critical patches took 41 days on average to reach every device, and nobody could say which ones were missing.
- 02
Approach
In progressThe Endpoint product read patch state from Intune and from an agent on the unmanaged machines, then told each driver and dispatcher exactly what to do.
- One message per person, in their language
- A deadline of three days for critical fixes
- The depot manager sees only their own devices
- 03
Result
SecuredCritical patches now land in three days. The laptops nobody knew about, 180 of them, are either enrolled or locked out.
What teams say
The first sweep usually pays for the year.
Security and IT leads on what turned up in week one, and what they stopped worrying about after.
“It ranks by what an attacker would do next. My team stopped arguing about severity and started closing things.”
“Our auditor logged in, read the evidence and left. No screenshots, no spreadsheet, no three-week scramble.”
“A key hit a public repository at 2 am. Palisade had it revoked before I had found my glasses.”
“Depot managers fix their own devices now, because the message tells them exactly what to press.”
What teams say
The first sweep usually pays for the year.
Security and IT leads on what turned up in week one, and what they stopped worrying about after.
“The first sweep found a global admin who had left the company seven months earlier. That one finding paid for the year.”
“It ranks by what an attacker would do next. My team stopped arguing about severity and started closing things.”
“Our auditor logged in, read the evidence and left. No screenshots, no spreadsheet, no three-week scramble.”
“A key hit a public repository at 2 am. Palisade had it revoked before I had found my glasses.”
“Depot managers fix their own devices now, because the message tells them exactly what to press.”
What teams say
The first sweep usually pays for the year.
Security and IT leads on what turned up in week one, and what they stopped worrying about after.
“The first sweep found a global admin who had left the company seven months earlier. That one finding paid for the year.”
“It ranks by what an attacker would do next. My team stopped arguing about severity and started closing things.”
“Our auditor logged in, read the evidence and left. No screenshots, no spreadsheet, no three-week scramble.”
“A key hit a public repository at 2 am. Palisade had it revoked before I had found my glasses.”
“Depot managers fix their own devices now, because the message tells them exactly what to press.”
Start here
Run the sweep on your domain.
Tell us where to look. We set up a read-only connection with you on a short call, and you see your own findings the same day.
We will sweep
- Identity providerNot connected
- Cloud accountsNot connected
- DevicesNot connected
- Code repositoriesNot connected
Start here
Run the sweep on your domain.
Tell us where to look. We set up a read-only connection with you on a short call, and you see your own findings the same day.
We will sweep
- Identity providerNot connected
- Cloud accountsNot connected
- DevicesNot connected
- Code repositoriesNot connected
Start here
Run the sweep on your domain.
Tell us where to look. We set up a read-only connection with you on a short call, and you see your own findings the same day.
We will sweep
- Identity providerNot connected
- Cloud accountsNot connected
- DevicesNot connected
- Code repositoriesNot connected