Case study

Bringing Vulnerability Scanning Into Penetration Testing With Rocket® z/Assure® Vulnerability Analysis Program (VAP) 

When a leading multi-national bank faced challenges managing mainframe vulnerability scanning, they turned to Rocket Software. Rocket streamlined the process, improved collaboration, enhanced security, and optimized reporting. Here’s how Rocket z/Assure Vulnerability Analysis Program (VAP) helped.

Challenge

The bank needed to transition their mainframe vulnerability scanning to the penetration testing team, which lacked mainframe expertise. 

Solution

Rocket Software enabled the team with education, tools, and automated systems to integrate and optimize their mainframe vulnerability scanning. 

Results

With Rocket Software, the bank streamlined vulnerability assessments, improved reporting, and freed up resources to focus on higher-value tasks. 

We never even thought we could have vulnerabilities on the mainframe, but once we began automated scanning, we found the volume and the severity to be much greater than anticipated."

Chief Information Security Officer

Company

Industry: Financial & Banking

A global provider of financial services with operations spanning multiple markets worldwide. 

Challenge

Transitioning mainframe vulnerability scanning to the penetration testing team without prior expertise. 

Following a PCI audit, a large global bank realized their mainframe vulnerability scanning operations could no longer be the sole responsibility of the mainframe team. However, the penetration testing team, which was tasked with taking over this function, lacked experience with mainframe-specific vulnerabilities, scoring methodologies, and analytics-driven reporting. The challenge was to bridge this knowledge gap and enable the penetration testing team to integrate seamlessly into the vulnerability assessment process. 

 

Solution

Rocket Software provided education, tools, and automation solutions to integrate mainframe vulnerability scanning into penetration testing operations effectively. 

Rocket Software played a pivotal role in helping the bank overcome operational silos by creating an integrated vulnerability scanning system. This solution included automation of vulnerability assessments across technology layers and consistent, analytics-driven reporting. To address the knowledge gap, Rocket Software crafted a comprehensive mainframe education program for the penetration testing team. This program covered mainframe operating system fundamentals, vulnerability scanning methodologies, and mitigation processes. Complemented by Rocket Software’s tools, the newly trained team could seamlessly transition into their new role, confidently handling security operations.  

Results

Streamlined processes for smoother workflows, better reporting to make data-driven decisions, and improved team efficiency to boost productivity and achieve goals faster. 

The penetration testing team successfully automated mainframe vulnerability checks, enabling quicker identification and mitigation of risks. The transition of mainframe vulnerability responsibilities was transparent and highly efficient, ensuring seamless integration. Additionally, consolidated processes improved reporting by providing actionable, analytics-driven insights that empowered decision-making and collaboration.

Furthermore, the bank freed up key resources within its mainframe team, allowing them to focus on priority tasks, further enhancing overall operations. 

Get started with Rocket z/Assure Vulnerability Analysis Program (VAP) 

Looking to optimize your operations and improve efficiency with cutting-edge solutions? Contact us today to learn more about Rocket Software’s tools and how they can empower your organization. 

Featured product

Rocket z/Assure Vulnerability Analysis Program (VAP)

VAP helps businesses identify, assess, and mitigate security vulnerabilities within their systems

Downloads