Unified Endpoint Management for a Leading Middle Eastern Financial Institution

Unified Endpoint Management for a Leading Middle Eastern Financial Institution
Download Case Study Book a free consultation

Client Profile

Our client is a leading financial institution headquartered in Saudi Arabia, with a strong regional presence across the Middle East. Renowned for its leadership in syndicated lending across large-scale infrastructure and energy projects, the bank also delivers personalized retail banking services to a diverse customer base.

Challenges

  • The client’s existing IT infrastructure was unable to meet the demands of a mobile-first, security-sensitive environment.
  • Multiple device types and operating systems were being managed in isolation, resulting in fragmented endpoint control and limited visibility. Security policies were inconsistently applied across platforms, creating compliance gaps in a tightly regulated industry.
  • Remote and mobile users lacked secure access mechanisms, increasing the risk of data breaches.
  • The absence of a secure DMZ-based access layer and the use of standalone tools for managing identity, mobility, and access further compounded the operational challenges.
  • The overall architecture was outdated, making it difficult to scale or enforce unified security protocols across the enterprise.

Anunta’s Solution

To address these challenges, Anunta deployed VMware Workspace ONE as a single, unified platform for managing endpoints, enforcing policies, and securing user access across both corporate and remote environments.

  • The solution enabled complete lifecycle management of over 5,000 devices, including desktops, mobiles, and BYOD endpoints, through a centralized console. Workspace ONE Access provided a unified identity and access management layer, offering single sign-on and conditional access across enterprise applications.
  • Secure connectivity for remote users was achieved by deploying Unified Access Gateways (UAGs) within the DMZ, creating encrypted tunnels to internal systems without exposing them directly to the internet. Workspace ONE Cloud Connector was used to integrate with the client’s on-prem Active Directory and Certificate Authority, enabling seamless authentication.
  • Secure email access was delivered through the implementation of SEG v2 and ENS, ensuring encrypted, policy-compliant communication. Workspace ONE Assist empowered IT teams with real-time remote support capabilities, reducing the need for on-site troubleshooting. Existing Citrix infrastructure was integrated into the solution, enabling users to access virtual apps through Workspace ONE’s native connectors.
  • The deployment followed a structured, phased rollout starting with a pilot group of 200 users. This was preceded by in-depth design workshops with IT and compliance teams to align the architecture with regulatory and business requirements.
  • UAG clusters were configured for high availability, and enterprise systems such as SMTP, CA, and AD were integrated into the Workspace ONE ecosystem. Device compliance profiles and security baselines were configured and pushed automatically to endpoints, aligned with internal audit standards. Internal teams were trained with comprehensive handover documentation and knowledge transfer sessions.

Key Benefits

  • The solution provided a secure, scalable, and compliant endpoint management environment tailored for the banking sector.
  • The DMZ-layered architecture with UAGs eliminated direct exposure of internal systems while enabling remote work at scale. The organization gained unified control over its entire endpoint estate, significantly reducing administrative overhead.
  • Consistent policy enforcement across over 5,000 devices ensured regulatory compliance and minimized security risks.
  • Operational efficiency improved, with a 30% reduction in endpoint-related support incidents in the first 90 days post-deployment. Workspace ONE Assist enabled faster troubleshooting, while centralized control reduced time spent on manual updates and audits.
  • The integration with existing infrastructure ensured business continuity without costly overhauls. The solution also brought down VPN dependency, improving user experience and reducing access-related issues.
  • The success of the deployment is being continuously monitored through key performance indicators including enrollment rates, compliance adherence, reduction in support tickets, policy violation metrics, and service uptime.
  • Within the first phase, more than 95% of targeted devices were enrolled, and user adoption showed strong momentum, particularly among mobile and field teams.
  • Workspace ONE components are consistently delivering over 99.9% uptime, reinforcing reliability and resilience in the client’s IT operations.