Download PDF
NAVEX > Case Studies > OpenMarket's Compliance Maturation with Keylight Platform
NAVEX Logo

OpenMarket's Compliance Maturation with Keylight Platform

Technology Category
  • Platform as a Service (PaaS) - Data Management Platforms
Applicable Industries
  • Telecommunications
Applicable Functions
  • Business Operation
Use Cases
  • Regulatory Compliance Monitoring
  • Remote Asset Management
Services
  • Cloud Planning, Design & Implementation Services
  • System Integration
The Challenge
OpenMarket, a global leader in mobile messaging, was facing a challenge in meeting the growing security requirements imposed by contracts, laws, and standards. The company had 254 compliance mandates related to various laws, regulations, rules, and standards, along with 173 customer contracts with over 9700 contractual obligations. The company's existing model of compliance performed by service teams relying on user-based tools like spreadsheets was not sufficient to meet these requirements. Global brands had begun asking for security requirements that OpenMarket couldn’t meet with current processes. As such, the company needed a more streamlined, yet comprehensive approach to compliance in order to do business with global enterprises.
About The Customer
OpenMarket, a division of Amdocs, is a Seattle-based company that helps big brands use mobile messaging to connect with their customers in the moments when it counts. OpenMarket offers a suite of mobile products, including SMS messaging (text) and MMS messaging (text with images, audio, video). In fact, four of the top 10 global brands rely on OpenMarket’s cloud-based Mobile Engagement Platform to engage with their customers. However, back in 2011 when Jeff Lowder, CISO and CPO (Chief Privacy Officer) of OpenMarket, joined the company, there was less structure and more free-wheeling. For OpenMarket to continue its growth trajectory, the company had to evolve from its existing model of compliance performed by service teams relying on user-based tools like spreadsheets.
The Solution
OpenMarket selected Keylight, a cloud-based GRC platform from Lockpath, to manage its information security program. The company developed a custom controls framework based on NIST and ISO standards, which was managed using Keylight. The OpenMarket Controls Catalog was created as a unified repository for all requirements: controls, compliance mandates, contract specifics, and more. Compliance mandates were uploaded to Keylight and mapped to controls. The company also used Keylight to manage and integrate the 250+ compliance mandates, plus all the customer contracts and their information security management system (ISMS). Keylight’s broad configuration capabilities allowed the company to quickly construct a format capable of supporting all of OpenMarket’s requirements.
Operational Impact
  • OpenMarket can remain nimble and responsive to demands from brands.
  • The OpenMarket Controls Catalog, the ISMS, NIST, ISO - everything is in Keylight and accessible, which makes everyone more efficient and effective.
  • Compliance, once a weakness, is now a strength.
Quantitative Benefit
  • 254 compliance mandates related to 28 U.S. federal laws, regulations and rules, eight international laws, four international and national standards, untold state laws, not to mention 17 unique partnering standards required for business engagements are now managed efficiently.
  • 173 customer contracts with over 9700 contractual obligations are now managed efficiently.

Related Case Studies.

Contact us

Let's talk!

* Required
* Required
* Required
* Invalid email address
By submitting this form, you agree that IoT ONE may contact you with insights and marketing messaging.
No thanks, I don't want to receive any marketing emails from IoT ONE.
Submit

Thank you for your message!
We will contact you soon.