The Client
A multi-campus Irish technological university, delivering a broad range of undergraduate, postgraduate, and research programmes. The university manages a diverse and rapidly evolving IT environment, supporting academic, research, and administrative functions while operating under strict public sector governance and data protection requirements.
The Challenge
As the university planned its move to Microsoft 365, there was limited understanding of where sensitive data was stored or how it was being shared. Without formal classification or retention controls, the risk of data exposure and non-compliance increased.
Key Challenges
No data classification or labelling framework
Limited visibility into sensitive and regulated data
GDPR and regulatory retention requirements
Risk associated with large-scale platform migration
The Solution
CWSI delivered discovery workshops and a data security proof of concept to provide immediate insight into data risk and inform a long-term governance strategy.
Solution Components
Data discovery using Cognni
Retention and classification proof of concept
Department-level pilot
Organisation-wide rollout roadmap
The Result
The university gained clarity over its data landscape and implemented controls that reduced risk ahead of migration.
Key Outcomes
1
Visibility into sensitive and regulated data
2
Implemented retention and classification controls
3
Reduced data risk during migration
4
Defined roadmap for wider rollout
Why CWSI
CWSI combined higher-education sector experience with deep Microsoft data security expertise to help the university understand risk before enforcing controls. The proof-of-concept approach allowed stakeholders to see value early and build confidence ahead of wider rollout.
