Apono Success Stories:
Rho

Flexible Out-of-the-Box Solutions for Simple & Effective Access Control

Rho – Case Study

Rho is an all-in-one finance platform that offers fully automated solutions for accounts payable, cards, expense management, and treasury.

Head Count

200+

Locations

New York

The Challenge:
Flexible Access
Done Right

Rho operates in a market that is strongly regulated, and they were looking for a solution to help them meet access control requirements. They also needed a solution that could seamlessly integrate with their existing environments.

01

Improved User Experience

Rho needed a solution that is easy-to-use for all. It needed a better way to simplify sending access requests and managing approvals and integrations with the most popular third-party vendors.

02

Just-in-Time (JiT) Access

Rho was looking for a quick way to deliver granular, time-bound access in real-time in accordance with Rho's access policies.

03

Auditability

Rho needed a strict audit of who accessed what, when, and why – all under one unified control plane. This helps maintain compliance with strict industry regulations at all times with continuous least-privilege access to the production environment or sensitive data.

04

Fewer Standing Privileges

Rho was looking for a way to reduce the number of standing privileges, while still being productive, throughout the organization.

05

Direct API Capabilities for Granular Provisioning

Rho needed robust APIs for easy integrations to additional resources and connections to their existing tech stack. It works right out of the box, but also empowers users with next-level customizability and control.

06

No-Code Workflows

Rho wanted the ability to create flexible, no-code workflows, which play a pivotal role in automating least-privilege access. These workflows enable organizations to define customizable approval sets based on various criteria, such as data sensitivity, identity provider (IdP) group membership, access duration, on-call schedules, and more.

Unfortunately, access controls offered by cloud providers today are often lacking in some areas, especially in ease of use, maintenance, burden, and lack of proper temporal support.

Ivan Ivic
DevOps Team Lead @Rho

Just-in-time access is really hard to get right in cloud environments today. What Apono does for us is they streamline this whole process.

Ivan Ivic
DevOps Team Lead @Rho

The Apono Solution:
Customizable
Just-in-Time Access

With Apono, Rho can now deploy temporary just-in-time access across all of their environments – while maintaining compliance with strict regulations.

01

Top-Tier User Experience

Apono is a DevOps-first solution that prioritizes an easy-to-use experience for the end users. Simplify sending access requests, managing approvals, and integrations with the most popular third-party vendors.

02

Empowering Developers and DevOps

Leverage Apono’s robust API for easy integrations to additional resources and connections to your existing tech stack. It works right out of the box, but also empowers you with next-level customizability and control.

03

Automated, Granular Just-in-Time Access

Access is tailored to the task at hand in both granularity and duration by issuing just-in-time permissions that can be revoked after a predefined period, or when a task has been completed.

04

Auditability & Accountability

Have a strict audit of who accessed what, when, and why – all under one unified control plane. Maintain compliance with strict industry regulations at all times with continuous least privilege access to the production environment or sensitive data.

The Outcome

By implementing Apono for ephemeral, time-dependent access to data and applications, Rho was able to enhance efficiency. This allowed them to replace labor-intensive procedures for requesting, reviewing, authorizing, and revoking permissions, resulting in an increased boost in productivity.

01

Time saved for dev team

Last 30 days: ~40-50 hours

02

Up and running in < 2 weeks

Deployed and used by the RnD organization in less than 2 weeks, leveraging Apono's easy installation and API

03

Number of eliminated static privileges

100+

We use Apono for all our environments from dev and ephemeral environments – all the way to the production.

Ivan Ivic, DevOps Team Lead @Rho