Legal — Secure office network
Crownline Legal
- Client
- Crownline Legal LLP
- Location
- Austin, Texas
- Scope
- Security · voice · Wi-Fi
Overview
Confidential by construction
A forty-person law firm can’t afford a flat network: client files, dictation audio and door entry shared the same broadcast domain as the guest Wi-Fi. Crownline asked us to rebuild security without changing how anyone works.
Over a single weekend we installed a next-gen firewall, segmented six VLANs, moved voice onto prioritised lanes and re-cabled the comms room — Monday morning felt identical, only faster and quiet.
Challenge
Zero downtime, zero leaks
Court filings don’t pause for IT projects, and the firm’s insurers had started asking pointed questions about segmentation. Everything had to migrate invisibly: same SSIDs, same printer names, same desk phones — with client data provably isolated behind the new firewall.
Approach
Weekend cutover, weekday calm
- 01 — Pre-staged firewall and switch configs built in our lab from their documentation.
- 02 — Six VLANs — staff, voice, guests, printers, cameras, servers — with deny-by-default rules.
- 03 — Comms room re-cabled and labelled; every port mapped to the new plan.
- 04 — Audit pack delivered: diagrams, rule lists and answers to the insurer questionnaire.
Outcome
Faster calls, cleaner audits, calmer Mondays
Segmented & documented
Six isolated VLANs with rule lists the firm’s insurers accepted first time.
Voice prioritised
Desk phones and video moved to prioritised lanes; choppy calls disappeared.
No Monday surprises
Same names, same passwords, same printers — security nobody had to learn.
Related work
Handling client data on a flat network?
A security review will show the gaps — then we close them over one weekend.