Client workClient: Mainos

Security assessment & infrastructure hardening

Reviewed, prioritised, hardened.

Assessed the application, infrastructure and development process of an online marketplace, prioritised the risks and implemented the fixes, including infrastructure hardening.

The challenge

Mainos runs mainos.lv, an online second-hand marketplace. Its operation depends on a secure and stable IT infrastructure, modern deployment environments and reliable software development processes. To reduce potential security risks and bring the system in line with current security requirements, the company wanted a comprehensive security assessment covering the application, the infrastructure and the development process, and it wanted the findings addressed, not only listed.

What we delivered

Review of the application code and security architecture
Review of authentication, authorisation and access-control mechanisms
Security assessment of API integrations and data processing
Security analysis of the CI/CD process and infrastructure
Vulnerabilities identified and risks prioritised
Infrastructure hardening and improved security configuration
Security recommendations prepared and implemented

How it worked

Double Helix reviewed the application code and security architecture, the authentication, authorisation and access-control mechanisms, the security of API integrations and data processing, and the CI/CD process and infrastructure. Findings were prioritised by risk so that the most significant exposures were dealt with first. The engagement then moved from review to implementation: infrastructure hardening, security configuration improvements and the recommended changes were carried out by the same team.

What changed operationally

  • The most significant security risks were identified quickly and addressed in priority order
  • Recommendations were implemented as part of the engagement, so the review produced changes rather than a report
  • Infrastructure hardened and security configuration improved
  • The overall security resilience of the platform improved

In the client’s words

“The team was able to quickly identify the most significant security risks, understand the system’s technical architecture and propose practical solutions that matched our business and technical needs. We particularly value Double Helix Technologies’ competence in application security, infrastructure protection and security risk management. The cooperation was constructive, communication was clear and timely, and the work was delivered to a high standard with a focus on long-term results.”

Marta Būmane, Board Member, SIA Mainos (translated from Latvian)

At a glance

Client

Mainos

Sector

E-commerce / online marketplace

Primary users

Engineering team, Management

Engagement

Scope

Application, infrastructure and development process

Reference

Written reference from the client, June 2026

Core focus

Application & infrastructure security assessment, Code and security architecture review, Authentication and access control, API and data handling security, CI/CD pipeline security, Infrastructure hardening

Tags

SecurityInfrastructureCI/CD
Discuss a similar workflow