Blog

SecOps: How Pacific Dental Services Strengthens Security Operations

Automation
Config hardening
Misconfigs
Operational Excellence
Risk Management

It’s a familiar dilemma: weighing the need for security against the need to "keep things running." At PDS Health, it's a tension that runs equally through strategy and day-to-day operations. For Vice President of IT and CISO Nemi George, that balancing act plays out every day. As he puts it: “There are lots of things I want to do with my sec hat on that I need to stop myself from doing when I put on my operations hat.” And thankfully, PDS has become proficient at walking that tightrope.

In a webinar with Remedio now available on demand, Nemi shared what he learned, digging into his success at PDS health. The main question at hand: how to strengthen security without slowing operations?

Reactive Security With Limited Scope: Common But Not Copacetic

Despite an extensive security stack that included EDR, EPP, VA, and SIEM investments, PDS found that they lacked reliable configuration state visibility. They also lacked the ability to contextualize and validate configuration-level changes.

That fact didn't especially perturb PDS decision makers though. After all, that's how it had always been and they weren't aware of other organizations doing things differently. But that confidence was shaken after a vendor update knocked out 4,600 PCs as the result of a misconfiguration.

It was a wakeup call and stark reminder that misconfigurations, not just vulnerabilities, pose significant risks.

Like most organizations, PDS managed their configurations in a largely manual and reactive manner — chewing up valuable human resources and leaving plenty of room for error.  It left IT and Security under constant pressure as they were stuck playing catch up.  Forced to take a triage-like approach, compromises had to be made.

Patch management, for example, was limited strictly to Windows OS. Because the team didn't have capacity to handle other operating systems and essential third-party apps, they were not included in regular patch cycles.

And it wasn’t just about time. It was about the feasibility of acting decisively without breaking things. As often as not, they'd find themselves lacking the visibility needed to map out and disentangle operational interdependencies. 

As Nemi explained in the webinar, “Ultimately, the fear that people always have is that you're going to break something. Well, you're going to break something regardless if you just kind of run blindly. What folks in my position have been looking for for years is the ability to make informed, risk-based, risk-aware, and context-aware decisions.”

Intent on making a change, Nemi began re-examining internal processes and procedures around configuration security and change management. And then he set out to find the right technology to help his team and give them a leg up.

Proactive and Context-Aware Posture Management

For Nemi, something just clicked when he found Remedio. After a planning call and onboarding meeting, Remedio was up and running within hours. He found that the interface was intuitive and easy-to-use.

And the learning curve was accelerated by the fact that every change made in the system was reversible with a single click. This helped minimize risk, making the platform less intimidating and easing adoption.

Continuously evaluating the current state of every device (including servers), across Windows, macOS, Linux, and cloud instances, Remedio identifies and contextualizes configuration risks — flagging policy violations and enabling non-disruptive push-button remediation.

This more informed and more streamlined approach to monitoring naturally gave way to more context-aware, purpose-driven, and surgical management. It helped PDS Health take a more decisive and proactive approach, embracing a continuous improvement model that ultimately helped the organization drastically reduce their attack surface without introducing any operational or organizational friction.

That’s exactly what Remedio delivered — giving PDS the visibility to make confident decisions, with clarity and speed.

As a result, the organization was able to achieve massive efficiency and productivity gains, reinvesting time savings into strategic initiatives while raising the bar for existing workflows. For example, the team was able to expand patching beyond Windows OS to include Linux and MacOs along with Adobe services, browsers, and other critical third-party apps.

It's a small example, but it's also a representative one — showing how PDS Health gained the capacity to act on the to-do list items they always knew were important but never had time for.

Reclaiming Control During High-Stakes Moments

Just as significant, Remedio played a pivotal role in PDS's Log4j and SMBv1 response efforts — identifying vulnerable components and validating the effectiveness and non-disruptiveness of remediations. 

“I remember the Log4Shell vulnerability first broke," explained George. "Like many others, we woke up to the news and immediately had to ask: Where does this apply to us? What’s the impact? What’s the scope? How many devices? Do we need to act? Should we be worried?”

At the time, the answers weren’t easy to find. “We didn’t have tools that could clearly tell us where those issues were,” he says. “You’re sending emails to app owners, asking: Does this apply to your system? It’s not a place you want to be — relying on people and manual processes when every minute matters.”

That moment drove home the need for a centralized, context-rich console — a gap Remedio would ultimately fill.

These real-world use cases aren't just about disaster prevention; they're about reclaiming control. And for PDS Health, that has made a world of difference.

Embracing Harmony Without Compromise

By redefining some of their normal processes and integrating new normal technologies, PDS was able to pave a new and better way forward.

Detecting and correcting configuration drift at its earliest expressions, Remedio helped the organization establish and enforce internal benchmarks, preventing problems and serving as a force multiplier.

As Nemi George puts it, "Remedio's given us the ability to build forward with clarity, speed, and confidence. We no longer are forced to slow down at every bump in the road. Instead, every moment of every day, things are being pushed forward.”

According to George, it's laid the foundation for a really positive organizational transformation. Now he wants to help other organizations achieve the same. Which is why he sat down with us. Check out the full webinar to learn:

  • How the PDS team reduced misconfigurations and improve operational resilience — without adding headcount
  • Real-world strategies to operationalize continuous hardening
  • How you to break the old paradigm of “security vs. operations” and replace it with a new one: security through operations.

PDS Health’s journey is proof that security and operations don’t have to be at odds. With the right mindset and the right tools, they can be mutually reinforcing — each strengthening the other. By embracing continuous, context-aware hardening, the team didn’t just reduce risk — they gained back time, agility, and control.

If you’re ready to move beyond reactive firefighting and toward a more resilient, streamlined, and aligned approach, this conversation is worth your time.

Watch the full webinar to hear Nemi George’s firsthand insights and learn how you can turn friction into forward momentum.


Go straight to the source with Nemi George to learn how PDS pursues security without compromising on operability»

FAQ

Why do security and IT operations often come into conflict?
Security teams are measured on reducing risk, while IT operations are measured on maintaining uptime and user productivity. Traditional security tools frequently identify issues without providing a safe, validated way to remediate them, forcing operations teams to choose between accepting risk or risking service disruption. Organizations that add context, dependency awareness, and rollback capabilities can reduce this friction and enable security improvements without sacrificing operational stability.
What is context-aware security remediation?
Context-aware remediation evaluates how a configuration change will affect a specific device, application, user, or business process before it is applied. Rather than treating every system identically, it considers dependencies, existing configurations, and operational risk to determine whether a change can be made safely. This helps reduce failed remediations and minimizes business disruption.
Why are configuration misconfigurations harder to manage than software vulnerabilities?
Vulnerabilities typically have vendor-issued fixes and CVE references. Misconfigurations are unique to each organization's environment and often result from policy drift, inconsistent administration, legacy settings, or operational exceptions. Because they lack standardized fixes, they require continuous visibility, validation, and governance instead of one-time patching.
How can organizations improve security without increasing operational overhead?
The biggest gains often come from automating repetitive configuration management tasks while maintaining human oversight for higher-risk changes. Continuous monitoring, automated validation, and safe remediation workflows allow security teams to spend less time chasing individual findings and more time reducing overall exposure across the environment.
What is configuration drift, and why does it matter?
Configuration drift occurs when systems gradually diverge from approved security baselines due to software updates, manual changes, troubleshooting, or policy exceptions. Left unchecked, drift creates inconsistent security controls, increases compliance risk, and introduces hidden attack paths. Continuously detecting and correcting drift helps organizations maintain a consistent security posture over time.
Why is visibility alone not enough for enterprise security?
Many organizations already have strong visibility through EDR, vulnerability scanners, SIEMs, and asset inventories. The challenge is operationalizing that information. Security outcomes improve when visibility is paired with the ability to safely validate, prioritize, and remediate issues at scale rather than simply generating more alerts.
How does proactive security reduce risk during critical vulnerability events?
When major vulnerabilities emerge, organizations that already maintain accurate inventories, standardized configurations, and automated remediation processes can quickly identify affected systems and validate mitigation actions. This reduces reliance on manual spreadsheets, email coordination, and emergency response efforts during time-sensitive incidents.
What does "security through operations" mean?
Security through operations treats security improvements as an ongoing operational discipline rather than a series of isolated security projects. Instead of reacting only after new threats appear, organizations continuously maintain secure configurations, validate changes, correct drift, and integrate security into everyday IT workflows. This approach reduces long-term risk while making security and operations complementary rather than competing priorities.

About Author

Bar Bikovsky

Bar Bikovsky

Global cybersecurity sales leader

With a strong background in technology and sales, Bar helps businesses identify and prioritize key challenges — translating technical complexity into clear, actionable solutions. By combining big-picture thinking with hands-on engagement, he plays a pivotal role in expanding Remedio reach & impact.

Fix Misconfigurations Without Fear

Automate configuration security while keeping full control.

Book a Demo