---
title: iNBest Case Study | Obok
description: How iNBest achieved 95% faster threat detection and $24K in annual cost savings with Obok Cloud Security Platform.
url: https://www.getobok.com/case-studies/inbest
company: iNBest
industry: Cloud Services & MSP
location: Mexico
---

# iNBest Case Study

> 95% faster threat detection. From weeks to minutes.

Automated cloud security monitoring helps Mexican MSP detect threats in minutes instead of weeks, while uncovering $24K in annual cost savings.

## At a glance

| | |
|---|---|
| **Customer** | iNBest |
| **Industry** | Cloud Services & MSP |
| **Location** | Mexico |
| **Challenge** | Manual security monitoring across multiple AWS accounts was time-consuming and prone to gaps |
| **Solution** | Obok Cloud Security Platform with AWS Security Hub integration |

## Key results

- **95%** reduction in threat detection time
- **90%** less manual security review effort
- **$24K** annual cost savings discovered
- **80** automated security policies deployed

## Findings on day one

- 44 security issues identified
- 36 cost optimization opportunities
- 26 HIGH severity findings
- 12 MEDIUM severity findings

## The challenge

As a leading managed service provider specializing in AWS cloud solutions, iNBest faced a challenge familiar to many growing organizations: how to maintain robust security across multiple AWS accounts while scaling operations efficiently.

iNBest's security team spent 8–10 hours every week performing manual security audits of their AWS infrastructure. Despite this significant time investment, they were only able to review 40–50% of their resources due to the sheer volume and complexity of their multi-account AWS environment.

### Key pain points

- **Slow detection times.** Security issues were discovered during weekly audits, meaning threats could go undetected for 7–30 days.
- **Inconsistent coverage.** Manual reviews inevitably missed resources and misconfigurations.
- **No cost visibility.** No systematic way to identify cloud waste alongside security issues.
- **Compliance challenges.** Difficulty demonstrating continuous compliance with CIS AWS Foundations Benchmark.

> "We were caught in a cycle of reactive security management. By the time we discovered issues in our weekly audits, they'd already been exposed for days. We knew we needed automated, real-time detection to protect our infrastructure and our clients."
> — iNBest Security Operations Team

## The solution

iNBest deployed Obok Cloud Security Platform, a comprehensive solution with deep integration into AWS Security Hub and AWS Security Incident Response. The deployment was completed within the July–December 2024 timeframe with zero disruption to existing operations.

### How Obok works

- **Continuous policy enforcement.** 80 pre-built security and cost optimization policies run automatically every 15 minutes, covering IAM, EC2, S3, RDS, VPC, CloudTrail and more.
- **Intelligent finding generation.** Policy violations automatically generate findings with severity level, confidence assessment and detailed remediation steps in AWS Security Finding Format (ASFF).
- **Centralized visibility.** All findings appear in the Obok dashboard and AWS Security Hub, with real-time alerts for HIGH severity issues.
- **Automated incident response.** Critical findings automatically create incidents in AWS Security Incident Response with full context and escalation to AWS CIRT when needed.

## The results

### 95% reduction in threat detection time

| | Before | With Obok |
|---|---|---|
| Detection method | Weekly audits | Continuous automated monitoring 24/7 |
| Average detection time | 7–30 days | Real-time to 15 minutes |
| Manual review | 8–10 hours/week | Under 1 hour/week |

A real example: a security group misconfiguration allowing unrestricted RDP access was detected by Obok within 15 minutes of creation. Previously, this critical vulnerability would have gone unnoticed for an average of 3.5 days — a 99.7% reduction in exposure window.

### $24,720 in annual cost savings identified

- **4 unused RDS instances** with 0 connections for 90+ days: $450/month
- **7 underutilized EC2 instances** running below 10% CPU: $280/month
- **45 EBS volumes** on old gp2 type (should migrate to gp3): $135/month
- **18 unattached EBS volumes**: $54/month
- Additional minor optimizations and stopped instances

Total identified: **$2,060/month = $24,720/year**. One unused RDS PostgreSQL instance alone, discovered running for 4 months after a project completion, saved $1,980 annually after termination.

### Operational impact

- Security team freed up 8–10 hours/week from manual audits
- Time redirected to strategic security initiatives and customer support
- 95% increase in security posture confidence (from 60% to 95%)
- Architecture proven scalable across multiple AWS accounts

## Before and after

| Metric | Before Obok | With Obok | Improvement |
|---|---|---|---|
| Mean time to detect | 7–30 days | <15 minutes | 95% reduction |
| Manual review time | 8–10 hrs/week | <1 hr/week | 90% reduction |
| Resource coverage | 40–50% | 100% | 2x increase |
| Security policies | Manual checks | 80 automated | New capability |
| Cost savings identified | $0 | $24,720/year | New visibility |
| Detection consistency | Variable | 100% accurate | Eliminated human error |

> "The transformation has been remarkable. We went from spending 8–10 hours every week on manual security audits with limited coverage, to having continuous 24/7 automated monitoring with 100% coverage. The 15-minute detection time means we can catch and fix issues before they become real problems. But what really surprised us was the cost optimization value. We thought we were managing our cloud spend well, but Obok found over $24,000 in annual savings we hadn't identified. The platform paid for itself in the first quarter."
> — iNBest Security Operations Team

## Related

- [KIO Networks Case Study](https://www.getobok.com/case-studies/kio-networks)
- [Cloud Security](https://www.getobok.com/cloud-security)
- [Cloud Cost Optimization](https://www.getobok.com/cloud-cost-optimization)
