Projects and initiatives Securing Public-Facing Web Applications The Centre conducted a web application vulnerability assessment and penetration test for a large post-secondary application platform in Ontario. Over the course of 14 weeks, our team tested 15 diverse websites to identify security risks in publicly accessible areas. Using a mix of automated scanning and manual testing techniques, we evaluated each site for OWASP Top 10 vulnerabilities, uncommon threats, and infrastructure-level weaknesses. A detailed findings report with prioritized remediation steps, an executive summary, and a follow-up consultation session were provided to support the client’s mitigation efforts. This project demonstrated our capability to deliver large-scale, real-world testing aligned with compliance and security best practices. Building Stronger Security Foundations The Centre completed a 20-week cybersecurity enhancement project for a small business in the digital care and healthcare software sector. The goal was to assess and strengthen the organization’s overall security posture while aligning efforts with SOC2 compliance requirements. The project involved a full review of existing policies and technical controls, implementation support for log management, anti-malware, and intrusion detection systems, and the development of secure change management processes. We conducted vulnerability assessments on both the network and web application layers and delivered customized security awareness training to staff. Throughout the engagement, we maintained ongoing consultation, bi-weekly progress meetings, and delivered a final report detailing findings, implemented controls, and long-term recommendations. This project showcased the Centre’s ability to deliver end-to-end security support tailored to small enterprises with evolving compliance and risk management needs. Aligning Municipal Policies with Cybersecurity Standards The Centre supported a municipality in Ontario through a project focused on strengthening its cybersecurity governance. Over the course of the engagement, our team conducted a comprehensive review and revision of the municipality’s cybersecurity policies and procedures, ensuring alignment with ISO/IEC 27001 and NIST standards. We identified existing gaps, benchmarked against current frameworks, and delivered updated documentation across critical domains including identity and access management, network security, cloud security, patch and vulnerability management, and change management. The updated policies were designed to enhance operational resilience and ensure long-term security compliance. This project highlighted the Centre’s expertise in policy optimization and standards alignment, making it a model for municipalities looking to modernize their cybersecurity posture. AI-Powered Web Security Solution for WordPress Over an 8-week period, the Centre collaborated with a regional digital services provider to develop an AI-enhanced cybersecurity solution for WordPress environments. The project, named A-EYE, focused on proactively detecting and preventing threats like malware, phishing, DDoS attacks, and SQL injections using machine learning and intelligent agent technology. Our team built and tested a lightweight, automated agent for log collection and monitoring, developed a predictive threat detection model, and integrated these into a user-friendly dashboard for alerting and visualization. The solution was designed with efficiency and scalability in mind, helping clients strengthen their defences without added complexity. This project demonstrated the Centre’s ability to blend software engineering, AI, and cybersecurity research into an applied solution tailored for real-world deployment. End-to-End Cybersecurity Assessment & Strategy for Municipal Systems The Centre supported a municipality in Ontario by delivering a comprehensive cybersecurity assessment and strategic planning project. The engagement involved evaluating the municipality’s existing security posture through a series of in-depth assessments, including: Web application, network, Wi-Fi, and physical penetration testing Policy and infrastructure analysis Security awareness training development Over the course of the project, the team produced four detailed vulnerability reports, categorized by risk level, and a three-year cybersecurity strategy document tailored to the municipality’s needs. The work also included an executive presentation of findings and recommendations, followed by a handover of all final documentation and training materials. This project demonstrated the Centre’s ability to deliver end-to-end security services for public sector organizations, supporting operational resilience, compliance, and long-term security planning.