Comprehensive Security Assessment for Carpooling Co
- Cybersecurity
- Confidential
- Dec. 2025 - Feb. 2026
- Quality
- 5.0
- Schedule
- 5.0
- Cost
- 5.0
- Willing to Refer
- 5.0
“Our overall experience with Triotech Systems was very positive.”
- Information technology
- Toronto, Ontario
- 1-10 Employees
- Online Review
- Verified
Triotech Systems conducted a comprehensive security assessment for a carpooling platform. The team performed black-box and white-box security testing to identify vulnerabilities in the client's app.
Triotech Systems' work improved the client's security posture. The team identified and remediated critical vulnerabilities, strengthened cloud security configurations, and improved code security standards. Their responsiveness, technical expertise, and practical approach were key to their success.
The client submitted this review online.
BACKGROUND
Please describe your company and position.
I am the Co-Founder of FellaRide (Redefine Technologies Inc.)
Describe what your company does in a single sentence.
FellaRide is a community-driven carpooling platform designed to help people travel safely, affordably, and sustainably by connecting them with verified members of their own trusted communities. Our mission is to build a secure and reliable mobility network that reduces travel costs, lowers carbon footprint, and strengthens real-world connections.
Users can sign up using their personal credentials and join specific communities through a structured verification process (such as email or community-based authentication). This ensures a trusted environment where members can confidently share rides with people they know or belong to the same group as.
At FellaRide, safety, privacy, and trust are at the core of our platform. We prioritize strong data protection practices, secure authentication systems, and ongoing security improvements to protect user information and deliver a seamless experience across web and mobile platforms.
OPPORTUNITY / CHALLENGE
What specific goals or objectives did you hire Triotech Systems to accomplish?
- We hired Triotech Systems to strengthen the overall security posture of the FellaRide platform. Our primary objective was to identify and eliminate vulnerabilities across our application, infrastructure, and cloud environment before scaling further. Specifically, they conducted comprehensive black-box and white-box security testing to uncover potential external and internal threats. They also performed in-depth code reviews, assessed our cloud architecture, and helped secure our infrastructure by identifying misconfigurations and strengthening access controls. Their goal was not only to detect vulnerabilities but to provide clear remediation guidance, helping us harden our platform, protect user data, and align with security best practices.
SOLUTION
How did you find Triotech Systems?
Referral
Why did you select Triotech Systems over others?
- High ratings
- Close to my geographic location
- Pricing fit our budget
- Referred to me
- Company values aligned
How many teammates from Triotech Systems were assigned to this project?
1 Employee
Describe the scope of work in detail. Please include a summary of key deliverables.
The scope of work with Triotech Systems was focused on conducting a comprehensive security assessment and strengthening the overall security posture of the FellaRide platform across application, infrastructure, and cloud layers.
The engagement included both black-box and white-box security testing. In the black-box assessment, their team simulated real-world external attack scenarios without prior system knowledge to identify exploitable vulnerabilities. In the white-box testing phase, they performed in-depth analysis with access to the codebase and architecture to uncover deeper security flaws, logic issues, and configuration weaknesses.
They also conducted a detailed review of our cloud environment, including infrastructure configuration, access controls, identity and permission management, and network security settings. Additionally, they reviewed our backend and frontend code to detect vulnerabilities such as insecure authentication flows, improper input validation, misconfigurations, and potential data exposure risks.
Key Deliverables:
Comprehensive vulnerability assessment report with risk classification (critical, high, medium, low)
Detailed penetration testing report (black-box and white-box findings)
Cloud security assessment report with identified misconfigurations and remediation steps
Code security review findings with specific improvement recommendations
Clear remediation roadmap with prioritized action items
Re-testing/validation support after fixes were implemented
Beyond identifying issues, they provided actionable remediation guidance and worked closely with our technical team to ensure vulnerabilities were properly resolved and validated.
RESULTS & FEEDBACK
What were the measurable outcomes from the project that demonstrate progress or success?
The engagement with Triotech Systems resulted in significant and measurable improvements to our overall security posture.
Key measurable outcomes included:
Identification and remediation of critical and high-severity vulnerabilities across our application and infrastructure before production exposure
100% closure of critical vulnerabilities identified during black-box and white-box testing
Strengthened cloud security configuration, including improved IAM policies, access controls, and network restrictions
Hardened authentication and authorization flows to reduce risk of unauthorized access
Improved code security standards and secure development practices within our engineering team
Successful re-testing validation confirming remediation of previously identified issues
As a result, we reduced our risk exposure, improved platform resilience against potential attacks, and increased confidence among stakeholders regarding the security of the FellaRide platform. The project also helped us establish a more structured and proactive security review process moving forward.
Describe their project management. Did they deliver items on time? How did they respond to your needs?
Our experience working with Triotech Systems was highly structured and professional from a project management standpoint.
They clearly defined the scope, timelines, and deliverables at the beginning of the engagement and followed a well-organized testing schedule. Milestones for black-box testing, white-box testing, reporting, and remediation validation were communicated in advance and delivered on time.
Their team maintained consistent communication throughout the project, providing regular updates on findings and progress. When critical vulnerabilities were identified, they proactively escalated them and offered immediate guidance on remediation. They were responsive to our questions, flexible when coordinating with our internal development timelines, and supportive during the re-testing phase to validate fixes.
Overall, they demonstrated strong technical leadership, timely delivery, and a collaborative approach that made the engagement smooth and effective.
What was your primary form of communication with Triotech Systems?
- In-Person Meeting
- Virtual Meeting
- Email or Messaging App
What did you find most impressive or unique about this company?
What we found most impressive about Triotech Systems was their depth of technical expertise combined with a highly practical, solution-oriented approach.
Rather than simply delivering a list of vulnerabilities, they took the time to explain real-world attack scenarios, business impact, and prioritization. Their reports were detailed yet actionable, making it easy for our engineering team to implement fixes efficiently. The combination of black-box and white-box testing provided comprehensive coverage, which gave us a much higher level of confidence in our platform’s security posture.
Another standout quality was their responsiveness and ownership mindset. They treated our platform security as a shared responsibility, proactively guiding us through remediation and re-validation rather than just completing a checklist exercise.
Overall, their ability to translate complex security findings into clear, practical recommendations made a significant difference for FellaRide.
Are there any areas for improvement or something Triotech Systems could have done differently?
Our overall experience with Triotech Systems was very positive.
RATINGS
-
Quality
5.0Service & Deliverables
-
Schedule
5.0On time / deadlines
-
Cost
5.0Value / within estimates
-
Willing to Refer
5.0NPS