The Problem We Were Brought In to Solve

A prominent multi-location medical service provider in Toronto was constrained by aging MPLS infrastructure across six GTA offices. Expensive, bandwidth-limited circuits were creating bottlenecks for staff communications and patient care delivery. Growing concerns about data security and PHIPA compliance required a robust solution to protect sensitive patient information. Lack of centralized network management provided limited visibility into traffic patterns and vulnerabilities across all locations.

Solution & Implementation

CG Technologies deployed enterprise-grade FortiGate Next-Generation Firewalls at each of the six branch locations, replacing legacy security appliances with modern hardware featuring advanced threat protection. Expensive MPLS circuits were decommissioned in favour of high-speed 100 Mbps broadband connections, with encrypted IPsec VPN tunnels established between all branches. FortiManager was implemented for unified policy control and FortiAnalyzer for comprehensive logging, providing unprecedented network visibility. Fortinet SD-WAN was configured to intelligently route traffic and prioritise latency-sensitive healthcare applications including video consultations and EHR access. To maintain continuous patient care operations, the team ran parallel network architectures during transition, conducting major work during evenings and weekends with pre-configured equipment prepared off-site to minimise on-site time.

Measurable Outcomes

Monthly network costs dropped by 41% — approximately $72,000 in annual savings. Available bandwidth expanded tenfold. Electronic Health Record access improved from 7–10 seconds to under 2 seconds — a 75% improvement. Branch-to-branch file transfers became 89% faster. Data backup completion time dropped from over 6 hours to 1.5 hours. Unplanned downtime incidents fell 92% in the first quarter. The organisation achieved full PHIPA compliance, with IT staff reporting greater confidence in their security posture.

Lessons Learned

01
Parallel Architecture Eliminates Transition Risk
Running old and new systems simultaneously until the new implementation proved stable for 48 hours ensured zero downtime during migration.
02
Pre-Configuration Reduces On-Site Impact
Preparing equipment off-site and conducting major work during off-hours is essential in live healthcare environments.
03
Vendor Flexibility is Critical
When bandwidth inconsistencies emerged with one ISP, quickly identifying an alternative added only three days while guaranteeing reliable connectivity at all locations.
04
Knowledge Transfer Protects Long-Term Value
A comprehensive training program and detailed documentation ensured the client's IT team could confidently manage and maintain the new environment.