Case Study

PercivalEng: AWS WorkSpaces Pooling with SAML via Entra Case Study

Background

Percival Engineering is a veteran-owned firm specializing in cybersecurity, embedded systems, and critical infrastructure protection. Based in Maryland, it delivers advanced solutions like vulnerability research and secure system development for government and industrial clients.
Rambunct enabled PercivalEng to modernize cybersecurity operations with AWS WorkSpaces pooling and Microsoft Entra SAML integration—delivering secure, high-performance virtual desktops for reverse engineering and vulnerability research.

The Challenge

PercivalEng, serving sensitive government and industrial clients, faced infrastructure and security challenges that limited agility. Demands for specialized tools, strict data controls, and complex access management made it hard to scale secure environments efficiently.
  • High-performance tooling needs for tasks like vulnerability research and malware analysis, requiring preloaded licensed tools.
  • Strict security and compliance demands, including air-gapped setups, auditability, and sensitive data protection.
  • Scalability issues in rapidly provisioning secure environments for resource-intensive workloads.
  • Complex identity management due to varying clearance levels and need for SSO, MFA, and role-based access via Microsoft Entra.

Our Solution

The solution leverages AWS WorkSpaces and AppStream to provide secure, scalable setups for cybersecurity and embedded systems research. Automated provisioning and strict access controls enable efficient, compliant collaboration.
  • Optimized WorkSpaces for cyber research with pooled desktops, golden images, and resource-based scaling for high-performance tasks.
  • Robust access control using SAML integration, RBAC, MFA, and automated provisioning based on roles and clearance levels.
  • Secure, isolated environments with encrypted file sharing, project-based network segmentation, and endpoint protection.
  • Automated operations and monitoring via Lambda, SQS, Step Functions, CloudWatch, and AWS Security Hub for orchestration, auditing, and backups.

The Result

The AWS-based solution transformed PercivalEng’s cybersecurity operations by enabling secure, scalable, and compliant virtual environments. Automation and resource pooling significantly reduced costs and IT overhead, while enhancing user productivity and security posture. The platform now supports seamless collaboration and fully meets industry compliance standards.
  • Operational efficiency improved with 80% faster provisioning, 60% cost savings, and 70% lower IT overhead
  • Standardization and security boosted through consistent environments, audit trails, and compliance with critical cybersecurity standards
  • Seamless access and collaboration enabled for internal teams and external partners via secure, role-based virtual workspaces