Story
How Sonova Runs Secure Delivery on Vault
Sonova, a health care organization in Switzerland, uses Vault from HashiCorp to support secure delivery for developers and AppSec.
Value results
| Category | Value result |
|---|---|
| Risk and compliance | Named workflow replaces ad hoc routing for developer security |
| Risk and compliance | Developers and AppSec work from the same Vault record for developer security |
| Capability | Secure delivery stays visible to adjacent teams through Vault |
Story
Sonova is based in Switzerland and runs health care operations at a scale where developer security cannot live in side channels. Developers and AppSec were reconciling competing copies of the same work, which slowed secure delivery and hid who owned the next step.
The company runs secure delivery on HashiCorp, with Vault as the product developers and AppSec actually open. HashiCorp (an IBM company) provides infrastructure automation software, including Terraform and Vault, for cloud provisioning and secrets. For Sonova, that means developers and AppSec can open one workflow, see developer security, and let neighboring teams join without inventing a parallel stack.
Public materials confirm the companies and products. They do not always publish a single verified KPI for this pairing, so the outcome here is operational: clearer ownership, fewer stalled handoffs, and a shared record for developer security.