©Gorodenkoff – stock.adobe.comatreus_teaser img fuer 2 und 3 spalter 03©Gorodenkoff – stock.adobe.comatreus_teaser img fuer 2 und 3 spalter 03

Case Study

IT Security Management Empowers Industrial Companies

220040

For a medium-sized conglomerate of manufacturing companies

Implementing IT security management based on ISO 27001 enabled an industrial company to achieve measurable improvements. Strategic security measures and incident response processes reinforced resilience and successfully prevented supplier fraud.

q

Company

  • Conglomerate of manufacturing companies specializing in heating construction and roof products
  • Group revenue approximately €1bn, more than 25 locations across three continents, over 3,500 employees
p

Challenge

  • Requirement of strategic IT security management
  • Highly heterogeneous IT landscape with two central clusters and several independently operating subsidiaries
  • Absence of uniform standards and shared services from the corporate holding
  • First time CISO position occupation
m

Goals

  • Development of information security strategy in coordination with the management board
  • Short-term technical measures to secure IT at production sites
  • Implementation of an ISMS in line with ISO 27001
n

Measures

  • Assessment of the IT security at all production sites
  • Establishment of a foundation for ISMS policy structure
  • Identification of providers for Incident Response
  • Management of Detection, Response, and Security Operations Center
  • Implementation of services software and discussion of the relevant contracts
x

Results

  • Introduction of IT and IT Security Standards
  • Improvement of the company`s resilience through the introduction of incident response processes
  • Strengthened security posture of the company through the establishment of MDR2/SOC3 services 
  • Successful defense of several supplier fraud campaigns

These articles might also interest you: