
A global logistics leader hardens its Microsoft 365 and Azure environment against advanced threats, gaining visibility it never had before.
Est. 1910 · 250 offices in 120 countries
The challenge
Bidvest International Logistics is a leading global transport and logistics company whose partnership with EMO Trans provides access to an international network of 250 offices in over 120 countries. Established in 1910, the company has offices at every major port and airport in South Africa, and an end-to-end offering spanning air, sea and road transport, warehousing and customs brokerage.
With a footprint that large, and a threat landscape that intensifies every year, BidvestIL needed to strengthen its security posture, tighten access to sensitive resources, and gain visibility into threats and user behaviour across its cloud estate.
The solution
BUI delivered a layered set of Microsoft security controls:
- Access control. Azure Multi-Factor Authentication was enabled for all privileged roles across the Microsoft 365 and Azure tenants, and for employees accessing resources from outside trusted IP ranges, safeguarding access while keeping things simple for users.
- User behaviour analytics. Azure Advanced Threat Protection agents were deployed to all on-premises Active Directory domain controllers, leveraging on-premises signals to identify, detect and investigate advanced threats, compromised identities and malicious insider actions.
- Secure collaboration. Office 365 Advanced Threat Protection protected email and collaboration.
- Security insights. Microsoft Cloud App Security provided rich visibility and control over data travel. BUI also ingested Palo Alto firewall logs into MCAS for deeper insight into user network usage.
The results
Deploying Azure ATP across every domain controller gave BidvestIL a previously unachievable view into alerts and user behaviour. The engagement delivered an improved security posture through advanced risk identification, visibility and reporting; controlled access to sensitive and business resources; and improved spam control, with phishing attacks decreasing by 5% in the first month after Office 365 ATP was enabled.