
KONE, a Finnish multinational corporation renowned for its elevators and escalators, is embarking on a transformative digital journey to enhance customer service and operational efficiency. Central to this initiative is the integration of Microsoft Sentinel, a cloud-native Security Information and Event Management (SIEM) solution, to bolster the company's cybersecurity framework.
By 2030, KONE aims to connect its entire global portfolio of over 1.7 million elevators and escalators to the cloud. This ambitious plan is designed to unlock benefits such as predictive maintenance, remote operations, and improved customer experiences. However, the success of this digital transformation hinges on robust cybersecurity measures to ensure secure and reliable connectivity. Petteri Rantanen, KONE's Chief Information Security Officer, emphasizes the importance of this endeavor, stating, "It's a key element in ensuring customers are getting robust, trusted, and secure connectivity."
To achieve this, KONE has embedded cybersecurity into every layer of its operations, from field technician tools and remote elevator controls to manufacturing systems and software development lifecycles. The adoption of Microsoft Sentinel and Microsoft Defender has provided KONE with enhanced visibility and automation capabilities, empowering teams to act swiftly in response to potential threats. These tools have been instrumental in reducing detection and response times, thereby improving customer confidence and strengthening KONE's brand, especially in highly regulated sectors.
Microsoft Sentinel offers several key features that align with KONE's cybersecurity objectives:
- Data Aggregation: Sentinel collects data across all platforms, encompassing users, applications, servers, and devices, whether they're located on-premises or distributed across various clouds. This centralized data collection enables comprehensive monitoring and analysis.
- AI-Powered Analytics: Leveraging artificial intelligence and machine learning, Sentinel analyzes vast amounts of security data to identify patterns and anomalies that could indicate potential threats. This proactive approach enhances threat detection and response capabilities.
- Automated Incident Response: Sentinel integrates with Azure Logic Apps to automate responses through playbooks—a series of actions triggered by specific alerts or incidents. This automation streamlines incident response processes, reducing manual intervention and response times.
- Threat Intelligence Integration: By integrating with global threat intelligence feeds, Sentinel provides up-to-date information on emerging threats and vulnerabilities, enabling organizations to proactively protect their networks against known threats.
As KONE continues to modernize and expand its digital capabilities, the integration of robust cybersecurity measures like Microsoft Sentinel will remain a cornerstone of its strategy, ensuring that innovation and security go hand in hand.
Source: Microsoft KONE fortifies trust with Microsoft Sentinel's enhanced threat detection | Microsoft Customer Stories