In brief
Koçtaş
Turkey
Retail
400 stores across Turkey;
4,000 endpoints
The organisation was relying on separate, disconnected network and endpoint security systems. It lacked visibility, control, and efficient day-to-day management.
This innovative solution uses the Palo Alto Networks® platform approach and includes:
Network Security Platform:
AI-Driven Security Operations Platform:
Fast-changing customer expectations, intense competition, and the need for greater operational efficiency are driving Koçtaş to reinvent itself. Faced with a growing store portfolio, an expanded product range, and increasingly complex operational systems, Koçtaş had more exposure than ever across its business and customer touchpoints.
CHALLENGES
Koçtaş is Turkey’s leading home improvement retailer, providing millions of customers with high-quality, competitively priced homewares. It is a subsidiary of Koç Holding A.Ş, the largest industrial conglomerate in Turkey.
Koçtaş has more than 400 physical stores and is also growing rapidly through its digital channel the Koçtaş Marketplace, with a fivefold increase in product lines this year alone.
Koçtaş had struggled with its previous network security and remote connectivity platforms. “We needed a modern, integrated security system to safeguard our rapidly changing and expanding digital and physical environments. This included our proliferating Internet of Things (IoT) devices,” says Mr Cirpici, Senior Infrastructure and Cybersecurity Manager.
Koçtaş also needed to harden its endpoint security – not only to protect its existing endpoints but to future-proof its ongoing expansion.
Complexity was also absorbing resources and increasing risk. “We have a small, highly professional team of people focused on security. We wanted to automate everyday processes while shifting away from siloed security systems to a single, best-of-breed security stack,” says Mr Cirpici.
REQUIREMENTS
Koçtaş was faced with increased exposure across organisational and customer touchpoints, including traditional PoS vulnerabilities, supply chain threats, IoT, and customer data. To become a retail business of the future, Koçtaş needed to:
SOLUTION
A connected Palo Alto Networks platform approach across network, endpoint, and security operations is helping Koçtaş manage a continuously evolving attack surface while driving operational efficiencies through AI and machine learning.
First, Check Point firewalls were replaced with Palo Alto Networks ML-Powered Next-Generation Firewalls (NGFWs), together with Prisma Access and DNS Security. Prisma Access was implemented in just one week, replacing standard VPN connections for 700 staff. “Prisma Access has been a great success. It’s secure, easy to use, and popular with our hybrid workforce. It protects all application traffic – dramatically reducing the risk of a data breach,” says Mr Cirpici.
Autonomous Digital Experience Management (ADEM) is integrated to visualise and manage end-user experience. Now, when a connection issue is reported, the team can immediately identify the root cause of the problem.
An Enterprise IoT Security subscription was then deployed to protect 2,000 devices such as in-store handheld scanners, security cameras, and point-of-sale systems. Koçtaş can now view traffic from any Internet Protocol on a single dashboard, identifying new IoT devices as they move online and taking prompt action to prevent vulnerabilities.
“Our R&D team is working hard to create the store of the future. Such as installing cameras that count the footfall in our stores, or retail robots that check shelves for product gaps. Every connected device exposes Koçtaş to attack. But Zero Trust Enterprise IoT Security is enforced with least-privileged access securing all future innovations.”
Cortex XDR completes the picture. Network detection and response (NDR) uses machine learning (ML) and behavioural analytics to monitor Koçtaş’s network traffic and develop a baseline of activity. It discovers anomalous activity associated with malware, targeted attacks, and risky behaviour. Integration with the Enterprise IoT Security subscription enables the team to monitor everything from a single dashboard.
Mr Cirpici explains, “Having the NDR add-on on top of the EDR functions helped Koçtaş with its XDR project. We can review the root cause, sequence of events, and investigative details all in one place.”
BENEFITS
Thanks to the connected Palo Alto Networks platforms, Koçtaş is securing the retail store of the future and realising significant benefits, such as:
Learn more about Palo Alto Networks on the website, where you can also read many more customer stories.