Logo Logo Logo Logo Logo
  • Home
  • Portfolio
    • Products & Services
      • Security Assessment
      • Tiering
      • Securing KRITIS
      • System hardening
      • System hardening for energy suppliers
      • Bloodhound Enterprise
    • SAE
    • SCI
  • About us
    • Company
    • Team
    • Customer Stories
    • Partners
  • Career
  • Trainee
  • Blog
  • Contact
  • German
  • Home
  • Portfolio

    • Products & Services

      • Security Assessment
      • Tiering
      • Securing KRITIS
      • System hardening
      • System hardening for energy suppliers
      • Bloodhound Enterprise
    • SAE
    • SCI
  • About us

    • Company
    • Team
    • Customer Stories
    • Partners
  • Career
  • Trainee
  • Blog
  • Contact
  • German

  • Legal notice
  • Privacy Statement
  • General Terms and Conditions
  • Legal notice
  • Privacy Statement
  • General Terms and Conditions

ABOUT

  • Company
  • Team
  • Career
  • Blog
  • Partners
  • Customer Stories

GET IN TOUCH

  • Contact
  • Make an appointment

info@teal-consulting.de
0211 / 93675225 

  • Legal notice
  • Privacy Statement
  • General Terms and Conditions

Teal Technology Consulting GmbH, Breite Str. 22, 40213 Düsseldorf

Impressum

Datenschutz

AGB

Teal Technology Consulting GmbH, Breite Str. 22, 40213 Düsseldorf

Torbjörn Hagstedt

Cloud technologies and IT security are my passion. As a curious expert for Microsoft Azure, I already conduct numerous security assessments and support companies in making their cloud environments secure.

 

Experience:

With more than 25 years of experience in the data center and Microsoft Azure sector, I know the challenges of IT security first-hand. Through continuous training and practical experience, I am constantly developing innovative solutions to meet the highest security requirements.

Carsten Sebald

As a Senior IT Consultant, I have many years of experience in large and medium-sized projects. I combine in-depth technical expertise with a keen understanding of business requirements.

 

Experience:

I have been working in the IT industry for over 20 years with a strong focus on Microsoft solutions. My technical focus is primarily in the areas of Microsoft 365, Active Directory, Microsoft Exchange, DFS and Hyper-V. I support customers both strategically and operationally to develop customized and efficient solutions.

Alexander Kugelmann

My goal as a project manager is to drive the success of our customers with passion and at the same time increase the performance of companies. It is very important to understand the challenges and goals of our customers.

 

Experience:

After completing my bachelor’s and master’s degree in industrial engineering, I have been working in IT for four years. During this time, I have supported companies with digital transformations, the introduction of ITSM processes and IT strategy projects. Mostly as a project manager at C-level. My strengths lie in communication, stakeholder management and identifying and optimizing challenges.

Nils Berg

In my work as an IT security consultant, I support companies with regard to Active Directory security with a focus on hardening the system landscape. My goal is to make the digital customer environment as secure as possible, but still user-friendly.

 

Experience:

I completed a 3-year dual degree in mechanical engineering and subsequently gained 3.5 years of experience in ERP consulting. I’ve been working in IT security since the beginning of 2023.

Tobias Voss

As an IT security consultant, I accompany companies into the digital future. Supporting customers in their day-to-day operations is just as much a part of my job as planning and implementing individual security strategies to make the customer’s infrastructure more secure in the long term.

 

Experience:

I’ve been working mainly with Microsoft technologies since 2010. I have gained my professional experience in system administration as well as in consulting and project support in national and international companies.

Sven Fuhrmann

As an IT Systems Specialist, I am heavily involved in technical topics and value continuing education. In addition to implementing systems both on-premises and in the cloud, I am particularly interested in the perspective of an attacker.

 

Experience:

With a master’s degree in physics, a Microsoft Certified Security, Compliance and Identity Expert certification, and a trainee program at Teal, I provide support as an IT consultant with a focus on technical topics.

Till Hauschild

As an IT security consultant and trained software developer, I am very interested in technologies and how they work. Therefore, I like to work with the customer in planning and implementation to jointly build a better understanding of the security of your systems.

 

Experience:

I have been working in the IT industry since 2018 and have gained valuable experience in various areas as an IT specialist for application development and subsequent team leader. In my years at Teal, I have deepened my knowledge in the Microsoft area and provide support in the areas of IT security and project organization.

Manuel Hoffmann

I mainly plan and manage infrastructure projects for my clients. I also support the governance of operational areas. As co-founder and one of the managing directors of TEAL, I also take care of the development and further development of the company.

 

Experience:

I have over 10 years of professional experience as a consultant. In my technical roles I have gained experience with Windows clients and servers, SCCM and Active Directory. As a project manager, I have been exposed to many other technologies such as Redhat Enterprise Linux, Redhat Satellite and IDM, as well as Jenkins, Docker Enterprise and ServiceNow.

Leading engineering service provider in the automotive industry

  • Situation

  • Approach

  • Result

A leading global engineering service provider in the automotive industry turned to TEAL to consolidate and best secure an evolved Active Directory environment with two forests. The focus was on better integration of IT services and usability for the 6000 customer employees.

With the help of our assessment, we analyzed both forests for technical vulnerability or deviation from design recommendations. Requirements and goals were defined in workshops. The resulting packages of measures were prioritized by the customer and a roadmap for achieving the target was created.

TEAL supports the customer in securing and standardizing the Active Directory. Extensive information is also available in our blog series on the topic of (E)SAE.
Started approaches are consequently continued, which accelerate and optimize the implementation.

Are you facing a similar challenge?

Contact us now
  • Situation

  • Approach

  • Result

A leading global engineering service provider in the automotive industry turned to TEAL to consolidate and best secure an evolved Active Directory environment with two forests. The focus was on better integration of IT services and usability for the 6000 customer employees.

With the help of our assessment, we analyzed both forests for technical vulnerability or deviation from design recommendations. Requirements and goals were defined in workshops. The resulting packages of measures were prioritized by the customer and a roadmap for achieving the target was created.

TEAL supports the customer in securing and standardizing the Active Directory. Extensive information is also available in our blog series on the topic of (E)SAE.
Started approaches are consequently continued, which accelerate and optimize the implementation.

Are you facing a similar challenge?

Contact us now

Eike Krieger

For me, my work as an IT security consultant goes far beyond maintaining existing processes and procedures. It also involves developing new and more efficient methods for securing our customers’ Active Directory. My experience in software development constantly motivates me to develop innovative solutions to automate existing processes and optimize workflow.

 

Experience:

After training as an IT specialist for application development, I had the opportunity to work with a variety of frameworks. In doing so, I got to know and appreciate the workflow of agile working. I have been working in IT security since the beginning of 2022 and use my experience and knowledge to ensure the IT security of our customers.

Niklas DÖRING

The challenges and constant changes in IT security fascinate me deeply. The dynamic nature of this field and the constant need to adapt to new threats and technologies are particularly appealing to me. The planning and implementation of IT security projects is exactly what I want to focus on and where my strengths lie. I have a passion for developing and implementing complex security strategies to protect organizations from potential threats.

 

Experience:

10 years of experience in the administration of Microsoft technologies (servers, clients, Microsoft 365 and Azure) and supporting small, medium and large companies.

Robin Nowak

As a security consultant, I work together with our customers in the areas of Active Directory security and system hardening. Internally, I am responsible for our TEAL Security Assessment, in which we analyze the state of your environment in detail and show you effective ways to protect yourself through the use of technical and organizational measures. Working closely with our team and our customers is what can sustainably improve security and what drives me every day.

 

Experience:

Degree in Business Informatics and 6 years of experience as an IT consultant, 3 of which were specifically in the area of Active Directory Security.

ANDREAS MÖLLER

I support our customers in matters relating to IT infrastructure, architecture and IT operations, both as a consultant and in the role of project manager. My motivation is always the structured resolution of problems in order to ultimately create an optimal solution. I also manage our internal trainee program and support the expansion of the product portfolio.

 

Experience:

Prior to my consulting career, I was able to gain over 20 years of experience in IT operations (Active Directory, Microsoft 365, Cient/Server) in my role as IT department manager and know about the challenge of developing projects, operations and security in equal measure. As part of my consulting activities, I have carried out security projects such as the introduction of tiering structures, the mitigation of security findings and organizational consulting. My goal is to make security “tangible” for our customers, to make approaches assessable and decidable and thus to make mitigation possible.

Linus Tentler

In my role as an IT Security Consultant, I help companies to improve the security of their Active Directory. My focus is on securing the system landscape. My goal is to make the customer’s digital environment as secure as possible without compromising user-friendliness.

 

Experience:

12 years of experience in IT, including 5 years as a self-employed system administrator.

Joachim Meyer

As a consultant for Microsoft technologies, I implement customers’ requirements precisely. My focus is on securing Active Directory, hardening systems and automation with PowerShell.

 

Experience:

Many years of professional experience, mainly in Microsoft infrastructures in an international environment.

Tobias Bremm

As a consultant for Microsoft technologies, I have gained experience in major national and international projects.

 

Experience:

I have been working in IT for over 20 years and have gained a lot of experience with Microsoft technologies during this time. My technical focus is on Active Directory, System Center Configuration Manager, Microsoft PKI and PowerShell.

Gregor Leiner

As a project manager, I implement our customers’ goals in a timely manner. To achieve this, I rely on my 15 years of professional experience as a project and operations manager in the field of IT infrastructure, data centers, migration and transformation projects in the national and international environment as well as my continuous training in the latest methodologies and working methods and several completed certifications in project methodologies, ITILv4, ISO27001 Practitioner and CISSP.

 

Experience:

After 5 years of experience in operations management of data center operations, my professional focus has shifted to project management and information security. For 10 years I have been managing projects for the introduction or optimization of information security processes, migrations and transformations or the implementation of major technical measures.

Andreas Badstübner

As an IT security consultant, I work in Active Directory as well as in Entra ID and the hybrid world of identity protection. In addition to security assessments and the design of security measures, I also focus on ITSM processes and the transfer of know-how.

 

Experience:

I have been working in IT for more than 25 years. A balanced mix of operational, consulting, project and IT management experience in a national and international environment has shaped me. A good balance between IT security and IT operations is very important to me.

Fabian Böhm

As a security consultant, I mainly focus on Microsoft Active Directory, system hardening and Entra ID projects. My goal is to permanently protect our customers’ identities and to identify and implement the appropriate security measures and train the customer team to the extent that the measures can be managed independently.

 

Experience:

Over 20 years of professional experience in IT have already presented me with a number of challenges. Working together with a strong team to solve emerging problems and successfully complete my projects motivates me every day.

LISA-MARIE WERNER

As a marketing manager, I define the marketing activities for the company and develop goals & strategies to position the brand and the products/services in the market attractively and to constantly raise them to a new level by using an effective marketing mix. Through several years of experience in the agency & online marketing sector, as well as the continuous monitoring of new trends, I know that addressing the needs of the target group is essential for the success of a company. I am driven by a balance of creativity and strategic thinking.

 

Experience:

6 years of experience in B2B online marketing, project management and customer communication

Alexander Schmitt

I have been advising my clients for over 15 years. I have already taken on many different roles. From “normal” team member to architect to project manager, everything was actually there. As co-founder and one of the managing directors of TEAL, I also take care of the growth and further development of the company.

 

Experience:

At the beginning of my career, my focus was on System Center products and Hyper-V. Over the years, however, I have been able to gain insights into a wide range of technologies and products. These include Windows Client and Server, basic services such as DNS, DHCP, WSUS as well as System Center, Hyper-V, Azure and Office 365. In recent years, my main focus has been on Active Directory Security and system hardening.

Retail company –

Microsoft Azure Cloud

  • Situation

  • Approach

  • Result

As part of an extensive digitalization project, a retail company will be relying heavily on the Microsoft Azure Cloud in future. The aim is to gain broader access to technologies, establish more transparent cost structures within the company and become less dependent on local data centers. Due to different levels of knowledge within the company, a central cloud competence center is to be defined and established in order to empower individual teams and business units.

TEAL supports the customer in the coordination and overarching planning for the central competence center. The first step was to determine the needs of the internal customers and to ascertain their level of knowledge. Services must be established in order to automatically develop deployable infrastructure-as-code services, an internal consulting and onboarding team must be set up to ensure a secure and simple start in Azure and a connectivity team must be implemented for the standardization and operation of network services. All operational tasks must be largely automated and handed over to an external provider.

Together with the customer, TEAL developed an appropriate operating model including all associated processes and standards. These were tested, improved and introduced as part of a hypercar. Operational tasks were outsourced to an external service provider where possible and appropriate.

ARE YOU FACING A SIMILAR CHALLENGE?

CONTACT US NOW
  • Situation

  • Approach

  • Result

As part of an extensive digitalization project, a retail company will be relying heavily on the Microsoft Azure Cloud in future. The aim is to gain broader access to technologies, establish more transparent cost structures within the company and become less dependent on local data centers. Due to different levels of knowledge within the company, a central cloud competence center is to be defined and established in order to empower individual teams and business units.

TEAL supports the customer in the coordination and overarching planning for the central competence center. The first step was to determine the needs of the internal customers and to ascertain their level of knowledge. Services must be established in order to automatically develop deployable infrastructure-as-code services, an internal consulting and onboarding team must be set up to ensure a secure and simple start in Azure and a connectivity team must be implemented for the standardization and operation of network services. All operational tasks must be largely automated and handed over to an external provider.

Together with the customer, TEAL developed an appropriate operating model including all associated processes and standards. These were tested, improved and introduced as part of a hypercar. Operational tasks were outsourced to an external service provider where possible and appropriate.

ARE YOU FACING A SIMILAR CHALLENGE?

CONTACT US NOW

Friedemann Zurhorst

I like to think critically and thoroughly about technical topics, and I value continuous learning. My focus is on IT security, specifically Active Directory security with an emphasis on tiering models, privileged access workstations, auditing and compliance, system hardening, and general Windows security.

 

Experience:

I have been in the IT world since 2013. During my education and studies, I have been exposed to various technologies, with a specialization in the Microsoft world.

Jana Heuler

As a Junior Consultant, I am full of anticipation and commitment to be a part of the Teal Trainee Program. My goal is to expand my existing knowledge and skills to best support the existing team. I am excited about this opportunity to advance my career and develop my talents in a professional environment.

 

Experience:

ccessfully completed my training. I also hold the Azure Administrator Associate certification.

Deike Rickers

At TEAL I am the contact person for everything related to human resources. In particular, I am responsible for the management and monitoring of our recruiting process. Of course, I also work on internal topics and processes for our existing employees, such as the further development of our trainee program and internal development at TEAL. I exchange ideas with my colleagues and work closely with the management and administration.

 

Experience:

After my Bachelor in Business Administration and a Master in HR & Organization, I gained 10 years of relevant professional experience in the field of Recruitment and Human Resources in different, larger international companies.

I am now looking forward to continuing to manage and develop our processes together with all my colleagues at TEAL!

Christian Badouin

In the back office I take care of our internal processes and am available to our business partners as a contact for various matters.

Florian Freiherr von Bechtolsheim

As a project & program manager for all phases of enterprise-wide IT end-to-end solutions I support our customers in the realization of digitalization projects in the national/european/international context incl. near- and off-shoring.
In addition, I also accompany projects as a quality auditor or as a turn-around manager for projects in trouble and act as a trainer, speaker and project coach for consultants.

 

Experience:

10 years in the area of CAD/CAE in the engineering environment, 25 years project and program management, PMP® #531124, 12 years IT solution architect for Microsoft-based collaboration and project management systems

Andrzej Kaminski

As an IT security consultant in the field of Active Directory and infrastructure I support our customers in the implementation and extension of existing or new security measures. The implementation is based on current security benchmarks as well as vulnerability management tailored to the customer profile. The implementation of different and standardized security audits as well as automated health checks complete the portfolio.

 

Experience:

I’ve been working in the IT industry for 15 years. In my career so far, I have held various positions such as IT consultant, project manager or team leader. I have also worked successfully as a freelancer. Over the years I have specialized in the following areas: Active Directory, Infrastructure Services, Virtualization, NetApp and Automation.

Internationaler Entwicklungspartner der Automobilindustrie

  • Situation

  • Approach

  • Result

A customer in the healthcare industry was operating in a relatively inhomogeneous security infrastructure world, which led to two challenges:

1. The security setup is not optimal and

2. employees, IT services could only be provided with difficulty, resulting in inconsistent service usage.

Together with the customer, an analysis of the current situation was carried out and guard rails as well as requirements for a new IT infrastructure were defined. In the further course, TEAL developed several target architectures and evaluation criteria for a management decision.

The customer has several options and evaluation criteria to decide how to make the IT infrastructure secure and efficient in the future.

Are you facing a similar challenge?

Contact us now
  • Situation

  • Approach

  • Result

A customer in the healthcare industry was operating in a relatively inhomogeneous security infrastructure world, which led to two challenges:

1. The security setup is not optimal and

2. employees, IT services could only be provided with difficulty, resulting in inconsistent service usage.

Together with the customer, an analysis of the current situation was carried out and guard rails as well as requirements for a new IT infrastructure were defined. In the further course, TEAL developed several target architectures and evaluation criteria for a management decision.

The customer has several options and evaluation criteria to decide how to make the IT infrastructure secure and efficient in the future.

Are you facing a similar challenge?

Contact us now

International development partner of the automotive industry

  • Situation

  • Approach

  • Result

An internationally active development partner in the automotive industry for complex metal and hybrid structures with a large number of locations and more than 10,000 employees approached us to secure the complex and globally distributed infrastructure. In the course of security-relevant incidents in the said industry, TEAL was commissioned to check and secure the Active Directory infrastructure. TEAL was also commissioned to make preparations for the use of cloud services.

For this purpose, a detailed analysis of the customer’s security infrastructure was undertaken, risks were evaluated and weighted, and finally an action plan was proposed. TEAL was then commissioned to implement this plan. For this purpose, we designed a new security concept (TIER0), which we implemented with the customer in a cooperative atmosphere.

The security aspects of the customer infrastructure are thus conceptually re-implemented and secured, and at the same time prepared for the use of cloud services. This minimizes potential attack risks while at the same time future-proofing the core infrastructure.

Are you facing a similar challenge?

Contact us now
  • Situation

  • Approach

  • Result

An internationally active development partner in the automotive industry for complex metal and hybrid structures with a large number of locations and more than 10,000 employees approached us to secure the complex and globally distributed infrastructure. In the course of security-relevant incidents in the said industry, TEAL was commissioned to check and secure the Active Directory infrastructure. TEAL was also commissioned to make preparations for the use of cloud services.

For this purpose, a detailed analysis of the customer’s security infrastructure was undertaken, risks were evaluated and weighted, and finally an action plan was proposed. TEAL was then commissioned to implement this plan. For this purpose, we designed a new security concept (TIER0), which we implemented with the customer in a cooperative atmosphere.

The security aspects of the customer infrastructure are thus conceptually re-implemented and secured, and at the same time prepared for the use of cloud services. This minimizes potential attack risks while at the same time future-proofing the core infrastructure.

Are you facing a similar challenge?

Contact us now

Leading retail company

  • Situation

  • Approach

  • Result

The goal was to migrate the existing Groupwise infrastructure of a leading retail company (nearly 10,000 employees) with decentralized personal archives to Microsoft Exchange Online.

We supported the customer in project management as well as the selection of suitable technology partners, migration software and adaptation measures for end users. This also included establishing rollout support and integrating the local helpdesk.

The project we managed was already able to migrate 10,000 mailboxes within eight months. The migration of the personal archives to Exchange Online Archive also worked smoothly. In addition, an Office365 backup solution was introduced.

Are you facing a similar challenge?

Contact us now
  • Situation

  • Approach

  • Result

The goal was to migrate the existing Groupwise infrastructure of a leading retail company (nearly 10,000 employees) with decentralized personal archives to Microsoft Exchange Online.

We supported the customer in project management as well as the selection of suitable technology partners, migration software and adaptation measures for end users. This also included establishing rollout support and integrating the local helpdesk.

The project we managed was already able to migrate 10,000 mailboxes within eight months. The migration of the personal archives to Exchange Online Archive also worked smoothly. In addition, an Office365 backup solution was introduced.

Are you facing a similar challenge?

Contact us now

ULF Jacob

I am employed by TEAL as an IT Security Analyst. As such, I examine and evaluate collected data, especially with regard to security vulnerabilities. But direct support of our consultants is also part of my job. For example, in the form of programming work, research or expertise.

 

Experience:

I have been working in the IT industry for 7 years and have specialized mainly in the field of IT security. Thereby I have put the focus on penetration testing. Accordingly, I am an all-rounder and know my way around many IT topics, be it Windows, Linux or programming.

Company from the public sector

  • Situation

  • Approach

  • Result

After in-depth online research, a government agency approached us to analyze and secure their existing Active Directory infrastructure for full protection against cybersecurity attacks.

Due to the ever-increasing security awareness factor in the media, the customer wanted to restructure in this area and stabilize the basic pillars of infrastructure and identity management through external expertise.

In order to work out a suitable solution, we first carried out a three-day assessment in the customer’s environment to find out how possible attackers could get into the company’s network and how the customer could ideally protect itself against this. This resulted in a roadmap with recommendations and concrete implementation measures to effectively increase infrastructure security.

In further steps, implementation packages were derived, structured and prioritized. These packages were then implemented together with the customer. This included both organizational and technical measures and individualized concepts, which were adapted on the basis of the customer’s environment and other circumstances.

First, we started by establishing the common SAE basics. These include both the tiering concept and the introduction of PAW systems combined with consistent account separation. Extensive info is also available in our blog series on (E)SAE.

In the future, we will use the Enforce Suite to achieve extensive and permanent system hardening of the infrastructure as well as compliance with established hardening standards such as BSI or CIS.

Are you facing a similar challenge?

Contact us now
  • Situation

  • Approach

  • Result

After in-depth online research, a government agency approached us to analyze and secure their existing Active Directory infrastructure for full protection against cybersecurity attacks.

Due to the ever-increasing security awareness factor in the media, the customer wanted to restructure in this area and stabilize the basic pillars of infrastructure and identity management through external expertise.

In order to work out a suitable solution, we first carried out a three-day assessment in the customer’s environment to find out how possible attackers could get into the company’s network and how the customer could ideally protect itself against this. This resulted in a roadmap with recommendations and concrete implementation measures to effectively increase infrastructure security.

In further steps, implementation packages were derived, structured and prioritized. These packages were then implemented together with the customer. This included both organizational and technical measures and individualized concepts, which were adapted on the basis of the customer’s environment and other circumstances.

First, we started by establishing the common SAE basics. These include both the tiering concept and the introduction of PAW systems combined with consistent account separation. Extensive info is also available in our blog series on (E)SAE.

In the future, we will use the Enforce Suite to achieve extensive and permanent system hardening of the infrastructure as well as compliance with established hardening standards such as BSI or CIS.

Are you facing a similar challenge?

Contact us now

International Manufacturing Company

  • Situation

  • Approach

  • Result

The goal was to harden and secure an existing Active Directory of an international company with 5,000 employees in the manufacturing industry according to SAE standards. In addition, PAWs were to be introduced for Tier 0 and Active Directory objects were to be assigned to the Tiers in order to implement all measures to make potential lateral movement more difficult.

In order to find a suitable solution, we first conducted a three-day assessment in the customer’s environment to determine how potential attackers could gain access to the company’s network and how the customer could effectively protect itself against them. The corresponding findings were then elaborated and evaluated by us. Our consultants were then able to implement these together with the operations team and carry out the process changes.

Meanwhile, the customer can administer its secured Active Directory structure through special secured PAWs (including multi-factor authentication) and has also established an encapsulated and hardened Tier0 environment.

Are you facing a similar challenge?

Contact us now
  • Situation

  • Approach

  • Result

The goal was to harden and secure an existing Active Directory of an international company with 5,000 employees in the manufacturing industry according to SAE standards. In addition, PAWs were to be introduced for Tier 0 and Active Directory objects were to be assigned to the Tiers in order to implement all measures to make potential lateral movement more difficult.

In order to find a suitable solution, we first conducted a three-day assessment in the customer’s environment to determine how potential attackers could gain access to the company’s network and how the customer could effectively protect itself against them. The corresponding findings were then elaborated and evaluated by us. Our consultants were then able to implement these together with the operations team and carry out the process changes.

Meanwhile, the customer can administer its secured Active Directory structure through special secured PAWs (including multi-factor authentication) and has also established an encapsulated and hardened Tier0 environment.

Are you facing a similar challenge?

Contact us now

IT service provider insurance –

Request fulfilment optimisation

  • Situation

  • Approach

  • Result

In order to be able to provide IT services to the specialist areas of the international insurance group with 40,000 employees faster, the company’s internal IT service provider set themselves the objective to accelerate the request fulfilment process and to reduce the error rate. The inconsistent service descriptions as well as the multiple media inconsistencies were identified as the source of the problems, complicating the co-operation with the external service provider who were fulfilling the process. By introducing a digital request fulfilment platform, these problems were to be solved.

TEAL supported the introduction of the request fulfilment platform based on ServiceNow (SaaS) substantially. We created the requirements analysis, developed a data protection and security concept and led the project management as well as the operational rollout.

The lead times of the orders were reduced significantly thanks to the new request fulfilment platform. TEAL facilitated the successful integration of the SaaS order platform into the existing landscape. This was successfully established as one of the first cloud solutions of the entire group.

ARE YOU FACING A SIMILAR CHALLENGE?

CONTACT US NOW
  • Situation

  • Approach

  • Result

In order to be able to provide IT services to the specialist areas of the international insurance group with 40,000 employees faster, the company’s internal IT service provider set themselves the objective to accelerate the request fulfilment process and to reduce the error rate. The inconsistent service descriptions as well as the multiple media inconsistencies were identified as the source of the problems, complicating the co-operation with the external service provider who were fulfilling the process. By introducing a digital request fulfilment platform, these problems were to be solved.

TEAL supported the introduction of the request fulfilment platform based on ServiceNow (SaaS) substantially. We created the requirements analysis, developed a data protection and security concept and led the project management as well as the operational rollout.

The lead times of the orders were reduced significantly thanks to the new request fulfilment platform. TEAL facilitated the successful integration of the SaaS order platform into the existing landscape. This was successfully established as one of the first cloud solutions of the entire group.

ARE YOU FACING A SIMILAR CHALLENGE?

CONTACT US NOW

IT service provider insurance –

Implementation of Linux

  • Situation

  • Approach

  • Result

As part of a major strategy program, the international insurance group with 40,000 employees restructured its IT portfolio. In the course of the restructuring, open source operating systems were largely to be provided by the internal IT service provider for the first time. As the company was, up to the strategy program, heavily relying on Microsoft-based operating systems and software, the portfolio of the infrastructure services, their management systems and the application development tools and processes had to be expanded.

TEAL assisted the client in selecting the open source platform (RedHat Enterprise Linux and CentOS) as well as choosing suitable management systems (RedHat Satellite, GIT, Jenkins and RedHat Identity Manager). The platform was supplemented with a Docker runtime environment based on Docker Swarm. TEAL also supported the architecture’s creation, development and integration. Additionally, TEAL also provided the project manager.

The IT service provider is now also able to offer open source software solutions to departments based. Through skilful integration, many synergies with the existing  Microsoft systems and architectures could be used.

ARE YOU FACING A SIMILAR CHALLENGE?

CONTACT US NOW
  • Situation

  • Approach

  • Result

As part of a major strategy program, the international insurance group with 40,000 employees restructured its IT portfolio. In the course of the restructuring, open source operating systems were largely to be provided by the internal IT service provider for the first time. As the company was, up to the strategy program, heavily relying on Microsoft-based operating systems and software, the portfolio of the infrastructure services, their management systems and the application development tools and processes had to be expanded.

TEAL assisted the client in selecting the open source platform (RedHat Enterprise Linux and CentOS) as well as choosing suitable management systems (RedHat Satellite, GIT, Jenkins and RedHat Identity Manager). The platform was supplemented with a Docker runtime environment based on Docker Swarm. TEAL also supported the architecture’s creation, development and integration. Additionally, TEAL also provided the project manager.

The IT service provider is now also able to offer open source software solutions to departments based. Through skilful integration, many synergies with the existing  Microsoft systems and architectures could be used.

ARE YOU FACING A SIMILAR CHALLENGE?

CONTACT US NOW

Globally active industrial group –

private cloud

  • Situation

  • Approach

  • Result

In order to be able to offer high-quality and cost-efficient IT services for its 15,000 employees worldwide, the Swiss industrial group launched a comprehensive modernisation program. The main objectives were to centralise IT operations and to implement a service-orientated operating structure. TEAL was given the task of consolidating and modernising the internal data centres. The data centres were to be designed as a private cloud infrastructure based on Microsoft virtualisation and management technologies to ensure maximum flexibility and cost efficiency.

TEAL accompanied the entire project from requirement analysis through design creation and implementation all the way through to acceptance. After it went live successfully, we temporarily controlled the operations team and supported service onboarding until the operation was successfully transferred to an offshore delivery centre.

Thanks to the co-operation with TEAL, the group was able to start productive operations of the private cloud within a few months. In the course of the co-operation, the client’s centralisation objectives were supported significantly through continuous expansion and improvement of the solutions.

ARE YOU FACING A SIMILAR CHALLENGE?

CONTACT US NOW
  • Situation

  • Approach

  • Result

In order to be able to offer high-quality and cost-efficient IT services for its 15,000 employees worldwide, the Swiss industrial group launched a comprehensive modernisation program. The main objectives were to centralise IT operations and to implement a service-orientated operating structure. TEAL was given the task of consolidating and modernising the internal data centres. The data centres were to be designed as a private cloud infrastructure based on Microsoft virtualisation and management technologies to ensure maximum flexibility and cost efficiency.

TEAL accompanied the entire project from requirement analysis through design creation and implementation all the way through to acceptance. After it went live successfully, we temporarily controlled the operations team and supported service onboarding until the operation was successfully transferred to an offshore delivery centre.

Thanks to the co-operation with TEAL, the group was able to start productive operations of the private cloud within a few months. In the course of the co-operation, the client’s centralisation objectives were supported significantly through continuous expansion and improvement of the solutions.

ARE YOU FACING A SIMILAR CHALLENGE?

CONTACT US NOW

Telco-Group –

Office 365

  • Situation

  • Approach

  • Result

A telecommunications service provider with 5,000 employees wanted to modernise its IT workplaces. This was to enable flexible working and offer employees an attractive working environment. At the same time, operating costs were to be reduced by consolidating the IT infrastructure to be able to continue to offer the companies service at a competitive price. To achieve these goals, cloud services were to be used increasingly.

TEAL assisted the company with their provider selection, architecture development for Office 365, data protection assessment as well as the change enablement process. This, in our experience, is indispensable for successful Office 365 projects.

By fundamentally renewing IT workplaces, the employees of the telecommunications service providers now work in a modern work environment that enables flexible and mobile working. The IT operating costs have been substantially reduced through the targeted use of cloud services.

ARE YOU FACING A SIMILAR CHALLENGE?

CONTACT US NOW
  • Situation

  • Approach

  • Result

A telecommunications service provider with 5,000 employees wanted to modernise its IT workplaces. This was to enable flexible working and offer employees an attractive working environment. At the same time, operating costs were to be reduced by consolidating the IT infrastructure to be able to continue to offer the companies service at a competitive price. To achieve these goals, cloud services were to be used increasingly.

TEAL assisted the company with their provider selection, architecture development for Office 365, data protection assessment as well as the change enablement process. This, in our experience, is indispensable for successful Office 365 projects.

By fundamentally renewing IT workplaces, the employees of the telecommunications service providers now work in a modern work environment that enables flexible and mobile working. The IT operating costs have been substantially reduced through the targeted use of cloud services.

ARE YOU FACING A SIMILAR CHALLENGE?

CONTACT US NOW

Global pharmaceutical company –

private cloud

  • Situation

  • Approach

  • Result

The global pharmaceutical company with over 40,000 employees faced the challenge of modernising its SharePoint-based intranet system while reducing operating costs for the platform and the hosted third-party web applications. These goals were to be achieved by consolidating the platform into three modern private cloud data centres in Europe, the USA and Asia, as well as by outsourcing operations to the US and India.

TEAL supported the project in definition, validation and operations implementation of the business continuity processes based on NetApp Snap Manager and offering support with the introduction of measures to increase security. These measures involved a Privilege Access Management solution based on DELL TPAM in conjunction with RSA SecurID for two-factor authentication. Furthermore, the Windows systems were hardened using Microsoft Best Practices and special AppLocker guidelines.

By setting up and securing private cloud data centres, the basis for the managed intranet service could be successfully built up and put into operation. The intranet is now sustainable with a current Microsoft product stack and is used extensively by over 40,000 of their employees worldwide. The operations team in the USA and India ensures that the defined KPIs are met and user queries are resolved.

ARE YOU FACING A SIMILAR CHALLENGE?

CONTACT US NOW
  • Situation

  • Approach

  • Result

The global pharmaceutical company with over 40,000 employees faced the challenge of modernising its SharePoint-based intranet system while reducing operating costs for the platform and the hosted third-party web applications. These goals were to be achieved by consolidating the platform into three modern private cloud data centres in Europe, the USA and Asia, as well as by outsourcing operations to the US and India.

TEAL supported the project in definition, validation and operations implementation of the business continuity processes based on NetApp Snap Manager and offering support with the introduction of measures to increase security. These measures involved a Privilege Access Management solution based on DELL TPAM in conjunction with RSA SecurID for two-factor authentication. Furthermore, the Windows systems were hardened using Microsoft Best Practices and special AppLocker guidelines.

By setting up and securing private cloud data centres, the basis for the managed intranet service could be successfully built up and put into operation. The intranet is now sustainable with a current Microsoft product stack and is used extensively by over 40,000 of their employees worldwide. The operations team in the USA and India ensures that the defined KPIs are met and user queries are resolved.

ARE YOU FACING A SIMILAR CHALLENGE?

CONTACT US NOW

Telco Group –

Infrastructure modernisation

  • Situation

  • Approach

  • Result

In order to increase the customer functionality of the largest IP TV solution in Germany with nearly 2 million customers even further, the provider decided to implement a new version of the Microsoft IP TV solution. Along with the new release, the basic infrastructure was to be extended, modernized and to be brought up to the current software version.

TEAL supported the modernisation of the infrastructure by upgrading the server operating systems as well as their management systems (system centre configuration, operations, and data protection manager) in several environments with a total of over 1,000 servers. Furthermore, a modern certificate infrastructure, secured by HSM modules, was implemented and transferred to operations.

Thanks to the comprehensive infrastructure modernisation project, the basis was created to operate the new version of the IP TV solution securely, steadily and at a high performance. After the successful launch of the new version, the provider was able to offer their customers mobile access for the first time as well as an enhanced video-on-demand platform with many new and enhanced features.

ARE YOU FACING A SIMILAR CHALLENGE?

CONTACT US NOW
  • Situation

  • Approach

  • Result

In order to increase the customer functionality of the largest IP TV solution in Germany with nearly 2 million customers even further, the provider decided to implement a new version of the Microsoft IP TV solution. Along with the new release, the basic infrastructure was to be extended, modernized and to be brought up to the current software version.

TEAL supported the modernisation of the infrastructure by upgrading the server operating systems as well as their management systems (system centre configuration, operations, and data protection manager) in several environments with a total of over 1,000 servers. Furthermore, a modern certificate infrastructure, secured by HSM modules, was implemented and transferred to operations.

Thanks to the comprehensive infrastructure modernisation project, the basis was created to operate the new version of the IP TV solution securely, steadily and at a high performance. After the successful launch of the new version, the provider was able to offer their customers mobile access for the first time as well as an enhanced video-on-demand platform with many new and enhanced features.

ARE YOU FACING A SIMILAR CHALLENGE?

CONTACT US NOW

Public data centre operator –

Linux RPM build pipeline

  • Situation

  • Approach

  • Result

The development team of a public data centre operator in Austria couldn’t focus its full capacity on the development of new features and products because, with each new build, it had to carry out numerous manual steps until the packages were developed, tested and deployed. To resolve this drawback, an automated testing and deployment pipeline was to be implemented.

TEAL employees developed a standardised, fully automated and monitored build environment based on Red Hat RPM and augmented by the products of GitLAB, Jenkins and Mock. A distributed GIT instance stores and manages the source code which can be automatically compiled in the build environment by Jenkins at any time. Subsequently, MOCK processes create and check new RPM packages in a rule-based manner which can then be rolled out to the target systems via Satellite.

The client is now able to use the capabilities of its development team more efficiently to further develop business applications. At the same time, the number of errors was reduced thanks to the fully automated processes and test procedures and the deployment time for new releases was significantly reduced.

ARE YOU FACING A SIMILAR CHALLENGE?

CONTACT US NOW
  • Situation

  • Approach

  • Result

The development team of a public data centre operator in Austria couldn’t focus its full capacity on the development of new features and products because, with each new build, it had to carry out numerous manual steps until the packages were developed, tested and deployed. To resolve this drawback, an automated testing and deployment pipeline was to be implemented.

TEAL employees developed a standardised, fully automated and monitored build environment based on Red Hat RPM and augmented by the products of GitLAB, Jenkins and Mock. A distributed GIT instance stores and manages the source code which can be automatically compiled in the build environment by Jenkins at any time. Subsequently, MOCK processes create and check new RPM packages in a rule-based manner which can then be rolled out to the target systems via Satellite.

The client is now able to use the capabilities of its development team more efficiently to further develop business applications. At the same time, the number of errors was reduced thanks to the fully automated processes and test procedures and the deployment time for new releases was significantly reduced.

ARE YOU FACING A SIMILAR CHALLENGE?

CONTACT US NOW

INTERNATIONAL COMMERCIAL VEHICLE MANUFACTURER –

SECURE ADMINISTRATION OF THE ACTIVE DIRECTORY LANDSCAPE

  • Situation

  • Approach

  • Result

One of the leading manufacturers for commercial vehicles with more than 30,000 employees was faced with the challenge of implementing a comprehensive strategy program to realign its IT infrastructure and increase IT security. Protecting the Active Directory has a major impact on this increase in security. The corporation has a blueprint based on the Microsoft ESAE approach which it uses for this. The aim of the project was to adapt and implement this blueprint to the local circumstances.

TEAL supported manufacturer by analyzing the company blueprint, designing the target architecture and implementing the Secure Administration Environment (SAE). The solution consists of three Active Directory Forests for production (“Gold Forest”), administration (“Red Forest”) and the hypervisor (“Iron Forest”) with corresponding admin tiering. Each tier is protected by numerous measures such as 2-factor authentication, Privilege Administration Workstations (PAWs), Security Baseline GPOs and secure operating processes. This provides an exceptionally high level of protection against Pass the Hash and Pass the Ticket attacks.

The project has significantly increased the security level of all high-priority IT assets and has thus laid the foundation for further measures to increase IT security. Together with TEAL, the commercial vehicle manufacturer was not only able to implement the corporate blueprint, but also improve it. The SAE architecture has thus become a key element in the IT security of the entire corporation.

ARE YOU FACING A SIMILAR CHALLENGE?

CONTACT US NOW
  • Situation

  • Approach

  • Result

One of the leading manufacturers for commercial vehicles with more than 30,000 employees was faced with the challenge of implementing a comprehensive strategy program to realign its IT infrastructure and increase IT security. Protecting the Active Directory has a major impact on this increase in security. The corporation has a blueprint based on the Microsoft ESAE approach which it uses for this. The aim of the project was to adapt and implement this blueprint to the local circumstances.

TEAL supported manufacturer by analyzing the company blueprint, designing the target architecture and implementing the Secure Administration Environment (SAE). The solution consists of three Active Directory Forests for production (“Gold Forest”), administration (“Red Forest”) and the hypervisor (“Iron Forest”) with corresponding admin tiering. Each tier is protected by numerous measures such as 2-factor authentication, Privilege Administration Workstations (PAWs), Security Baseline GPOs and secure operating processes. This provides an exceptionally high level of protection against Pass the Hash and Pass the Ticket attacks.

The project has significantly increased the security level of all high-priority IT assets and has thus laid the foundation for further measures to increase IT security. Together with TEAL, the commercial vehicle manufacturer was not only able to implement the corporate blueprint, but also improve it. The SAE architecture has thus become a key element in the IT security of the entire corporation.

ARE YOU FACING A SIMILAR CHALLENGE?

CONTACT US NOW

IT service provider insurance –

Secure Global Authentication Platform (based on ESAE)

  • Situation

  • Approach

  • Result

As part of a major strategy programme, the international insurance group with 40,000 employees restructured its IT portfolio. The goal was to improve co-operation among the group’s individual companies and to intensify the use of global services. These services were to be recreated centrally and operated as safely as possible. The first step was to be the development of a global authentication platform for both Kerberos-based and token-based services.

TEAL assisted the client in defining the architecture and implementation of this global authentication platform in two new co-located data centres. The authentication platform consists of an active directory architecture based on Microsoft’s Enhanced Security Administrative Environment (ESAE, you can find out more about this in our blog) for Kerberos-based services and an ADFS platform for token-based applications. Administrative rights are granted only temporarily by a Privileged Access Management (PAM) solution to minimise the risk of being attacked (and from subsequent consequences) due to stolen passwords. By almost exclusively using Windows Server 2016 Core, the points of attack were reduced further. Hereafter, the monitoring of the use of high privileges can be further improved by the complete integration in an SIEM system and the pairing of the distribution of rights to the change and incident tools.

Thanks to the new authentication platform based on ESAE, the foundation for the globally shared services has been laid. These systems can now be operated within a secure environment and made available to the end user.

ARE YOU FACING A SIMILAR CHALLENGE?

CONTACT US NOW
  • Starting situation

  • Approach

  • Result

As part of a major strategy programme, the international insurance group with 40,000 employees restructured its IT portfolio. The goal was to improve co-operation among the group’s individual companies and to intensify the use of global services. These services were to be recreated centrally and operated as safely as possible. The first step was to be the development of a global authentication platform for both Kerberos-based and token-based services.

TEAL assisted the client in defining the architecture and implementation of this global authentication platform in two new co-located data centres. The authentication platform consists of an active directory architecture based on Microsoft’s Enhanced Security Administrative Environment (ESAE, you can find out more about this in our blog) for Kerberos-based services and an ADFS platform for token-based applications. Administrative rights are granted only temporarily by a Privileged Access Management (PAM) solution to minimise the risk of being attacked (and from subsequent consequences) due to stolen passwords. By almost exclusively using Windows Server 2016 Core, the points of attack were reduced further. Hereafter, the monitoring of the use of high privileges can be further improved by the complete integration in an SIEM system and the pairing of the distribution of rights to the change and incident tools.

Thanks to the new authentication platform based on ESAE, the foundation for the globally shared services has been laid. These systems can now be operated within a secure environment and made available to the end user.

ARE YOU FACING A SIMILAR CHALLENGE?

CONTACT US NOW