Challenge.
The Karlsberg Verbund wanted to future-proof its IT infrastructure – ensuring it was clearly structured, secure and easy to manage. The existing systems were to be migrated to a modern, cloud-based environment that connects all sites and is secured using a zero-trust approach. Windows 11? – the Karlsberg Verbund now wanted to make this the standard! With Microsoft Defender solutions providing the best protection – from client to server. At the same time, device management was to be centralised, policies were to be applied automatically, and processes were to become more transparent. The goal: an IT system that is secure, efficient and flexible, and firmly embeds the Zero Trust approach within the organisation.
Our collaboration with Bechtle was swift, direct and reliable. The transition to the new system was straightforward thanks to close coordination. Whenever there was a hiccup, Bechtle responded immediately. Today, we operate within a homogeneous IT environment with significantly enhanced security. The Defender solutions provide noticeably better protection – particularly Defender for Identity, which detects suspicious activity at an early stage and reports it directly to the cloud.
Thorsten Wagner, Head of IT Infrastructure, Karlsberg Connect & Sales GmbH
Solution.
To modernise the Windows clients within the Karlsberg network in a future-proof manner, Bechtle completely migrated the existing traditional Active Directory structures to a cloud-based solution based on Microsoft 365 and an Azure tenant. At the heart of the system: Microsoft Intune for the centralised management of devices and policies, as well as for compliance. Bechtle analysed the existing group policies, remapped them and migrated them step by step to Intune. In parallel, the project team prepared for the rollout of Windows 11 – automated via Windows Autopilot and with clearly defined processes for each end device. During a pilot phase, selected users within the company tested the new environment, provided feedback and helped to refine the processes. The Karlsberg Verbund subsequently successfully migrated 650 clients and 120 servers. In addition, the group now uses the complete Microsoft Defender Suite – comprising Defender for Endpoint, Defender for Identity and Defender for Office – to provide comprehensive protection for all clients and servers. Conditional Access consistently implements the zero-trust approach. The result: Windows 11 as a homogeneous, centrally managed IT landscape. Today, the Karlsberg Verbund deploys its devices automatically, policies are applied centrally, and all systems work seamlessly together.
Business benefits.
- A modernised IT environment through the widespread deployment of Windows 11.
- Maximum protection provided by Entra ID and the integrated security modules of Windows 11 – ensuring reliable device security.
- A homogeneous infrastructure with seamlessly integrated Microsoft services – for a consistent system.
- Reduced administrative overhead thanks to unified device management in Azure.
- Integration of all components creates stable interaction between cloud, security and management.
- Simpler administration through centralised policy management via Entra ID and Intune significantly reduces the workload.
- Automated provisioning with Autopilot – for rapid deployment of new devices.
- The foundation for Zero Trust is laid by a modern architecture that redefines security and access control.
- Secure threat detection via the Microsoft Defender Suite actively protects against attacks at all levels.