Technology Category
- Cybersecurity & Privacy - Network Security
- Cybersecurity & Privacy - Security Compliance
Applicable Industries
- Automotive
- National Security & Defense
Applicable Functions
- Quality Assurance
Use Cases
- Leasing Finance Automation
- Tamper Detection
Services
- Cloud Planning, Design & Implementation Services
- Cybersecurity Services
About The Customer
CARR Auto Group is a family-owned business that sells and services Chevrolet, Subaru, Buick, and GMC vehicles. The company has several locations across Northwest Oregon and Southwest Washington and serves customers local to the Pacific Northwest and well beyond. The company was faced with the challenge of complying with the updated Standards for Safeguarding Customer Information (Safeguards Rule) under the Gramm-Leach-Bliley Act (GLBA), which required enhanced information security, including automated patch management. The system administrator at CARR Auto Group, Matt Lutjen, was responsible for ensuring compliance with these regulations.
The Challenge
In October 2021, the Federal Trade Commission issued amendments to the Standards for Safeguarding Customer Information (Safeguards Rule) under the Gramm-Leach-Bliley Act (GLBA), which required auto dealerships to enhance their information security, including automated patch management. CARR Auto Group, a family-owned business that sells and services Chevrolet, Subaru, Buick, and GMC vehicles, was faced with the challenge of complying with these updated regulations by June 9, 2023. The system administrator at CARR Auto Group, Matt Lutjen, was struggling to keep all endpoints updated with the latest security patches, a task that was proving to be difficult and time-consuming. As the sole person responsible for everything from basic desktop support to server and network security, he was using WSUS for patching, which did not provide a way for him to ensure updates were deployed successfully or to obtain visibility into endpoints. This led to him spending 15 hours per week outside of work to keep all PCs updated, a process that was inefficient and left the company open to security vulnerabilities.
The Solution
To address the challenge, Matt started looking for a replacement for WSUS. He needed a solution that would not only do the job quickly but also provide visibility into his endpoints. After ruling out PDQ Deploy due to its lack of reporting features, he chose Action1 for its straightforward patching functionality. Action1 allowed him to automate deployment for both OS and third-party updates, a feature that WSUS lacked. Additionally, Action1 provided him with valuable extra capabilities, such as reporting, scripting, and a built-in remote desktop. With Action1, Matt was able to develop intelligent policies for OS and third-party updates to automatically remediate security vulnerabilities as required by the updated Safeguards Rule. He also used Action1's reporting feature to document all key events across his endpoints and collect audit trails, which helped him establish cybersecurity practices in line with the FFIEC guidelines for GLBA compliance.
Operational Impact
Quantitative Benefit
Case Study missing?
Start adding your own!
Register with your work email and create a new case study profile for your business.
Related Case Studies.

Case Study
Integral Plant Maintenance
Mercedes-Benz and his partner GAZ chose Siemens to be its maintenance partner at a new engine plant in Yaroslavl, Russia. The new plant offers a capacity to manufacture diesel engines for the Russian market, for locally produced Sprinter Classic. In addition to engines for the local market, the Yaroslavl plant will also produce spare parts. Mercedes-Benz Russia and his partner needed a service partner in order to ensure the operation of these lines in a maintenance partnership arrangement. The challenges included coordinating the entire maintenance management operation, in particular inspections, corrective and predictive maintenance activities, and the optimizing spare parts management. Siemens developed a customized maintenance solution that includes all electronic and mechanical maintenance activities (Integral Plant Maintenance).

Case Study
Monitoring of Pressure Pumps in Automotive Industry
A large German/American producer of auto parts uses high-pressure pumps to deburr machined parts as a part of its production and quality check process. They decided to monitor these pumps to make sure they work properly and that they can see any indications leading to a potential failure before it affects their process.