Austrotherm Case Study
This customer story shows how manufacturer, Austrotherm, consolidates protection with Check Point™ SASE, Email Security and Spark Firewalls to enable zero-trust access and simplify security management. Read the story to learn from Austrotherm's experience and be inspired by the results-including blocking 20-30% more phishing attacks and connecting eight new facilities in one day.
Frequently Asked Questions
Why did Austrotherm rethink its IT security approach?
Austrotherm needed to rethink its IT security because its existing setup could no longer keep up with the scale and complexity of a manufacturing business operating **36 production sites in 13 countries** and employing about **1,400 people**.
The main pain points were:
The main pain points were:
- Escalating phishing and email threats: The company relied on standard antivirus and firewall tools that were letting too many phishing emails through. The volume of suspicious messages was so high that the help desk was flooded with tickets asking IT to verify whether emails were legitimate.
- Unreliable remote access: A certificate-based VPN client caused intermittent connectivity and latency. All remote traffic was routed through a single access point in Austria, which slowed down users across Europe and created operational bottlenecks.
- Complex OT/IT environment: Austrotherm runs modern Windows 11 systems in offices alongside legacy Windows XP and Windows 98 machines on the production floor. This mix required strict segmentation and access control to prevent incidents in one area from impacting the other, but the existing tools didn’t provide enough visibility or control.
- Fragmented security tools: The three-person IT security team had to jump between multiple management consoles, making incident detection and response slow and error-prone.
- Growth and acquisitions: With a major acquisition in 2025 adding eight new production facilities, Austrotherm needed a scalable, unified security platform that could integrate new sites quickly and securely.
What solution did Austrotherm implement with Check Point?
Austrotherm reshaped its security architecture by standardizing on an integrated Check Point platform that combines cloud-delivered SASE with on-premises controls and unified management.
The key components were:
The key components were:
- Check Point SASE (Internet Access and Private Access):
- Introduced a zero trust network access (ZTNA) model.
- Deployed multiple gateway locations across Europe so users connect to the nearest point of presence instead of backhauling everything through Austria.
- Applied granular firewall rules and access controls so only authenticated users on compliant devices can reach specific resources.
- Enabled secure, auditable access for third-party vendors who need temporary connectivity to manufacturing equipment.
- Check Point Email Security:
- Replaced the previous email security solution that was missing many phishing attempts.
- Integrated directly with Microsoft 365 and could be configured in “five minutes,” according to Austrotherm’s Head of Group IT.
- Gave users self-service access to quarantined messages and gave IT detailed context on sender history and communication patterns.
- Hybrid mesh network with Check Point Spark Firewall:
- Combined cloud-delivered SASE with on-premises firewalls at larger sites.
- Used VLAN segmentation to separate office networks from production networks.
- Implemented jump hosts as the only authorized path for IT staff to reach legacy manufacturing systems.
- Extended protection into Microsoft Azure with Check Point virtual firewalls, aligning cloud and on-premises policies.
- Unified management via Check Point Portal:
- Provided a single console to configure every security tool and see the overall security posture.
- Offered a consistent interface across product families, which reduced the learning curve and made it easier for a small team to manage infrastructure across 13 countries.
- Implementation support and ongoing expansion:
- Partner Bacher Systems assisted with design and initial configuration.
- Once live, Austrotherm’s team handled day-to-day operations, with Check Point support available as needed.
- Over time, Austrotherm expanded to include Check Point Browser Security to protect AI-related data as employees increasingly use tools like ChatGPT.
What measurable results did Austrotherm achieve?
After deploying Check Point’s unified platform, Austrotherm saw measurable improvements across security, user experience, and IT efficiency.
1. Stronger email security
2. Reliable, user-friendly remote access
3. Operational efficiency for a small IT team
4. Faster, safer business integration
5. Foundation for ongoing growth
1. Stronger email security
- Check Point Email Security blocked 20–30 more phishing attempts than the previous solution.
- Help desk tickets asking IT to verify suspicious emails dropped by 70%.
- The IT team gained more confidence that most phishing attacks were being blocked before reaching users.
2. Reliable, user-friendly remote access
- In the first six months after full deployment, the IT team received zero tickets related to VPN or remote access issues.
- Distributed gateways removed the latency caused by routing all traffic through Austria, so remote work now feels “nearly as if you’re working in the office.”
- Employees simply turn on their computers, get internet access, and are immediately connected to the network to work from anywhere.
3. Operational efficiency for a small IT team
- The unified management console significantly reduced daily operational overhead.
- According to the Head of Group IT, Check Point products now require “so little work each day” that the team can focus on other projects and move broader IT initiatives forward faster.
4. Faster, safer business integration
- During the acquisition of Italy’s largest installation materials company, Austrotherm connected eight facilities—from Northern to Southern Italy—to a central data center in just one day.
- This connection was established while simultaneously migrating computers and file systems, without introducing additional security risk.
5. Foundation for ongoing growth
- The Check Point Infinity-based architecture, with hybrid mesh networking and SASE at its core, now supports Austrotherm’s expanding European operations.
- By standardizing on a single, prevention-first platform, Austrotherm is better positioned to scale securely as it continues to grow and adopt new technologies, including AI tools.

