Manufacturing

ThermOmegaTech strengthens CMMC logging and monitoring with Log360

ThermOmegaTech
ThermOmegaTech

About ThermOmegaTech

ThermOmegaTech, Inc. designs and manufactures self-actuating thermostatic temperature control valves and thermal actuators used in railroad, industrial, commercial plumbing, and aerospace and defense applications. The company also provides electronics contract manufacturing and printed circuit board assembly services and maintains AS9100D certification to support aerospace and defense requirements.

  • Organization

    ThermOmegaTech
  • Country

    US
  • Industry

    Manufacturing

Business challenges

We needed to make sure we were upping our game for CMMC compliance, which required a lot of additional logging and monitoring.

 

George Marhelko, cybersecurity analyst at ThermOmegaTech

As ThermOmegaTech expanded into government contracts, the organization needed to strengthen its security monitoring capabilities to support Cybersecurity Maturity Model Certification (CMMC) requirements. The team required greater visibility into security events across its hybrid environment while maintaining a cost-effective approach to log collection and analysis.

George Marhelko, cybersecurity analyst at ThermOmegaTech, noted that Microsoft's cloud-based approach to large-scale log processing could become expensive, explaining that "it cost thousands upon thousands of dollars to go through all the event logs and such from numerous computers." As a result, the team began evaluating alternatives that could provide comprehensive monitoring while helping control log processing costs.

In addition, ThermOmegaTech needed visibility into administrative account activity, server shutdown events, and communication failures affecting logging systems. The organization also required a solution capable of supporting both its on-premises Active Directory infrastructure and cloud-connected Microsoft 365 environment as its compliance program continued to mature.

The solution: ManageEngine Log360

ThermOmegaTech deployed Log360 on premises to centralize logging and monitoring while supporting its compliance objectives. As an existing ManageEngine customer already using ServiceDesk Plus and Endpoint Central, the organization evaluated Log360 as a natural extension of its existing IT management ecosystem.

Alongside Log360, the team implemented AD auditing and related identity management solutions to strengthen visibility across its environment. The deployment focused on monitoring the activities most relevant to CMMC requirements, including administrative account actions, server shutdown notifications, and failures affecting logging infrastructure.

Because ThermOmegaTech operates in a hybrid environment, Log360 provided a practical way to monitor both on-premises systems and cloud-connected resources without relying exclusively on cloud-based log processing. The organization also plans to expand its monitoring program over time by onboarding additional non-Windows systems through syslog integration as security and compliance requirements evolve.

Outcomes and improvements

There's been nothing but a positive experience so far.

 

George Marhelko, cybersecurity analyst at ThermOmegaTech

With Log360, ThermOmegaTech established a centralized logging and monitoring foundation aligned with its CMMC objectives while maintaining control over log management costs. The platform provides visibility into administrative activity, server shutdown events, and critical infrastructure notifications across the organization's hybrid environment. By consolidating monitoring and audit-related capabilities into a unified platform, Log360 gives the security team a practical framework for supporting its evolving CMMC compliance program and expanding monitoring coverage as requirements mature.

Streamlined implementation and expert support

It's always good to have people who know the system clean up our mess, for lack of a better term.

 

George Marhelko, cybersecurity analyst at ThermOmegaTech

ThermOmegaTech engaged ManageEngine's OnboardPro service to accelerate deployment and gain guidance throughout the implementation process. The onboarding team helped the organization navigate product configuration, version-related considerations, and implementation challenges that may have been difficult to identify independently.

Direct access to product experts enabled ThermOmegaTech's team to better understand the platform, resolve issues more efficiently, and align the deployment with its operational and compliance requirements. The experience also instilled additional confidence as ThermOmegaTech continued rolling out AD-related management capabilities and expanding the use of ManageEngine solutions across its environment.

About OnboardPro

OnboardPro is a ManageEngine service that provides solution implementation to clients upon request. This service includes the installation and customized configuration of ManageEngine solutions. It enables clients to seamlessly begin work without worrying about the complexities of product installation, deployment, and use. Every client environment is unique and requires additional support beyond the basic installation and standard features. With custom onboarding, clients have the option to engage a team of product experts to manage the installation, implementation, customization, and training based on their business needs. For more information, visit manageengine.com/onboarding/manageengine-onboardpro-iam-and-siem-professional-service.html.

About Log360

Log360 is a unified SIEM solution with integrated DLP and CASB capabilities that detects, prioritizes, investigates and responds to security threats. Vigil IQ, the solution's TDIR module, combines threat intelligence, an analytical Incident Workbench, ML-based anomaly detection, and rule-based attack detection techniques to detect sophisticated attacks, and it offers an incident management console for effectively remediating detected threats. Log360 provides holistic security visibility across on-premises, cloud, and hybrid networks with its intuitive and advanced security analytics and monitoring capabilities. For more information about Log360, visit manageengine.com/log-management/ and follow the LinkedIn page for regular updates.

Log360 is a unified SIEM solution with integrated DLP and CASB capabilities that detects, prioritizes, investigates, and responds to security threats. It combines threat intelligence, machine learning-based anomaly detection, and rule-based attack detection techniques to detect sophisticated attacks, and offers an incident management console for effectively remediating detected threats. Log360 provides holistic security visibility across on-premises, cloud, and hybrid networks with its intuitive and advanced security analytics and monitoring capabilities.

Follow Us

2022 Zoho Corporation Pvt. Ltd. All rights reserved.