From manual log management to automated efficiency: MKM Commercial Holdings LLC's journey with ADAudit Plus
About MKM Commercial Holdings LLC
MKM Commercial Holdings LLC is the holding company of the WAFI group. It is a multi-diversified conglomerate that serves a broad cross-section of industries and specializes in retailing. Its head office is in Dubai, United Arab Emirates.
-
Country
Dubai, UAE -
Industry
Retail -
Employees
500-5000
Business challenge:
MKM had to manage the logs generated by all the devices in its AD environment manually. It did not have an automated solution in place to process and store these logs. Every time there was an issue, it had to depend on native event and Windows logs. As the organization grew, there were enormous amounts of data being generated, and manual management of logs was not practical anymore.
The solution: ADAudit Plus
MKM chose ADAudit Plus for its automated AD monitoring and reporting capabilities for all the devices in its AD environment. ADAudit Plus helps the company monitor its entire AD environment and gives it visibility into the entire network.
With ADAudit Plus, monitoring and managing the AD environment became easy for MKM. With AD auditing, MKM is able to track changes made to AD objects, such as OUs, users, groups, and computers, with details such as the old and new values of the changed attributes. It also closely monitors privileged users, and admins are immediately alerted to changes made to privileged user accounts. By closely monitoring users' actions with 24/7 real-time auditing, ADAudit Plus helps prevent privilege abuse. With ADAudit Plus, MKM gets a single, correlated view of all activities happening across the AD environment.
User monitoring in ADAudit Plus enables MKM to audit user management actions, including creation, deletion, password resets, and permission changes, along with details on who did what, when, and from where. The company can track when users are added or removed from security and distribution groups to ensure that users have the bare minimum privileges. Not only does ADAudit Plus audit and track all these things, but it also generates an alert every time changes are made so they can be tended to immediately. The solution's alert profiles can also be configured based on MKM's requirements.
ADAudit Plus' UBA leverages machine learning to monitor unusual user behavior by analyzing behavioral patterns over a period of time and creating a baseline of each user’s activity. When deviations are detected from the user’s normal behavior, it generates alerts. Using UBA, MKM was able to track the logon activities, user management activities, process activities, and file activities of every user.
ADAudit Plus also has numerous reports to monitor MKM's Windows AD and Server environments. These precise, reliable reports give the company a bird's-eye view of everything that is happening in AD, making the job easier.
About ADAudit Plus:
ADAudit Plus is a UBA-driven auditor that helps keep your AD, Azure AD, file systems (including Windows, NetApp, EMC, Synology, Hitachi, Huawei, and Amazon FSx for Windows), Windows servers, and workstations secure and compliant. ADAudit Plus transforms raw and noisy event log data into real-time reports and alerts, enabling you to get full visibility into activities happening across your Windows Server ecosystem in just a few clicks. For more information about ADAudit Plus, visit manageengine.com/active-directory-audit.