Valvoline Inc. Replaces SEG with Autonomous AI to Stop Evolving Threats
Abnormal positions automotive services giant Valvoline to stay ahead of sophisticated attacks and accelerate its AI initiatives.
Valvoline Inc., a Fortune 1000 company, leads the industry with automotive service innovations that simplify preventive vehicle maintenance. After recently selling its products division, Valvoline’s priority is increasing sales at its 1,900+ Instant Oil Change locations across North America. “Our growth focus requires us to modernize our technology and be data-driven,” said Corey Kaemming, Senior Director, Information Security. “From a security standpoint, we have to move fast to keep up with the changing attack tactics.”
The Valvoline Inc. Email Security Challenge
To protect company and customer data, Valvoline used a SEG in conjunction with Microsoft 365’s native security and an API-based solution. Despite using three solutions, email attacks still consistently reached inboxes. “There was a lot of spear phishing and impactful invoice fraud—everything from $5,000 to millions. We put a focus on cybersecurity awareness and training, but humans will always make mistakes,” Kaemming said.
It was clear that Valvoline needed a different cloud email security solution—one that could more effectively detect and stop malicious emails, deploy easily, and automate tasks so Kaemming’s team could spend less time on manual investigation and remediation.
Why Valvoline Inc. Chose Abnormal
Abnormal’s AI-native detection and automation capabilities have enabled the security team to reallocate their time to other tasks. “The total cost of ownership for our SEG and the other API-based solution was very high because they weren’t set-it-and-forget-it tools. We’d had four to five analysts spending 90% of each day on email-related tasks; Abnormal allowed us to get away from that manual work,” Kaemming said. The company has since removed its SEG.
Additionally, with AI Security Mailbox, users receive quick, personalized replies to their report submissions, improving threat awareness and encouraging ongoing reporting. The Abnormal dashboard also allows the team to identify attack trends, and Abnormal’s seamless integration with other tools like Valvoline’s SIEM supports cross-platform data utilization.
Fill out the form to get the Customer Case Study.