NEC XON secures mobile provider’s hybrid identities

March 2026 Access Control & Identity Management, Information Security, Commercial (Industry)

For a leading South African telecommunications operator, identity protection has become a strategic priority as identity-centric attacks proliferate across the industry. The company faced mounting pressure to secure both human and non-human identities across complex hybrid environments.

In response, NEC XON and Silverfort have helped modernise its identity security architecture, delivering comprehensive visibility, tighter control, and adaptive protection for every authentication event in its IT environment.

Like many large enterprises, this mobile provider relied heavily on Active Directory (AD) as the foundation of its identity infrastructure. However, legacy protocols, service accounts and complex privileged access requirements introduced significant risk. As a result, the security team faced several critical challenges:

● Securing privileged administrative accounts across AD and mission-critical systems.

● Enforcing multi-factor authentication (MFA) for both human and non-human identities.

● Detecting and blocking lateral movement during potential compromise scenarios.

● Gaining visibility into service account usage and high-risk authentication paths.

● Integrating identity threat detection and response (ITDR) insights into Microsoft Sentinel SIEM for real-time monitoring.

Traditional security tools struggled to provide this level of visibility and control, particularly for legacy systems and machine-to-machine (M2M) authentications that do not automatically support MFA.

Unified identity protection with Silverfort

NEC XON partnered with Silverfort to address the provider’s identity security challenges. Silverfort’s Unified Identity Protection Platform integrates seamlessly with Active Directory and cloud identity providers, delivering holistic visibility and control across all authentication activities.

As a result, the company now benefits from a significantly enhanced security posture, including:

Adaptive MFA enforcement: MFA is extended to every identity, including users, administrators and service accounts, even on systems that previously could not support it.

Privileged account protection: High-risk administrative authentications are secured through step-up MFA and access policies that dynamically assess user behaviour.

Just-in-time (JIT) access controls: Privileges are granted only for the precise time and context required, reducing exposure during and after sessions.

Service account visibility: All service accounts are identified, dependencies mapped, and authentication activity monitored to detect anomalies.

Identity threat detection and response (ITDR): Suspicious authentication activity is detected in real time and integrated directly into Microsoft Sentinel, providing the SOC with actionable intelligence.

“Silverfort reimagines identity security, turning MFA into a dynamic control that verifies every action, not just every login. It represents a new way of thinking about how identities interact and establish trust,” says Armand Kruger, head of Cybersecurity at NEC XON.

Rapid value and measurable impact

Deployment proved both fast and effective. The solution delivered immediate insight and tangible risk reduction. The company said that what stood out was how quickly it could start identifying risks and enforcing security controls with Silverfort. It was not just fast to deploy, it was fast to deliver value. “This is the fastest rollout we have ever completed, which speaks volumes,” says Kruger.

“This deployment fundamentally changed how identities are protected,” says Michael de Neuilly Rice, cyber architect at NEC XON. “The introduction of ITDR capabilities enables continuous monitoring, adaptive authentication and rapid response to identity-based threats - significantly strengthening our client’s security posture and resilience.”

The partnership between the provider, NEC XON and Silverfort demonstrates how proactive collaboration can drive meaningful security transformation. By modernising identity protection across both human and non-human identities, the company has established a new benchmark for Zero Trust maturity within the telecommunications sector.

The focus has shifted from reactive defence to proactive protection, enabling the organisation to anticipate, detect, and respond to identity-based threats before they escalate.


Credit(s)




Share this article:
Share via emailShare via LinkedInPrint this page



Further reading:

Balancing secure access control and fire safety
Editor's Choice Access Control & Identity Management Fire & Safety
In modern building management, few topics create as much tension as the intersection between security access control and fire evacuation safety. Nichola Allen of G2 Fire sheds light on this delicate balance.

Read more...
Securing water infrastructure for industry and community
Access Control & Identity Management Fire & Safety Government and Parastatal (Industry)
The Badirammogo Water User Association needed a solution that could secure remote sites, reduce reliance on physical guards, and ensure uninterrupted service delivery while remaining aligned with its values and long-term strategy.

Read more...
Disconnect between confidence in identity security and operational reality
Access Control & Identity Management News & Events
New FIDO Alliance and HID study reveals gap between identity security confidence and reality; 94% of enterprises claim they can revoke employee access within 24 hours, yet 35% experienced delays or failures in the past two years.

Read more...
Paxton Solo training available to security installers
Paxton Access Control & Identity Management News & Events
Following the launch of Solo, Paxton’s brand-new access control system, the security manufacturer is rolling out dedicated Solo training sessions across South Africa to support security installers working with the system.

Read more...
NEC XON detects and stops ransomware attack
NEC XON Information Security IoT & Automation
Ransomware attacks rarely begin with chaos. More often, they start quietly, with probing, mapping, and patient reconnaissance inside a target’s network. That was the situation facing a global recruitment firm when cybercriminals attempted to navigate its systems.

Read more...
Free POPIA Action List for gated access
ATG Digital News & Events Residential Estate (Industry) Training & Education Commercial (Industry)
ATG Digital, in partnership with CIVITAS, released the POPIA Responsible Party Action List. It is a free, practical guide for HOAs, body corporates, managing agents, landlords, employers and institutions. It helps them move from assuming compliance with the Protection of Personal Information Act (POPIA) to proving it.

Read more...
Sophos establishes South African legal entity to strengthen local operations
News & Events Information Security
Global cybersecurity company, Sophos, has announced the formation of its local legal entity, which will support local invoicing, partner enablement, compliance requirements and expanded regional investment.

Read more...
71% of organisations suffered an identity breach
News & Events Information Security
The State of Identity Security 2026 report from Sophos finds human error and poor non-human identity management are the root causes of most attacks, as agentic AI accelerates the risk.

Read more...
Cyber resilience is the real defence
Security Services & Risk Management Information Security Infrastructure
Cyber resilience has evolved into a form of strategic agility, ensuring that when an interruption occurs, the business does not just survive; it snaps back into place before the market even notices a pause.

Read more...
Controlling access for people and vehicles
IDEMIA STid Security Technews Publishing Editor's Choice Access Control & Identity Management Asset Management Industrial (Industry) Mining (Industry)
When it comes to access control, the security requirements of mines and the industrial sector are similar, requiring a layered approach that combines physical barriers, digital authentication, and continuous monitoring to protect personnel, assets, and operational continuity.

Read more...










While every effort has been made to ensure the accuracy of the information contained herein, the publisher and its agents cannot be held responsible for any errors contained, or any loss incurred as a result. Articles published do not necessarily reflect the views of the publishers. The editor reserves the right to alter or cut copy. Articles submitted are deemed to have been cleared for publication. Advertisements and company contact details are published as provided by the advertiser. Technews Publishing (Pty) Ltd cannot be held responsible for the accuracy or veracity of supplied material.




© Technews Publishing (Pty) Ltd. | All Rights Reserved.