Mainstream Renewable Power

Mainstream Renewable Power uses Darktrace’s Self-Learning AI to stop advanced email and cloud threats, complement Microsoft’s defenses, and strengthen security across its expanding global, cloud-first environment.
About the company

Mainstream Renewable Power is a global pure-play renewable energy developer, delivering onshore and offshore wind and solar projects through offices and operations around the world

Industry
Energy & Utilities
Employee #
Country

"The implementation of Darktrace / EMAIL went so smoothly, and delivered such tangible rapid results, that it was a logical step for us to deploy the Darktrace ActiveAI Security Platform,"

Mark Kane, Global Head of Information Solutions

The journey to the cloud with Microsoft

In 2014, Mainstream Renewable Power began its transition to the cloud in support of its expansion into new markets. By leveraging Microsoft's global infrastructure, it was able to increase efficiency and flexibility, scaling to enable rapid global expansion.

Mainstream embraced the full suite of Microsoft products, first implementing Office 365, CRM Online, and SharePoint Online, before later expanding to include PWA, Dynamics 365 F&O, and Microsoft Teams in 2019 to enable hot desking and remote working. Mainstream was also one of the first companies to implement MS Sentinel in 2019 to monitor its entire cloud infrastructure.

This journey to the cloud and remote working blurred the traditional paradigm of the network perimeter and brought new security challenges.  Faced with an upsurge in cyber-threats in the email and network realm, Mainstream turned to Darktrace in 2020 to complement Microsoft's security products, enhance the security team, and protect its critical digital assets.

Protecting the inbox with AI

Of high priority for the security team at Mainstream Renewable Power was email. Faced with an increasing number of email threats, it was drawn to the self-learning approach of Darktrace / EMAIL as well as its ability to autonomously respond to attacks targeting the inbox.

Despite stringent rule-based email filtering within Office 365 and rigorous internal training programs, the growing sophistication of email attacks meant that the threat was always present. "It was hard to shake the 'click first, ask questions later' mindset, where colleagues assumed an email received on their work email account was safe," explains Robert Kennedy, Head of Cyber Security and Infrastructure at Mainstream.

Darktrace / EMAIL complements Mainstream's existing security controls with an AI-native approach that that learns 'normal' patterns of communication and identifies anomalous behavior indicative of threat. This contextual understanding enables the technology to take surgical action against email attacks before they reach the inbox, protecting not only the recipient but anyone else targeted by that same email.

"We needed something that could not only monitor but respond in real time 24/7," describes Mark Kane, Global Head of Information Solutions. Darktrace / EMAIL was set up in under an hour and immediately began learning 'on the job', understanding the 'patterns of life' within Mainstream's email environment in order to stop novel and sophisticated email threats.

Extending security across the enterprise

Seeing the results of Darktrace's Self-Learning AI in the email environment gave Mainstream the confidence to expand its coverage to the wider network, Azure, and SaaS applications. "The implementation of Darktrace / EMAIL went so smoothly, and delivered such tangible rapid results, that it was a logical step for us to deploy the Darktrace ActiveAI Security Platform," Kennedy comments.

The team were already leveraging all of Microsoft's security products including Sentinel, but Darktrace's AI and Autonomous Response capabilities offered an additional layer of defense, covering the full range of threats including those 'unknown unknowns' never seen before in the wild. "Darktrace and Microsoft offer complementary approaches, giving our security team peace of mind," explains Kane. "We know that if something slips through the net on one side, it will be picked up on the other."

The security team look forward to working together with Microsoft and Darktrace as it finds further synergies across their technologies, including Darktrace's integration with Sentinel in 2021.

Key takeaways

  • Mainstream strengthens email security with AI-driven detection and real-time autonomous response, catching sophisticated threats missed by rule-based filtering.
  • Unified visibility across network, Azure, and SaaS applications helps close gaps created by cloud expansion and remote work.
  • Darktrace complements Microsoft’s security stack, providing an extra layer of protection that escalates only genuine anomalies and reduces pressure on the security team.

Explore more customer stories

See how others stay one step ahead with Darktrace