Andreas Melzer, Head of Security at EDEKA Digital, and Jörg Poschomwede, Security Operations Architect, share how Pentera helped validate real security risk and meet regulatory requirements during a large-scale IT transformation.
As EDEKA consolidated multiple regional infrastructures into a centralized environment, the team faced strict compliance requirements from the German Federal Office for Information Security (BSI). At the same time, ongoing projects could not be paused for traditional penetration testing, creating a gap between operational reality and regulatory expectations.
Pentera enabled EDEKA to perform automated penetration testing across both internal and remote networks without disrupting operations. The platform’s ability to correlate vulnerabilities into attack paths provided a clear view of how risks could escalate, allowing the team to prioritize what matters instead of managing long lists of findings.
With rapid deployment across distributed environments, Pentera helped identify critical issues such as Active Directory password weaknesses and streamline remediation workflows. The result is faster validation, improved prioritization, and continuous assurance that security remains intact during major infrastructure changes.