Truth in IT
    • Sign In
    • Register
        • Videos
        • Channels
        • Pages
        • Galleries
        • News
        • Events
        • All
Truth in IT Truth in IT
  • Data Management ▼
    • Converged Infrastructure
    • DevOps
    • Networking
    • Storage
    • Virtualization
  • Cybersecurity ▼
    • Application Security
    • Backup & Recovery
    • Data Security
    • Identity & Access Management (IAM)
    • Zero Trust
    • Compliance & GRC
    • Endpoint Security
  • Cloud ▼
    • Hybrid Cloud
    • Private Cloud
    • Public Cloud
  • Webinar Library
  • TiPs
  • DRAW

Toyota Material Handling Modernizes Security with Fortinet

Fortinet
05/08/2026
0 (0%)
Share
  • Comments
  • Download
  • Transcript
Report Like Favorite
  • Share/Embed
  • Email
Link
Embed

Transcript


My name is Michael Nichols. I am the Information Security Architect at TMH, Toyota Material Handling North America. Toyota Material Handling is the industry leader in forklift manufacturing. We build a lot of different material handling solutions from tuggers to forklifts to other forms of heavy machinery handling. So our campus is 57 acres, I believe. We have four plants. We're building a fifth currently. In the next two years, we're going to actually be building a sixth campus that is about a mile away. Between that, we have four plants in our main campus that are all interconnected through single-mode fiber coming back to our main data center inside the Plant One facility. My concern would come down to allowance of traversal networks, right? So east-west traffic, being able to get to things you shouldn't be able to get to. I want to make sure that I can secure the network from a routing standpoint as well as access-based and role-based access configurations. Honestly, visibility. We don't know what we don't know. We can't fix what we don't see. So being able to shine a light on those issues wherever possible. Toyota had a legacy hardware problem, we can say that. We had a lot of older, aged-out infrastructure and the question was, what do we need to do to get up to a modernization, right? We were dealing with a lot of outages caused by the old infrastructure and we were running into issues without the ability to add on support contracts because a lot of those devices were end-of-support, end-of-sale, so we weren't able to keep those up to date. We ran into firmware problems, vulnerability problems, so we had to go and find a solution. We thought about a lot of different options, but ultimately Fortinet met our demand. They were in line with our Toyota core values. They allowed us a lot more insight into the network than we had before and it was really easy to deploy. So starting my journey on the networking side, we kicked off the project to upgrade our entire core networking as well as our LAN network throughout our campus. On top of that, we just kept adding Fortinet products, so it was only natural to look into the FortiEDR, the FortiDeceptor, and the other security offerings that Fortinet has. We have edge FortiGates, right? So we have IBGP configuration between five zones. Those zones are plant, enterprise, data center, wireless, and DMZ. The DMZ is segregated off of the network. The entire process probably took 18 months and ultimately it was really great. We did utilize Fortinet professional services and we were able to come to solutions and find problems that we didn't know we had. We do have our FortiGates managed by the FortiManager. We do a lot of local changes and we allow those changes to sync up to the FortiManager to save time. But if it's a bigger change, then we look to utilize the workflow management capabilities of FortiManager to go in line with our CAV process. Everything is managed through a switch controller and an AP controller. So right now we're utilizing FortiNAC on the wireless. We have three NAC-controlled SSIDs across our entire campus and among those three SSIDs, there's about 14 different VLANs. It's been a fantastic tool for securing, hardening, and bettering the user experience for the wireless solution we have. We do FortiEDR Cloud. We install the on-prem core pieces as well as the collectors on our endpoints. We chose FortiEDR because it works with the other Fortinet products. We wanted an endpoint solution that we could manage the clients when they're both on-network and off-network. We have such a remote workforce nowadays since COVID, so being able to monitor that device wherever it goes was key for us. FortiDeceptor really helps us with what's going on inside of our network. You've got the north and south, east and west. A lot of times you're going to lose visibility within the actual LAN network unless you have something that can see that or report on that. Also, FortiDeceptor helps with our IoT or OT environment. As we know, OT is very sensitive on what type of security products you roll out, what type of agents you want to roll out. So being able to take FortiDeceptor and have it sit within that OT environment and provide a target for potential threat actors helps to give us visibility we didn't have before. Starting with EDR, that's really helped because we're a very lean team. Toyota is known for being lean. With FortiEDR, there's more proactive security controls in place that will stop things from happening instead of just getting alerted after the fact. With FortiNDR, I look at that as helping with the east and west traffic within our environment, understanding the flows and the different types of threats that might be within our network that we may not see that may not pass a firewall. I see that working in conjunction with FortiDeceptor, also FortiEDR, being able to identify a threat and potentially isolate that threat. Coming from the networking side, implementing the FortiGates with the switching and APs, being able to have that single place to go and manage everything has been very helpful. You don't have to go, all right, I need to go here to do the APs, I need to go here to do the switches, or go manage everything individually. It's all done within one place. So taking that, the other Fortinet products have, again, a similar look and feel, that FortiOS feel. It's like two clicks to get somewhere instead of having to make a change in four different locations, and it makes training a lot easier, it makes triaging network-related issues a lot easier, it makes bringing people online, if they're going to be accessing the network through a new device that's not been registered yet, we can register them quickly through bring your own device or pre-profile registration through the NAC. So I think that the FortiOS product, the entire operating system as a whole, as that single pane of management is fantastic. I think the real benefit there is more along the lines of the communication between the teams, I think the ability for the security team to communicate well with us, and we can go back and forth and say, hey, this is what we see, and they can say, hey, this is what we see, and those things look very similar from both sides, so if they have an issue and they need us to help them with, we can help them and vice versa. Because I know when we were looking at Fortinet as a partner, being able to purchase one product and getting so many things with it included at no cost was a big driver for us. Also with time savings, I think the look and feel you get from product to product, not every product looks the same, but most do, and being able to know where to go, what to do, I think just has helped our team to really skill up and learn how to use the tools faster. We are looking to spread our stack, if you will. We are currently discussing bringing in hardware as a service to our dealer networks. We have many dealers across the globe. We have a lot in the continental U.S., so we are going to be looking at managing all of those FortiGates through FortiManager, and we are looking at utilizing new Fortinet technologies such as FortiAI Ops and FortiPresence and ZTNA, so we have a lot of things in the pipeline with Fortinet, and we are excited about it.

TL;DR

  • Toyota Material Handling replaced aging, end-of-support network infrastructure with a comprehensive Fortinet security stack across their 57-acre manufacturing campus with four plants.
  • The 18-month deployment included FortiGates, FortiManager, FortiNAC, FortiEDR, FortiDeceptor, and FortiNDR to address east-west traffic visibility and OT security challenges.
  • FortiDeceptor provides critical visibility into the OT environment where traditional agent-based security cannot be deployed due to sensitivity of manufacturing systems.
  • The unified FortiOS management interface has accelerated team training and improved collaboration between networking and security teams through consistent tooling.

Legacy Infrastructure Challenges at Toyota Material Handling

Toyota Material Handling North America, the industry leader in forklift manufacturing, operates a sprawling 57-acre campus with four interconnected plants and two more under construction. The organization faced significant challenges with aging network infrastructure that had reached end-of-support and end-of-sale status, resulting in frequent outages, firmware vulnerabilities, and an inability to maintain support contracts. The network architecture team, led by Christopher Garcia and security architect Michael Nichols, identified critical gaps in east-west traffic visibility and the need for role-based access controls across their complex manufacturing environment.

Comprehensive Fortinet Deployment and Integration

Over an 18-month implementation period utilizing Fortinet professional services, Toyota Material Handling deployed a comprehensive security stack including edge FortiGates with IBGP configuration across five zones (plant, enterprise, data center, wireless, and DMZ), FortiManager for centralized management, FortiNAC for wireless access control across 14 VLANs, FortiEDR for endpoint protection, and FortiDeceptor for OT environment visibility. The team specifically chose FortiEDR for its ability to manage endpoints both on-network and off-network, addressing the remote workforce challenges that emerged post-COVID. FortiDeceptor proved particularly valuable for the sensitive OT environment where traditional agent-based security products cannot be deployed.

Chapters

0:00 - Introduction and Company Overview
0:52 - Security Challenges and Legacy Infrastructure
1:57 - Choosing Fortinet as Solution
2:36 - Network Architecture and Deployment
3:49 - FortiEDR and Endpoint Security
4:24 - FortiDeceptor for OT Visibility
5:49 - Unified Management Benefits
7:45 - Future Plans and Expansion

Key Quotes

1:12 "Honestly, visibility. We don't know what we don't know. We can't fix what we don't see."
4:45 "As we know, OT is very sensitive on what type of security products you roll out, what type of agents you want to roll out. So being able to take FortiDeceptor and have it sit within that OT environment and provide a target for potential threat actors helps to give us visibility we didn't have before."
5:17 "With FortiEDR, there's more proactive security controls in place that will stop things from happening instead of just getting alerted after the fact."
7:15 "Being able to purchase one product and getting so many things with it included at no cost was a big driver for us."

Categories:
  • » Webinar Library » Fortinet
  • » Cybersecurity » Network Security
  • » Cybersecurity » Zero Trust
  • » Cybersecurity » Endpoint Security
  • » Data Protection
Channels:
News:
Events:
Tags:
  • Customer Story
  • Network Security
  • OT
  • IoT Security
  • Endpoint Management
  • Zero Trust
  • manufacturing security
  • OT security
  • network modernization
  • east-west traffic security
  • endpoint detection and response
  • deception technology
  • network access control
Show more Show less

Browse videos

  • Related
  • Featured
  • By date
  • Most viewed
  • Top rated
  •  

              Video's comments: Toyota Material Handling Modernizes Security with Fortinet

              Upcoming Webinar Calendar

              • 06/23/2026
                01:00 PM
                06/23/2026
                The AI-Powered VMware Alternative
                https://www.truthinit.com/index.php/channel/2009/the-ai-powered-vmware-alternative/
              • 06/24/2026
                11:00 AM
                06/24/2026
                Accelerating Through AI: A Dynamic Webinar Series
                https://www.truthinit.com/index.php/channel/2012/accelerating-through-ai-a-dynamic-webinar-series/
              • 06/25/2026
                01:00 PM
                06/25/2026
                Generative AI Security: Preventing AI from Becoming a Data Breach Multiplier
                https://www.truthinit.com/index.php/channel/1998/generative-ai-security-preventing-ai-from-becoming-a-data-breach-multiplier/
              • 06/30/2026
                01:00 PM
                06/30/2026
                Mastering Active Directory Certificate Services for Long-Term Success
                https://www.truthinit.com/index.php/channel/2018/mastering-active-directory-certificate-services-for-long-term-success/
              • 07/01/2026
                04:00 AM
                07/01/2026
                Integrating Security in AI: Automated Red Teaming Strategies for Private Models
                https://www.truthinit.com/index.php/channel/1969/integrating-security-in-ai-automated-red-teaming-strategies-for-private-models/
              • 07/01/2026
                04:00 AM
                07/01/2026
                Schutz von KI in Anwendungen, Agenten und APIs.
                https://www.truthinit.com/index.php/channel/2008/schutz-von-ki-in-anwendungen-agenten-und-apis/
              • 07/01/2026
                01:00 PM
                07/01/2026
                Preventing Your AI from Turning Against You: Essential Strategies
                https://www.truthinit.com/index.php/channel/2021/preventing-your-ai-from-turning-against-you-essential-strategies/
              • 07/02/2026
                10:00 AM
                07/02/2026
                When the cloud goes dark: Resilience lessons from hybrid threats
                https://www.truthinit.com/index.php/channel/2011/resilience-insights-from-hybrid-threats-when-the-cloud-faces-challenges/
              • 07/07/2026
                01:00 PM
                07/07/2026
                A Comprehensive Demonstration of DLP Solutions and Strategies
                https://www.truthinit.com/index.php/channel/2030/a-comprehensive-demonstration-of-dlp-solutions-and-strategies/
              • 07/09/2026
                01:00 PM
                07/09/2026
                The HUMAN Experience: Empowering Trust Through Action and Engagement
                https://www.truthinit.com/index.php/channel/2026/the-human-experience-empowering-trust-through-action-and-engagement/
              • 07/14/2026
                01:00 PM
                07/14/2026
                Crafting a Championship-Quality Security Team for Unmatched Defense
                https://www.truthinit.com/index.php/channel/2025/crafting-a-championship-quality-security-team-for-unmatched-defense/
              • 07/21/2026
                04:00 AM
                07/21/2026
                Strategies for Managing AI Governance and Securing App-to-LLM API Traffic
                https://www.truthinit.com/index.php/channel/1967/strategies-for-managing-ai-governance-and-securing-app-to-llm-api-traffic/
              • 07/21/2026
                01:00 PM
                07/21/2026
                HUMAN Dialogue: Insights from Attackers Revealed at the FIFA World Cup
                https://www.truthinit.com/index.php/channel/2029/human-dialogue-insights-from-attackers-revealed-at-the-fifa-world-cup/
              • 07/22/2026
                06:30 AM
                07/22/2026
                Understanding the Dynamics of Data Privacy and Protection Regulations
                https://www.truthinit.com/index.php/channel/2000/understanding-the-dynamics-of-data-privacy-and-protection-regulations/
              • 07/28/2026
                01:00 PM
                07/28/2026
                Illumio + Netskope: Zero Trust in the Age of AI Autonomy
                https://www.truthinit.com/index.php/channel/2031/illumio-netskope-zero-trust-in-the-age-of-ai-autonomy/
              • 07/29/2026
                04:00 AM
                07/29/2026
                Real-Time Strategies for Safeguarding Against Prompt Injections
                https://www.truthinit.com/index.php/channel/1968/real-time-strategies-for-safeguarding-against-prompt-injections/
              • 09/30/2026
                04:00 AM
                09/30/2026
                AI Command Center: Optimizing Visibility and Control in Your Operations
                https://www.truthinit.com/index.php/channel/2024/ai-command-center-optimizing-visibility-and-control-in-your-operations/

              Upcoming Events

              • Jun
                23

                The AI-Powered VMware Alternative

                06/23/202601:00 PM ET
                • Jun
                  24

                  Accelerating Through AI: A Dynamic Webinar Series

                  06/24/202611:00 AM ET
                  • Jun
                    25

                    Generative AI Security: Preventing AI from Becoming a Data Breach Multiplier

                    06/25/202601:00 PM ET
                    • Jun
                      30

                      Mastering Active Directory Certificate Services for Long-Term Success

                      06/30/202601:00 PM ET
                      • Jul
                        01

                        Schutz von KI in Anwendungen, Agenten und APIs.

                        07/01/202604:00 AM ET
                        More events
                        Truth in IT
                        • Sponsor
                        • About Us
                        • Terms of Service
                        • Privacy Policy
                        • Contact Us
                        • Preference Management
                        Desktop version
                        Standard version