Read the Report — State of Applied AI →
Logistics & TransportationSecurity Operations

How Bolt Reduced Security Infrastructure Maintenance by 75% with Elastic Security

Bolt, Europe’s largest mobility super-app serving 150 million customers across 260 cities, deployed Elastic Security on Elastic Cloud with AWS to consolidate its SIEM and protect its rapidly expanding platform. The move cut weekly infrastructure maintenance from 14 hours to 3 hours — a 75% reduction — and eliminated logging availability concerns across the organization.

Impact

75%+

Infrastructure maintenance time reduction

>100M docs in 1 hour

Archived document restoration speed

100% since deployment

Ingestion pipeline uptime

Challenge

Bolt’s small security team was spending more than 14 hours a week maintaining a self-hosted SIEM, leaving insufficient time for strategic security work, while concerns about log availability and the operational cost of scaling self-managed infrastructure grew with the company’s rapid international expansion.

Solution

Bolt migrated to Elastic Security on Elastic Cloud with AWS, replacing its self-hosted SIEM with a fully managed platform that ingests data from networks, cloud infrastructure, SaaS tools, and IAM — reducing maintenance overhead by 75% and delivering prebuilt detection rules, Kibana dashboards, and ML-based anomaly detection.

Tools & Technologies

What Leaders Say

I’m now spending about three hours a week on infrastructure instead of 14. I’m a lot happier as I can now focus on supporting the security team and the expansion of our urban mobility service to a wider audience.

Kadir Burak Mavzer, Cyber Security Engineer, Bolt

Elastic isn’t just an advanced SIEM solution—the database technology is outstanding. We can onboard data with minimum fuss, investigate events in greater depth, and ultimately achieve greater business value from our investment.

Kadir Burak Mavzer, Cyber Security Engineer, Bolt
Get the full context.

Sign up to read complete case studies, access detailed metrics, and unlock all use cases.

Full Story

Bolt operates one of Europe’s most complex consumer technology platforms, offering ride-hailing, car sharing, e-scooters, e-bikes, and food delivery to more than 150 million customers across 260 cities in 25 countries. As the company expands aggressively into new markets in Asia, Africa, and Latin America, its attack surface grows in proportion. The security team is small relative to the scale of infrastructure it must defend, making operational efficiency a strategic imperative rather than a preference.

Before deploying Elastic Security, Bolt ran an open-source SIEM with Elasticsearch at the backend. The configuration was functional but operationally expensive: Kadir Burak Mavzer, Cyber Security Engineer at Bolt, was spending more than two days a week — roughly 14 hours — simply keeping systems operational. The overhead left little time for strategic security work, and the team was constantly concerned about data loss and the cost of scaling self-hosted infrastructure. As Iuliia Laaneots, Cybersecurity Engineer at Bolt, put it, the team needed to control and minimize the attack surface without spending unnecessary time on maintenance.

Bolt migrated to Elastic Security on Elastic Cloud running on AWS in a two-week deployment. The platform ingests data from the organization’s networks, cloud infrastructure, SaaS tools, and its largest data source: the company’s identity and access management system. Prebuilt detection rules enabled rapid coverage of the security estate. Kibana dashboards give the team continuous visibility into key metrics, user activity, and incident investigations. Elastic Cloud’s managed infrastructure eliminated the operational burden of cluster scaling and cost estimation.

The operational shift was immediate and significant. Mavzer’s infrastructure maintenance time dropped from 14 hours per week to approximately 3 — a reduction of more than 75%. In one concrete demonstration of platform performance, Elastic Security restored a year’s worth of archived documents — over 100 million records — in a single hour. Ingestion pipelines have run without interruption since deployment. The team also used Elastic’s machine learning capabilities to detect spikes in authentication attempts that had previously gone unnoticed, demonstrating the platform’s ability to surface anomalies beyond what rule-based detection catches.

With infrastructure concerns removed, Bolt’s security team can focus on strategic contribution: expanding coverage, deepening incident investigation capability, and supporting the company’s international growth. Bolt is an Elastic Design Partner, feeding product feedback directly to the Elastic Security roadmap, including engagement with the cloud security posture management team. As Bolt adds new cities and transport modes, the security team is positioned to scale protection in step with the business rather than perpetually catching up.

Similar Cases

PT
Polaris Transportation Group
85%
customs documents cleared automatically

Polaris Transportation Group, a North American LTL cross-border freight carrier, deployed UiPath automation across customs clearance, order creation, and freight documentation workflows. The program automated 85% of customs documents, reduced order creation time by 90%, and enabled 30% of orders to flow through with no employee intervention.

Logistics & TransportationUPUiPath PlatformUDUiPath Document Understanding
PL
Penske Logistics
< 15 days
ai model build time

Penske Logistics migrated to Snowflake and leveraged Cortex AI to build a gen AI summarization model in under 15 days, generating company-wide BI reports spanning 5 years in just 15 minutes.

Logistics & TransportationSCSnowflake Cortex AI
CR
C.H. Robinson
~5,500
orders automated daily

C.H. Robinson, one of the world's largest logistics providers managing 37 million shipments annually, built AI agents using LangChain and LangGraph to automate email-based shipment orders end-to-end. The platform now processes approximately 5,500 orders per day automatically, saving more than 600 hours of manual email processing work daily.

Logistics & TransportationLLangChainLLangSmith
S
SIXT
70%
problem detection and resolution time decrease

Global mobility provider SIXT deployed IBM Instana Observability across 170+ AWS accounts and 2,000+ services, reducing problem detection and resolution time by 70% and detecting availability anomalies 50% faster.

Logistics & TransportationIIIBM Instana
F
FedEx
+13 percentage points (25% to 40%)
customer activation rate improvement

FedEx unified siloed sales, shipping, and web data using Salesforce Data 360 to act on customer signals in real time. By automating dormant account reactivation and personalizing outreach at scale, FedEx achieved over 2,000% ROI and improved customer activation rates by 13%. The platform now powers more than one billion personalized emails annually.

Logistics & TransportationSSSalesforce Service CloudSDSalesforce Data Cloud
MC
MOOvers Chicago
81%
speeding reduction

MOOvers Chicago is a family-owned moving company operating 29 vehicles in one of the most demanding urban environments in the US. After deploying Samsara’s AI Dash Cams and AI Multicam, the company experienced only two minor accidents in five years, reduced speeding by 81%, cut harsh braking by 28%, and built a verifiable safety culture that earned it recognition as one of America’s Best Moving Companies for 2026. The platform also improved job estimate accuracy and gave customers verifiable proof of proper item handling.

Logistics & TransportationSCSamsara Connected Operations PlatformSASamsara AI Dash Cams
BL
Bank Leumi
-60%
log detection and analysis time

Bank Leumi, Israel’s leading bank with more than 7,000 employees and $195 billion in assets, replaced its aging SIEM with Elastic Security to gain unified visibility across a cloud-and-on-premises infrastructure generating vast volumes of semi-structured data. By deploying Elastic Security alongside Kibana dashboards and MITRE ATT&CK-aligned detection rules, the bank cut log detection and analysis time by 60%, reduced security incident resolution time by 50%, and lowered total cost of ownership by 40%.

Financial ServicesESElastic SecurityEElasticsearch
TA
Texas A&M University System
99%
incident resolution time reduction

The Texas A&M University System is one of the largest higher education systems in the United States, encompassing 11 universities, 8 state agencies, and a statewide emergency management network that collectively educates over 153,000 students while defending against state-sponsored hackers and cybercriminals. Faced with a massive threat surface spanning 25,000 endpoints, the system’s cybersecurity team deployed Elastic Security for Endpoint, using its machine learning capabilities and automation layer to unify data from hundreds of sources into a single interface. The result: incident resolution time dropped from months to two hours—a 99% reduction—while automated documentation saved over 100 analyst hours per month.

EducationESElastic Security