Holman is a century-old, family-owned automotive services company headquartered in Mt. Laurel, New Jersey, with over 9,000 employees and operations spanning the United States, United Kingdom, Germany, and Canada. Its attack surface is broad and varied: the company runs one of the largest privately owned dealership groups in the U.S., manages commercial fleets, fabricates and upfits vehicles, manufactures automotive components, operates powertrain distribution and logistics chains, and provides insurance and risk management. Each of these domains generates distinct security requirements - from protecting connected vehicle telemetry and fleet management platforms to securing manufacturing systems, dealer networks, and the sensitive personal and commercial data flowing through insurance operations.
The company's technical domains include innovative technology platforms and vehicle electrification programs, meaning security teams are working against threats targeting IoT endpoints, EV charging infrastructure, supply chain integrity, and the proprietary software underpinning fleet and logistics operations. With significant international operations across four countries, the threat model also encompasses cross-border data protection, regulatory compliance (think GDPR in the UK and Germany alongside North American frameworks), and the complexity of defending a sprawling, heterogeneous IT and OT environment. Holman's core values emphasize transparency and trust, but the real challenge for any security professional here is the sheer operational diversity - defending a single company that is simultaneously a manufacturer, insurer, fleet operator, and retailer.






