Skip to main content

OT security leaders take the helm as cyber resilience becomes a manufacturing performance driver

28 July 2026

As 60% of manufacturers race toward full digitalization, cyber risk is increasingly manifesting as a business risk, according to a new report by Kaspersky and VDC Strategy. This means cybersecurity is not merely a compliance function, it is a cornerstone of production assurance, safeguarding uptime, quality, and operational continuity.

The ‘digital sprint’ in manufacturing

Manufacturers are modernizing to deliver safer, more consistent and more cost-effective production and digitalization is moving fast: just 9% of organizations describe themselves as fully digital today, but 60% expect to get there within two years, according to the joint report by Kaspersky and VDC ‘Cyber Resilience, Built for Manufacturing’.

That shift links shop-floor equipment, production lines and site operations to platforms such as MES[1], SCADA[2] and historians, turning many plants into cyber-physical systems (CPS), where a digital disruption doesn't stay digital. It can slow production lines, quarantine work in progress, invalidate traceability records, or halt production outright.

What's driving manufacturing digitalization?

Manufacturers are digitizing for measurable operational gains, not novelty. Survey respondents identified the primary drivers of their digital transformation strategy as:

●        Improving production output or efficiency (24%)

●        Reducing operational or production expenses (15%)

●        Enabling new strategic opportunities (14%)

●        Improving cyber resilience (13%)

The same connected systems that unlock these gains, including MES, IIoT sensors, automated material handling, remote engineering access, also become the systems that determine whether production can be trusted to keep running.

Cyber risk is now a business risk

Cyber risk has evolved from a mere IT concern to a direct threat to revenue generation, as environments transform into cyber-physical systems (CPS). In these integrated settings, digital disruptions like malware no longer just affect data, they can cause unsafe operations, scrapped batches, and halted production on the plant floor. This shift highlights the urgent need to treat cybersecurity as a key part of operational resilience.

According to report, nearly 60% of manufacturing organizations estimate that cyber incidents cause damages exceeding $1 million per event, with an average disruption of 15.3 hours. The most significant losses often result from production halts, missed delivery commitments, and penalties, rather than just forensic costs.

In this context, downtime links cybersecurity risks to overall business performance. Cyber incidents can reduce Overall Equipment Effectiveness (OEE), strain staffing, and disrupt supply chains. Recovery involves more than system restore, it requires re-establishing confidence in process parameters, quality records, and traceability before resuming operations.

Mature cybersecurity programs now incorporate OT security into governance, focusing on metrics valued by production leaders such as time to restore, backup confidence, legacy asset coverage, and safe degraded operation. This alignment ensures cybersecurity supports continuous production and resilience, not just IT compliance.

However, challenges remain due to split ownership. While 59% of organizations’ IT departments manage security policies, these often overlook plant realities. Managing many security tools (44%) and OT patching issues (38%) show that cybersecurity must be embedded into daily routines of production, engineering, and quality teams. Only through such integration cybersecurity can effectively enhance operational reliability and defend against evolving threats.

“As manufacturing environments become increasingly interconnected, cybersecurity shifts focus from merely adding protective layers to ensuring the availability, resilience, and integrity of production processes. The goal is to minimize operational impact and speed up recovery, rather than solely preventing intrusions. Kaspersky offers a unified ecosystem that integrates IT, OT, and IIoT security, empowering manufacturers to pursue digital transformation securely. This strategy helps maintain operational continuity and reduces long-term cybersecurity costs," – comments Andrey Strelkov, Head of Industrial Cybersecurity Product Line at Kaspersky.

To implement this strategy, manufacturing companies can leverage solutions from the Kaspersky OT Cybersecurity Ecosystem, centered around Kaspersky Industrial CyberSecurity (KICS), a native Extended Detection and Response platform designed for critical infrastructure protection. KICS enables centralized detection and response to complex attacks across the entire industrial network, ensuring comprehensive visibility and security.

To download the full report on cyber resilience for the manufacturing sector, visit our dedicated webpage.



[1]  Manufacturing execution systems (MES)

[2] Supervisory control and data acquisition (SCADA) is a control system architecture comprising computers, networked data communications and graphical user interfaces for high-level supervision of machines and processes.

OT security leaders take the helm as cyber resilience becomes a manufacturing performance driver

As 60% of manufacturers race toward full digitalization, cyber risk is increasingly manifesting as a business risk, according to a new report by Kaspersky and VDC Strategy. This means cybersecurity is not merely a compliance function, it is a cornerstone of production assurance, safeguarding uptime, quality, and operational continuity.
Kaspersky logo

About Kaspersky

Kaspersky is a global cybersecurity and digital privacy company founded in 1997. Innovating the industry with a Cyber Immunity approach, Kaspersky safeguards consumers, businesses, critical infrastructure, and governments from cyberthreats, with over a billion devices protected to date.

Kaspersky ensures Cybersecurity True to Business, focusing on providing clear outcomes, protecting revenue, easing workloads and preventing downtime. Kaspersky’s deep threat intelligence and security expertise is constantly transforming into innovative solutions and services for organizations of every size, from small businesses to large enterprises, combining proven AI-driven protection technologies with simple management and expert support.

Recognized in independent tests and trusted by millions of individuals worldwide and nearly 200,000 organizations, Kaspersky helps detect threats earlier, respond faster and operate with greater confidence and freedom, protecting what matters most to our clients. Learn more at www.kaspersky.com.

Related Articles Press Releases