I just returned from Hannover Messe 2025, and one thing is clear, industrial cybersecurity is shifting and that shift is being driven by the inefficiency of their current security stack- to put it simply, organizations are sick of reactive security that does not serve its purpose. The conversations were bold, the technology impressive, and the underlying theme? Urgency.
Here are the top takeaways — especially from the lens of a Cyber-Physical Systems (CPS) security leader:
- AI is no longer experimental, it’s embedded
From Siemens’ AI copilots to autonomous inspection systems, Industrial AI is now deeply integrated into factory operations. But as decision-making becomes more automated, the integrity and security of the underlying OT data becomes critical.
Protecting OT Now Means Protecting the Logic That Drives AI Decisions
- Geopolitical tensions are reshaping industrial priorities
The recent changes to the global economy with rising tension around global supply chains and calls for technological sovereignty, resilience and trust in digital infrastructure are moving to the forefront. Amplified by geo-political conflicts the proliferation of potent cyber offensive capabilities into the hands of cyber criminals put European manufacturing organizations at risk. That calls for strong CPS cybersecurity.
- The German Mittelstand is stepping into the spotlight
With NIS2, the Cyber Resilience Act, and Germany’s IT-Sicherheitsgesetz 2.0, mid-sized companies now face strict cybersecurity requirements. Many Mittelstand companies lack the internal cybersecurity expertise and staffing to meet these requirements. This opens the door for external security platforms and partners to play a critical role, especially those that understand OT-specific risks.
- Cybersecurity has become a board-level conversation
The shift was tangible this year. CEOs and plant managers weren’t asking if they should invest in OT security, they were asking how fast they can deploy it. With workforce gaps, ransomware threats, and operational risks on the rise, CPS security is now seen as a driver of uptime, not just a cost center.
- A Unified CPS Platform is Mission-Critical
A major theme echoed across the Messe halls: the need for unified platforms that bring IT and OT together. Too often, IT and OT teams work in silos, leading to fragmented security coverage, duplicated tools, and inconsistent incident response.
A unified CPS security platform enables:
- Shared visibility across OT and IT assets
- Coordinated response to threats
- Aligned compliance reporting
- Seamless integration with existing enterprise security infrastructure and automation processes
In a world of AI-driven automation and evolving regulation, IT-OT collaboration isn’t optional, it’s foundational.
Personal Final Thought
The next 12 months will be pivotal. Due to its unique nature the German economy must prioritize CPS security, to ensure business resiliency. Cybersecurity providers that can deliver trusted, scalable, and regulation-ready CPS security, while bridging the IT-OT-IoT divide, will lead the next wave of industrial innovation.
Sense of Urgency
We have been carrying a similar tune for some years now. But one must need to acknowledge the winds of change, and unfortunately now in a disruptive way. A year from now it will be easy to distinguish between those who took the required action and were well prepared and those who did not.. A “good” example is Germany’s unpreparedness to the energy crisis following the Russian sanctions. Industry leaders must decide on which side of history they choose to be.
- To German industrial leaders and Mittelstand companies:
If you’re navigating NIS2, integrating AI into your production environment, or struggling with legacy OT security gaps, let’s talk. We help secure operations without slowing them down. Financial challenges require a smart solution but cannot be the reason to postpone preparedness. - To GSIs and system integrators:
The market is ready — but customers are looking for trusted partners, not just products. Let’s team up to deliver resilient, compliance-aligned CPS security tailored to real industrial needs.
DM me if you’re exploring pilots, partnerships, or security programs for the German market.