What You’ll Learn in This Webinar
Chapter 1 — Introduction to Cybersecurity in Manufacturing
Host Frank welcomed Christian Toussel, Genius Solutions’ compliance and security officer, to tackle a topic the webinar series hadn’t covered before: cybersecurity for manufacturers. Christian brought a background spanning military and insurance work before nearly a decade in manufacturing, and is responsible for compliance, security, and delivery rollout at Genius Solutions.
Chapter 2 — Understanding the Cyber Threat Landscape
Most breaches don’t start with sophisticated hacking — they start with an employee clicking one email. Christian framed cybersecurity as now an unavoidable operational reality for manufacturers: factories are more connected than ever, ERPs concentrate data in one place, and attacks are becoming more targeted, frequent, and effective across the entire supply chain, not just large players.
“Cybersecurity in manufacturing is now an operational reality.”
Chapter 3 — Why Manufacturing is a Prime Target for Cyber Attacks
Manufacturing passed financial services as the most-attacked sector in 2021 and has stayed there since. Three drivers explain it: geopolitical tension (nation-state actors targeting manufacturing capacity tied to national defense), historically lighter cybersecurity investment relative to operational priorities, and the fact that stopping production usually costs more than paying a ransom — making manufacturers fast, high-value targets.
“The manufacturing sector is the most targeted by cyber attacks, surpassing the financial sector in twenty twenty one.”
Chapter 4 — Government Regulations and Compliance Frameworks
Frameworks like CMMC (and Canada’s CPCSC), ITAR, controlled goods programs, and IEC 62443 are turning security from best practice into contractual requirement — Lockheed Martin, for instance, told suppliers in June 2025 they’d need CMMC Level 2 to keep doing business. Insurers are tightening requirements too, now demanding proof of controls like MFA and backups before issuing coverage, with average premiums up 79% in a year.
“Governments no longer simply encourage cybersecurity in manufacturing. They now require it as a condition of doing business.”
Chapter 5 — Identifying Cyber Risks for Manufacturers
Small manufacturers see phishing click rates of 28% — well above other industries — largely because production pressure pushes employees to act fast without checking. Add in industrial systems still running decades-old operating systems, ransomware demands that have doubled to $1.16M on average with 21-day downtime, and both malicious and negligent insider threats.
“Thirty eight percent of companies do not fully recover from a ransomware attack.”
Chapter 6 — Strategies for Cybersecurity Protection
Before anything else: know your assets (only half of industrial organizations truly do), train employees regularly and by role, maintain a tested incident response plan, and follow the 3-2-1-1 backup rule — three copies, two media types, one off-site, one immutable. Companies with strong backups recover 97% of their data after ransomware versus 46% for those who just pay.
“Investment in prevention delivers a return seven times larger than the cost of recovery after a successful attack.”
Chapter 7 — Critical Assets and Vulnerabilities in Manufacturing
A single ERP breach can expose financial data, supply chain relationships, and years of IP (CAD files, BOMs, recipes) all at once — and the average breach goes undetected for 197 days. The highest-risk areas are excessive user permissions and dormant accounts, over-privileged or forgotten API integrations, and direct database access that bypasses application-level controls entirely.
“Your ERP is your most critical asset and your biggest target.”
Chapter 8 — Effective Cybersecurity Solutions
Six concrete measures: MFA (blocks 99.9% of automated attacks), role-based access control on the least-privilege principle, tighter control over privileged/admin accounts, patching within 30 days of release, data classification, and a SIEM to turn logs into real detection — backed by regular penetration testing to validate that controls actually hold up.
“Multi factor authentication blocks ninety nine point nine percent of automated attacks.”
Chapter 9 — The Impact of Remote Work on Cybersecurity
Remote access tools are now the top initial attack vector: personal devices are less monitored, home routers rarely get updated, and remote employees are three times more likely to click a malicious link. The fix isn’t reversing remote work — it’s MFA, company-managed devices (including routers), VPNs, and keeping OT networks isolated from remote traffic.
“The remote access tools are now the number one initial attack vector.”
Chapter 10 — AI Risks and Security Considerations
60% of manufacturers have no AI usage policy, and 68% of employees use unapproved “shadow AI” tools. Beyond data leaving the company through public LLMs, Christian flagged prompt injection (hidden instructions smuggled into content an AI agent processes) and AI-powered social engineering that mimics writing style and context to make phishing far more convincing.
“AI does not create a new risk. It makes existing attacks more credible, faster, and far more targeted.”
Chapter 11 — First Steps Towards a Robust Cybersecurity Plan
Start by assessing your assets and gaps, then put foundational controls in place (MFA, backups, patching), train employees by role, and bring in outside expertise for a full plan rather than improvising.
“Do not improvise a cybersecurity plan.”
Chapter 12 — The Importance of Security Culture in Manufacturing
Christian closed by framing strong security as a competitive edge, not just risk reduction — it helps meet certification requirements, builds partner trust, and opens new markets. Technology alone doesn’t solve cybersecurity; the companies that recover and stay resilient are the ones with the strongest security cultures, not just the most tools.
“Cybersecurity is also a competitive advantage.”
FAQ
Why is manufacturing the top target for cyberattacks?
It overtook financial services in 2021 due to geopolitical value, historically lighter security investment, and how quickly manufacturers pay to avoid production downtime.
What is CMMC, and does it apply to Canadian manufacturers?
CMMC is a US Department of Defense compliance framework with mandatory external audits (replacing the old self-certification model). Canada has its own related framework, CPCSC, built for a more gradual, SME-friendly rollout.
What's the real cost of a ransomware attack on a manufacturer?
The average demand is now $1.16M with 21 days of downtime, and 38% of companies never fully recover.
What is the 3-2-1-1 backup rule?
Three copies of your data, on two different media, with one stored off-site and one immutable (locked so it can’t be modified or deleted, even by an admin).
Why is the ERP specifically such a high-value target?
It concentrates financial data, supply chain intelligence, and intellectual property in one place — and breaches often go undetected for over six months.
What are the security risks of using AI tools at work?
Data sent to public LLMs can’t be pulled back, prompt injection lets attackers hide malicious instructions in content an AI processes, and AI is making phishing far more personalized and convincing.
"*" indicates required fields