Best Practices: Enhancing Your Smart Building Cyber Security Programme

Access this research

Access all Building Digital Platforms & Operational Tech content with a strategic subscription or buy this single report

Need help or have a question about this report? Contact us for assistance

Executive Summary

On top of much-discussed IT cyber security risks, firms face growing cyber threats across their operational technology (OT), because of the explosion of networked devices, the convergence of IT and OT networks, and aging building systems. Despite this, the cyber security of building systems is frequently undermanaged, as firms lack clarity on where the responsibility for OT cyber security lies and are unaware of the full extent of risks they face. Drawing on our interviews with experts from the cyber security, IT and building technology sectors, this report sets out best practices for enhancing the cyber security management of building systems. The research finds that the first step for rebooting a smart building cyber security strategy is defining clear responsibilities and embedding cyber management into facilities operations across procurement, technology management and staff training.

Firms Must Reboot Their Smart Building Cyber Security Strategies In The Face Of Growing Risks 
Firms Face Growing Cyber Threats Across Their Building Technology
The Explosion Of The IoT Across Buildings Is Making Cyber Security More Complex
OT Cyber Security Management Often Falls Through The Cracks Due To Unclear Responsibilities

Firms Should Take A Risk-Based Approach To Cyber Security Management 
Facilities, IT And Security Teams Must Unite Against The Cyber Security Threat   
Facilities Leaders Must Embed Cyber Security Into Operations
Business Leaders Must Transition To Proactive Cyber Security Management

Figure 1. Smart Building Systems Face Cyber Threats Across Four Key Frontiers  
Figure 2. Initial Infection Vectors Used In Cyber Attacks On OT, January 2020-June 2021  
Figure 3. Recent OT System Cyber Attack Tactics And Techniques  
Figure 4. Factors Slowing Down A Firm’s Response To A Cyber Attack  
Figure 5. Five Strategies For Managing OT Cyber Security  
Figure 6. Key Steps To Enhance Your Smart Building Cyber Security Programme  

About the Authors

Susan Clarke

Susan Clarke

Research Director

Susan leads the Verdantix Smart Buildings practice. Her current research agenda focuses on software solutions for real estate management including integrated workplace managem...

Rodolphe d’Arjuzon

Rodolphe d’Arjuzon

Chief Product Officer and Co-Founder

Rodolphe co-founded Verdantix in 2008. As Chief Product Officer, he leads the firm’s research strategy and intellectual agenda. With over 20 years of experience in techn...

View Profile

Other related content

Blog
Building Digital Platforms & Operational Tech
Inside OpenAI’s $1 Trillion Compute Bet...

When OpenAI announced plans to deploy six gigawatts of AMD chips, the market focused on semiconductors. In truth, this is an energy and infrastructure story. The power required for...

13 October, 2025

Blog
Building Digital Platforms & Operational Tech
One Comeback To Rule Them Mall

Suburban teens, food court enthusiasts and shopaholics rejoice! Malls are back – and better than ever. Once dismissed as outdated relics of the past, they’ve undergone a full 180-d...

02 October, 2025

Blog
Building Digital Platforms & Operational Tech
The Most Advanced Airports Don’t Feel F...

Airports are bursting at the seams. In 2024, global passenger volumes hit 9.5 billion, eclipsing pre-pandemic records. With demand set to double by 2043, concrete alone won’t keep ...

23 September, 2025

Webinar
Asset Maintenance Software & Services
Why Software Is The Key To Five-Star Fi...

Our research shows that field service leaders face three critical roadblocks to a superior customer experience: inefficient legacy systems, data silos, and insufficient technolo...

Upcoming / 23 October, 2025

Webinar
Building Digital Platforms & Operational Tech
SIF Intelligence: What Every EHS Leader...

In a recent Verdantix survey, 80% of EHS leaders ranked reducing Serious Injuries and Fatalities (SIFs) as a top priority, with 42% identifying it as their single most important go...

Upcoming / 21 October, 2025

Webinar
AEC
Next-Gen CMMS: The Tech Transforming Ma...

Property and facilities leaders are being asked to do more with less — extend asset life, deliver reliable service, and keep tenants satisfied. At the same time, innovations like A...

14 October, 2025