Cybersecurity should be considered alongside functional safety, reliability and operational efficiency during the design of automation projects. “Security cannot simply be bolted on after commissioning. It must be incorporated into the architecture from the very beginning, supported by secure products and implemented according to recognised international standards,” comments Frits Kok, Chief Technology Officer at Adroit Technologies.
Cybersecurity is ultimately about protecting production. “Manufacturers often think of cybersecurity in terms of preventing attacks, but its real value lies in maintaining operational continuity. A secure automation environment reduces the likelihood of downtime, protects intellectual property and safeguards production data, while helping organisations meet the growing expectations of customers, insurers and regulators,” explains Kok.
As Mitsubishi Electric’s authorised distributor in South Africa, Adroit Technologies is helping local industry prepare for this changing cybersecurity landscape through solutions that combine advanced automation with internationally recognised cybersecurity standards.
Operational performance and cyber resilience
Whether implementing new automation systems or upgrading existing production environments, organisations increasingly require technology partners that understand both operational performance and cyber resilience.
By aligning with global best practice today, South African manufacturers can improve operational reliability, strengthen customer confidence and position themselves for continued success in an increasingly connected industrial world.
The introduction of the European Union’s Cyber Resilience Act (CRA) marks a significant shift in how industrial automation products are designed, deployed and maintained. While the legislation applies to products sold within the EU, its influence extends far beyond Europe’s borders, establishing a benchmark that manufacturers, system integrators and end users worldwide are likely to follow.
Latest mandatory cybersecurity requirements
The CRA introduces mandatory cybersecurity requirements throughout a product’s lifecycle, requiring products with digital elements to be secure by design and by default. For South African manufacturers supplying multinational customers or exporting equipment internationally, these evolving standards cannot be ignored.
Industrial control systems were once isolated from external networks. Today, the rapid adoption of Industrial Internet of Things (IIoT) technologies, cloud connectivity, edge computing and remote access has dramatically expanded the attack surface across manufacturing environments.
“The conversation around automation has changed fundamentally,” notes Steve Brits, Product Manager, Mitsubishi Electric. “Performance, reliability and productivity remain essential, but cybersecurity has now become equally important. Customers want confidence that the systems they invest in today will remain secure and compliant throughout their operational life.”
Mitsubishi Electric’s latest Factory Automation portfolio
This shift is reflected in Mitsubishi Electric’s latest Factory Automation portfolio, where cybersecurity is integrated alongside productivity, connectivity, quality and maintenance as a core design principle. Rather than treating security as an afterthought, products are engineered with protection built into their architecture from the outset.
The CRA introduces comprehensive cybersecurity obligations for hardware and software products containing digital elements. It applies to devices connected either directly or indirectly to networks and requires manufacturers to implement secure development practices, vulnerability management and ongoing security support throughout a product’s lifecycle.
Importantly, the legislation moves cybersecurity from being an optional feature to becoming a mandatory design requirement. Although many South African manufacturers may not currently export directly into Europe, global supply chains increasingly expect suppliers to meet internationally recognised cybersecurity standards. Similar regulations are emerging in other jurisdictions, meaning organisations that prepare early will be better positioned for future market requirements.
Embedding cybersecurity into automation platforms
Mitsubishi Electric has anticipated these changing requirements by embedding cybersecurity into its latest automation platforms rather than treating it as an additional feature. Its flagship MX Controller has been developed to be natively CRA-ready and is certified by TÜV Rheinland to IEC 62443-4-2, the internationally recognised cybersecurity standard for industrial automation and control system components.
This security-first philosophy extends across Mitsubishi Electric’s broader Factory Automation portfolio. The MELSEC iQ-R modular PLC platform has been engineered around seven core design principles – productivity, engineering, maintenance, quality, connectivity, security and compatibility – enabling manufacturers to build automation systems that are both highly productive and resilient against emerging cyber threats.
For machine builders and system integrators, the FX5U compact PLC platform combines high-speed performance with built-in Ethernet connectivity, providing secure integration into increasingly connected production environments. Advanced servo systems incorporate predictive maintenance capabilities using AI technology alongside integrated functional safety, while Mitsubishi Electric’s variable speed drives support secure connectivity, intelligent monitoring and remote diagnostics that improve both operational performance and system resilience.
The portfolio also includes collaborative robotics, advanced human-machine interfaces and digital engineering tools that enable secure communication between operational technology and enterprise systems. Together, these technologies allow manufacturers to embrace Industry 4.0 while ensuring cybersecurity is embedded throughout the automation architecture rather than added retrospectively.
Preparing for a global future
The move towards cybersecurity regulation reflects a broader transformation occurring throughout manufacturing. Digital transformation, remote diagnostics, cloud-based analytics, AI-driven maintenance and connected production environments all depend on trusted, secure infrastructure. As more organisations adopt Industry 4.0 technologies, cybersecurity will increasingly become a competitive differentiator rather than merely a compliance requirement.
Marco Clerici of Mitsubishi Electric Europe’s Export Factory Automation Division believes manufacturers should view these regulations as an opportunity rather than an administrative burden.
“The CRA represents an important step towards improving confidence in connected industrial systems. Manufacturers that embrace cybersecurity today will be better prepared for tomorrow’s global markets, while providing customers with greater confidence in the resilience and longevity of their automation investments,” concludes Clerici.




