Cybersecurity can create added value for your business, especially now that new legislation is making larger organisations responsible for cybersecurity risks within their supply chains. We therefore invited André Boer, managing director of Hi Delta, to discuss this subject with us.
In previous articles, we discussed the likelihood of an SME being hacked and the risks and consequences of a cyberattack. Investing in cyber resilience is essential for preventing serious incidents, but cybersecurity should not become an unnecessary burden.
Many SMEs do not give cybersecurity the attention it deserves. According to André, this is the greatest challenge. "That is understandable, of course. SMEs are extremely busy developing their products and services. That comes first because it is their core business. As a result, cyber resilience can quickly fade into the background."
However, this attitude can be dangerous. André warns: "You sometimes hear about organisations whose data has been held hostage or whose databases have been destroyed. There are also more serious cases involving companies that have gone out of business following a cyber incident."
An important point raised by André is the role cybersecurity plays when organisations select suppliers. "I see larger organisations asking their suppliers more questions about cyber resilience," he explains. "The new NIS2 Directive may apply directly to some organisations, depending on their size and activities within the manufacturing industry. It can also affect SMEs indirectly. If you want to supply organisations that fall under this legislation, you will need to take appropriate cybersecurity measures.”
This creates opportunities for SMEs to distinguish themselves. André adds: "If you can reassure customers by demonstrating that your cyber resilience is properly managed, you gain a competitive advantage.” The opposite is also true. André once experienced a situation in which one of his suppliers was hacked. It was not only disruptive but also uncomfortable, as the incident required an explanation to customers. Such situations are better prevented.
In addition to technical measures, André emphasises the importance of the human factor. "In many cases, problems arise because someone clicks a link, downloads an image or performs a similar action," he says. "Regular training and awareness are therefore essential. Your employees are not only a potential weakness but also one of your strongest lines of defence. When properly trained, they are often the first to notice that something unusual is happening. This means they can help stop cybercriminals."
André offers three practical recommendations for SMEs that want to improve their cybersecurity:
André explains: “You can learn a great deal during such a meeting. We recently attended a presentation by an expert who discussed new legislation and the impact it will have on organisations in the manufacturing industry.” It is also valuable to hear about incidents experienced by other organisations and discuss whether similar risks could affect your own business.
The final plan will differ from one organisation to another. “Some organisations need to act more quickly and will need to invest more than others. The important thing is to create a roadmap and start implementing it.”
One example is a presentation given by Katja Ottens, CFO of APM Terminals, during ZIE 2022. She discussed the cyberattack experienced by the company in 2017 and shared the lessons learned. One of the most important lessons was that organisations should not only try to prevent cyberattacks but must also know what to do when an incident occurs.
Katja Ottens emphasised the importance of preparation: "Make sure you have a business continuity plan and practise it regularly. Ultimately, an effective cybersecurity policy supports future commercial growth. Do not view it merely as a cost, but as a commercial opportunity."
By following these steps and taking cybersecurity seriously, SMEs can reduce their risks and strengthen their position in the market. Cybersecurity can therefore develop from a perceived burden into a genuine strength for the business.
ZIE 2025 event
Would you like to learn more about cybersecurity and other important developments in the technology industry? The ZIE 2025 event, organised by Hi Delta, took place on 27 March 2025. This annual event brings together more than a thousand visitors and provides a platform for presentations, networking and knowledge sharing. It offers SMEs a valuable opportunity to expand their knowledge and build connections within the technology industry in South Holland.
About Hi Delta
Hi Delta is an organisation that connects technology companies within the manufacturing industry in South Holland. Its activities focus on subjects such as the energy transition, data and artificial intelligence. Its objective is to connect service providers with businesses and facilitate knowledge sharing. One of its initiatives is the Cyber Resilience Centre for the Manufacturing Industry in South Holland. André explains: "Through events and training, we aim to show our members why cyber resilience is so important and what organisations can do to improve it."
About André Boer
André Boer became managing director of Hi Delta on 1 June 2024. He is general manager at KROHNE, a global manufacturer of measurement solutions for a wide range of industries. He also leads FOCUS-ON, a joint venture between SAMSON and KROHNE that develops and supplies disruptive, integrated and autonomous control solutions for the process industry. Its objective is to simplify and optimise industrial processes for the Industry 4.0 and Industrial Internet of Things era.