ABI Research warns that organisations must now demonstrate compliance with recognised security standards for connected devices, as cyber threats expand and regulatory scrutiny intensifies, transforming IoT security into a boardroom issue.
ABI Research says connected-device security is moving from a technical issue into a governance test for boards, procurement teams and senior executives. In a whitepaper released on 18 August 2026, the firm argues that organisations will increasingly need documentary proof that internet-connected devices meet recognised security baselines, rather than relying on supplier assurances or contractual language. The report frames this as a shift away from what it calls “trust me” security, with scrutiny likely to intensify as U.S. policy and enterprise risk controls continue to tighten.
The company’s warning builds on a broader corporate trend: cyber risk is now being treated less as an IT matter and more as a board-level business issue. Commentary in Forbes and guidance from TechTarget both point to growing expectations that directors understand cyber exposure, define oversight structures and integrate resilience into wider strategy, especially as disclosure obligations and governance pressure increase.
ABI Research also points to the scale of the problem. It estimates there were 19 billion IoT connections globally in 2025, rising to 37 billion by 2030, expanding the number of entry points available to attackers across workplaces, homes, hospitals, schools, factories and public infrastructure. That wider attack surface can create risks including lateral movement across networks, data theft, service disruption and unauthorised surveillance, concerns that echo warnings from the World Economic Forum and TechRadar about the governance blind spots around industrial and operational technology.
The whitepaper highlights the U.S. Cyber Trust Mark as a potentially important reference point because it provides a measurable security baseline linked to National Institute of Standards and Technology guidance and Federal Communications Commission oversight. ABI Research says the label could help organisations show due diligence in procurement and lifecycle management, and it urges manufacturers, enterprises and retailers to treat certification and documentation as part of security assurance rather than as a marketing exercise.
Disclaimer: This content is intended for informational purposes only. Readers are advised to exercise their own judgement, conduct due diligence, or consult a qualified expert before acting on any information provided.





