thyssenkrupp Steel makes the infrastructure under the infrastructure - carbon flat steel, roughly 11 million tonnes of it annually, out of Duisburg. Germany's biggest flat steel producer, the company supplies advanced applications across automotive, construction, and heavy industry. That's a massive physical footprint running on industrial control systems, OT networks, and interconnected manufacturing processes that blur the line between cyber and kinetic risk.
The threat surface here isn't hypothetical: steel mills are high-value targets for nation-state actors and ransomware groups looking to disrupt critical infrastructure. thyssenkrupp Steel operates across Germany and globally with approximately 27,000 people, and it's in the middle of a significant green transformation - deploying hydrogen-based direct reduction and Carbon2Chem technologies alongside its bluemint® Steel product line, which claims up to 70 percent reduced CO2 emissions compared to conventional steel. That kind of transformation means new digital systems layered on top of legacy industrial environments, which is exactly where security gets interesting and difficult.
The company has committed to climate-neutral steel production by 2045, which implies sustained investment in both process innovation and the digital infrastructure supporting it. Security roles here likely span IT/OT convergence, ICS/SCADA hardening, supply chain integrity, and the kind of industrial cybersecurity that keeps blast furnaces and reduction plants operational. The scope is concrete, the stakes are physical, and the attack surface keeps growing.






