<h2 style="margin-top: 0px; margin-bottom: 10px;">What is included in Kaspersky Industrial CyberSecurity for Nodes Server Enterprise?</h2>
<p style="margin-top: 0px; margin-bottom: 0px;"><strong>Anti-malware protection</strong> – Real-time file protection plus anti-cryptor defence on server nodes.<br /> <strong>Application Launch Control</strong> – Default deny rules limit which executables may start.<br /> <strong>Device and Wi-Fi control</strong> – Governs USB media and wireless connections on protected nodes.<br /> <strong>PLC Project Integrity Check</strong> – Compares controller projects with a previously uploaded reference copy.<br /> <strong>System monitoring tools</strong> – File integrity control, Windows log inspector and registry monitor.<br /> <strong>Important</strong> – Network traffic monitoring requires KICS for Networks, sold separately.</p>
<h3 style="margin-top: 30px; margin-bottom: 10px;">What are the main benefits of Kaspersky Industrial CyberSecurity for Nodes Server Enterprise?</h3>
<p style="margin-top: 0px; margin-bottom: 0px;">Kaspersky Industrial CyberSecurity for Nodes, usually shortened to KICS for Nodes, is the industrial endpoint component of the KICS platform, and this variant is licensed for server-class nodes such as SCADA servers, historian servers and gateways. It is not a standalone tool: policies, tasks and reports are administered through a Kaspersky Security Center administration server.<br /><br /> <strong>OT-aware presets</strong> – Ships with verified exclusions and settings for common ICS software.<br /> <strong>No reboot needed</strong> – Installation, updates and upgrades run without restarting the node.<br /> <strong>Statistics-only mode</strong> – Runs non-blocking first so rules are tuned before enforcement.<br /> <strong>Air-gapped updates</strong> – Databases can be updated on networks without internet access.<br /> <strong>Modular installation</strong> – Select only the components a given server role needs.<br /> <strong>Legacy Windows coverage</strong> – Protects older server systems, with support starting at Windows XP SP2.</p>
<p style="margin-top: 15px; margin-bottom: 15px;"><a href="#" target="_blank" data-ke-doc="windows-server-2025-vs-2022-vs-2019"><strong>Windows Server 2025 vs. 2022 vs. 2019: Is It Worth Upgrading?</strong><br />Compares the current Windows Server versions and support timelines, useful when deciding which of your ICS servers still need protection on an older release.</a></p>
<h3 style="margin-top: 30px; margin-bottom: 10px;">Which company size is Kaspersky Industrial CyberSecurity for Nodes Server Enterprise suitable for?</h3>
<p style="margin-top: 0px; margin-bottom: 0px;">The deciding factor is not headcount but whether you operate separately administered production servers. A single plant with two SCADA servers can use this product, but it only pays off once an administration server exists to distribute policies and collect logs.</p>
<table style="width: 100%; border-collapse: collapse; background-color: #efefef; margin-top: 15px; margin-bottom: 15px; font-size: 14px; line-height: 1.35;">
<tbody>
<tr><th style="border: 1px solid #ffffff; padding: 9px 8px; text-align: left; font-weight: bold; background-color: #dedede;">Requirement</th><th style="border: 1px solid #ffffff; padding: 9px 8px; text-align: center; font-weight: bold; background-color: #dedede;">Small business</th><th style="border: 1px solid #ffffff; padding: 9px 8px; text-align: center; font-weight: bold; background-color: #dedede;">Medium-sized company</th><th style="border: 1px solid #ffffff; padding: 9px 8px; text-align: center; font-weight: bold; background-color: #dedede;">Large company</th></tr>
<tr>
<td style="border: 1px solid #ffffff; padding: 8px; text-align: left; font-weight: bold; vertical-align: middle;">Reporting obligation Switzerland</td>
<td style="border: 1px solid #ffffff; padding: 8px; text-align: center; vertical-align: middle;">By sector</td>
<td style="border: 1px solid #ffffff; padding: 8px; text-align: center; vertical-align: middle;">By sector</td>
<td style="border: 1px solid #ffffff; padding: 8px; text-align: center; vertical-align: middle;"><span style="color: #32a852; font-size: 24px; font-weight: 800; line-height: 1; display: inline-block; transform: translateY(1px);">✓</span></td>
</tr>
<tr>
<td style="border: 1px solid #ffffff; padding: 8px; text-align: left; font-weight: bold; vertical-align: middle;">NIS 2 in the European Union</td>
<td style="border: 1px solid #ffffff; padding: 8px; text-align: center; vertical-align: middle;"><span style="color: #d9534f; font-size: 24px; font-weight: 800; line-height: 1; display: inline-block; transform: translateY(1px);">✕</span></td>
<td style="border: 1px solid #ffffff; padding: 8px; text-align: center; vertical-align: middle;">By sector</td>
<td style="border: 1px solid #ffffff; padding: 8px; text-align: center; vertical-align: middle;"><span style="color: #32a852; font-size: 24px; font-weight: 800; line-height: 1; display: inline-block; transform: translateY(1px);">✓</span></td>
</tr>
<tr>
<td style="border: 1px solid #ffffff; padding: 8px; text-align: left; font-weight: bold; vertical-align: middle;">Security questionnaire from large customers</td>
<td style="border: 1px solid #ffffff; padding: 8px; text-align: center; vertical-align: middle;">Occasional</td>
<td style="border: 1px solid #ffffff; padding: 8px; text-align: center; vertical-align: middle;"><span style="color: #32a852; font-size: 24px; font-weight: 800; line-height: 1; display: inline-block; transform: translateY(1px);">✓</span></td>
<td style="border: 1px solid #ffffff; padding: 8px; text-align: center; vertical-align: middle;"><span style="color: #32a852; font-size: 24px; font-weight: 800; line-height: 1; display: inline-block; transform: translateY(1px);">✓</span></td>
</tr>
<tr>
<td style="border: 1px solid #ffffff; padding: 8px; text-align: left; font-weight: bold; vertical-align: middle;">Server-class ICS nodes to protect</td>
<td style="border: 1px solid #ffffff; padding: 8px; text-align: center; vertical-align: middle;">Few</td>
<td style="border: 1px solid #ffffff; padding: 8px; text-align: center; vertical-align: middle;"><span style="color: #32a852; font-size: 24px; font-weight: 800; line-height: 1; display: inline-block; transform: translateY(1px);">✓</span></td>
<td style="border: 1px solid #ffffff; padding: 8px; text-align: center; vertical-align: middle;"><span style="color: #32a852; font-size: 24px; font-weight: 800; line-height: 1; display: inline-block; transform: translateY(1px);">✓</span></td>
</tr>
<tr>
<td style="border: 1px solid #ffffff; padding: 8px; text-align: left; font-weight: bold; vertical-align: middle;">This product fits</td>
<td style="border: 1px solid #ffffff; padding: 8px; text-align: center; vertical-align: middle;">Limited</td>
<td style="border: 1px solid #ffffff; padding: 8px; text-align: center; vertical-align: middle;"><span style="color: #32a852; font-size: 24px; font-weight: 800; line-height: 1; display: inline-block; transform: translateY(1px);">✓</span></td>
<td style="border: 1px solid #ffffff; padding: 8px; text-align: center; vertical-align: middle;"><span style="color: #32a852; font-size: 24px; font-weight: 800; line-height: 1; display: inline-block; transform: translateY(1px);">✓</span></td>
</tr>
</tbody>
</table>
<p style="margin-top: 15px; margin-bottom: 15px;"><a href="#" target="_blank" data-ke-doc="windows-defender-not-enough"><strong>Best antivirus? Why Windows Defender alone is not enough</strong><br />Explains where the protection built into Windows stops, which is the usual starting question before a dedicated ICS endpoint product is approved.</a></p>
<h3 style="margin-top: 30px; margin-bottom: 10px;">Does Kaspersky Industrial CyberSecurity for Nodes Server Enterprise meet the requirements of Swiss cybersecurity legislation?</h3>
<p style="margin-top: 0px; margin-bottom: 0px;">No software product meets these requirements on its own. Under the revised Information Security Act, operators of critical infrastructure in Switzerland have been obliged since 1 April 2025 to report significant cyberattacks to the Federal Office for Cybersecurity (BACS) within 24 hours of discovery, which affects energy, water, transport and comparable operators rather than every manufacturer. For that obligation the product supplies the raw material for a report: the Windows log inspector, file integrity control, registry monitor and the EDR agent record what happened on a node, and Kaspersky Security Center holds these events centrally so the 24-hour window is spent writing the report rather than collecting evidence. What it does not do is decide whether an incident is reportable, generate a BACS report, or see anything on the industrial network outside the protected nodes, which means detection of an attack that never touches a Windows server depends on other tools. Reporting also assumes the administration server retains events long enough, which is a configuration decision on your side, not a product property. This description is not legal advice, and whether your organisation falls under the reporting obligation should be clarified with qualified legal counsel.</p>
<h3 style="margin-top: 30px; margin-bottom: 10px;">Does Kaspersky Industrial CyberSecurity for Nodes Server Enterprise meet the requirements of European cybersecurity legislation?</h3>
<p style="margin-top: 0px; margin-bottom: 0px;">No product creates compliance with the NIS 2 Directive, because the directive addresses organisational risk management rather than a software feature list. NIS 2 requires measures in categories including incident handling, business continuity and backup, supply chain security, access control policies, cryptography, security in system acquisition and maintenance, cyber hygiene and training, and procedures to assess whether the measures work. This product contributes to incident handling through detection, logging and response actions on protected nodes, to access control through Application Launch Control and Device Control, and to security in maintenance through PLC project integrity checks and file integrity control. It contributes nothing to backup and restore, encryption, staff training, supplier assessment or multi-factor authentication, and it produces no evidence that the measures were reviewed. Treat it as one technical control inside a management system, not as a substitute for one.</p>
<h3 style="margin-top: 30px; margin-bottom: 10px;">What should you know about official assessments of Kaspersky?</h3>
<p style="margin-top: 0px; margin-bottom: 0px;">Switzerland has issued no warning and no ban. The Federal Office for Cybersecurity has stated that it warns only about products where it has confirmed technical indications of a security risk, that no misuse of Kaspersky software in Switzerland has been reported to it, and that no internal federal directive prohibits the products; Kaspersky also operates a transparency centre in Zurich. In Germany, the Federal Office for Information Security issued a public warning on 15 March 2022 recommending that the vendor's antivirus software portfolio be replaced with alternative products, stated at the time that it made no statement about the vendor's other products, and has confirmed that the warning remains in force, now under Section 13 of the BSI Act; it is a recommendation, not a sales ban, and Kaspersky has publicly demanded its withdrawal. In the United States the Department of Commerce prohibited new sales from 20 July 2024 and Kaspersky has stated that software updates including antivirus databases became unavailable there from 10 September 2024, a restriction that applies only to the United States. Kaspersky's position is that the decisions are political rather than the result of a technical assessment and that the company has no ties to any government; the authorities' stated concerns relate to jurisdiction and origin, not to measured detection performance in independent test series. In practice this matters most if you bid for public-sector contracts, supply German or US customers, or answer supply chain questionnaires that ask about vendor country of origin, and it is your risk decision to make.</p>
<p style="margin-top: 15px; margin-bottom: 15px;"><a href="#" target="_blank" data-ke-doc="norton-vs-kaspersky-2025"><strong>Norton vs. Kaspersky – Which antivirus program offers the best protection in 2025?</strong><br />Sets the vendor's detection results side by side with an alternative, which helps separate the technical question from the geopolitical one.</a></p>
<h3 style="margin-top: 30px; margin-bottom: 10px;">Does Kaspersky Industrial CyberSecurity for Nodes Server Enterprise help with security questionnaires from large customers?</h3>
<p style="margin-top: 0px; margin-bottom: 0px;">Yes, for a defined block of items, and it is worth knowing which ones before you promise anything. It answers questions on malware protection for production servers, application allowlisting through Application Launch Control, removable media and wireless control, integrity monitoring of files and PLC projects, endpoint logging with central retention, and the ability to isolate a node or terminate a process during an incident. It does not answer questions on backup and restore, disk or file encryption, patch deployment, multi-factor authentication, awareness training, network segmentation evidence, or vulnerability scanning of network equipment, and the vendor's country of origin is itself a recurring questionnaire item you should expect. Where a customer insists on network-side evidence, the cheaper route is usually to extend within the same family, since KICS for Networks adds traffic analysis, asset discovery and the security audit against OVAL and XCCDF standards and integrates with the node agents you already run, rather than introducing a second vendor whose data you then have to correlate manually.</p>
<h3 style="margin-top: 30px; margin-bottom: 10px;">Which limitations should you know before buying?</h3>
<p style="margin-top: 0px; margin-bottom: 0px;">The most important regional point is the United States: Kaspersky has stated that updates including antivirus databases stopped being available there on 10 September 2024, while the products are sold and updated normally in Switzerland and the European Union, so a Swiss company with a US plant cannot standardise on this product across both sites. This licence covers a server-class node, and workstation nodes such as operator or engineering workstations are licensed separately, which is the single most common cause of a follow-up order. The application protects Windows nodes; Linux servers require Kaspersky Industrial CyberSecurity for Linux Nodes, a separate application, and PLC project integrity checks, exploit prevention, the log inspector and the registry monitor are documented as Windows-only. Kaspersky ties the available functions to the licence type and lists them on the licence certificate, so check that certificate against the components you plan to deploy rather than against a marketing page. Finally, this is protection and response for nodes, not backup: there is no restore path if ransomware reaches a historian database.</p>
<p style="margin-top: 15px; margin-bottom: 15px;"><a href="#" target="_blank" data-ke-doc="data-loss-backups-avoid-outages"><strong>Data loss is expensive: How backups help you avoid outages</strong><br />Covers the recovery side that endpoint protection does not provide, and why production servers need both.</a></p>
<h3 style="margin-top: 30px; margin-bottom: 10px;">Frequently asked questions about Kaspersky Industrial CyberSecurity for Nodes Server Enterprise</h3>
<h3 style="margin-top: 30px; margin-bottom: 10px;">Which controllers does the PLC project integrity check support?</h3>
<p style="margin-top: 0px; margin-bottom: 0px;">Kaspersky lists Siemens SIMATIC S7-300, S7-400, S7-400H, S7-1200 and S7-1500 as well as SIPROTEC 4, Schneider Electric Modicon M340 and M580, CODESYS V3 devices and Fastwel CPM723-01. The check works in two steps: a project is first uploaded from the controller as a benchmark, then a scheduled task compares the live project against it.</p>
<h3 style="margin-top: 30px; margin-bottom: 10px;">Can the product be used on a network with no internet access?</h3>
<p style="margin-top: 0px; margin-bottom: 0px;">Yes. Kaspersky documents air-gapped database updates for KICS for Nodes, so signature and module updates can be brought into an isolated segment and distributed from the administration server. This is the normal deployment pattern in OT networks and does not require opening an outbound path from the production zone.</p>
<h3 style="margin-top: 30px; margin-bottom: 10px;">Does this licence cover standalone machines and contractor laptops?</h3>
<p style="margin-top: 0px; margin-bottom: 0px;">No. Kaspersky lists the KICS Portable Scanner, the installation-free variant used to scan isolated equipment and devices brought onto the site, as a separate item in the KICS line. This licence applies to a managed server node, so plan the portable scanning use case separately.</p>
<div class="ke-block mceNonEditable" data-ke-block="blogteaser" data-topics="sec-server,sec-endpoint,sec-console" data-audience="b2b" data-count="3"> </div>