Physical security is increasingly moving beyond its traditional role of protection and loss prevention within organizations. The “State of Physical Security Report 2026” by Genetec highlights, particularly in the retail sector, that security data is being leveraged more extensively for operational purposes. At the same time, access control is evolving into a strategic concern for IT, compliance, and risk management. However, legacy infrastructures and fragmented system landscapes continue to hinder this transformation in many organizations.
Frankfurt, August 20, 2026 – Physical security systems are increasingly no longer viewed in isolation. As they become more tightly integrated with corporate networks and business applications, requirements for integration, governance, and cyber resilience are rising accordingly. These findings are based on Genetec’s “State of Physical Security Report 2026,” which surveyed more than 7,000 security professionals worldwide.
In the retail sector, the study shows that security data is increasingly being evaluated from an operational perspective. More than 60 percent of surveyed retailers identify improved operational efficiency within security operations as one of the primary objectives for using such data. A similarly high proportion prioritizes enhanced safety and protection. More than half cite compliance requirements, while nearly half see opportunities to improve customer experience and employee satisfaction.
The results indicate that existing security technologies are expected to move beyond traditional loss prevention and theft deterrence. Organizations are increasingly seeking advanced analytics capabilities and deeper integration of security insights into business processes.
Legacy Systems Continue to Slow Modernization
At the same time, the survey highlights a significant need for modernization. Forty percent of retail respondents identify outdated physical security infrastructure as one of their key operational challenges. Thirty-eight percent point to training and upskilling, while 37 percent cite talent acquisition. Additionally, 33 percent report that legacy IT systems are hindering further development.
As a result, integration of existing systems is becoming a central focus alongside new technology investments. Fifty-four percent of respondents plan to repurpose existing technologies for additional use cases, while 48 percent intend to evaluate new security systems for specific applications.
For security leaders, this creates a dual challenge: maintaining existing infrastructures while simultaneously enhancing them with new analytics, automation, and integration capabilities. In mature system environments, the key question becomes how to modernize security and IT components incrementally without fully replacing prior investments.
Access Control Becomes a Governance Issue
The convergence of physical and digital security is particularly evident in access control. Systems that were once primarily used to manage doors and physical zones are now often connected to enterprise networks, processing sensitive identity and credential data and integrating with broader business systems.
This shift significantly increases requirements for administration and oversight. Access rights must be consistently assigned, modified, and revoked across multiple locations. At the same time, organizations need full visibility into who holds which permissions, how credentials are used, and which security-relevant events occur.
The importance of this intersection is also reflected in larger enterprises. Among organizations with 10,000 or more employees, 48 percent of respondents reported an increase in physical or cybersecurity incidents in 2025, according to Genetec.
As organizations scale, operational complexity increases accordingly. New sites, acquisitions, temporary workforce structures, and varying local processes can lead to fragmented access environments. If permissions are managed under inconsistent rules, the risk of outdated or excessive access rights rises significantly.
Standardization Aims to Simplify Access Management
One response to these challenges is the increased standardization of access control processes. Unified policies, role-based access models, and automated workflows can help ensure more consistent rights management. In addition, access control systems are increasingly being integrated with HR and identity management platforms.
For operators, this is not solely a technical integration challenge. Equally important is transparency around permissions, credential activity, and security-relevant events. This visibility forms the basis for detecting anomalies, conducting regular access reviews, and reconstructing who accessed specific areas in the event of an incident.
“Access control is increasingly becoming a governance issue, not just a technical one,” explains Andreas Flemming, Channel Account Executive at Genetec. Organizations must establish clear processes, ensure consistent oversight, and continuously evolve their security practices.
AI Enhances Existing Security Processes
At the same time, artificial intelligence is gaining traction. Fifty-one percent of surveyed retailers plan to use AI to optimize security processes. However, the findings suggest not a disruptive technological shift, but rather a gradual evolution of existing security environments.
New analytics and automation capabilities deliver the most value when data from video surveillance, access control, and other security systems remains technically and operationally manageable. As a result, system integration, identity governance, data access, and cybersecurity are becoming as critical as the core security functions themselves.
“Physical security is becoming a strategic advantage for retailers that goes far beyond traditional theft prevention,” says Scott Thomas, National Director for Signature Brands at Genetec. The company advocates a continuous modernization approach in which existing systems are progressively enhanced and new technologies are integrated based on specific business needs.
The report ultimately highlights two closely connected trends: security data is increasingly being used for operational decision-making, while requirements for governance, integration, and cyber resilience continue to rise. In particular, access control is becoming a convergence point for physical security, IT, and identity management. For organizations, the key challenge is no longer the adoption of individual new features, but the ability to manage the entire security infrastructure in a secure, transparent, and consistent manner.

