CBRS Already Won the Private 5G Race. Most Networks Still Can't See What's Plugged Into It
75% of every private 5G network running in the US today sits on CBRS spectrum.
That number comes from a report released last month by Spectrum for the Future, the 5G-OT Alliance, and the OnGo Alliance, confirming CBRS as America’s most widely deployed mid-band spectrum asset. CBRS stopped being the experimental option a long time ago. It’s now the default architecture for private cellular, and it’s scaling into that role faster than most network security programs are keeping pace with.
The number that should get your attention isn’t the 75%. It’s the growth curve sitting behind it. Manufacturing use alone is projected to grow almost 9 times by 2032, and that’s on top of the utilities, ports, and critical infrastructure operators already running on the same spectrum. Base stations are already past 442,000, with 70% of them in rural deployments most carriers never built for.
That’s not a market update. That’s infrastructure moving underneath operations teams faster than their visibility is following it.
What Makes CBRS Different From Every Other Private Network
CBRS runs on the 3.5 GHz band, and unlike the spectrum a carrier sells you, nobody owns it outright. A shared system called the Spectrum Access System allocates access in real time across three tiers.
- Federal incumbents, like Navy radar and satellite ground stations, get priority every time, no exceptions.
- Priority Access License holders pay for guaranteed access in a specific area.
- General Authorized Access users share whatever capacity is left, no license required.
That structure is exactly why CBRS scaled this fast. An operator doesn’t need to win a spectrum auction or lease capacity from a carrier to get a private network running. A site can stand one up in weeks instead of the months a licensed deployment usually takes.
It’s also why CBRS behaves differently than the infrastructure most IT and OT teams are used to owning outright. Access isn’t fixed. It’s arbitrated, tier by tier, in real time, by a system the enterprise running the network doesn’t control.
The Blind Spot Scaling Right Along With It
Manufacturers, utility crews, and port operators aren’t deploying CBRS for a side project. They’re running AGVs, cobots, quality inspection cameras, substation sensors, and crane systems over it, the exact equipment keeping production and critical infrastructure running. Manufacturing use alone is on track to grow close to 9 times by 2032.
Here’s the part the report doesn’t say: most of these teams can’t fully account for what’s connected to that network right now.
A technician shows up to service a piece of equipment, plugs a diagnostic laptop into the private network to run a quick check, then moves on to the next job. Except the laptop doesn’t always leave with them. Weeks later, nobody remembers it’s still sitting there, because nobody was tracking it in the first place.
Your OT security tools were built to watch plant floor and field protocols: PLCs, SCADA, industrial Ethernet. They weren’t built to see what’s connecting to the cellular layer underneath it. That gap doesn’t matter much when CBRS is running a pilot in one corner of one facility. It matters a great deal when it’s carrying production networks for hundreds of manufacturers today, and potentially nine times that number within six years.
What Scaling CBRS Safely Actually Requires
Growth at this pace only works if visibility scales with it. That means three things most plant floor and field networks don’t have today.
- A live inventory of every device connected to the private network, not just the ones the deployment plan accounted for.
- Device identity that goes deeper than the SIM. A SIM proves a connection exists. It says nothing about whether the device behind it belongs there.
- Cellular-connected assets folded into the same security policy as the rest of the OT network, instead of sitting outside it in a blind spot an IEC 62443 audit will eventually find.
CBRS solved the cost and speed problem for private cellular. It didn’t solve the visibility problem, and the faster adoption grows across every sector building on it, the more that gap costs the teams responsible for it.
OneLayer works alongside the network and security teams already running CBRS deployments, giving them the same visibility into cellular-connected devices that they already expect from everything else on their network. If your team is scaling a CBRS deployment past its pilot phase, see how asset visibility works on a private cellular network.