The new Cyber Resilience Act (CRA) marks a significant step in enhancing product cybersecurity across the EU. Companies now have a three-year transition period, until December 11, 2027, to ensure their hardware and software products with digital elements comply with the new rules.
Why does the CRA matter?
The CRA reduces cybersecurity incidents, lowers business costs, and boosts consumer trust. By ensuring stronger protections, it aims to increase the demand for secure, reliable products both within the EU and globally.
What businesses need to know:
- The CRA focuses on product cybersecurity, addressing critical gaps in previous regulations.
- It applies to manufacturers, importers, and distributors of products with digital elements intended for the EU market. A simple example is smartphones or mobile apps that handle personal data or devices providing cybersecurity solutions, such as firewalls or routers.
- The CRA impacts the entire product lifecycle, meaning its requirements affect various areas of your business.
What do businesses need to do?
To comply with the CRA, you must:
1. Identify if your product falls under the regulation and confirm its eligibility.
2. Classify its risk level, ranging from “default” products to “highly critical” ones.
3. Implement security updates and vulnerability management systems to ensure ongoing product safety.
4. Prepare detailed technical documentation that meets the requirements outlined in Annex VII of the CRA.
Services offered by ECOVIS ProventusLaw
Navigating the complexities of new cybersecurity regulations, such as the CRA, NIS2, DORA, and others, can be challenging. Our team at ECOVIS ProventusLaw specialises in tailored solutions to help your business comply with these requirements.
Whether you’re developing a product strategy, revising your processes, or assessing risks, ECOVIS ProventusLaw can ensure your transition is smooth, effective, and compliant. From product assessments and risk classifications to preparing technical documentation and compliance strategies, we’re here to make your transition seamless and effective.