Access Alert: European Institutions reach trilogue agreement on Cyber Resilience Act

Access Alert: European Institutions reach trilogue agreement on Cyber Resilience Act

Co-legislators in the EU institutions reached a trilogue agreement on the proposal for a Cyber Resilience Act following a late-night meeting on Thursday 30 November. The proposed regulation introduces horizontal cybersecurity requirements for products with digital elements to prevent cyber vulnerabilities on the market. These requirements include vulnerability reporting, keeping security updates available, and ensuring supply chain security.

The newly agreed text clarifies that manufacturers of digital products will need to provide security support for five years and keep updates publicly available for ten years, as well as conduct a risk assessment that will inform which security requirements are applicable to their product. The reporting requirements are a key change from previous drafts to the new dual approach in the agreed text. Manufacturers must inform the EU Cybersecurity Agency (ENISA) in addition to Member State authorities via a single reporting platform, reflecting the deal struck between the European Parliament and Council to resolve the conflict of competence.

The text will be now formally approved in the European Parliament and Council, after which it will be published in the EU Official Journal and passed into law. Requirements under the legislation will begin to apply in early 2027.

Cyber-attacks are among the fastest-growing forms of crime worldwide in terms of scale, cost, and sophistication. New regulations like the Cyber Resilience Act drive organisations to address their compliance roadmap and optimise their cybersecurity awareness. If you are interested in learning more about EU cybersecurity policy, please contact Mark Smitham at [email protected] or Rory Gilliland at [email protected].

Related Articles

AI for All in Thailand: Building an AI-ready economy with Google

AI for All in Thailand: Building an AI-ready economy with Google

อ่านบทความนี้เป็นภาษาไทย A doctor in Bangkok analyzes medical images with AI, leading to a faster, more accurate diagnosis for her patient....

19 Dec 2024 AI Policy Lab
The Role of Earth Observation in Combating Desertification in Middle Eastern Countries

The Role of Earth Observation in Combating Desertification in Middle Eastern Countries

This month’s UNCCD COP16 in Riyadh marked a pivotal moment in combating global land degradation and drought, with outcomes including...

13 Dec 2024 Opinion
Access Alert: Enhancing Efficiency in India’s Logistics Through AI and Digital Integration

Access Alert: Enhancing Efficiency in India’s Logistics Through AI and Digital Integration

A recent panel discussion at the Bengaluru Tech Summit 2024 on 20 November 2024 focused on the transformative role of...

29 Nov 2024 Opinion
Access Alert: How Will Deepfake Regulations in APAC Impact Your Business?

Access Alert: How Will Deepfake Regulations in APAC Impact Your Business?

The rise of deepfakes – AI-generated content that manipulates audio, video, or images to create realistic but false representations –...

29 Nov 2024 Opinion