Cyber Resilience Act
55
MENTIONS
37
EPISODES
35
PODCASTS
Search complete. 55 mentions across 37 episodes found for "Cyber Resilience Act".
Sep 11, 2026
You might want to watch what you say.
D
7:53Dave BittnerHOST
The company argues AI is lowering the expertise and labor required for sophisticated cyber operations while noting that familiar techniques, including phishing, stolen credentials, and software vulnerabilities remain central to successful attacks.
D
8:11Dave BittnerHOST
Manufacturers selling products with digital elements in the European Union are now subject to mandatory vulnerability and incident reporting under the Cyber Resilience Act.
D
8:22Dave BittnerHOST
Companies must notify authorities within twenty-four hours of learning about an actively exploited vulnerability or severe security incident, followed by a detailed report within seventy-two hours.
D
8:34Dave BittnerHOST
Reports must be submitted through ENISA's single reporting platform, and manufacturers may also need to quickly inform affected users about vulnerabilities, incidents, and available mitigations.
Django Developers Survey Results & Reproducible Python Builds
C
22:08Christopher BaileyHOST
SBOMs, as they're abbreviated, are used as inputs for SCA tools such as scanners for vulnerabilities and licenses, and have been gaining traction in global software regulations and frameworks.
C
22:21Christopher BaileyHOST
SBOMs are required by recent software security regulations like the Secure Software Development Framework and the Cyber Resilience Act.
C
22:30Christopher BaileyHOST
770 was accepted in April last year.
C
22:32Christopher BaileyHOST
I won't dive too much further into all the specifics of it, of the PEP, but it's w- well written and definitely something you might wanna look into.
11-Sep-2026 | McKesson Breach, AI-Powered PaperCut Attacks and EU Cyber Rules
S
0:48speaker_0VOICE_ACTOR
Top story number two.
S
0:50speaker_0VOICE_ACTOR
The EU Cyber Resilience Act is tightening reporting requirements for manufacturers of connected products, requiring them to disclose actively exploited vulnerabilities and severe incidents within strict timeframes.
S
1:03speaker_0VOICE_ACTOR
The rules are designed to improve transparency and speed up response across the software supply chain, but they also raise compliance pressure for vendors selling into the European market.
S
1:14speaker_0VOICE_ACTOR
For executives, the measure signals a shift from voluntary disclosure to mandatory cyber incident reporting with significant operational and legal consequences.
The Path To "Everyday Automation"—Connect, Visualize, Secure And Scale
R
3:37Raj RajendraGUEST
But knowing that cybersecurity is going to be a law, if not in the US, in Europe, they have legislation coming out that we had to comply by 2027.
R
3:49Raj RajendraGUEST
It's called Cyber Resilience Act.
R
3:54Raj RajendraGUEST
And we had to be ready with all of our systems.
R
3:56Raj RajendraGUEST
So customers get capabilities beyond previously associated with larger PLC system while retaining the simplicity and cost-effectiveness expected in small applications.
6 MINS LATER
R
10:22Raj RajendraGUEST
These features help protect against unauthorized access, support compliance requirements, and improve long-term operational reliability.
C
10:32Chris McNamaraHOST
Okay, we're talking compliance.
C
10:34Chris McNamaraHOST
The Cyber Resilience Act that we touched on a minute ago is on the tip of everyone's tongue in this space.
C
10:39Chris McNamaraHOST
And that deadline for compliance is going to be here before we know it.
Cyber Bytes: Deep Cyber's Weekly News Update – 2026-09-11
S
3:03speaker_0HOST
The thread connecting these first three stories is trust being used as a weapon, and European regulators have clearly had enough of that.
S
3:11speaker_0HOST
Starting this week, the European Union's Cyber Resilience Act requires companies selling connected products in Europe to report serious security incidents to regulators within 24 hours of discovery.
S
3:25speaker_0HOST
That's not 72 hours, not a week, 24 hours.
S
3:29speaker_0HOST
The law covers manufacturers, developers, and distributors of virtually anything with software or network connectivity, from consumer electronics to industrial equipment.
From Sensor to Action: Because Availability Isn’t Monitored – It’s Protected
J
3:46Joachim MahlstedtGUEST
Uh, so everybody knows NIS2 is, is there to stay.
J
3:50Joachim MahlstedtGUEST
The Cyber Resilience Act is [laughs] has us all, uh, caught up in, in, in many activities, but, uh, also GDPR and, and there has been a great rise in, in compliancy requirements which we all have to face.
J
4:02Joachim MahlstedtGUEST
And if you compare this now with the problems which we are having in getting personnel, you know, personnel who are actually able to operate these systems which we are required to have, also paired maybe with a lot of, uh, complexity within these silos of systems.
J
4:18Joachim MahlstedtGUEST
Suddenly you notice there's a high risk of failure-
Skynet Comes Online - The 443 Podcast - Episode 386
M
10:40Marc LaliberteHOST
Up until now, the market continues to decide that security is less important than something that's cheap and that technically works.
M
10:47Marc LaliberteHOST
That's why we're seeing things like the Cyber Resilience Act come in to force a lot of these security practices across vendors like WatchGuard.
M
10:55Marc LaliberteHOST
But With something like ID verification, since that as a topic is becoming so important across the world, we definitely need some sort of like, okay, if you're gonna require it, maybe have some requirements on how they actually secure that type of data too.
C
11:10Corey NachreinerHOST
Yeah, I want you to make sure there's nothing else we should finish in the story before we discuss takeaways.
MOSE Shorts 41 - Cyber Resilience Act - You Need to Act NOW
I
0:03Ildikó VáncsaHOST
Let's venture over to the corporate land a little bit in Europe, or well, more specifically, in the European Union market, which means that we're also talking to folks in other countries who are not in the European Union, but they might have a product on that market.
I
0:26Ildikó VáncsaHOST
Because I don't know if you heard but there is this thing called Cyber Resilience Act which is not about open source but it does affect open source as well it is about all the digital products that are hitting the European market.
I
0:43Ildikó VáncsaHOST
And if they happen to have some kind of vulnerability in them, that is a problem.
I
0:49Ildikó VáncsaHOST
And if that vulnerability, to my knowledge, if it is in an open source project, like the vulnerability itself is in the upstream project, then the companies also have some responsibilities to report that vulnerability, um, probably multiple places, but one of those is the open source community itself.
I
1:13Ildikó VáncsaHOST
And I also remember reading it somewhere that if the company has a fix to the vulnerability, they are also obligated to share that.
I
1:23Ildikó VáncsaHOST
Now, the Cyber Resilience Act has been a long process of forming and then having all the standards and processes set up around it and some deadlines are coming up.
I
1:37Ildikó VáncsaHOST
So can you give a little bit of an overview of where we are and what crazy things I said that may or may not be reality?
C
1:49Christopher CRob RobinsonGUEST
So the European Union Cyber Resilience Act is one of the most impactful pieces of legislation that I've seen in my career.
E5 - Reporting obligations (Article 14)
P
0:18Piet De VaereHOST
Hello, Pete.
P
0:20Piet De VaereHOST
Welcome to our fifth episode of O2 Resilience, the premier podcast about the EU Cyber Resilience Act and so much more.
A
0:29August BourniqueHOST
Are we still the only podcast about the CRA? I guess we should not
A
0:32August BourniqueHOST
be the people informing others of that.
Episode 33 – From Secure Products to Resilient Companies
S
2:35Steve AtkinsHOST
Now we begin the new season in the heart of European industry.
S
2:39Steve AtkinsHOST
The Cyber Resilience Act and NIS2 are changing the responsibilities of manufacturers, product developers and senior management.
S
2:48Steve AtkinsHOST
The CRA focuses on the security of products with digital elements throughout their lifecycle While NIS2 addresses organizational resilience, cyber risk management, and more importantly, management accountability.
S
3:04Steve AtkinsHOST
For industrial companies, these responsibilities increasingly meet inside the same product, system, and business process.
27 more episodes mention Cyber Resilience Act.
Create an account to see the whole feed, search across every transcript, and follow the entities you care about.