S106
·
Weiterbildung

Cyber Resilience Act: Requirements for Hardware and Software

The Cyber Resilience Act imposes security requirements on hardware and software with digital elements throughout their entire life cycle. You learn how conformity assessment, reporting obligations, and CE marking work.

Developer installs a security update on a test device at the test bench while a colleague documents it
Duration

55 min

Format

Multimodal

Languages

Über 30 Sprachen

Proof

Teilnahmebescheinigung

Challenge

The Cyber Resilience Act (Regulation (EU) 2024/2847) makes cybersecurity a prerequisite for placing connected products on the market in the EU – from smart home devices and industrial controls to software. Manufacturers must demonstrate security by design, fix vulnerabilities during the support period, report actively exploited vulnerabilities to ENISA within 24 hours, and ensure full conformity from December 2027. Importers and distributors also have obligations; violations can be penalized with up to 15 million euros or 2.5% of turnover.

Learning objectives
  • You have an overview of the scope, product categories, and timeline of the Cyber Resilience Act.
  • You understand the essential cybersecurity requirements and vulnerability management.
  • You know about the conformity assessment procedures for standard, important, and critical products.
  • You are familiar with the reporting obligations for actively exploited vulnerabilities and severe incidents.
  • You know the obligations of manufacturers, importers, and distributors, as well as the technical documentation and CE marking.
Agenda
00 Fundamentals and scope of the CRA
01 Security requirements across the product life cycle
02 Vulnerability management and reporting obligations
03 Conformity assessment and CE marking
04 Obligations of economic operators and sanctions
05 Summary
06 Knowledge check incl. certificate of completion
Target group

Product managers, heads of development, product security, and compliance in companies that manufacture, import, or distribute hardware or software with digital elements.

Leading organizations trust Bridgly

Logo von Ols
Logo von Ols
Logo von Ols
All training courses on one platform:

Bridgly learning platform

Our platform bundles all training management functions, from planning to reporting, in one place.

Training organization

Define who is trained on which content and when.

Training documentation

See at any time who completed which content and when.

Manage participants

CSV import, learning groups, and access rights in one place.

Automated
reminders

Deadlines and recurring training run automatically.

FAQ

Frequently Asked Questions

Here you will find the most important answers.

Is data protection training for employees mandatory under the GDPR?
Which cyber threats should companies train their employees on?
What are the consequences of missing data protection training in the event of a data breach?
What training obligations arise from NIS-2 and the BSI Act (BSIG)?
How often must data protection and IT security training be repeated?
How does GDPR training for employees differ from the qualification as a data protection officer?
Contact

Train your employees in a legally compliant and verifiable way

Training and professional development for companies and public-sector clients – with audit-proof documentation and a practical focus.

Get in touch now
Eine Hand blättert in einem grauen Ringordner mit Tabellen, dahinter ein aufgeklappter Laptop

Note: Some text, images, and videos on this website were generated using artificial intelligence.
All content is for informational purposes and has been carefully reviewed from a journalistic perspective, but does not claim to be exhaustive or legally binding.