2:00 PM – 2:25 PM

The European Cyber Resilience Act (CRA) changes the rules of the game for everyone developing products with digital elements. As of 11 September 2026, notification obligations apply; the full regulations will come into force on 11 December 2027.

Together with NIS2 and the delegated RED Regulation, the CRA brings about a fundamental shift within Operational Technology (OT) and embedded systems: security and compliance must be integrally incorporated into the architecture from the very first design concept through to the end of the lifecycle.

Heiko Henkel guides you through the CRA timeline, product classification under Annexes III and IV, the essential requirements of Annex I, and the mandatory security support of at least five years.

In addition, he shows how the Secure Development Lifecycle practices from IEC 62443-4-1 offer a practical route to regulatory compliance and help answer customer questions regarding supply chain security.

 

Speaker: Heiko Henkel, Head of Product Management Chip / Product Management Hilscher

Back to the program overview

 

 

FHI, federatie van technologiebranches