We have to send the verification link to your mailbox, please check and verify
Did not receive verification mail? Please confirm whether the mailbox is correct or not Re send mail
Determine

European Commission: Cyber Resilience Act

IPR Daily

2022-09-20 17:40:24

The proposal for a regulation on cybersecurity requirements for products with digital elements, known as the Cyber Resilience Act, bolsters cybersecurity rules to ensure more secure hardware and software products.


Such products suffer from two major problems adding costs for users and the society:


1. a low level of cybersecurity, reflected by widespread vulnerabilities and the insufficient and inconsistent provision of security updates to address them, and

2. an insufficient understanding and access to information by users, preventing them from choosing products with adequate cybersecurity properties or using them in a secure manner. 


While existing internal market legislation applies to certain products with digital elements, most of the hardware and software products are currently not covered by any EU legislation tackling their cybersecurity. In particular, the current EU legal framework does not address the cybersecurity of non-embedded software, even if cybersecurity attacks increasingly target vulnerabilities in these products, causing significant societal and economic costs.


Two main objectives were identified aiming to ensure the proper functioning of the internal market: 


1. create conditions for the development of secure products with digital elements by ensuring that hardware and software products are placed on the market with fewer vulnerabilities and ensure that manufacturers take security seriously throughout a product’s life cycle; and

2. create conditions allowing users to take cybersecurity into account when selecting and using products with digital elements.


Four specific objectives were set out:


1. ensure that manufacturers improve the security of products with digital elements since the design and development phase and throughout the whole life cycle;

2. ensure a coherent cybersecurity framework, facilitating compliance for hardware and software producers;

3. enhance the transparency of security properties of products with digital elements, and

4. enable businesses and consumers to use products with digital elements securely.




Source: European Commission

Editor: IPR Daily-Ann

    I also said the two sentence
    Also you can enter 140words
    I want to comment.
    Reply
    Also you can enter 70 words