Skip to main content
Oficiálna stránka verejnej správy SR
Cyber Resilience Act · National Security Authority
News

Webinar Supporting CRA Compliance

Published:

Ilustračný obrázok k webináru o hodnotení rizík CRA

The webinar took place online via Microsoft Teams on Thursday, 24 July 2025, from 14:30 to 16:00 CEST / 15:30 to 17:00 EEST.

The aim was to demonstrate how to perform a risk assessment in practice, thereby supporting cybersecurity and compliance with obligations arising from the CRA.

CRA Risk Assessment

Registration link

The Cyber Resilience Act (CRA) is a key part of the EU cybersecurity strategy and introduces CE marking for cybersecurity. To support broad adoption of the CRA, the CRA-AI project will develop an automated software platform to guide organisations through the process of obtaining and maintaining CE marking. The CRA-AI project will help businesses implement this process cost-effectively and reliably, using the automation capabilities of artificial intelligence to keep costs under control while maintaining a rigorous process. This will create market capacity to support businesses, particularly small and medium-sized enterprises, in achieving CRA compliance and thereby support the cybersecurity strategy. The European Cybersecurity Certification Scheme on Common Criteria (EUCC) is a potential basis for a common specification and is being assessed within the project as a possible framework for the CRA compliance process.

A series of four webinars was organised during 2025 to raise awareness and provide small and medium-sized enterprises with guidance on CRA compliance. The second webinar focused on the practical steps required to perform a cybersecurity risk assessment, one of the core obligations under the Cyber Resilience Act.

Participants gained a clear understanding of how to conduct a structured product risk assessment and how this fits into their organisation’s overall CRA compliance process. The webinar was particularly useful for small and medium-sized enterprises seeking to meet this key regulatory requirement effectively and efficiently. Speakers included Răzvan Gavrilă, Cybersecurity Expert at ENISA, and Conor McGoveran, Chief Technology Officer at Cyber Cert Labs, who provided detailed guidance and insight throughout the risk assessment process.

The webinar was held in English and lasted approximately 90 minutes, including time for participants’ questions.