{"id":812485,"date":"2026-01-09T15:57:09","date_gmt":"2026-01-09T14:57:09","guid":{"rendered":"https:\/\/www.devoteam.com\/expert-view\/adapt-or-exit-navigating-the-new-eu-cyber-resilience-act\/"},"modified":"2026-02-05T11:04:55","modified_gmt":"2026-02-05T10:04:55","slug":"adapt-or-exit-navigating-the-new-eu-cyber-resilience-act","status":"publish","type":"expert-view","link":"https:\/\/devoteam.info\/sk\/expert-view\/adapt-or-exit-navigating-the-new-eu-cyber-resilience-act\/","title":{"rendered":"Adapt or exit: Navigating the new EU Cyber Resilience Act"},"content":{"rendered":"\n<p class=\"wp-block-paragraph\">The Cyber Resilience Act (CRA) is a new EU regulation that sets cybersecurity-requirements for companies that <strong>produce<\/strong>,<strong> import<\/strong>, or <strong>distribute<\/strong> products with digital elements. While cybersecurity was previously often handled reactively, the CRA establishes a new starting point: Security must be integrated from the beginning and maintained throughout the product&#8217;s entire lifecycle (typically 5 years).&nbsp;&nbsp;<\/p>\n\n\n\n<p class=\"wp-block-paragraph\">The Cyber Resilience Act (CRA) aims to ensure that hardware and software products are resilient to cyber threats. This applies from the early design phase and all the way through the product&#8217;s lifespan. For many organisations, this is an extensive transformation that requires time, structured processes, and the right competencies.<\/p>\n\n\n\n<p class=\"wp-block-paragraph\">Although the final deadline is not until <strong>December 2027<\/strong>, there are multiple reasons to act now. <strong>First of all, the obligation to report actively exploited vulnerabilities and incidents takes effect earlier from 11. September 2026. <\/strong>Secondly,<strong> <\/strong>companies that lay out a compliance strategy will have a greater chance of achieving funds from the EU-compliance project, SECURE.<\/p>\n\n\n\n<p class=\"wp-block-paragraph\">Investing in CRA compliance is a <strong>must-have<\/strong>, as the financial consequences of non-compliance are significant. The regulation defines two levels of administrative fines:<\/p>\n\n\n\n<ul class=\"wp-block-list\">\n<li>Fines of up to <strong>EUR 15 million or 2.5% of global annual turnover<\/strong> for the most serious breaches of the essential cybersecurity requirements.<\/li>\n\n\n\n<li>Fines of up to <strong>EUR 10 million or 2% of global annual turnover<\/strong> for other failures related to obligations and documentation.<\/li>\n<\/ul>\n\n\n\n<p class=\"wp-block-paragraph\">Beyond financial consequences, companies also risk losing market access. Products that are not correctly CE marked and do not demonstrate verified compliance may not be placed on the EU market after <strong>December 2027<\/strong>.<\/p>\n\n\n\n<figure class=\"wp-block-image size-full\"><img loading=\"lazy\" decoding=\"async\" width=\"960\" height=\"540\" src=\"https:\/\/devoteam.info\/wp-content\/uploads\/2026\/01\/image.png\" alt=\"\" class=\"wp-image-806581\" srcset=\"https:\/\/devoteam.info\/wp-content\/uploads\/2026\/01\/image.png 960w, https:\/\/devoteam.info\/wp-content\/uploads\/2026\/01\/image-300x169.png 300w, https:\/\/devoteam.info\/wp-content\/uploads\/2026\/01\/image-768x432.png 768w\" sizes=\"auto, (max-width: 960px) 100vw, 960px\" \/><\/figure>\n\n\n\n<h3 class=\"wp-block-heading\" id=\"h-what-companies-are-subject-to-the-cra\"><strong>What companies are subject to the CRA?<\/strong><\/h3>\n\n\n\n<p class=\"wp-block-paragraph\">The regulation applies to all products with a digital component, ranging from small components and IoT devices to complex systems.<\/p>\n\n\n\n<p class=\"wp-block-paragraph\">A core principle of the CRA is that responsibility is not placed solely on the <strong>manufacturer<\/strong>, but shared across the entire supply chain.&nbsp;<\/p>\n\n\n\n<ul class=\"wp-block-list\">\n<li><strong>Manufacturers<\/strong> must be able to demonstrate that security is integrated by design and by default. This includes maintaining a software bill of materials (SBOM) to keep track off all third-party components and having processes for vulnerability management in place (to name a few).<\/li>\n\n\n\n<li><strong>Importers<\/strong> are responsible for ensuring that products from third countries meet the same requirements.<\/li>\n\n\n\n<li><strong>Distributors <\/strong>must verify that products are correctly CE marked and accompanied by the required documentation before they are placed on the market.<\/li>\n<\/ul>\n\n\n\n<p class=\"wp-block-paragraph\">The CRA imposes not only technical requirements, but also organisational requirements related to governance, documentation, and collaboration between the involved actors. However, the workload required to fulfil the technical and organisational requirements depends on the status of the company.<br><\/p>\n\n\n\n<figure class=\"wp-block-image size-large\"><img loading=\"lazy\" decoding=\"async\" width=\"1024\" height=\"454\" src=\"https:\/\/devoteam.info\/wp-content\/uploads\/2026\/01\/image-3-1024x454.png\" alt=\"\" class=\"wp-image-806662\" srcset=\"https:\/\/devoteam.info\/wp-content\/uploads\/2026\/01\/image-3-1024x454.png 1024w, https:\/\/devoteam.info\/wp-content\/uploads\/2026\/01\/image-3-300x133.png 300w, https:\/\/devoteam.info\/wp-content\/uploads\/2026\/01\/image-3-768x340.png 768w, https:\/\/devoteam.info\/wp-content\/uploads\/2026\/01\/image-3.png 1329w\" sizes=\"auto, (max-width: 1024px) 100vw, 1024px\" \/><\/figure>\n\n\n\n<p class=\"has-base-background-color has-background wp-block-paragraph\"><\/p>\n\n\n\n<p class=\"wp-block-paragraph\"><strong>Unsure about your CRA obligations?<\/strong> Navigating the complexities of the CRA can be challenging. At Devoteam, we have developed a specialised <strong>CRA Readiness Assessment platform<\/strong> designed to provide clarity fast. We help you identify your specific legal role (Manufacturer, Importer, or Distributor), determine if your products are covered,&nbsp; and estimate the workload required to ensure full compliance before the December 2027 deadline.<\/p>\n\n\n\n<div class=\"wp-block-buttons is-layout-flex wp-block-buttons-is-layout-flex\">\n<div class=\"wp-block-button\"><a class=\"wp-block-button__link wp-element-button\" href=\"https:\/\/devoteam.info\/sk\/get-in-touch\/\">Contact us<\/a><\/div>\n<\/div>\n\n\n\n\t<div class=\"wp-block-acf-social-buttons align\">\n\n\t\n\t\n\t\n\t<\/div>\n\n\n\n\n\t<div class=\"wp-block-acf-social-buttons align\">\n\n\t\n\t\n\t\n\t<\/div>\n\n\n\n\n\t<div class=\"wp-block-acf-social-buttons align\">\n\n\t\n\t\n\t\n\t<\/div>\n\n\n\n\n<h3 class=\"wp-block-heading\" id=\"h-risk-categories-good-news-for-many-sme-s\"><strong>Risk categories: Good news for many SME\u2019s<\/strong><\/h3>\n\n\n\n<p class=\"wp-block-paragraph\">The regulation adopts a risk-based approach, under which products are categorised according to their relevance to cybersecurity.&nbsp;<\/p>\n\n\n\n<ul class=\"wp-block-list\">\n<li><strong>Default category (low risk):<\/strong> Most products (approx. 90%) fall into this category. This includes, e.g. smart consumer devices, games, software, and standard IoT gadgets. <strong>The good news for SMEs is that for these products, you can perform a &#8220;Self-Assessment&#8221;.<\/strong> You do not necessarily need an external auditor to approve the product, provided you document that you follow the harmonised standards.<\/li>\n\n\n\n<li><strong>Important &amp; critical categories (class I &amp; II):<\/strong> Products with a higher risk profile, such as network interfaces, identity management systems, industrial firewalls, and operating systems. These are subject to stricter requirements and will often require assessment by a third-party &#8220;Notified Body&#8221;.<\/li>\n<\/ul>\n\n\n\n<p class=\"wp-block-paragraph\">This means that companies must have a clear understanding of which product categories they operate with. In practice, this is often a complex task that requires both technical and regulatory expertise.<\/p>\n\n\n\n<p class=\"wp-block-paragraph\">The EU recognises that the new requirements are challenging for small and medium-sized enterprises (SMEs). To help companies adapt, the EU-funded project <strong>SECURE (Cyber Resilience for SMEs)<\/strong> offers financial support. Businesses can apply for grants of up to EUR 30,000, covering 50% of approved costs, such as product classification, employee training, and support with documentation. Companies can already apply in january 2026.<\/p>\n\n\n\n<p class=\"wp-block-paragraph\">Devoteam helps SMEs apply for EU funding to ensure compliance with CRA regulations.<\/p>\n\n\n\n<h3 class=\"wp-block-heading\" id=\"h-what-should-my-organisation-do-now\"><strong>What should my organisation do now?<\/strong><\/h3>\n\n\n\n<p class=\"wp-block-paragraph\"><span style=\"box-sizing: border-box; margin: 0px; padding: 0px;\">Devoteam strongly recommends the following actions to be taken by companies that manufacture, import and\/or distribute hardware and\/or software in the EU to ensure compliance before&nbsp;<strong>Se<\/strong><\/span><strong>ptember 2026&nbsp;and&nbsp;December 2027.<\/strong>&nbsp;<\/p>\n\n\n\n<p class=\"has-gray-light-background-color has-background wp-block-paragraph\"><strong>1. Define your company role:<\/strong> First and foremost, determine your legal role under the CRA: Are your company a Manufacturer, Importer, or Distributor? Be aware that <strong>many companies act as multiple entities simultaneously<\/strong>. For instance, if you manufacture your own software but also import hardware from outside the EU to sell under your brand, you must comply with the responsibilities of <em>both<\/em> a Manufacturer and an Importer.<\/p>\n\n\n\n<p class=\"has-gray-light-background-color has-background wp-block-paragraph\"><strong>2. Apply for EU SME funding:<\/strong> The EU offers grants to help SMEs cover the costs of becoming compliant with the CRA. Applying early ensures you get financial support for the transition.<\/p>\n\n\n\n<p class=\"has-gray-light-background-color has-background wp-block-paragraph\"><strong>3. Review your product pipeline: <\/strong>Assess products currently in development that are scheduled to launch after December 2027. You must integrate CRA requirements into the development phase <em>now<\/em>. If these products are not developed according to CRA standards from the start, they cannot legally be placed on the EU market when the regulation is fully enforced, potentially wasting years of R&amp;D efforts.<\/p>\n\n\n\n<p class=\"has-gray-light-background-color has-background wp-block-paragraph\"><strong>4. Classify your product portfolio:<\/strong> Map your existing and upcoming products to the CRA risk categories (Default, Class I, or Class II). This is a critical step to determine the compliance activities needed.&nbsp;<\/p>\n\n\n\n<p class=\"has-gray-light-background-color has-background wp-block-paragraph\"><strong>5. Prepare for early reporting (2026):<\/strong> While full compliance is due in 2027, establish your incident reporting processes as a priority. By <strong>September 11, 2026<\/strong>, you must be ready to report actively exploited vulnerabilities and severe incidents to authorities within 24 hours.<\/p>\n\n\n\n<h3 class=\"wp-block-heading\" id=\"h-conclusion\"><strong>Conclusion<\/strong><\/h3>\n\n\n\n<p class=\"wp-block-paragraph\">Overall, the Cyber Resilience Act marks a clear shift in how digital products are regulated in the EU. Cybersecurity is no longer a matter of best practice or voluntary standards, but a fundamental requirement for market access. For companies, this means that cybersecurity is increasingly becoming an integral part of product development, business strategy, and collaboration across the value chain. Companies that begin their efforts early are better positioned to both comply with the regulation and meet the expectations of customers, partners, regulators and to receive funding from SECURE. In this sense, the CRA is not only about compliance, but about building more resilient digital products in a market where trust and security are becoming increasingly important.<\/p>\n\n\n\n<p class=\"wp-block-paragraph\">The full regulation, along with guidance on available support, can be found in the <a href=\"https:\/\/eur-lex.europa.eu\/legal-content\/EN\/TXT\/?uri=CELEX%3A32024R2847\">EU\u2019s official documentatio<\/a>n on the Cyber Resilience Act.&nbsp;<\/p>\n\n\n\n<div class=\"wp-block-columns alignfull has-secondary-background-color has-background is-layout-flex wp-container-core-columns-is-layout-4b1fd674 wp-block-columns-is-layout-flex\" style=\"margin-top:var(--wp--preset--spacing--medium);margin-bottom:var(--wp--preset--spacing--medium)\">\n<div class=\"wp-block-column is-vertically-aligned-center is-layout-flow wp-container-core-column-is-layout-969dc29d wp-block-column-is-layout-flow\" style=\"padding-top:0;padding-right:0;padding-bottom:0;padding-left:0;flex-basis:100%\">\n<p class=\"has-text-align-left has-main-color has-text-color has-medium-font-size wp-container-content-42c95ffb wp-block-paragraph\"><strong>Secure AI, Sustainable Value: Your CISO\u2019s Guide to AI Risk Management<\/strong><\/p>\n\n\n\n<figure class=\"wp-block-image aligncenter size-large\"><img loading=\"lazy\" decoding=\"async\" width=\"1024\" height=\"729\" src=\"https:\/\/devoteam.info\/wp-content\/uploads\/2025\/04\/CyberTrust_Ebook_Secure-AI-Sustainable-Value_mockup_open-1-1024x729.png\" alt=\"Secure-AI-Sustainable-Value. cover\" class=\"wp-image-582077\" srcset=\"https:\/\/devoteam.info\/wp-content\/uploads\/2025\/04\/CyberTrust_Ebook_Secure-AI-Sustainable-Value_mockup_open-1-1024x729.png 1024w, https:\/\/devoteam.info\/wp-content\/uploads\/2025\/04\/CyberTrust_Ebook_Secure-AI-Sustainable-Value_mockup_open-1-300x213.png 300w, https:\/\/devoteam.info\/wp-content\/uploads\/2025\/04\/CyberTrust_Ebook_Secure-AI-Sustainable-Value_mockup_open-1-768x546.png 768w, https:\/\/devoteam.info\/wp-content\/uploads\/2025\/04\/CyberTrust_Ebook_Secure-AI-Sustainable-Value_mockup_open-1-1536x1093.png 1536w, https:\/\/devoteam.info\/wp-content\/uploads\/2025\/04\/CyberTrust_Ebook_Secure-AI-Sustainable-Value_mockup_open-1.png 1920w\" sizes=\"auto, (max-width: 1024px) 100vw, 1024px\" \/><\/figure>\n<\/div>\n\n\n\n<div class=\"wp-block-column is-vertically-aligned-stretch has-secondary-background-color has-background is-layout-flow wp-block-column-is-layout-flow\" style=\"flex-basis:100%\">\n<div class=\"wp-block-group has-main-color has-secondary-background-color has-text-color has-background has-link-color wp-elements-1 is-layout-flow wp-container-core-group-is-layout-23162e80 wp-block-group-is-layout-flow\" style=\"margin-top:0;margin-bottom:0;padding-top:var(--wp--preset--spacing--medium);padding-right:var(--wp--preset--spacing--large);padding-bottom:var(--wp--preset--spacing--medium);padding-left:var(--wp--preset--spacing--large)\">\n<div class=\"wp-block-group is-vertical is-content-justification-left is-layout-flex wp-container-core-group-is-layout-4a15ae55 wp-block-group-is-layout-flex\" style=\"min-height:0px\">\n<p class=\"has-medium-small-font-size wp-block-paragraph\">Get your free Whitepaper if you want to:<\/p>\n\n\n\n<ul class=\"wp-block-list\">\n<li><strong>Learn <\/strong>to identify and manage unique AI security challenges<\/li>\n\n\n\n<li><strong>Implement<\/strong> Devoteam&#8217;s AI Cyber Trust Cube &#8211; our framework for trusted and secure AI deployments<\/li>\n\n\n\n<li><strong>Align<\/strong> AI with your organisation\u2019s sustainability goals<\/li>\n\n\n\n<li><strong>Gain<\/strong> insights from Devoteam\u2019s leading AI security experts.<\/li>\n<\/ul>\n\n\n\n<div class=\"wp-block-buttons is-content-justification-left is-layout-flex wp-container-core-buttons-is-layout-5446dffb wp-block-buttons-is-layout-flex\">\n<div class=\"wp-block-button\"><a class=\"wp-block-button__link wp-element-button\" href=\"https:\/\/devoteam.info\/whitepaper\/ai-risk-management-guide\/\">Download the Whitepaper<\/a><\/div>\n<\/div>\n<\/div>\n<\/div>\n<\/div>\n<\/div>\n","protected":false},"excerpt":{"rendered":"<p>The Cyber Resilience Act (CRA) is a new EU regulation that sets cybersecurity-requirements for companies that produce, import, or distribute products with digital elements. While cybersecurity was previously often handled reactively, the CRA establishes a new starting point: Security must be integrated from the beginning and maintained throughout the product&#8217;s entire lifecycle (typically 5 years).&nbsp;&nbsp; [&hellip;]<\/p>\n","protected":false},"featured_media":0,"template":"","categories":[2612,2614],"tags":[],"industry":[],"class_list":["post-812485","expert-view","type-expert-view","status-publish","hentry","category-ai-sk","category-cybersecurity-sk"],"acf":[],"cards":"\n\t<div class=\"single-post-card\">\n\n\t\t\n\n\t\t\n\t\t<div class=\"wp-block-group is-vertical is-layout-flex wp-container-core-group-is-layout-43282307 wp-block-group-is-layout-flex\">\n\t<p style=\"font-style:normal;font-weight:700\" class=\"has-link-color wp-elements-2 wp-block-lp-post-type has-text-color has-primary-color has-small-font-size\">Expert View<\/p>\n\n\t\t\n\t\t<h3 style=\"font-style:normal;font-weight:400\" class=\"wp-block-post-title has-base-font-size\"><a href=\"https:\/\/devoteam.info\/sk\/expert-view\/adapt-or-exit-navigating-the-new-eu-cyber-resilience-act\/\" target=\"_self\" >Adapt or exit: Navigating the new EU Cyber Resilience Act<\/a><\/h3><\/div>\n\t\t\n\t<\/div>\n\n","yoast_head":"<!-- This site is optimized with the Yoast SEO Premium plugin v28.4 (Yoast SEO v28.4) - https:\/\/yoast.com\/product\/yoast-seo-premium-wordpress\/ -->\n<title>Adapt or exit: Navigating the new EU Cyber Resilience Act | Devoteam<\/title>\n<meta name=\"description\" content=\"EU market access now hinges on the Cyber Resilience Act. With fines up to \u20ac15M and a strict 2027 deadline, manufacturers must ensure security by design or exit the market. Read the full compliance guide.\" \/>\n<meta name=\"robots\" content=\"index, follow, max-snippet:-1, max-image-preview:large, max-video-preview:-1\" \/>\n<link rel=\"canonical\" href=\"https:\/\/devoteam.info\/sk\/expert-view\/adapt-or-exit-navigating-the-new-eu-cyber-resilience-act\/\" \/>\n<meta property=\"og:locale\" content=\"en_US\" \/>\n<meta property=\"og:type\" content=\"article\" \/>\n<meta property=\"og:title\" content=\"Adapt or exit: Navigating the new EU Cyber Resilience Act\" \/>\n<meta property=\"og:description\" content=\"EU market access now hinges on the Cyber Resilience Act. With fines up to \u20ac15M and a strict 2027 deadline, manufacturers must ensure security by design or exit the market. Read the full compliance guide.\" \/>\n<meta property=\"og:url\" content=\"https:\/\/devoteam.info\/sk\/expert-view\/adapt-or-exit-navigating-the-new-eu-cyber-resilience-act\/\" \/>\n<meta property=\"og:site_name\" content=\"Devoteam\" \/>\n<meta property=\"article:modified_time\" content=\"2026-02-05T10:04:55+00:00\" \/>\n<meta property=\"og:image\" content=\"https:\/\/devoteam.info\/wp-content\/uploads\/2024\/12\/multi-ethnic-friends-raising-a-european-union-flag-2023-11-27-05-17-01-utc-1-scaled-1.jpg\" \/>\n\t<meta property=\"og:image:width\" content=\"1920\" \/>\n\t<meta property=\"og:image:height\" content=\"1280\" \/>\n\t<meta property=\"og:image:type\" content=\"image\/jpeg\" \/>\n<meta name=\"twitter:card\" content=\"summary_large_image\" \/>\n<meta name=\"twitter:label1\" content=\"Est. reading time\" \/>\n\t<meta name=\"twitter:data1\" content=\"7 minutes\" \/>\n<script type=\"application\/ld+json\" class=\"yoast-schema-graph\">{\"@context\":\"https:\\\/\\\/schema.org\",\"@graph\":[{\"@type\":\"WebPage\",\"@id\":\"https:\\\/\\\/devoteam.info\\\/sk\\\/expert-view\\\/adapt-or-exit-navigating-the-new-eu-cyber-resilience-act\\\/\",\"url\":\"https:\\\/\\\/devoteam.info\\\/sk\\\/expert-view\\\/adapt-or-exit-navigating-the-new-eu-cyber-resilience-act\\\/\",\"name\":\"Adapt or exit: Navigating the new EU Cyber Resilience Act | Devoteam\",\"isPartOf\":{\"@id\":\"https:\\\/\\\/devoteam.info\\\/sk\\\/#website\"},\"primaryImageOfPage\":{\"@id\":\"https:\\\/\\\/devoteam.info\\\/sk\\\/expert-view\\\/adapt-or-exit-navigating-the-new-eu-cyber-resilience-act\\\/#primaryimage\"},\"image\":{\"@id\":\"https:\\\/\\\/devoteam.info\\\/sk\\\/expert-view\\\/adapt-or-exit-navigating-the-new-eu-cyber-resilience-act\\\/#primaryimage\"},\"thumbnailUrl\":\"https:\\\/\\\/devoteam.info\\\/wp-content\\\/uploads\\\/2026\\\/01\\\/image.png\",\"datePublished\":\"2026-01-09T14:57:09+00:00\",\"dateModified\":\"2026-02-05T10:04:55+00:00\",\"description\":\"EU market access now hinges on the Cyber Resilience Act. With fines up to \u20ac15M and a strict 2027 deadline, manufacturers must ensure security by design or exit the market. Read the full compliance guide.\",\"breadcrumb\":{\"@id\":\"https:\\\/\\\/devoteam.info\\\/sk\\\/expert-view\\\/adapt-or-exit-navigating-the-new-eu-cyber-resilience-act\\\/#breadcrumb\"},\"inLanguage\":\"en-SK\",\"potentialAction\":[{\"@type\":\"ReadAction\",\"target\":[\"https:\\\/\\\/devoteam.info\\\/sk\\\/expert-view\\\/adapt-or-exit-navigating-the-new-eu-cyber-resilience-act\\\/\"]}]},{\"@type\":\"ImageObject\",\"inLanguage\":\"en-SK\",\"@id\":\"https:\\\/\\\/devoteam.info\\\/sk\\\/expert-view\\\/adapt-or-exit-navigating-the-new-eu-cyber-resilience-act\\\/#primaryimage\",\"url\":\"https:\\\/\\\/devoteam.info\\\/wp-content\\\/uploads\\\/2026\\\/01\\\/image.png\",\"contentUrl\":\"https:\\\/\\\/devoteam.info\\\/wp-content\\\/uploads\\\/2026\\\/01\\\/image.png\"},{\"@type\":\"BreadcrumbList\",\"@id\":\"https:\\\/\\\/devoteam.info\\\/sk\\\/expert-view\\\/adapt-or-exit-navigating-the-new-eu-cyber-resilience-act\\\/#breadcrumb\",\"itemListElement\":[{\"@type\":\"ListItem\",\"position\":1,\"name\":\"Home\",\"item\":\"https:\\\/\\\/devoteam.info\\\/sk\\\/\"},{\"@type\":\"ListItem\",\"position\":2,\"name\":\"Expert View\",\"item\":\"https:\\\/\\\/devoteam.info\\\/sk\\\/expert-view\\\/\"},{\"@type\":\"ListItem\",\"position\":3,\"name\":\"Adapt or exit: Navigating the new EU Cyber Resilience Act\"}]},{\"@type\":\"WebSite\",\"@id\":\"https:\\\/\\\/devoteam.info\\\/sk\\\/#website\",\"url\":\"https:\\\/\\\/devoteam.info\\\/sk\\\/\",\"name\":\"Devoteam\",\"description\":\"\",\"potentialAction\":[{\"@type\":\"SearchAction\",\"target\":{\"@type\":\"EntryPoint\",\"urlTemplate\":\"https:\\\/\\\/devoteam.info\\\/sk\\\/?s={search_term_string}\"},\"query-input\":{\"@type\":\"PropertyValueSpecification\",\"valueRequired\":true,\"valueName\":\"search_term_string\"}}],\"inLanguage\":\"en-SK\"}]}<\/script>\n<!-- \/ Yoast SEO Premium plugin. -->","yoast_head_json":{"title":"Adapt or exit: Navigating the new EU Cyber Resilience Act | Devoteam","description":"EU market access now hinges on the Cyber Resilience Act. With fines up to \u20ac15M and a strict 2027 deadline, manufacturers must ensure security by design or exit the market. Read the full compliance guide.","robots":{"index":"index","follow":"follow","max-snippet":"max-snippet:-1","max-image-preview":"max-image-preview:large","max-video-preview":"max-video-preview:-1"},"canonical":"https:\/\/devoteam.info\/sk\/expert-view\/adapt-or-exit-navigating-the-new-eu-cyber-resilience-act\/","og_locale":"en_US","og_type":"article","og_title":"Adapt or exit: Navigating the new EU Cyber Resilience Act","og_description":"EU market access now hinges on the Cyber Resilience Act. With fines up to \u20ac15M and a strict 2027 deadline, manufacturers must ensure security by design or exit the market. Read the full compliance guide.","og_url":"https:\/\/devoteam.info\/sk\/expert-view\/adapt-or-exit-navigating-the-new-eu-cyber-resilience-act\/","og_site_name":"Devoteam","article_modified_time":"2026-02-05T10:04:55+00:00","og_image":[{"width":1920,"height":1280,"url":"https:\/\/devoteam.info\/wp-content\/uploads\/2024\/12\/multi-ethnic-friends-raising-a-european-union-flag-2023-11-27-05-17-01-utc-1-scaled-1.jpg","type":"image\/jpeg"}],"twitter_card":"summary_large_image","twitter_misc":{"Est. reading time":"7 minutes"},"schema":{"@context":"https:\/\/schema.org","@graph":[{"@type":"WebPage","@id":"https:\/\/devoteam.info\/sk\/expert-view\/adapt-or-exit-navigating-the-new-eu-cyber-resilience-act\/","url":"https:\/\/devoteam.info\/sk\/expert-view\/adapt-or-exit-navigating-the-new-eu-cyber-resilience-act\/","name":"Adapt or exit: Navigating the new EU Cyber Resilience Act | Devoteam","isPartOf":{"@id":"https:\/\/devoteam.info\/sk\/#website"},"primaryImageOfPage":{"@id":"https:\/\/devoteam.info\/sk\/expert-view\/adapt-or-exit-navigating-the-new-eu-cyber-resilience-act\/#primaryimage"},"image":{"@id":"https:\/\/devoteam.info\/sk\/expert-view\/adapt-or-exit-navigating-the-new-eu-cyber-resilience-act\/#primaryimage"},"thumbnailUrl":"https:\/\/devoteam.info\/wp-content\/uploads\/2026\/01\/image.png","datePublished":"2026-01-09T14:57:09+00:00","dateModified":"2026-02-05T10:04:55+00:00","description":"EU market access now hinges on the Cyber Resilience Act. With fines up to \u20ac15M and a strict 2027 deadline, manufacturers must ensure security by design or exit the market. Read the full compliance guide.","breadcrumb":{"@id":"https:\/\/devoteam.info\/sk\/expert-view\/adapt-or-exit-navigating-the-new-eu-cyber-resilience-act\/#breadcrumb"},"inLanguage":"en-SK","potentialAction":[{"@type":"ReadAction","target":["https:\/\/devoteam.info\/sk\/expert-view\/adapt-or-exit-navigating-the-new-eu-cyber-resilience-act\/"]}]},{"@type":"ImageObject","inLanguage":"en-SK","@id":"https:\/\/devoteam.info\/sk\/expert-view\/adapt-or-exit-navigating-the-new-eu-cyber-resilience-act\/#primaryimage","url":"https:\/\/devoteam.info\/wp-content\/uploads\/2026\/01\/image.png","contentUrl":"https:\/\/devoteam.info\/wp-content\/uploads\/2026\/01\/image.png"},{"@type":"BreadcrumbList","@id":"https:\/\/devoteam.info\/sk\/expert-view\/adapt-or-exit-navigating-the-new-eu-cyber-resilience-act\/#breadcrumb","itemListElement":[{"@type":"ListItem","position":1,"name":"Home","item":"https:\/\/devoteam.info\/sk\/"},{"@type":"ListItem","position":2,"name":"Expert View","item":"https:\/\/devoteam.info\/sk\/expert-view\/"},{"@type":"ListItem","position":3,"name":"Adapt or exit: Navigating the new EU Cyber Resilience Act"}]},{"@type":"WebSite","@id":"https:\/\/devoteam.info\/sk\/#website","url":"https:\/\/devoteam.info\/sk\/","name":"Devoteam","description":"","potentialAction":[{"@type":"SearchAction","target":{"@type":"EntryPoint","urlTemplate":"https:\/\/devoteam.info\/sk\/?s={search_term_string}"},"query-input":{"@type":"PropertyValueSpecification","valueRequired":true,"valueName":"search_term_string"}}],"inLanguage":"en-SK"}]}},"uagb_featured_image_src":{"full":false,"thumbnail":false,"medium":false,"medium_large":false,"large":false,"1536x1536":false,"2048x2048":false},"uagb_author_info":{"display_name":"Andrea Schiolborg","author_link":"https:\/\/devoteam.info\/sk\/author\/"},"uagb_comment_info":0,"uagb_excerpt":"The Cyber Resilience Act (CRA) is a new EU regulation that sets cybersecurity-requirements for companies that produce, import, or distribute products with digital elements. While cybersecurity was previously often handled reactively, the CRA establishes a new starting point: Security must be integrated from the beginning and maintained throughout the product&#8217;s entire lifecycle (typically 5 years).&nbsp;&nbsp;&hellip;","_links":{"self":[{"href":"https:\/\/devoteam.info\/sk\/wp-json\/wp\/v2\/expert-view\/812485","targetHints":{"allow":["GET"]}}],"collection":[{"href":"https:\/\/devoteam.info\/sk\/wp-json\/wp\/v2\/expert-view"}],"about":[{"href":"https:\/\/devoteam.info\/sk\/wp-json\/wp\/v2\/types\/expert-view"}],"version-history":[{"count":1,"href":"https:\/\/devoteam.info\/sk\/wp-json\/wp\/v2\/expert-view\/812485\/revisions"}],"predecessor-version":[{"id":833544,"href":"https:\/\/devoteam.info\/sk\/wp-json\/wp\/v2\/expert-view\/812485\/revisions\/833544"}],"wp:attachment":[{"href":"https:\/\/devoteam.info\/sk\/wp-json\/wp\/v2\/media?parent=812485"}],"wp:term":[{"taxonomy":"category","embeddable":true,"href":"https:\/\/devoteam.info\/sk\/wp-json\/wp\/v2\/categories?post=812485"},{"taxonomy":"post_tag","embeddable":true,"href":"https:\/\/devoteam.info\/sk\/wp-json\/wp\/v2\/tags?post=812485"},{"taxonomy":"industry","embeddable":true,"href":"https:\/\/devoteam.info\/sk\/wp-json\/wp\/v2\/industry?post=812485"}],"curies":[{"name":"wp","href":"https:\/\/api.w.org\/{rel}","templated":true}]}}