What is the Cyber Resilience Act?
The Cyber Resilience Act is a European regulation designed to ensure that products are developed and operated in a secure manner throughout their entire lifecycle.
Key CRA requirements:
- Security by design – Cybersecurity integrated from the product development stage
- Vulnerability management – Identifying and remediating vulnerabilities
- Reporting obligations – Documenting and reporting security vulnerabilities
- Updates and maintenance – Products must be updated and maintained on a regular basis
The aim is to establish a consistent level of security for all connected products in the EU and maintain that level throughout the entire lifecycle – from industrial drive systems to complex production facilities.
How does AMKmotion support cybersecurity?
As a provider of drive and automation solutions, AMKmotion systematically integrates cybersecurity into its products.
Our services to support your CRA compliance:
- Security by design in hardware and software
- Secure communication interfaces and system architectures
- Support for integration into machines and equipment
- Provision of product documentation and EU declarations of conformity (CE marking)
PSIRT – Product Security Incident Response Team
Our PSIRT team supports you with all aspects of industrial cybersecurity:
- Rapid response to security reports
- Analysis and assessment of vulnerabilities
- Coordination of mitigation measures
- Transparent and structured communication
Responsibilities of machine manufacturers and operators
The CRA affects the entire value chain, not just component manufacturers.
Machine and equipment manufacturers:
- Develop cybersecure machines using secure components
- Perform risk assessments for machines
- Place CRA-compliant machines on the market
- Ensure documentation and EU conformity
Operators (end users):
- Operate equipment securely
- Implement updates and maintenance activities
- Implement IT and OT security measures
Cybersecurity can only be implemented successfully through close collaboration across the entire value chain – from individual components to the finished application.
Downloads
Report vulnerabilities quickly and directly to our PSIRT team. We provide professional support for all cybersecurity-related matters.