Cyber Resilience Act: Enhanced Cybersecurity Requirements Proposed for Digital Products in the European Union

Cyber Resilience Act: Enhanced Cybersecurity Requirements Proposed for Digital Products in the European Union

(IN BRIEF) The European Parliament’s Industry, Research and Energy Committee has approved the Cyber Resilience Act, a legislation aimed at enhancing the security of digital products within the European Union. The act establishes uniform cybersecurity requirements for products with digital features, such as connected doorbells and Wi-Fi routers. It proposes precise definitions, feasible timelines, and a fair distribution of responsibilities. The act also suggests expanding the list of covered products to include identity management systems software, smart home assistants, and private security cameras. Additionally, the act emphasizes the importance of automatic security updates and the need for cybersecurity education and training programs. The draft act received strong support from MEPs and will proceed to negotiations with the Council. The final decision will be made in an upcoming plenary session. The act aims to address the increasing cyber threats faced by digital products and ensure the security and safety of consumers and businesses in the European Union.

(PRESS RELEASE) BRUSSELS, 19-Jul-2023 — /EuropaWire/ — The European Parliament’s Industry, Research and Energy Committee has endorsed the Cyber Resilience Act, a comprehensive plan aimed at bolstering the security of digital products across the European Union. The act seeks to establish a uniform set of cybersecurity requirements to ensure the safety, resilience, and transparency of products with digital elements, such as connected doorbells, baby monitors, and Wi-Fi routers.

Under the proposed legislation, all digital products will be subject to more robust cybersecurity measures. The act introduces precise definitions, realistic timelines, and a fair distribution of responsibilities. It categorizes products based on their criticality and the level of cybersecurity risks they pose. The committee recommends expanding the list of covered products to include identity management systems software, password managers, biometric readers, smart home assistants, smartwatches, and private security cameras. Additionally, the act emphasizes the importance of timely security updates, which should be applied automatically whenever technically feasible, separate from functionality updates.

Recognizing the significance of cybersecurity expertise, MEPs propose initiatives to enhance professional skills in the field. This includes the implementation of education and training programs, collaborative initiatives, and strategies to promote workforce mobility.

Lead MEP Nicola Danti (Renew, IT) stated, “With the increasing interconnection of digital systems, cybersecurity must become a top priority for both industry and consumers. Europe’s security in the digital realm is only as strong as its weakest link. The Cyber Resilience Act will result in more secure hardware and software products, address vulnerabilities, and minimize cyber threats to our citizens.”

The draft cyber resilience act received overwhelming support from the Industry Committee, with 61 votes in favor, 1 against, and 10 abstentions. MEPs also voted to initiate negotiations with the Council, garnering 65 votes in favor, 2 against, and 5 abstentions. The final decision on the act’s approval will be made during the upcoming plenary session, where the full House will consider the matter.

In recent years, the prevalence of cyber-attacks through digital products has risen significantly, highlighting the need for improved security measures. Consumers have experienced security breaches related to products such as baby monitors, robot-vacuum cleaners, Wi-Fi routers, and alarm systems. Ensuring the security of digital products within the supply chain has become a crucial concern for businesses, as product security gaps have already caused financial losses for three in five vendors.

Media contacts:

Baptiste CHATAIN
Press Officer
(+32) 2 28 40992 (BXL)
(+33) 3 881 74151 (STR)
(+32) 498 98 13 37
baptiste.chatain@europarl.europa.eu

SOURCE: The European Parliament

MORE ON CYBERSECURITY, ETC.:

Follow EuropaWire on Google News
EDITOR'S PICK:

Comments are closed.