Topics/Information Security & Compliance/Cyber Resilience Act — Reporting & Product Security

Information Security & Compliance

Cyber Resilience Act — Reporting & Product Security

The 24-hour reporting duty for manufacturers of connected products: detect, assess, report — and who in the company owns each step.

Full story course ~30 minutesMicro series ~25 minutes~5 modulesCertificateTest-out

Course preview

Watch module 1 for free: right in your browser, no sign-up.

What your team will learn

  • Anwendungsbereich des CRA einordnen: welche Produkte mit digitalen Elementen betroffen sind
  • Die Meldefristen aus Artikel 14 unterscheiden — 24 Stunden Frühwarnung, 72 Stunden Vollmeldung — und wodurch sie ausgelöst werden
  • Eine aktiv ausgenutzte Schwachstelle von einer bekannten Schwachstelle und von einer Kundenstörung unterscheiden
  • Den eigenen Meldeweg kennen: wer erkennt, wer bewertet, wer meldet — und melden, bevor das Bild vollständig ist
  • Die Stichtage einordnen: Meldepflichten ab 11.09.2026, volle Produktanforderungen ab 11.12.2027

Formats & duration

Full story course

~30 minutes · ~5 modules

A cinematic full course with voiced video dialogues, decisions and a final test: ideal for the annual mandatory training.

Micro series

~25 minutes

The same topic as short units released over time: continuous awareness without blocking an afternoon.

Source & legal basis

VO (EU) 2024/2847 (Cyber Resilience Act) Open official source ↗

The course is coupled to the official source and updated when it changes.

Ready for training that actually lands?

Try the combination for free: automated administration for you, learning formats that fit your team, with no minimum or credit card.

Start 14-day free trial