CYBERSECURITYTRACKER
TRACKING
Permanent story citation

Risky Bulletin: The EU publishes its upcoming cybersecurity standards

This page keeps the story as Cybersecurity Tracker first published it. If the tracker later corrects it, the correction appears below the original and never replaces it.

Back to newsStory 4503

As cited

Copy frozen at (site build).

regulatory

Risky Bulletin: The EU publishes its upcoming cybersecurity standards

The European Telecommunication Standards Institute (ETSI) published 17 cybersecurity standards that will govern product sales in the EU when the Cyber Resilience Act (CRA) takes effect in December 2027. The standards specify minimum security requirements across major product categories to achieve CRA compliance.

Why it matters: Vendors selling hardware and software in the EU must align products with these standards by December 2027 or face market access restrictions; practitioners should review how their organization's products and dependencies map to these requirements.

Source published
First seen by Cybersecurity Tracker

Source attribution

Glossary