• Skip to primary navigation
  • Skip to main content
  • Skip to primary sidebar
  • Skip to footer
  • Bluesky
  • Facebook
  • Instagram
  • Twitter
  • YouTube
CDE Almería – Centro de Documentación Europea – Universidad de Almería

CDE Almería - Centro de Documentación Europea - Universidad de Almería

Centro de Documentación Europea de la Universidad de Almería

  • HOME
  • WHAT´S ON
    • EU NEWS
    • Activities
    • EU Calls and Awards
    • Radio Program «Europe with You»
  • DOCUMENTATION
    • EU Media Collection
      • Web Space
      • MEDIATHEQUE REPOSITORY
  • Europe on the net
    • Institutions
    • EU Representation in Spain
    • European information network of Andalusia
  • ABOUT US
    • Presentation
    • Services
    • People
    • Contact
  • Spanish
  • English

SOTEU 2022: New EU cybersecurity rules ensure more secure hardware and software products

Inicio » Noticias UE » Institutional Affairs » SOTEU 2022: New EU cybersecurity rules ensure more secure hardware and software products

16 de September de 2022

The Commission has presented a proposal for a new Cyber Resilience Act to protect consumers and businesses from products with inadequate security features. A first ever EU-wide legislation of its kind, it introduces mandatory cybersecurity requirements for products with digital elements, throughout their whole lifecycle.

teléfono móvil con pantalla de desbloqueo

The Act, announced by President Ursula von der Leyen in September 2021 during her State of the European Union address, and building on the 2020 EU Cybersecurity Strategy and the 2020 EU Security Union Strategy, will ensure that digital products, such as wireless and wired products and software, are more secure for consumers across the EU: in addition to increasing the responsibility of manufacturers by obliging them to provide security support and software updates to address identified vulnerabilities, it will enable consumers to have sufficient information about the cybersecurity of the products they buy and use.

Discurso sobre el estado de la Unión de 2022 pronunciado por la presidenta Von der Leyen

 

Margrethe Vestager, Executive Vice-President for a Europe Fit for the Digital Age, said: “We deserve to feel safe with the products we buy in the single market. Just as we can trust a toy or a fridge with a CE marking, the Cyber Resilience Act will ensure the connected objects and software we buy comply with strong cybersecurity safeguards. It will put the responsibility where it belongs, with those that place the products on the market.”

Margaritis Schinas, Vice-President for Promoting our European Way of Life, said: “The Cyber Resilience Act is our answer to modern security threats that are now omnipresent through our digital society. The EU has pioneered in creating a cybersecurity ecosystem through rules on critical infrastructure, cybersecurity preparedness and response, and the certification of cybersecurity products. Today, we are completing this ecosystem through an Act that brings security in everyone’s home, in all our businesses and in every product that is interconnected. Cybersecurity is a matter for society, no longer an industry affair.”

Thierry Breton, Commissioner for the Internal Market, said: “When it comes to cybersecurity, Europe is only as strong as its weakest link: be it a vulnerable Member State, or an unsafe product along the supply chain. Computers, phones, household appliances, virtual assistance devices, cars, toys… each and every one of these hundreds of million connected products is a potential entry point for a cyberattack. And yet, today most of the hardware and software products are not subject to any cyber security obligations. By introducing cybersecurity by design, the Cyber Resilience Act will help protect Europe’s economy and our collective security.”

SOTEU 2022: La Comisión propone una intervención de emergencia en el mercado para reducir las facturas de los europeos

With ransomware attacks hitting an organisation every 11 seconds around the globe and the estimated global annual cost of cybercrime reaching €5.5 trillion in 2021 (Joint Research Centre report (2020): “Cybersecurity – Our Digital Anchor, a European perspective”), ensuring a high level of cybersecurity and reducing vulnerabilities in digital products – one of the main avenues for successful attacks – is more important than ever. With the growth in smart and connected products, a cybersecurity incident in one product can have an impact on the entire supply chain, possibly leading to severe disruption of economic and social activities across the internal market, undermining security or even becoming life-threatening.

The measures proposed today are based on the New Legislative Framework for EU product legislation and will lay down:

(a) rules for the placing on the market of products with digital elements to ensure their cybersecurity;

(b) essential requirements for the design, development and production of products with digital elements, and obligations for economic operators in relation to these products;

(c) essential requirements for the vulnerability handling processes put in place by manufacturers to ensure the cybersecurity of products with digital elements during the whole life cycle, and obligations for economic operators in relation to these processes. Manufacturers will also have to report actively exploited vulnerabilities and incidents;

(d) rules on market surveillance and enforcement.

The new rules will rebalance responsibility towards manufacturers, who must ensure conformity with security requirements of products with digital elements that are made available on the EU market. As a result, they will benefit consumers and citizens, as well as businesses using digital products, by enhancing the transparency of the security properties and promoting trust in products with digital elements, as well as by ensuring better protection of their fundamental rights, such as privacy and data protection.

While other jurisdictions around the world look into addressing these issues, the Cyber Resilience Act is likely to become an international point of reference, beyond the EU’s internal market. EU standards based on the Cyber Resilience Act will facilitate its implementation and will be an asset for the EU cybersecurity industry in global markets.

The proposed regulation will apply to all products that are connected either directly or indirectly to another device or network. There are some exceptions for products, for which cybersecurity requirements are already set out in existing EU rules, for example on medical devices, aviation or cars.

More information: European Commission – Press release

Publicaciones relacionadas:

State of the EU debate 2022: here’s how to follow it SOTEU 2022: live streaming Von der Leyen2022 State of the Union Address by President von der Leyen Commission President von der Leyen and MEPs debated the State of the European Union in StrasbourgState of the EU: Ukraine, energy, climate change, economy Obreros de la construcción realizando su trabajo en las obras de la nueva sede del BCESOTEU 2022: Commission moves to ban products made with forced labour on the EU market

EU News,  Institutional Affairs 2022,  Cibersecurity,  SOTEU

“This is a space for debate. All comments, for or against publication, that are respectful and do not contain expressions that are discriminatory, defamatory or contrary to current legislation will be published”.

Reader Interactions

Leave a Reply Cancel reply

Your email address will not be published. Required fields are marked *

This site uses Akismet to reduce spam. Learn how your comment data is processed.

Primary Sidebar

Footer

  • CDE Almería
  • Biblioteca Nicolás Salmerón – Universidad de Almería
  • Planta: 1ª, Despacho: 1.05.0B.
  • Ctra. Sacramento s/n. Almería (Spain)
  • Teléfono: (+34) 950 015266

HOME
NEWS
DOCUMENTATION
EUROPE ON THE NET
ABOUT US

  • LEGAL NOTICE
  • PRIVACY POLICY
  • COOKIE POLICY
  • ACCESSIBILITY
  • SITEMAP

Copyright © 2026 CDE Almería · Creative Commons LicenseThis work is licensed under a Creative Commons Attribution-NonCommercial 4.0 International License.

<p>El Centro de Documentación Europea de la Universidad de Almería utiliza cookies propias y de terceros para facilitar al usuario la navegación en su página Web y el acceso a los distintos contenidos alojados en la misma. Asimismo, se utilizan cookies analíticas de terceros para medir la interacción de los usuarios con el sitio Web. Pinche el siguiente enlace si desea información sobre el uso de cookies y como deshabilitarlas. </p>

Politica de privacidad

El Centro de Documentación Europea de la Universidad de Almería utiliza cookies propias y de terceros para facilitar al usuario la navegación en su página Web y el acceso a los distintos contenidos alojados en la misma. Asimismo, se utilizan cookies analíticas de terceros para medir la interacción de los usuarios con el sitio Web. Pinche el siguiente enlace si desea información sobre el uso de cookies y como deshabilitarlas. <a href="/politica-de-cookies" rel="noopener" target="_blank">Más información</a>

Cookies estrictamente necesarias

Las cookies estrictamente necesarias tiene que activarse siempre para que podamos guardar tus preferencias de ajustes de cookies.

Básicamente la web no funcionara bien si no las activas.

Estas cookies son:

  • Comprobación de inicio de sesión.
  • Cookies de seguridad.
  • Aceptación/rechazo previo de cookies.
Cookies de terceros

Esta web utiliza Google Analytics, Google Tag Manager y Yandex Metrika para recopilar información anónima tal como el número de visitantes del sitio, o las páginas más populares.

Dejar estas cookies activas nos permite mejorar nuestra web.

Política de cookies

Pinche el siguiente enlace si desea información sobre el uso de cookies y como deshabilitarlas. Más información