Cybersecurity

From FOSS Policy Wiki
Jump to navigation Jump to search
Cybersecurity — Topic
Summary EU cybersecurity legislation and policy.
Cyber Resilience Act — File
Status ongoing
Topic Cybersecurity
Summary Regulation (EU) 2024/2847 on cybersecurity requirements for products with digital elements; main obligations apply from December 2027.
Notes Includes the open-source steward regime; vulnerability and incident reporting obligations start September 2026.
Link: EUR-Lex text (for: Cyber Resilience Act)
Revision of the Cybersecurity Act — File
Status ongoing
Topic Cybersecurity
Summary Proposal of 20 January 2026 (COM(2026) 11) recasting the 2019 Cybersecurity Act: an ICT supply-chain security framework, streamlined certification and a stronger ENISA; tabled together with targeted NIS2 amendments.
Link: Proposal page (for: Revision of the Cybersecurity Act)
Action Plan on Cybersecurity and Artificial Intelligence — File
Status ongoing
Topic Cybersecurity
Summary Commission action plan (July 2026) on the AI-cybersecurity intersection: pre-market evaluation of advanced models, an ENISA blueprint for secure access to advanced AI, a secure testing platform for critical sectors, and AI for cyber defence.
Notes Non-legislative: it relies on the existing AI Act and cybersecurity framework. Straddles the AI topic.
Link: Action plan page (for: Action Plan on Cybersecurity and Artificial Intelligence)