Services

From the first question to demonstrable conformity.

Six building blocks that interlock – bookable individually or as end-to-end support through to CE marking. Always pragmatic, always geared to what’s feasible.

01

Applicability check & initial analysis

Together we determine whether your product falls under the CRA, which role you take on under the regulation (manufacturer, importer or distributor) and how it is classified. You receive a clear assessment of your obligations and the expected effort.

02

Gap analysis & assessment

Based on our own, scientifically grounded framework we compare your current state in a structured way against the CRA requirements. The result is a transparent maturity rating (security levels SL1–SL3) with clearly visible gaps.

03

Measures & implementation support

From the gap analysis we derive concrete, prioritised measures and support their implementation: risk management, a software bill of materials (SBOM), vulnerability handling, a secure SDLC with quality gates as well as technical documentation and the CE declaration of conformity – at your team’s pace.

04

Templates & document blueprints

You receive proven, ready-to-use templates for the recurring obligations of the CRA: process descriptions, technical documentation and conformity evidence. This saves time and ensures nothing essential is missing.

05

Training

We convey the CRA in a way that suits each audience: a compact “What is the CRA?” overview for decision-makers, awareness training for the whole team and in-depth technical training for development. Clear, without a jungle of paragraphs.

06

Tooling concept

We design a concept that fits your infrastructure and helps support the CRA processes technically – for example continuous vulnerability monitoring. Whether on-premise server or cloud: the concept follows your environment.

Request a service Arrange a consultation

CRA today. More tomorrow.

Cyber resilience is only the beginning.

Our focus is clearly on the Cyber Resilience Act. Beyond that, we will also support you with further security and compliance topics over time.

  • Cyber Resilience Act · focus
  • ISO/IEC 27001 · in preparation
  • IEC 62443 · in preparation