Publikationen
24.11.2023
The Cyber Resilience Act (CRA) provides a classification of so-called critical products with digital elements in accordance with the classification logic defined in Article 6 of the CRA since the European Commission's draft of 15 September 2022. These critical products are listed in Annex III of the Cyber Resilience Act and are divided into two classes of critical products, which are expected to be supplemented by a third class of highly critical products.
Products listed in these classes are subject to restrictions in the selection of available conformity assessment procedures. For example, a manufacturer's self-declaration is only envisaged for Class I critical devices, with the further restriction that the internal control procedure for these devices must be carried out using existing harmonised standards for the CRA.
Before these harmonised standards can be developed, the European Commission must issue the corresponding standardisation request. For this standardisation request, ZVEI has developed recommendations for an effective and efficient approach to harmonised standards (hEN) for cybersecurity.