Sep 4, 2026 | English
How do you perform a practical Cyber Resilience Act (CRA) risk assessment without getting buried in complexity? In this talk, Burkhard explains a pragmatic approach to threat modeling, cybersecurity risk assessment, security documentation, and CRA compliance: illustrated with a real-world product security example.
The presentation shows how to move from threat modeling to risk assessment, identify violations of the CRA’s essential product properties, select appropriate security measures, and document security decisions in a way that can be maintained throughout the product lifecycle.