No security without transparency
Cyber Resilience Starts with the Bill of Materials

From Martin Oppermann 10 min Reading Time

Related Vendors

Why component sourcing, firmware, supplier changes and vulnerability management must be managed as one integrated process.

Concept: Martin Oppermann; image generated with OpenAI.(Source:  KI-generiert / Gemini)
Concept: Martin Oppermann; image generated with OpenAI.
(Source: KI-generiert / Gemini)

Cybersecurity is often treated as a software issue. In electronic products, however, security can change when a microcontroller, communication module, firmware version or supplier is replaced. The Cyber Resilience Act therefore turns bill-of-materials management, second-source approval and supplier communication into core elements of product security.