The final quarter of 2025 marked a period of intense preparation and strategic shifts in the European cybersecurity landscape. As manufacturers transition toward 2026, the focus has shifted from immediate deadlines to long-term regulatory integration, particularly regarding the harmonization of the Radio Equipment Directive (RED) and the Cyber Resilience Act (CRA).
This quarterly digest provides strategic insights into these evolving frameworks, highlights our recent international engagements, and offers practical resources to ensure your products remain compliant and competitive.
As we enter 2026, the Radio Equipment Directive (RED) remains a critical gateway for successful market entry. However, the landscape is evolving; RED is increasingly viewed as the structural blueprint for the upcoming Cyber Resilience Act (CRA). Understanding the interplay between these regulations is essential for manufacturers to avoid redundant testing and ensure future-proof compliance.
.jpg)
10
min reading time
This article provides an in-depth overview of the EU Cyber Resilience Act (CRA), explaining why the regulation was introduced, its key security requirements, conformity assessment routes such as Module A, the role of harmonized standards, and the lifecycle obligations manufacturers must meet.

7
min reading time
Smart toys are more than just software; they are radio equipment and thus subject to strict EU regulations. Our analysis explores the interplay between RED, the CRA, and the AI Act, while outlining the essential cybersecurity testing processes for a safe market entry.
.jpg)
10
min reading time
This article provides an in-depth overview of the EU Cyber Resilience Act (CRA), explaining why the regulation was introduced, its key security requirements, conformity assessment routes such as Module A, the role of harmonized standards, and the lifecycle obligations manufacturers must meet.

7
min reading time
Smart toys are more than just software; they are radio equipment and thus subject to strict EU regulations. Our analysis explores the interplay between RED, the CRA, and the AI Act, while outlining the essential cybersecurity testing processes for a safe market entry.

The end of 2025 also saw significant focus on specialized digital sectors. The introduction of eIDAS 2.0 and the EUCC certification framework is redefining digital identity security across Europe. Simultaneously, the "regulatory gap" for AI-enabled products, particularly children's toys, has become a high-priority topic for manufacturers.
New Resources: CRA Infographics & FAQ
To support your compliance journey, we expanded our downloadable resources in Q4.
These resources are designed to simplify the complex legal text into actionable steps for your development and legal teams.