ENISA launches SME survey on EU Cyber Resilience Act implementation readiness
The EU Agency for Cybersecurity (ENISA) has launched a survey aimed at micro, small and medium-sized enterprises (SMEs) to assess their readiness for implementing Regulation (EU) 2024/2487 (the Cyber Resilience Act (CRA)), which will apply from December 2027. The CRA introduces cybersecurity requirements for all products with digital elements placed on the EU market. The survey covers five areas: company profile, levels of awareness and readiness, existing cybersecurity practices, preferred support and communication channels and the maturity of CRA-relevant practices. The findings will support ENISA and the European Commission in developing targeted support measures, including awareness campaigns, training materials and tailored guidance, and provide evidence-based input to inform national and EU-level discussions on CRA implementation.