
The Cyber Resilience Act asks a clear question of every product placed on the European market: is it secure enough? That question matters, but it is not the only one. Resilience also depends on what happens when circumstances change, such as when a supplier changes its terms, a jurisdiction changes its laws, or a critical component is left without anyone to maintain it.
This talk takes a broad view of how Europe’s policy agenda is moving from compliance towards resilience. It connects the CRA to the wider EU push on digital sovereignty, including the new Open Source Strategy and the Cloud and AI Development Act. It then asks what these mean for the organisations that build and run software. The argument is that open source and open standards sit at the centre of the answer, because they decide whether an organisation can still choose, adapt and act when it matters most.
Conference partners







Organiser
