Linnea Sundström, Senior advisor, EU standardisation & cybersecurity, ENISA AHWG, CEN-CENELEC

Linnéa Sundström

In this session, Linnéa explores how standards can make the Cyber Resilience Act not only workable, but genuinely beneficial for everyone involved — from developers and security teams to product owners, legal, and leadership. With a focus on inclusion and collaboration, she shows how well‑designed standards reduce complexity, create shared understanding, and help organizations navigate CRA without feeling overwhelmed.

The talk clarifies when CRA requires the use of standards, when it doesn’t, and why following them voluntarily can still strengthen trust and raise the quality bar. Linnéa also provides an overview of the current status of CRA‑related standards and what to expect next. Participants will leave with new insights, a positive and accessible understanding of CRA, and a clear sense of how standards can support both compliance and long‑term resilience.

Open Source Security Foundation
OWASP Foundation
Open regulatory compliance working group (ORCWG.ORG)