Research

Independent studies of regulations, standards and market practice, the same analysis our advisors bring to your products.

We publish what we learn. The studies below map the regulations that apply to connected products around the world, the standards they rely on and how those standards depend on each other, how manufacturers handle vulnerability disclosure in practice, and how the market for secure components is organised. They are free, independent and updated as the regulations evolve, and they are the material our advisors use in client work.

Pick a study on the left. Each opens on its own page, with the data, the method and the date of the last update.

Studies

Vulnerability Disclosure and Management

VORTEx market study

Panorama of IoT Cyber Security Regulations

A review of global IoT cyber security requirements to ensure your products meet market access standards.

Learn more

Panorama of IoT Cyber Security Regulations

1-click compliance

A cetome initiative to make product security and compliance simple enough to adopt in one click, starting with Auto VDP and CRAscoping.

Learn more

1-click compliance

dataviz

Dependency graphs to better visualise IoT cyber security standards and their relationships

Learn more

dataviz

CRA Basics

Cyber Resilience Act compliance simplified.

Learn more

CRA Basics

VDP accessibility and usability in consumer IoT

A public Vulnerability Disclosure Policy is a mandatory requirement. Discover main issues and make it accessible and usable.

Learn more

VDP accessibility and usability in consumer IoT

Unique identity for devices

A unique identity is a core requirement to secure IoT devices, comply with standards and regulations. This VORTEx looks at existing solutions so that IoT manufacturers can better secure their products.

Learn more

Unique identity for devices

Next step

Put this research to work

Our research shows where the rules stand. We help you work out what they mean for your products: what applies, what has to change, and in what order.