CRA Art. 14 reporting requirements

Evaluate your readiness for CRA reporting requirements (Article 14) and better manage on-going issues.

Express your interest!

In the CRA, product manufacturers must report:

  • Actively exploited vulnerabilities in their products

  • Severe incidents in their products

Whether you have processes or you are still trying to understand how to do it, this training will make you ready to manage these events.

In this one-day training, we practice on real issues and evaluate your maturity against Article 14 with the support of a simulated EU Single Reporting Platform. The scenario is written for your products, and built on your own incident process if you have one.

Audience: Incident managers, product cyber security team, product teams, compliance team. Ensure you won’t fall behind when a real issue affects you.

Objectives

  • Understand reporting requirements: know how to identify a reportable event.

  • Ensure compliance: understand how to comply with Article 14.

  • Evaluate your maturity: discover gaps and possible remediations in a learning-by-doing approach.

Programme

  • Introduction to CRA reporting requirements of Article 14.

  • Managing an event with real-life scenarios, adapted to your products.

  • Notification and risk assessment with the support of our simulated single reporting platform.

  • Remediation and dissemination to close the issue.

  • Debriefing to summarise the day.

Practical information

How our training runs

All our courses are open to anyone with an interest in cyber security. Every course starts with the generic context, so that everyone begins on the same footing, and combines theory, practice and real-life scenarios.

  1. Delivery formats

    Awareness sessions are delivered remotely.

    Training courses are delivered remotely, on-site in your premises, or in a hybrid mode.

    Hands-on courses are delivered on-site in your premises only.

  2. Quality assurance

    Throughout the delivery our trainers remain accessible, and we are always happy to share our own experience in the field. Our objective is that every attendee gains something they can use in their daily activities.

    We commit to the highest possible standard before, during and after the training. Each course ends with a live debrief with the participants, followed by an anonymous survey to collect their feedback afterwards.

  3. Certificate of training

    For our training courses, every participant receives a certificate of training and a letter of completion, certifying that they followed the course and acquired knowledge they can use in their daily activities.
  4. Trainees and participants

    Our training and awareness courses are designed to develop new knowledge and skills in cyber security and cyber resilience. We develop our material for a specific audience, based on their level of knowledge and experience.

Price

Tabletop exercise

8,000 €

one day, custom scenario

A reportable event played out on our simulated EU Single Reporting Platform, from the first signal to the notification, with a scenario written for your products and built on your incident process if you have one.

With hands-on vulnerability work

12,000 €

one day, custom scenario

The tabletop exercise, with hands-on vulnerability discovery and remediation: your teams find the vulnerability, report it and fix it.

Prices exclude VAT. Travel for on-site work is extra.

Next step

Beyond the training

The course gives your teams the skills. If you also need the work done, our services cover the assessment, the documentation and the support for your products.