Cart
CloseNo products in the shopping cart.
No products in the shopping cart.
CRA assessment support
The Cyber Resilience Act (CRA) is a landmark European regulation designed to ensure that products with digital elements placed on the EU market meet minimum cybersecurity requirements throughout their entire lifecycle.
The CRA introduces mandatory obligations for manufacturers, integrators, and vendors of embedded systems, software, and connected devices, covering:
For companies developing embedded Linux platforms, industrial devices, gateways, or IoT products, CRA compliance is no longer optional — it is a market access requirement.
DAVE Embedded System supports customers in turning CRA compliance into a structured, efficient, and sustainable engineering process, minimizing risk while accelerating time to market.
The Cyber Resilience Act entered into force in 2024, with progressive obligations applying over time.
Key milestones include:
This means companies must start adapting development, maintenance, and operational processes well in advance to avoid delays, penalties, or blocked market access.
Early preparation is critical — especially for embedded platforms with long lifecycles.
DAVE Embedded System provides end‑to‑end CRA enablement, combining technical expertise, tooling, and long-term support for embedded products.
Our approach is practical, engineering-driven, and fully aligned with the realities of industrial and embedded environments.
We start with a CRA-oriented security assessment of your product , including:
The outcome is a clear roadmap with requirements and prioritized actions.
DAVE helps integrate security by design principles directly into your embedded architecture from the earliest stages.
Typical services include:
By aligning hardware and software security, we help reduce attack surfaces and long-term maintenance costs.
CRA requires continuous vulnerability monitoring and response.
DAVE provides structured vulnerability monitoring for your embedded platforms, including:
This ensures that security does not stop at product release.
Vulnerability monitoring of HWBOM and SBOM is a core CRA requirement.
We support:
This enables fast impact analysis and transparent compliance documentation.
Maintaining a secure Board Support Package (BSP) over time is one of the biggest CRA challenges.
DAVE offers long-term BSP maintenance, including:
We help ensure your platforms remain secure and compliant for years — not just at launch.
To support secure and repeatable releases, DAVE integrates:
Automation reduces human error, speeds up compliance activities, and ensures consistency across releases.
CRA places strong emphasis on technical documentation and evidence.
DAVE supports the creation and maintenance of:
This documentation is designed not only for regulators, but also for customers, partners, and internal stakeholders.
Welcome to the DAVE Embedded Systems' technical information form submission portal!
Please fill in the fields below. The support team will take care of you in maximum 24h!
Welcome to the DAVE Embedded Systems' Documentation system. Please fill in with required information and you will get your document! Thank you!.
We use cookies to personalize content, to get traffic statistics and to improve your experience on our website.
Please read our Cookie Policy for a more detailed description and click on the "Manage preferences" button to customize how the site uses cookies for you. By clicking on "Accept all cookies" you give your consent for the use of each type of cookie.
These cookies are necessary for the website to function and cannot be switched off in our systems.
You can set your browser to block or alert you about these cookies, but some parts of the site will not then work. These cookies do not store any personally identifiable information.
These cookies allow us to count visits and traffic sources so we can measure and improve the performance of our site. They help us to know which pages are the most and least popular and see how visitors move around the site.
All information these cookies collect is aggregated and therefore anonymous. If you do not allow these cookies we will not know when you have visited our site, and will not be able to monitor its performance.
Select all Deselect all