
STAN4CRA
What Are the STAN4CRA Projects
The STAN4CRA Projects, comprising STAN4CR and STAN4CR2,
are European initiatives funded by the European Innovation Council and SMEs Executive Agency (EISMEA) and EFTA.
These projects aim to accelerate the development of cybersecurity standards that support the Cyber Resilience Act (CRA).
-
Implemented jointly by CEN, CENELEC, and ETSI
-
Focused on harmonized European cybersecurity standards
-
Directly contribute to the CRA’s objectives and requirements
Scope and Objectives
Supporting the CRA Mandate (M/606)
The CRA mandates the delivery of harmonized standards at least one year before the Act’s application. STAN4CRA supports this through:
-
Development of European Standards aligned with essential cybersecurity requirements
-
Ensuring coherent implementation across all digital sectors in the EU Single Market
Role of Technical Committees
The technical committees of CEN, CENELEC, and ETSI are central to:
-
Drafting standards that reflect cybersecurity-by-design and by-default principles
-
Aligning with European values and regulatory expectations
-
Ensuring resilience against evolving digital threats
Project Mission and Activities
Key Missions
STAN4CRA is designed to strengthen Europe’s cybersecurity framework by:
-
Coordinating technical bodies involved in standardization
-
Funding rapporteurs to lead and manage iterative drafting cycles
-
Engaging stakeholders, particularly:
-
SMEs
-
Open Source communities
-
Stakeholder Engagement
To foster inclusivity and transparency, the project emphasizes:
-
Public consultations and technical sessions
-
Active solicitation of feedback and expert input
-
Raising awareness of the standardization process
Goals of Engagement
-
Improve accessibility and participation
-
Capture diverse perspectives
-
Enrich decision-making and policy formulation
How it Aligns with the Cyber Resilience Act (CRA)
Strategic Contribution
STAN4CRA supports standardization under request M/606, while also laying the groundwork for a comprehensive and sustainable standards ecosystem.
Key Deliverables
-
A first wave of standards addressing both:
-
Horizontal standards (cross-sector)
-
Vertical standards (sector-specific)
-
-
Lifecycle coverage of products with digital elements
Broader Impact
-
Reinforces the EU’s leadership in cybersecurity
-
Promotes compliance, interoperability, and trust
The Importance of Cybersecurity Standardisation in Europe
Cybersecurity standards play a vital role in the digital economy by:
-
Ensuring protection for consumers, businesses, and critical infrastructure
-
Facilitating compliance and smooth cross-border trade within the EU Single Market
-
Enabling a coherent approach to cyber resilience amid increasing digital threats
-
Fostering trust, innovation, and economic growth