top of page
Engineering Blog for High Performance Insights


EU CRA Readiness
NOA SECURITY BRIEF: In this brief we look at key aspects that organizations need to build out to ensure that they are fully ready to conform to CRA (Cybersecurity Resiliency Act) a sustainable way. CRA compliance is looming for vendors and operators alike from now for reporting and in 15 months for product compliance. The ramification for non-compliant products is that they will lose their CE mark if they had it before. More importantly, substantial monetary penalties are
Scott Ludwick
Aug 2910 min read


Security Update - The Four Clocks for Operators
SECURITY BRIEF: In this posting we explore the operational aspects of deploying resolution of exploitable vulnerabilities by manufacturers in the field. This article is a companion to "The Four Clocks for Manufacturers" This edition addresses the asset owner and operator: the entity running the estate at the operations level, on whom NIS2’s risk-management measures and Article 23 reporting clocks bind directly (where in scope), and whose engineering obligations run through
Scott Ludwick
Aug 86 min read
bottom of page