>

The Ship Is a Floating OT Network: Maritime Cyber Rules Got Teeth in 2024

Since January 2024, ships manage cyber risk under IMO-derived requirements enforced by flag and port-state control, IACS E26 and E27 give class societies assessment criteria, and the US Coast Guard can detain deficient vessels. Bridge, cargo, propulsion, SATCOM and crew IT share one hull: treat the vessel as an OT estate.

Continue ReadingThe Ship Is a Floating OT Network: Maritime Cyber Rules Got Teeth in 2024

Security Is the Product Now: What the Cyber Resilience Act Means for Device Makers

From 2027 connected products without CRA-backed security lose the CE mark and the EU market. EN 303 645 already draws the floor: no default passwords, disclosure policy, update transparency. The real work is turning security into a documented lifecycle — threat models, SBOMs, tested updates — instead of a checkbox before the ceremony.

Continue ReadingSecurity Is the Product Now: What the Cyber Resilience Act Means for Device Makers
>