Supply chain protection becomes a strategic priority – organisations must involve third-party providers on a least-information basis and integrate their control mechanisms into their cyber-resilience strategy.
The Cyber Resilience Act requires documented and timely update processes for IoT devices, forcing CISOs to implement systematic changes in software maintenance.