Ressourcen
>
Veranstaltungen
>
ONEKEY Webinar: PSIRT – Start Small, but Start | CRA Implications on Notification Obligations

ONEKEY WEBINAR: PSIRT – Start Small, but Start | CRA Implications on Notification Obligations

ONEKEY Webinar: PSIRT – Start Small, but Start | CRA Implications on Notification Obligations
Tanja Sommer

SIND SIE BEREIT, IHR RISIKOMANAGEMENT ZU VERBESSERN?

Machen Sie Cybersicherheit und Compliance mit ONEKEY effizient und effektiv.

Jetzt in Aktion sehen
Tanja Sommer

Tanja Sommer
tanja.sommer@onekey.com

Join us for an exclusive ONEKEY webinar on August 27, 2026, at 11:00 a.m. (CEST)!

Prepare your organization for the CRA reporting obligations taking effect on 11 September 2026. Learn how a Product Security Incident Response Team (PSIRT) supports effective vulnerability handling, escalation, communication, and regulatory notification.

Get Ready for the Next Critical CRA Phase

From 11 September 2026, the Cyber Resilience Act’s mandatory reporting obligations for actively exploited vulnerabilities and severe security incidents will apply.

Organizations therefore need more than an understanding of what and when to report. They need clear responsibilities and processes to identify, assess, verify, escalate, document, and communicate relevant vulnerabilities and incidents within the required timelines.

This is where a Product Security Incident Response Team (PSIRT) becomes essential.

A PSIRT provides the organizational framework for managing product security vulnerabilities and incidents — from initial assessment and remediation to communication and, where necessary, regulatory notification.

But you don’t need a fully mature PSIRT from day one.

Start small — but start.

What You’ll Learn

In this 45-minute webinar, we’ll explore how PSIRTs are structured, which responsibilities they typically assume, and how vulnerability handling, PSIRT processes, and CRA notification obligations interact.

You’ll learn:

  • What a Product Security Incident Response Team (PSIRT) is and why organizations need one
  • How vulnerability handling, PSIRT processes, and CRA notification obligations interact
  • What can trigger a notification obligation under the CRA
  • Which CRA reporting timelines organizations need to consider
  • How a PSIRT can be structured within an organization
  • Which roles, responsibilities, and tasks typically belong to a PSIRT
  • How potentially reportable vulnerabilities and incidents should be assessed and verified
  • How PSIRTs support escalation, documentation, communication, and regulatory notification
  • How a PSIRT should interact with Security Management and other relevant functions
  • What the PSIRT maturity levels according to FIRST look like
  • How to start small and systematically mature your PSIRT capabilities

Who Should Attend?

This webinar is designed for professionals working in:

  • Product Cybersecurity
  • PSIRT/PIRT Operations
  • Compliance
  • Product Security Governance
  • Vulnerability Management
  • Organizational Risk Management

Whether your organization already has established product security processes or is only beginning to formalize them, this webinar provides a practical starting point for strengthening your CRA readiness and PSIRT capabilities.

Start Small — but Start

With the CRA reporting obligations taking effect on 11 September 2026, now is the time to ensure that the necessary responsibilities and processes are in place.

Join us on August 27 and learn how to take the first practical steps toward establishing and maturing your PSIRT.

Can’t join live? Register anyway and you’ll receive the on-demand recording after the webinar.

Zum Event

Triff uns dort

ONEKEY Webinar: PSIRT – Start Small, but Start | CRA Implications on Notification Obligations

Speakers

Referenten

Alexander Neiken

Alexander Neiken

Consultant Cybersecurity Compliance

Alexander berät Unternehmen zu Cybersicherheitsregulierungen und unterstützt sie bei der Einhaltung dieser Vorschriften. Von Impact-Analysen und Risikomanagement bis hin zu maßgeschneiderten Richtlinien und Managementsystemen deckt er alle Aspekte von GRC (Governance, Risk & Compliance) ab.

Alex Hentschke

Alex Hentschke

Sales Manager

Alexander ist spezialisiert auf IoT, Cybersicherheit, CRA, SBOM, SaaS und PaaS. Er treibt Innovation und technische Integration voran und sorgt für sichere und effiziente Umgebungen. Seine Expertise unterstützt dynamische Skalierung und Cyber-Resilienz bei der digitalen Transformation.

Teilen

VERWANDTE Ereignisse

ONEKEY Webinar: CRA Phase I: Vorfallsmeldung & Operative Bereitschaft
ONEKEY Webinar: Der Secure Development Lifecycle – IEC 62443 Part 4-1 für Industrial Automation and Control Systems
ONEKEY Webinar: RTOS-Binäranalyse | Versteckte Schwachstellen in Embedded-Systemen aufdecken

Über Onekey

ONEKEY ist der führende europäische Spezialist für Product Cybersecurity & Compliance Management und Teil des Anlageportfolios von PricewaterhouseCoopers Deutschland (PwC). Die einzigartige Kombination der automatisierten ONEKEY Product Cybersecurity & Compliance Platform (OCP) mit Expertenwissen und Beratungsdiensten bietet schnelle und umfassende Analyse-, Support- und Verwaltungsfunktionen zur Verbesserung der Produktsicherheit und -konformität — vom Kauf über das Design, die Entwicklung, die Produktion bis hin zum Ende des Produktlebenszyklus.

KONTAKT:
Sara Fortmann

Senior Marketing Manager
sara.fortmann@onekey.com

euromarcom public relations GmbH
team@euromarcom.de

Machen Sie Cybersicherheit und Compliance mit ONEKEY effizient und effektiv.