Skip to content

EU Clarifies Role of Standards in Legal Framework, Boosting Cybersecurity

EU standards simplify compliance for businesses. They're key to boosting cybersecurity and product safety in the digital market.

A woman is holding certificate, where men are standing wearing suit.
A woman is holding certificate, where men are standing wearing suit.

The European Union (EU) is clarifying the role of standards in its legal framework. Standards can be directly referenced in laws, serving as voluntary technical aids, and support businesses in implementing legal requirements without formal regulatory effect.

Under EU law, standards can be directly referenced in laws or legal acts and must be applied. They can also serve as voluntary technical interpretation aids. Listing in the EU Official Journal creates a presumption of conformity.

Standards and norms support businesses in implementing legal requirements without having a formal regulatory effect. This is particularly useful for new products, where binding standards include harmonized European norms related to cybersecurity. The Cyber Resilience Act (CRA) sets mandatory cybersecurity requirements, manufacturer obligations, fundamental requirements, and conformity assessment procedures for digital products. These standards help demonstrate compliance with the CRA and relate to laws like the Data Act and AI Act. They complement the General Data Protection Regulation (GDPR) by focusing on non-personal data and product safety in the digital internal market.

In the EU, standards play a crucial role in supporting businesses and ensuring compliance with legal requirements, particularly in the realm of cybersecurity and digital products. They can be directly referenced in laws, serve as voluntary aids, and help demonstrate conformity with regulations like the CRA, Data Act, and AI Act.

Read also:

Latest