CRA

CRA Basics

The Cyber Resilience Act: essential cybersecurity requirements, scope, and key definitions for products with digital elements.

10 questions · 70% to pass · free

eurocompliant.com is not an accredited certification body. This is a self-paced educational assessment; the certificate confirms completion only, not a professional, statutory, or accredited qualification.

Your details

We'll email your certificate here if you pass. We may occasionally follow up about eurocompliant.com - you can unsubscribe any time.

Question 1 of 10

What does the Cyber Resilience Act (Regulation (EU) 2024/2847) primarily regulate?

Question 2 of 10

Under Article 2, what triggers a product being in scope of the CRA?

Question 3 of 10

Which of the following is explicitly excluded from the CRA's scope under Article 2?

Question 4 of 10

Under Article 3, what is a 'product with digital elements'?

Question 5 of 10

Who is a 'manufacturer' under Article 3(13)?

Question 6 of 10

Under Article 6, what must be true before a product with digital elements can be made available on the market?

Question 7 of 10

Under Article 3(39), what is a software bill of materials (SBOM)?

Question 8 of 10

Under Article 13(8), what is the minimum support period during which a manufacturer must handle vulnerabilities in a product with digital elements?

Question 9 of 10

Under Article 14, what must a manufacturer do upon becoming aware of an actively exploited vulnerability in its product?

Question 10 of 10

The Cyber Resilience Act applies only to standalone software products, never to hardware products with digital elements.

0 of 10 answered