Skip to main content

[Date Prev][Date Next][Thread Prev][Thread Next][Date Index][Thread Index] [List Home]
[open-regulatory-compliance] Cyber Resilience SIG meeting minutes 2026-09-28

Dear ORC Community,

Please find here the link to the SIG meeting minutes.

A quick summary of the topics addressed
  • Steering Committee Updates: Summarise the topics covered in the last meeting including Q2 review that will be available in the Governance repository.
  • CRA Expert Group Activities: The SBOM Reference Architecture workstream is active under ENISA, with the next CRA EG meeting on October 8 covering manufacturer tooling, reporting platforms, and AI action plans.
  • Attestations, Due Diligence & FAQ: Emphasised the need for product manager involvement to integrate attestations into development workflows, alongside ongoing GitHub discussions for due diligence topics. Invitation to contribute to the discussions in Github.
  • Code & Compliance Announcements: Announced a major event website update with registration capped at 100 using code ORCMEMBER50, plus upcoming CfPs for FOSDEM and OCX.
  • AOB (Swiss Regulations): Highlighted the Swiss government's new cybersecurity regulations aligned with the CRA as an opportunity to share community lessons learned.
Best regards,
Juan

--
Juan Rico
Senior Manager ORC, Oniro and Cloud Programs | Eclipse Foundation Europe GmbH | X | LinkedIn | YouTube | Instagram | Bluesky | Mastodon

Eclipse Foundation: The Community for Open Collaboration and Innovation



Berliner Allee 47, 64295 Darmstadt

Handelsregister: Darmstadt HRB 92821

Managing Directors: Gaël Blondelle, Mike Milinkovich, Michael Plagge


Back to the top