CRA Standards Unlocked - EU Tour in Lisbon

Lisbon
17 September 2026 09:00–17:00

Event type: hybrid (Onsite and Online)
Venue: Auditório da Sede Nacional da Ordem dos Engenheiros (OE)
Av. António Augusto de Aguiar 3D, 1069-030, Lisbon, Portugal (Google maps).
Language: The event will be held in English and Portuguese.
 

Onsite capacity is limited to 100 participants

REGISTER NOW

 

The Cyber Resilience Act (CRA) will introduce mandatory cybersecurity requirements for products with digital elements placed on the EU market. For many SMEs, the challenge is not understanding that the CRA applies, but how to comply in practice, which standards to follow, and which tools, guidance, and funding opportunities are available to support compliance. 

This workshop helps SMEs understand, prepare for, and comply with the EU Cyber Resilience Act (CRA), translating regulatory requirements into practical guidance and tools and providing information about the ongoing standardisation process and ways to engage in open consultations, a series of workshops is organised throughout Europe.

Following a Standardisation Request from the European Commission in support of the implementation of the Cyber Resilience Act (CRA), the European Standardization Organizations (ESOs) - ETSI and CEN-CENELEC - are actively developing harmonised standards in their relevant technical groups During the session, the rapporteurs of these standards in the ESOs technical groups will present some of the latest drafts under development and engage with the audience to discuss the ongoing work, answer questions, and gather feedback to refine the drafts.

Hosted at the Auditório da Sede Nacional da Ordem dos Engenheiros (OE), the event is organised by the EU-funded projects CYBERSTAND.eu and STAN4CRA.eu with the support of the Ordem dos Engenheiros, the workshops bring together key EU-funded experts and projects working on the design of SME-friendly standards and CRA compliance tools.

 Why join

  • Understand what the CRA requires and its implications for SMEs.
  • Learn which standards matter and how they support compliance.
  • Presentations from CRA standards rapporteurs on ongoing standardisation work.
  • Discover compliance tools, practical guides, and funding available through CRA-related EU-funded projects.
  • Gain practical insights tailored to SME on how CRA requirements translate into product development and conformity processes.

A special discounted rate has been arranged at the hotel recommended by our hosts. Book here to take advantage of it.

 

Agenda 

The event will be held in English and Portuguese.

Time (Lisbon time, UTC+1)SessionSpeakers

09:00
 - 
09:30

Onsite registration and welcome coffee 

09:30

09:45

Event opening session

Session in English 

Dina Dimas, Vice-President of Ordem dos Engenheiros 

José Ruivo Simões, Coordenador nacional da Especialização em Segurança

09:45

10:30

The EU Cyber Resilience Act (CRA) and the role of the European Standardization Organizations (ESO)

Session in English 

Camille Dornier, European Commission

Yves Leboucher, CEN-CENELEC

Kim Nordström, , ETSI Technical Officer

10:30

11:00

CRA European Standardisation: Status of the Projects under Development at CEN, CENELEC and ETSI

Session part in English and part in Portuguese

Uwe Rüddenklau, CLC/TC 47X Chair

Sandra Feliciano, ETSI CYBER-EUSR WG Chair

11:00 

11:15

Impact and limitations of standardization in cybersecurity

Session in Portuguese

Henrique Santos, IPQ/CT 163 Chair

11:15 

11:30

Public Inquiry of EU CRA standards in Portugal: How to particpate?

Session in Portuguese

Henrique Santos, IPQ/CT 163 Chair

11:30 
-
11:45

Networking Coffee break     

11:45 

13:00

Standards to support the EU CRA: Examples

Session in English 

Pol Alemany, Rapporteur for EN 304619 (Antivirus)

Srinath Rao, Project Leader for the EN 62443-5 Series (OT)

Daniel Thompson-Yvetot, Rapporteur for EN 304617 (Browsers) & EN 304618 (Password Managers)

13:00

14:00

Networking Walking Lunch     

14:00 

14:30

The Impact of the EU–CRA in the Context of Cybersecurity

Session in Portuguese

Lino Santos, Coordenador CNCS

14:30

15:00

EU CRA:Regulation and Conformity Assessment

Session in Portuguese

Leopoldo Cortez, President of IPAC

15:00 

16:00

Free European tools to support CRA compliance

Session in English 

James Philpot, CYBERSTAND.eu and DIGITAL SME Alliance

Pablo Endres, CRACOWi and SevenShift

Ben Van Erck, CRA-AI and Refracted Security

Hector Laiz Ibanez, CRACY and Leaders In Security

Esther Garrido, CURIUM and 28DIGITAL 

Stefanie Werderits, SECURE and Plattform Industrie 4.0

Khalimatou Samirah, TRUST-BOOST and National Standards Authority of Ireland

Luis Cordeiro, NERO and OneSource

16:00 

16:45

EU CRA and SME: Tranforming compliance in competitive advantage

Session part in English and part in Portuguese

Gerardo Lisboa, Presidente ESOP

Luis Sousa, Presidente ASSOFT (TBC)

James Philpot, Digital SME Alliance

Andrea Raffaelli, Small Business Standards

16:45 

17:00

Closing session

Session in English 

José Ruivo Simões, Coordenador Nacional da Especialização em Segurança 

Sandra Feliciano, ETSI CYBER-EUSR WG Chair 

17:00 

19:00

Rooftop Networking