The Cyber Resilience Act forces a security reset for connected device makers

Tern plc

The EU Cyber Resilience Act introduces mandatory cybersecurity requirements for products with digital elements sold within the European Union, moving security obligations from guidance to enforceable regulation. For manufacturers of connected devices, embedded systems and industrial equipment, this represents a structural shift in how products must be designed, maintained and documented across their entire lifecycle.

The Act requires demonstrable security by design, secure default configurations, structured vulnerability handling and controlled software updates. Importantly, it also requires evidence. Companies must not only implement technical safeguards but also maintain documentation and processes that withstand regulatory scrutiny. This has implications for engineering resources, certification timelines and ongoing support costs.

Compliance is not a single event but an operational capability that must be embedded into product development and fleet management. Firms that delay implementation may face compressed delivery schedules, increased remediation costs or restricted market access. Those that prepare early can integrate compliance into standard operating processes and reduce disruption.

A central requirement of the Act is secure lifecycle management. Devices must be provisioned securely, authenticated reliably and updated safely throughout their operational life. Many legacy provisioning models rely on static credentials or manual processes that are difficult to scale and audit. Under the new framework, these approaches may expose companies to compliance gaps.

Device Authority positions its platform around automated device identity management, dynamic credential provisioning and policy enforcement. By embedding cryptographic identities into devices at scale and managing them throughout their lifecycle, manufacturers can create a structured control framework aligned with regulatory expectations. Automation reduces reliance on manual intervention and improves consistency across large device estates.

Tern plc (LON:TERN) backs exciting, high growth IoT innovators in Europe. They provide support and create a genuinely collaborative environment for talented, well-motivated teams.

Share on:
Find more news, interviews, share price & company profile here for:

Latest Company News

Device Authority expands enterprise reach through IoT security partnership

Device Authority’s partnership with Xalient strengthens its enterprise IoT security positioning as regulated industries look for scalable, automated ways to manage connected device risk.

Pharma engagement shifts from reach to relevance

Pharma engagement is moving from broad reach to relevant messaging across connected patient journeys.

Device Authority partnership expands route into enterprise IoT security

Device Authority’s partnership with Xalient strengthens its enterprise IoT security positioning by placing KeyScaler within a managed, identity-led cybersecurity model for complex and regulated environments.

Tern increases convertible loan note investment in Talking Medicines

Tern has received £270,000 of new unsecured convertible loan notes from Talking Medicines, increasing its total convertible loan note holding to approximately £0.79 million while retaining a 23.8% equity stake.

Tern Plc invests $280,000 in Device Authority convertible loan notes

Tern has invested $280,000 in new unsecured convertible loan notes issued by Device Authority, forming part of a wider funding round of up to $1.6 million from existing investors.

Surgical training technology moves closer to the centre of precision medicine

Fundamental XR is targeting a critical adoption gap in advanced healthcare by using immersive simulation to help surgical teams prepare for complex procedures with greater consistency and scale.

Search