Skip to main content

Insights

OSCAL in Europe: A Foundation for the Digital Security Passport Insights

OSCAL in Europe: A Foundation for the Digital Security Passport

By Sara Nieves Matheu Garcia, University of Murcia, Department of Communications and Information Engineering Cybersecurity documentation is often scattered across reports, spreadsheets, and ad hoc formats, making it difficult to exchange, validate, or automate. The Open Security Controls Assessment Language (OSCAL), developed by NIST, addresses this challenge by providing a…
Cybersecurity compliance: the RED Delegated Act and the CRA Insights

Cybersecurity compliance: the RED Delegated Act and the CRA

By Anna Marton, Safepay Systems As the EU tightens cybersecurity rules for digital products, an important deadline is approaching for manufacturers of connected devices. The RED Delegated Act (RED-DA) targets wireless equipment with specific cybersecurity requirements starting in August 2025, and from 2027 onward, the Cyber Resilience Act (CRA) will…
Conceptual overview of the DOSS Digital Cybersecurity Twin Framework, part 1. Insights

Conceptual overview of the DOSS Digital Cybersecurity Twin Framework, part 1.

Within the DOSS IoT Supply Trust Chain (STC) Concept, we apply a digital twin framework, called the Digital Cybersecurity Twin (DCT). The DCT enables us to perform the automated vulnerability scanning and penetration testing of an IoT system in a virtualized environment, on a digital twin. This way, we can…