The SME Cyber Resilience Maturity Assessment Model provides a structured approach for micro, small and medium-sized enterprises (SMEs) to evaluate and strengthen their overall cyber resilience, while taking into account the requirements of the…
ENISA’s view on Cybersecurity in the Frontier AI Era
This publication provides national competent authorities in Member States and EU policymakers, defenders, and service providers with an initial set of recommendations to support them in their respective roles towards developing the necessary…
ENISA Consolidated Annual Activity Report 2025
The 2025 Annual Activity Report of the European Union Agency for Cybersecurity (ENISA) sets out the achievements and progress in delivering the Agency’s 2025 work programme and strategy reflecting the dedication, excellence and strong…
ENISA on Air: Our first podcast launches on Frontier AI
ENISA launches a podcast series to decrypt the latest cybersecurity developments and discuss issues that shape Europe's cybersecurity landscape.
Where do SMEs stand in preparing for the Cyber Resilience Act?
The EU Agency for Cybersecurity (ENISA) publishes the Micro, Small and Medium-sized enterprises (SME) Cyber Resilience Maturity Assessment Model, a simple and practical guidance for SMEs to support them assess their current status, identify…
SME CRA Survey Report
ENISA is is working on practical guidance, tools and support activities tailored to the realities and needs of smaller organisations, to help small and medium-sized enterprises (SMEs) understand and implement the Cyber Resilience Act (CRA). This…
Team Europe wins 1st ever International Cybersecurity Challenge for women
For the past 2 days, women only international teams competed against one another and tested their cybersecurity skills and related competences. Ireland staged this first international competition dedicated to women. Congratulations to the winning…
SBOM Adoption State of Play - 2026
ENISA launched a survey at the end of 2025 to gather factual data on how organisations across industries and of varying sizes are approaching Software Bill of Materials (SBOM) adoption in response to the EU Cyber Resilience Act (CRA). This report…
Technical Competence Requirements for CRA Notified Bodies
The document focuses on high-level competences which will be required to perform conformity assessment activities, in particular the experience and training requirements for the personnel employed by a CAB wishing to be notified (CRA NB) –…
Pagination