The SME Cyber Resilience Maturity Assessment Model provides a structured approach for micro, small and medium-sized enterprises (SMEs) to evaluate and strengthen their overall cyber resilience, while taking into account the requirements of the…
ENISA’s view on Cybersecurity in the Frontier AI Era
This publication provides national competent authorities in Member States and EU policymakers, defenders, and service providers with an initial set of recommendations to support them in their respective roles towards developing the necessary…
ENISA Consolidated Annual Activity Report 2025
The 2025 Annual Activity Report of the European Union Agency for Cybersecurity (ENISA) sets out the achievements and progress in delivering the Agency’s 2025 work programme and strategy reflecting the dedication, excellence and strong…
SME CRA Survey Report
ENISA is is working on practical guidance, tools and support activities tailored to the realities and needs of smaller organisations, to help small and medium-sized enterprises (SMEs) understand and implement the Cyber Resilience Act (CRA). This…
ENISA on Air: Our first podcast launches on Frontier AI
ENISA launches a podcast series to decrypt the latest cybersecurity developments and discuss issues that shape Europe's cybersecurity landscape.
SBOM Adoption State of Play - 2026
ENISA launched a survey at the end of 2025 to gather factual data on how organisations across industries and of varying sizes are approaching Software Bill of Materials (SBOM) adoption in response to the EU Cyber Resilience Act (CRA). This report…
Technical Competence Requirements for CRA Notified Bodies
The document focuses on high-level competences which will be required to perform conformity assessment activities, in particular the experience and training requirements for the personnel employed by a CAB wishing to be notified (CRA NB) –…
Where do SMEs stand in preparing for the Cyber Resilience Act?
The EU Agency for Cybersecurity (ENISA) publishes the Micro, Small and Medium-sized enterprises (SME) Cyber Resilience Maturity Assessment Model, a simple and practical guidance for SMEs to support them assess their current status, identify…
ENISA NIS360
This edition of the ENISA NIS360 report is the third to assess the cybersecurity maturity and criticality of all sectors of high criticality as identified under Annex I of the NIS2 directive. The assessment covers the entire ecosystem of a sector…
Pagination