Privacy & Cybersecurity #81
ENISA, the European Commission, the UK NCSC, Italy, Germany, and NIST all released new guidance and legal updates covering secure-by-design development, CRA implementation, AI Act transparency and governance, post-attack recovery, GDPR damages, and post-quantum migration. The updates emphasize early compliance planning, stronger evidence of security controls, better recovery preparation, and long-term readiness for AI and quantum-era risks. #ENISA #EuropeanCommission #NCSC #Bundesgerichtshof #Garante #NIST #CyberResilienceAct #AIAct #GDPR

Keypoints

  • ENISA published a Secure by Design and Default Playbook for SME manufacturers.
  • The European Commission released CRA guidance with practical examples and reporting timelines.
  • Updated AI Act materials clarify transparency duties for AI-generated and manipulated content.
  • The UK NCSC outlined recovery steps for disruptive cyber attacks and stressed trusted identity and verified backups.
  • NIST urged organizations to start post-quantum cryptography migration planning now.

Read More: https://keplernewsletter.substack.com/p/privacy-and-cybersecurity-81