Source: OJ L 2024/2847, 20.11.2024

Current language: SV

Artikel 70 Utvärdering och översyn


Summary What does Article 70 of the CRA regulation say?

This article sets out the Commission's obligations to review and report on the regulation's implementation and effectiveness.

It establishes two distinct reporting duties: a broader evaluation of the regulation as a whole, and a more targeted assessment of the single reporting platform established under Article 16, which is the centralised mechanism for manufacturers to notify vulnerabilities and incidents.

Important points:

  • The Commission is required to submit a general evaluation and review report to the European Parliament and Council by 11 December 2030, and every four years after that, with all reports made public.
  • The Commission must also submit a separate, earlier report by 11 September 2028, specifically assessing the effectiveness of the single reporting platform referenced in Article 16.
  • The second report must be prepared after consulting ENISA and the CSIRTs network, and must examine how CSIRTs designated as coordinators have applied cybersecurity-related grounds to delay dissemination of notifications.

Springlex's summary of the article, a reading aid, not a substitute for the legal text.

    1. Kommissionen ska senast den 11 december 2030 och därefter vart fjärde år, överlämna en rapport om utvärderingen och översynen av denna förordning till Europaparlamentet och rådet. Dessa rapporter ska offentliggöras.

    1. Senast den 11 september 2028 ska kommissionen, efter samråd med Enisa och CSIRT-nätverket, lägga fram en rapport för Europaparlamentet och rådet med en bedömning av ändamålsenligheten hos den gemensamma rapporteringsplattform som anges i artikel 16 samt effekterna av tillämpningen av de cybersäkerhetsrelaterade skäl som avses i artikel 16.2 av de CSIRT-enheter som utsetts till samordnare för den gemensamma rapporteringsplattformens ändamålsenlighet när det gäller att snabbt sprida mottagna anmälningar till andra relevanta CSIRT-enheter.

We're continuously improving our platform to serve you better.

Your feedback matters! Let us know how we can improve.

Found a bug?

Springflod is a Swedish boutique consultancy firm specialising in cyber security within the financial services sector.

We offer professional services concerning information security governance, risk and compliance.

Crafted with ❤️ by Springflod