← Back to blogCRA - Cyber Resilience Act

    CRA - Cyber Resilience Act

    6/26/2026 · By Conny Broberg

    From Documentation to Full Regulatory Compliance: How the iThing Process Works

    Navigating the ever-changing landscape of cybersecurity regulations can feel overwhelming. With legal requirements like the Cyber Resilience Act (CRA) and standards such as ETSI EN 303 645 on the horizon, the need for a structured and automated process is greater than ever.

    At iThing, we have simplified the journey. Here are the three steps that take your product from a pile of documents to complete visibility and regulatory compliance.

    01. Upload Documentation

    It all starts with the information you already have. You simply upload your product's technical documentation to our platform. This includes:

    • Security assessments and risk analyses.
    • System architecture and network diagrams.
    • Test reports and vulnerability analyses.

    Our platform securely handles the input data and prepares it for the next critical step in the process.

    02. AI Analysis Against Global Standards

    This is where the magic happens. Instead of manually reviewing thousands of pages against complex legal texts, we use our powerful AI engine. The engine automatically maps your documentation against the specific requirements in:

    • EN 18031-1/2/3: For cybersecurity in radio equipment.
    • ETSI EN 303 645: The basic standard for consumer IoT.
    • CRA (Cyber Resilience Act): The upcoming EU requirements for products with digital elements. prEN40000-1-1/2/3/4

    The system directly identifies where you meet the requirements and – even more importantly – where there are gaps that need to be addressed.

    03. Manage Findings and Track Progress

    Visibility is worthless without action. In our dashboard, you get a comprehensive overview of your compliance status:

    • Prioritisation: Review findings based on severity.
    • Collaboration: Assign specific tasks to team members directly within the platform.
    • Transparency: Track the progress of the remediation process in real-time.
    • Reporting: Once everything is complete, you can export ready-made compliance reports with one click as a basis for certification or market access.

    Why Wait?

    In a world where security requirements are tightening every day, manual processes are no longer sustainable. By combining expertise with AI-driven automation, iThing enables your team to focus on innovation, while we handle compliance.

    Want to see how it works in practice? Contact us for a demo today.