What does the EU cyber resiliency act mean concretely for companies who use cloud services with AWS or MS365?

Increased compliance requirements

Companies using cloud services will face stricter compliance requirements, necessitating investments in cybersecurity measures to align with EU regulations.

Risk management framework

Firms will need to adopt robust risk management frameworks to assess and mitigate cybersecurity risks associated with cloud services, as mandated by the CRA.

How will companies need to change?

Incident response plans

Developing and regularly updating incident response plans that include specific protocols for cloud environments will become a standard practice to address potential security breaches swiftly.

Risk management frameworks

Implementing comprehensive risk management frameworks will be crucial, including regular assessments of cloud service providers’ security measures to mitigate potential vulnerabilities. 

Regular security audits

Implementing regular security audits and assessments of cloud service providers will help identify vulnerabilities and ensure compliance with the new regulations.

Employee training programs

Companies should implement ongoing employee training programs to raise awareness of cloud security best practices and to reduce the risk of human error leading to data breaches.