Why Mixing CRA Criticality Levels with Internal Risk Classifications Is a Bad Idea7 minsApplication Security AppSec CRA GovernanceThe EU Cyber Resilience Act and internal security risk levels answer different questions. Keep them separate and apply them together when needed.
Threat Modeling with Rapid Risk Assessment - a low-effort and concise approach20 minsApplication Security AppSec Threat ModelingA practical guide to implementing threat modeling with Rapid Risk Assessment in your organization, including challenges, tailoring approaches, and example processes.