EU Commission Launches Public Consultation on Cybersecurity Act Revision

The European Commission has launched a public consultation on revising the EU Cybersecurity Act — the foundational regulation that created the EU Agency for Cybersecurity (ENISA) and a framework for European cybersecurity certification.The consultation seeks feedback on extending ENISA’s mandate,

The European Commission has launched a public consultation on revising the EU Cybersecurity Act — the foundational regulation that created the EU Agency for Cybersecurity (ENISA) and a framework for European cybersecurity certification.
The consultation seeks feedback on extending ENISA’s mandate, strengthening the European Cybersecurity Certification Framework, and addressing challenges such as ICT supply chain security. The CSA has been in force since 2019, but the review aligns with ongoing efforts to modernize cybersecurity rules and simplify overlapping digital legislation. EU Commissioner for Technology has indicated that the revision will include a “Digital Fitness Check” to assess whether existing rules are overly burdensome for businesses and to propose ways to streamline them in line with broader legislative reform.
📊 This development is critical for organisations managing digital risk and governance, as it could affect certification standards, incident reporting expectations, and compliance programmes under EU cybersecurity law.
🔗 Official consultation overview — European Commission public consultation (Euronews report) euronews

Suggestions