Kyndryl noted that the European Commission guidance on the Cyber Resilience Act clarifies that free and open-source software does not automatically regulate the entire open-source ecosystem.
Public source
Publisher name
Public post
The Most Positively and Negatively Impactful Clarifications in the Cyber Resilience Act Guidance (link at the end) ## **The Most Negatively Impactful Clarifications in t…
Company
Kyndryl
- Industry
- IT Services and IT Consulting
- Location
- New York City, US
- Company size
- 10,001+ employees
About Kyndryl
We have the world’s best talent that design, run, and manage the most advanced and reliable technology infrastructure each day. Together, we think holistically about the health of these vital technology ecosystems. We are a focused, independent company that builds on our foundation of excellence by creating systems in new ways. Bringing in the right partners, investing in our business, and working side-by-side with our customers to unlock potential. We're raising the bar. Our experience speaks for itself: We have tens of thousands of highly skilled employees around the world serving most of the Fortune 100 companies. But our purpose is what drives us: Advancing the vital systems that power human progress. Because when a digital ecosystem is healthy, it can more readily adapt and support continuous growth and that opens up a world of possibility for everyone. Together, we are the heart of progress.
See moreLatest activity
Latest activity from Kyndryl
84 signals
Products & Services
Kyndryl released the Kyndryl Agentic AI Framework to help insurers unlock new efficiencies through specialized AI agents that accelerate repetitive work, reduce manual errors, and support key actuarial workflows.
People
Kyndryl Academy is featuring very passionate faculty and thirsty consultants learning ways to position the Kyndryl Agentic framework.
Presence & Recognition
Kyndryl Distinguished Engineer Andreas Nonnenmacher has been named in the 2026 class of technical honorees.
Discover more
Similar signals
Similar public activity from other companies.
Legal & Regulatory
Infosys
Infosys published an article exploring the EU Cyber Resilience Act (CRA) and its impact on vulnerability management.
Legal & Regulatory
NCC Group
NCC Group published a news reaction exploring the implications of the EU Cyber Resilience Act entering a new phase with mandatory reporting obligations for exploited vulnerabilities and severe security incidents coming into force on 11 September.
Legal & Regulatory
Skadden, Arps, Slate, Meagher & Flom LLP and Affiliates
Skadden, Arps, Slate, Meagher & Flom LLP and Affiliates reported that the first part of the EU Cyber Resilience Act will come into force on 11 September 2026, imposing new vulnerability and incident reporting obligations on manufacturers of connected software and hardware products.
Legal & Regulatory
SUSE
SUSE announced that the EU Cyber Resilience Act (CRA) requires companies to report cyber security incidents within 24 hours and 72 hours, with a full report required within 14 days after a repair or within one month for incidents.
Legal & Regulatory
Codethink