On April 9, 2025, the EMERALD project took part in one of the official events of the global IoT Day 2025, contributing to the Webinar & Roundtable on IoT Supply Chain Security and Cyber Resilience Act (CRA) compliance. Organised by the Horizon Europe project DOSS, the online event brought together seven EU-funded research projects—FLUIDOS, TaRDIS, DOSS, EMERALD, ReSCALE, CERTIFY, and TELEMETRY—to discuss the latest research efforts aimed at strengthening the resilience, visibility, and compliance of the IoT supply chain.
The webinar was part of a broader celebration of IoT Day, a global initiative launched in 2010 by the IoT Council, which encourages open and inclusive discussions around Internet of Things and AI trends. Each year researchers, developers, companies, and citizens gather—virtually and in person—at hundreds of locations worldwide to explore the implications of connected technologies on everyday life and critical infrastructures.
During the session, Björn Fanta, from EMERALD partner Fabasoft, presented an overview of the project’s goals and its contribution to European efforts in enhancing cybersecurity assurance across cloud and edge environments. EMERALD’s core mission is to simplify the process of obtaining agile and continuous security certification for cloud-based services, with a particular focus on improving accessibility for both large organisations and SMEs.
A key innovation introduced by EMERALD is the concept of Compliance-as-a-Service (CaaS). This approach aims to reduce the burden of manual compliance processes by enabling automated, adaptive, and context-aware certification mechanisms that continuously assess the security posture of services deployed across complex ecosystems. A first integrated version of the EMERALD framework has already been released.
EMERALD’s contribution resonates strongly with the objectives of the Cyber Resilience Act, which calls for greater accountability, transparency, and reliability in the development and maintenance of digital products, particularly those involving distributed and intelligent systems.
The roundtable discussion reflected a shared commitment across EU projects to tackle challenges such as supply chain visibility, vulnerability detection, secure integration from edge to cloud, and compliance validation through automatic tools.
Watch the full recording of the webinar here: https://www.youtube.com/watch?v=nHdMsvrOH4E