Open Source as a Compliance Enabler: How the ORC Working Group Helps Industry Meet the CRA

Tackling the Cyber Resilience Act through Open Collaboration

Seminar 2

15:0015 mins07/11/2025

As the Cyber Resilience Act (CRA) comes into force, companies are facing growing pressure to adapt internal processes, demonstrate compliance, and keep pace with evolving regulatory expectations. In this talk, we’ll introduce the Eclipse Foundation’s Open Regulatory Compliance (ORC) Working Group, an industry-driven initiative designed to simplify and accelerate CRA compliance through open-source collaboration.

We’ll explore how the group brings together key stakeholders to co-develop reusable tools, shared documentation, and structured inventories of standards, helping organizations reduce costs, avoid duplication of effort, and build compliant products faster. From FAQs to a harmonized inventory of CRA-relevant standards, ORC provides practical assets for engineering and legal teams navigating regulatory complexity.

This session will offer a clear view of how the open-source model is being used not only to build better code, but to build better compliance.