
Crypto Quantique Simplifies CRA Compliance for Embedded Security
Crypto Quantique is helping embedded designers comply with the European Cyber Resilience Act by automating essential security functions and integrating post-quantum cryptography.
allaboutcircuits.com, Mar. 27, 2025 –
As the European Cyber Resilience Act (CRA) begins to reshape the security landscape for digital products sold in the EU, embedded device developers are under increasing pressure to comply with complex cybersecurity mandates.
Crypto Quantique has stepped up with a solution: the QuarkLink Hybrid PQC security platform.
Revealed at Embedded World 2025, QuarkLink is designed to simplify CRA compliance by dramatically reducing the time, cost, and risk involved in securing embedded systems. The platform also provides long-term protection against emerging cyber threats, including those posed by quantum computing.
The EU Cyber Resilience Act
Passed in 2024 and set to be fully enforced by December 2027, the CRA imposes sweeping cybersecurity requirements on hardware and software products with digital elements. These include secure firmware update capabilities, vulnerability management, incident reporting, and proven cryptographic techniques. Non-compliance can result in fines of up to €15 million or 2.5% of annual global turnover.
One of the most pressing challenges for developers is implementing these requirements within tight timeframes using fragmented tools and legacy workflows. Crypto Quantique CEO Shahram Mossayebi explained in an interview with AAC’s Jeff Child at Embedded World how his company intends to help.
“We provide an abstract layer on the embedded side, connecting your application to the security features of your hardware and your cloud infrastructure,” he said. “We sandwich your application from a security point of view.”
Inside the Unified QuarkLink Platform
QuarkLink is a cloud-based software platform that provides a full-stack approach to embedded device security—from manufacturing to decommissioning. It manages device identities, supports secure boot, provides firmware-over-the-air (FOTA) updates, and handles cryptographic operations, including Public Key Infrastructure (PKI) and certificate management. The platform's most recent upgrade integrates hybrid post-quantum cryptography (PQC), offering both current and future-proof protection through a combination of X25519 and Kyber768Draft00 algorithms.