News –

NORD DRIVESYSTEMS meets the reporting obligations of the Cyber Resilience Act in due time

NORD DRIVESYSTEMS implemented the processes and structures required for the Cyber Resilience Act in due time. The company thus fulfils the statutory reporting obligations for actively exploited vulnerabilities. Full CRA compliance of the affected products is scheduled to be available by 11 December 2027.

Bargteheide, 2026-09-11

Four frequency inverters affected

Within the drive manufacturer’s product range, the networked frequency inverters NORDAC ON , NORDAC LINK , NORDAC FLEX and NORDAC PRO fall within the scope of the CRA. The product requirements have been evaluated under their operating conditions in accordance with the CRA. A threat and risk analysis was conducted for this purpose. Furthermore, the requirements of IEC 62443-4-2 were evaluated in this context according to Security Level 1.

Vulnerabilities can be reported via the reporting platform at http://www.nord.com/cybersecurity. Here, NORD also provides further information on the implementation of the CRA, and lists contact persons for product-specific questions. By 11 December 2027, complete declarations of conformity, technical documentation and software bills of material will be available for all relevant products within due time.

Head directly to all CRA information from NORD .