Building Automotive Cybersecurity Competence

The Product Cybersecurity Training covers the key aspects of relevant standards and regulations, outlining requirements, expectations, and best practices for product cybersecurity, specifically focused on the automotive industry.

The training provides a clear understanding of the automotive cybersecurity ecosystem, including stakeholders, attack vectors, and lifecycle phases.

Choose your training path

Two tailored training paths are available: the Foundation Training, which follows a presentation-based approach to provide essential knowledge, and the Advanced Practitioner Training, which incorporates interactive elements such as hands-on exercises, applied approach reviews, and the use of practical templates for deeper engagement and skill development.

The purpose of our training

We can help organizations enhance their product cybersecurity awareness and competence through the foundation training or advanced practitioner.

Training content

This section establishes a foundational understanding of regulatory requirements, focusing on UN R155 and the Cyber Resilience Act (CRA). These regulations define how automotive products must manage cybersecurity risks throughout their lifecycle. A basic overview of the automotive cybersecurity ecosystem is also provided, encompassing vehicles, backend systems, communication networks, and external interfaces.

Cybersecurity begins at the organizational level with the implementation of a Cybersecurity Management System (CSMS), which defines how cybersecurity is structured and governed. Within development projects, cybersecurity planning and execution must align with this system. Activities such as threat assessments, risk analysis, secure architecture design, and process controls are integrated into the development lifecycle to ensure regulatory compliance and organizational consistency.

Cybersecurity responsibilities are shared across customers, suppliers, and other stakeholders, requiring coordinated effort across the embedded supply chain. Each phase of the automotive lifecycle—concept, development, production, operation, and decommissioning—involves specific cybersecurity tasks. Roles and responsibilities must be clearly defined to ensure smooth execution and secure integration across systems and organizations.

CCSA includes ongoing processes such as cybersecurity information collection, evaluations, and vulnerability management. These are essential to maintaining cybersecurity throughout the vehicle’s operational life. An effective incident response process is also crucial, including detection, assessment, reporting, and resolution. Roles, responsibilities, and procedures must be clearly defined and aligned with best practices and regulatory requirements.

In the development phase, threats are identified, analyzed for feasibility and impact, and risks are assessed accordingly. This leads to the definition of cybersecurity goals and claims based on a clear understanding of the item and its environment. During post-development, cybersecurity must be actively managed through monitoring, patching, and vulnerability handling. Compliance with ongoing regulatory requirements ensures that products in the field remain protected against evolving threats.

Course Structure

Choose your training path!

Integrate Product Cybersecurity Training into Your Organization’s Training and Awareness Program

Integrating this training into your organization's Training and Awareness Program helps raise awareness about effective CSMS implementation and its integration into the overall organizational structure. By providing this training, you ensure that employees at all levels understand the importance of cybersecurity and the necessary steps to manage risks effectively across the product lifecycle.

Why Product Cybersecurity Training is critical

The product cybersecurity training provides a structured framework for identifying, assessing, and mitigating cyber risks throughout a vehicle’s lifecycle. By implementing robust security measures, continuous monitoring, and regulatory compliance processes, understanding of the product cybersecurity helps manufacturers and suppliers safeguard vehicle integrity, protect sensitive data, and maintain customer trust in an increasingly connected automotive ecosystem.

The benefits of our Product Cybersecurity Training

Who Should Attend
CYRES_Workbook-AboutCyres

About CYRES Consulting

CYRES Consulting provides cybersecurity services and consultancies, with a focus on engineering and development, particularly in the automotive sector. With a team of experts from all over the world, we bring deep knowledge and hands-on experience to each project. From helping global automotive pioneers to collaborating with top-tier technology providers, we help organizations secure their future through innovative cybersecurity solutions. Additionally, our professional Training, tailored on your requests, will provide you with the level of knowledge and expertise you need.

Get in touch, book your tailored-made training!
Ready to enhance your team’s expertise in Product Cybersecurity?
Contact us today to discuss your training needs and learn how we can help your organization achieve its goals.