< Back to all clusters
[TECHNOLOGY] · EU · 5 sources

started · updated

Silicon Motion completes first stage of EU Cyber Resilience Act compliance

Silicon Motion has completed the first stage of its compliance program for the European Union’s Cyber Resilience Act (CRA). The company, a supplier of NAND flash controllers for solid-state storage, has aligned its cybersecurity controls and internal processes with the CRA’s initial incident-reporting requirements, which are set to take effect on September 11, 2026.

As part of its readiness for the regulation’s full application on December 11, 2027, Silicon Motion has established vulnerability-handling procedures. These measures include security due diligence for third-party components, continuous vulnerability monitoring, coordinated disclosure, and incident escalation protocols. The company has also launched a dedicated security vulnerability reporting channel for customers and stakeholders.

CEO Wallace C. Kou stated that as AI expands across data centers and edge devices, cybersecurity has become an essential component of product development. The compliance measures cover the company’s full portfolio, including enterprise and edge SSD controllers, automotive solutions, and display interface products.

Entities

Silicon Motion