Blog
The Finite State Blog

Practical insights and articles from our SMEs to help product security teams cut triage noise, fix what matters faster, and deliver audit-ready proof to customers and regulators.

106 results

Dark illustration of a security camera wrapped in glowing teal scan lines, with a faint mismatched blueprint outline behind it and one internal component highlighted in orange, symbolizing the gap between assumed and verified device contents.
Compliance

The 5 Biggest CRA Compliance Mistakes Product Security Teams Are Making

Most CRA mistakes come from the same root cause: teams working from what they assume is inside the product instead of what they can verify shipped.

Larry Pesce
Larry PesceAUGUST 13, 2026
A lineup of connected devices — an industrial PLC, a network router, and a smart home IoT hub — on a dark reflective surface, each overlaid with a teal X-ray scan revealing the circuit boards inside, illustrating continuous security scanning for CRA compliance.
Compliance & Regulations

CRA Compliance Is Not a Checkbox. It's a Continuous Program.

Manufacturers tend to prepare for the EU Cyber Resilience Act (CRA) the way they'd prepare for an exam, something you study for, pass, and put behind ...

Doc McConnell
Doc McConnellJUNE 17, 2026
Understanding The EU CRA's SBOM & Technical Documentation Requirements
SBOM ManagementCompliance & Regulations

EU CRA SBOM Requirements: Formats, Docs & 2027 Deadline

Ensure compliance with the EU Cyber Resilience Act. Learn how IoT manufacturers can streamline SBOM creation, updates, and documentation with expert t...

Finite State Team
Finite State TeamMAY 21, 2026
The Parallel Rail, Finite State's Model for Continuous Connected Device Security by Sharon Hagi, Chief Security Officer
Product Security

What Is the Parallel Rail? Finite State's Model for Continuous Connected Device Security

AI is becoming physical—and traditional checkpoint security models can’t keep up. The Parallel Rail embeds continuous product security and compliance ...

Sharon Hagi
Sharon HagiMAY 21, 2026
Conformity Assessments: Understanding the EU Cyber Resilience Act Requirements
Compliance & Regulations

Cyber Resilience Act Conformity Assessment Guide

Learn about the EU Cyber Resilience Act's conformity assessments. Discover how IoT manufacturers can ensure compliance based on product risk categorie...

Finite State Team
Finite State TeamMAY 12, 2026
A stack of five semi-transparent glass document panels fanned and layered on a dark reflective surface. The top panel is illuminated by a bright teal scanning light sweeping horizontally across it, revealing faint data grids and chart lines beneath. An amber-orange glow emanates from the base of the stack, reflecting warmly on the surface below. The background is deep near-black with sparse scattered light points. The overall mood is technical, precise, and cinematic.
Compliance & Regulations

CRA Compliance Is a Full-Time Job. Most Teams Don't Have That.

EU CRA reporting obligations start in September 2026. Finite State's managed CRA service delivers five maintained compliance outputs for a designated ...

Finite State Team
Finite State TeamMAY 4, 2026
SBOMs: The Accurate Guide to Software Supply Chain Security
SBOM Management

SBOMs and Software Supply Chain Security: A Practical Guide

Learn how SBOMs enhance software supply chain security, ensure compliance, & protect against 3rd-party vulnerabilities.

Finite State Team
Finite State TeamFEBRUARY 4, 2026
Exploring Standards and Regulations for Automotive Cybersecurity
Connected Vehicles

Automotive Cybersecurity Standards: A 2026 Compliance Guide

Explore the world of automotive cybersecurity standards and regulations. Learn how ISO/SAE 21434 & WP.29 are shaping secure, connected car tech.

Finite State Team
Finite State TeamFEBRUARY 4, 2026
Understanding the Connected Vehicle Rule: Strategic Implications and How Finite State Supports Compliance
Connected VehiclesCompliance & Regulations

Understanding the Connected Vehicle Rule: What It Requires and How to Comply

Learn what the Connected Vehicle Rule means for automakers, key compliance deadlines, and how Finite State helps companies navigate the new regulation...

Mike Hatherall
Mike HatherallFEBRUARY 2, 2026
How SBOMs Streamline Medical Device Security
IoMT

How SBOMs Streamline Medical Device Security

Discover how Finite State revolutionizes medical device security with SBOMs, ensuring FDA compliance, enhanced security, and faster market entry.

Larry Pesce
Larry PesceFEBRUARY 1, 2026
Navigating Automotive Compliance in the Age of Connected Devices
Connected Vehicles

Automotive Regulatory Compliance in the Age of Connected Vehicles

Explore the intricate roadmap of automotive regulatory compliance, its challenges, & how Finite State's connected device security solutions drive safe...

Doc McConnell
Doc McConnellJANUARY 29, 2026
A Unified Path to CRA Compliance: Breaking Silos, Matching Risk
Compliance & Regulations

A Unified Path to CRA Compliance: Why Teams Need to Break Silos and Match Velocity

Learn how unified risk assessment and reachability help teams break silos, reduce CRA reporting effort, and focus on real, exploitable risk.

Dario Lobozzo
Dario LobozzoJANUARY 27, 2026
Finite StateFinite State

Finite State is the Product Security Automation Platform that functions as an autonomous Product Security OS: design → verify → prove, grounded in what you ship.

Platform

Platform Overview
Ground Truth Inventory
Exploitability-Based Prioritization
Design-Time Architecture Security
Automated Evidence-Backed Compliance

Solutions

Device Manufacturers
Automotive
Medical Devices
Energy & Utilities
Government
Industrial

Resources

Blog
Resource Library
Webinars & Videos
Events
Documentation

Company

About Us
CareersHIRING
Press & News
Contact Sales
Media Inquiries
X

© 2026 Finite State. All rights reserved.

Privacy PolicyTerms of UseCustomer Terms and Conditions
Finite StateFinite State
Finite StateFinite State
Get a DemoGet a Demo