Blog
The Finite State Blog

Practical insights and articles from our SMEs to help product security teams cut triage noise, fix what matters faster, and deliver audit-ready proof to customers and regulators.


23 results

Mistakes to Avoid in Your CRA Readiness Strategy
Compliance & Regulations

Mistakes to Avoid in Your CRA Readiness Strategy

Learn the most common EU CRA readiness mistakes product security teams make and how to build a repeatable, scalable compliance strategy that works.

Dario Lobozzo
Dario LobozzoDECEMBER 11, 2025
How Multi-Modal Scanning Simplifies CRA Compliance
Compliance & Regulations

How Multi-Modal Scanning Simplifies CRA Compliance

Learn how combining binary analysis, source code scanning, and SBOM ingestion enables full-spectrum vulnerability visibility for EU CRA compliance.

Dario Lobozzo
Dario LobozzoDECEMBER 11, 2025
Simplifying CRA & FDA 524B Compliance with Unified Risk
Compliance & Regulations

How a Unified Risk View Simplifies Compliance with EU CRA, FDA 524B, and Beyond

From CRA to FDA 524B, regulators expect traceability and continuous security. Learn how unified risk data reduces compliance overhead & boosts confide...

Mike Hatherall
Mike HatherallNOVEMBER 24, 2025
Why Living SBOMs Are Key to Compliance Readiness
Compliance & RegulationsSBOM Management

From Static to Strategic: Why Living SBOMs Are Key to Compliance Readiness

Regulations like the EU CRA demand ongoing visibility, not one-time SBOM exports. Discover how living SBOMs support audits, evidence, and continuous c...

Mike Hatherall
Mike HatherallNOVEMBER 18, 2025
How to Build a CRA-Compliant Vulnerability Disclosure Program That Scales
Compliance & Regulations

How to Build a Scalable, Repeatable CRA Vulnerability Disclosure Program

Learn how to build a scalable vulnerability disclosure program that meets the EU CRA's continuous monitoring and reporting requirements with evidence ...

Dario Lobozzo
Dario LobozzoNOVEMBER 4, 2025
Regulations Driving IoT Security Forward
Compliance & RegulationsIoT & OT

Regulations Driving IoT Security Forward

From EU CRA to FDA 524B, IoT regulations are reshaping the market. Learn what manufacturers need for compliance—SBOMs, testing, and supply chain visib...

Robert Kelley
Robert KelleySEPTEMBER 24, 2025
EU CRA Compliance: Essential Guide for UK IoT and Connected Product Makers
Compliance & Regulations

EU CRA Compliance: Essential Guide for UK IoT and Connected Product Makers

EU CRA impacts UK-connected device makers. Get clear guidance on compliance, risk, and protecting EU market access.

Mike Hatherall
Mike HatherallJULY 11, 2025
From Security Debt to Compliance Debt: Why IoT Product Teams Can’t Afford to Wait on the CRA
IoT & OTCompliance & Regulations

From Security Debt to Compliance Debt: Why IoT Product Teams Can’t Afford to Wait on the CRA

Discover how the EU CRA is transforming IoT security from technical debt to compliance risk— and what manufacturers must do to get ahead of enforcemen...

Matt Wyckhouse
Matt WyckhouseMAY 9, 2025
How IoT Security Challenges Impact Regulatory Compliance
IoT & OTCompliance & Regulations

How IoT Security Challenges Impact Regulatory Compliance

Learn how the unique challenges of IoT devices & evolving regulations like the EU CRA & PSTI Act impact security & compliance.

Finite State Team
Finite State TeamMAY 2, 2025
Finite State Announces Strategic Expansion into EMEA to Support Growing Demand for Software Supply Chain Security

Finite State Announces Strategic Expansion into EMEA to Support Growing Demand for Software Supply Chain Security

Finite State expands into EMEA to help manufacturers meet growing cybersecurity and compliance demands driven by EU CRA, NIS 2, and CE RED.

Finite State Team
Finite State TeamAPRIL 15, 2025
A Technical Guide to Cross-Framework Compliance for IoT Manufacturers
Compliance & Regulations

A Technical Guide to Cross-Framework Compliance for IoT Manufacturers

Learn how to comply with multiple IoT security frameworks like EU CRA & Cyber Trust Mark with strategies to streamline compliance.

Larry Pesce
Larry PesceMARCH 18, 2025
Understanding Secure by Design: An EU CRA Guide for IoT Manufacturers
IoT & OTCompliance & Regulations

Understanding Secure by Design: An EU CRA Guide for IoT Manufacturers

Learn more about the EU Cyber Resilience Act’s Security by Design requirements and how to comply as an IoT manufacturer in this short guide.

Hannah Beazley
Hannah BeazleyJANUARY 29, 2025
Finite StateFinite State

Finite State is the Product Security Automation Platform that functions as an autonomous Product Security OS: design → verify → prove, grounded in what you ship.

Platform

Platform Overview
Ground Truth Inventory
Exploitability-Based Prioritization
Design-Time Architecture Security
Automated Evidence-Backed Compliance

Solutions

Device Manufacturers
Automotive
Medical Devices
Energy & Utilities
Government
Industrial

Resources

Blog
Resource Library
Webinars & Videos
Events
Documentation

Company

About Us
CareersHIRING
Press & Media
Contact Sales
X

© 2026 Finite State. All rights reserved.

Privacy PolicyTerms of UseCustomer Terms and Conditions
Finite StateFinite State
Finite StateFinite State
LoginLogin