BLH Nobel partnered with Proekspert to remove Cyber Resilience Act compliance risk from a long-lived industrial device – gaining clear, audit-ready guidance and confirming that no hardware redesign was required.

BLH Nobel, a global provider of industrial weighing and force measurement solutions, faced a growing regulatory challenge. One of their longstanding embedded devices – used in demanding environments such as cranes, mining, and factories – was developed before the upcoming EU Cyber Resilience Act (CRA).
With CRA requirements approaching, BLH Nobel needed to understand the gap between their existing product and future compliance expectations – and whether compliance would require disruptive redevelopment. The device is typically configured once and then operates for years in restricted or physically protected locations, yet in some use cases remote connectivity is essential, introducing new security considerations.
Their goal was not immediate redevelopment, but a clear, realistic assessment:
BLH Nobel engaged Proekspert to perform an initial CRA compliance analysis and risk assessment for their embedded industrial device.
Our task was to translate abstract regulatory requirements into concrete, actionable decisions – without forcing unnecessary hardware redesign – and to create documentation that enables the design of solutions based on modern security architecture and supports audits and certification reviews.
What we did:
All findings and recommendations were delivered in a structured, audit-ready report that BLH Nobel can directly use for planning, budgeting, and certification decision-making.
As a result of the assessment, BLH Nobel gained a concrete, device-specific understanding of where their product stands in relation to CRA requirements and what truly needs to change.
Most importantly, the analysis confirmed that no hardware redesign was required. CRA and CE-marking alignment can be achieved purely through targeted software upgrades, supported by improved security processes and documentation.
The assessment provided BLH Nobel with a clear view of which security risks matter in real operating conditions, along with practical guidance on securing remote access use cases. It also defined well-structured development and release processes that prevent security gaps from reaching production, while establishing a solid foundation for embedding CRA and security-by-design thinking into future product generations.
In addition, the work delivered valuable input for next-generation product development, enabling compliance and security considerations to be addressed early rather than retrofitted later.
BLH Nobel’s CRA readiness work delivers direct business-critical value
BLH Nobel is a global provider of precision weighing and force measurement solutions, serving demanding industrial applications such as cranes, mining, and process industries. Part of Vishay Precision Group (NYSE: VPG), BLH Nobel combines decades of American and Swedish engineering expertise to deliver accurate, reliable systems used by customers in more than 100 countries. Known for robustness and long service life, BLH Nobel’s products operate in mission-critical environments where reliability and compliance are essential.
C#, Embedded Windows, threat modeling, static code analysis, SBOM
Our case studies give an insight into how human-oriented design principles will help product companies persuade customers to go on a journey with smart, connected products.
Your message has been sent. Our team will get back to you as soon as possible!