Panel: From Minimum Compliance to Meaningful Stewardship
UA2.114 (Baudoux) | Day 1 | 17:00 - 17:25 | Speakers: Kate Stewart, Salve J. Nilsen, Madalin Neag, Pavel Hruza
Abstract
This panel brings together experts to discuss the practical realities of implementing the CRA steward role, as defined by the regulation, and how organisations are approaching its execution. Panelists will explore how the concept of CRA stewards is being interpreted, what responsibilities are emerging in practice, and the challenges organisations face in preparing for this new function. They will also highlight which elements remain unclear, what support or guidance is still needed, and how future work at the level of EC and broader ecosystem can help refine and operationalise the steward role effectively. The panel aims to offer concrete insights for organisations navigating this evolving responsibility.
Speakers
Kate has been working with Open Source communities for over 25 years. She was one of the founders of the SPDX project, and is a technical committee co-lead. Since she joined the Linux Foundation in 2015, she has been instrumental in launching the Zephyr, RT Linux and ELISA projects.
Salve J. Nilsen has been a community organizer and speaker in the Perl, CPAN and Raku communities for more than two decades, organizing conferences, meetups, hackathons and much more. Usually he speaks of community-related topics, but has recently spent his attention ("tuits") on the CPAN Security Group, focusing on package metadata, policy, compliance, governance and sustainability. He is the initiator of the CONTRIBUTING.yaml spec, currently being standardized under the ECMA TC54-TG4 track. Salve is also a contributor to the Open Regulatory Compliance Working Group's exploration of the Cyber Resilience Act, with special interest in the OSS Steward role, and it's implications. Salve is based in Oslo, Norway.
Madalin is working as an EU Policy Advisor at OpenSSF with a focus on cybersecurity and open source software. He serves as a bridge between OpenSSF (and its community), other technical communities and policymakers, helping position OpenSSF as a trusted resource within the global and European policy landscape.
Links
External Links
Notice: The placeholder video image is licensed under CC BY-SA 4.0. The original image can be found hereChanges made to the image are: Cropped the image to a new ratio, part of the image was cut off.
