About Meroi Security

Cybersecurity consulting for technology companies and manufacturers. Regulatory assessment, technical implementation and compliance documentation.

Meroi Security helps technology companies and manufacturers implement European cybersecurity requirements. We specialize in the Cyber Resilience Act and product cybersecurity, and provide support for NIS2, DORA and GDPR.

Based in the Netherlands and Taiwan, we work with clients internationally. Our services cover regulatory assessments, technical implementation, documentation and training for companies selling products or operating in the EU.

We work in a fit-for-purpose way. We provide recommendations based on your needs and priorities only. Our core values are integrity and performance.

Julian Meroi, Founder

Julian Meroi speaking at the TAICS conference

What we do

  • Regulatory assessment. We identify the requirements that apply to your products and organization, including CRA scope and product classification.
  • Technical implementation. We help your teams implement security controls, SBOM generation, vulnerability handling, reporting procedures, access control, logging and monitoring.
  • Evidence and documentation. We prepare risk assessments, technical documentation and declarations of conformity to support the applicable compliance requirements.
  • Training. We provide sessions for engineering, product, management and legal teams on their responsibilities under European cybersecurity regulations.
  • Ongoing support. We review regulatory developments and help you update your controls and documentation.

Who we work with

  • Manufacturers placing hardware and software products on the EU market.
  • Technology companies in finance, healthcare and critical infrastructure.
  • Suppliers responding to cybersecurity requirements from European customers.

How we work

Our engagements follow four stages: assess, plan, implement and maintain. We review your current position, agree on priorities and responsibilities, and work with your teams to implement the required changes. Ongoing support can include periodic reviews, documentation updates and assistance with regulatory requests.

Julian Meroi

Julian Meroi founded Meroi Security. He specializes in the Cyber Resilience Act and product cybersecurity, combining security engineering with regulatory assessment and implementation support.

Julian holds the CISSP certification. He has also earned the Certificate of Cloud Security Knowledge (CCSK), AWS Certified Solutions Architect – Associate and AWS Certified Cloud Practitioner certifications.

Meroi Security is registered as an independent external expert with the European Commission. The Commission may draw on this register for tasks such as evaluating projects and tenders. Registration alone carries no appointment to a specific assignment or Commission endorsement.

Julian has spoken on cybersecurity and EU regulatory topics, including the Cyber Resilience Act and product security.

Our Cyber Resilience Act reader provides the full regulation with practitioner notes and links to supporting sources. For implementation support, see our CRA compliance services.

Get in touch

Contact us to discuss your products, applicable requirements and implementation priorities. Initial assessments are free.

Email [email protected] or use the contact form.

Free initial assessment

Get in touch today

Get Started