News from the Wire
ONEKEY relies on 'Decision Intelligence' for cybersecurity
Tuesday, June 30, 2026 — 16:32:19 (UTC)
ONEKEY Relies on “Decision Intelligence” for Cybersecurity
CEO Jan Wendenburg advocates a fresh approach to AI in product cybersecurity
Düsseldorf, June 30, 2026 — The current discussion around artificial intelligence (AI) in cybersecurity is largely focused on its powerful new analytical capabilities. Modern AI models can analyze source code, identify security vulnerabilities, and uncover potential attack paths.
Düsseldorf-based product cybersecurity specialist ONEKEY welcomes these advances but believes the conversation should go further. "The industry is currently placing a strong emphasis on vulnerability discovery. In practice, however, the biggest challenges begin after vulnerabilities have been identified," said Jan Wendenburg, CEO of ONEKEY.
Jan Wendenburg continued, "Anyone who develops connected devices, machines, or systems must make sound decisions based on a wealth of technical information. This is precisely where AI will deliver the greatest economic benefits in the future."
The security company therefore does not see the next stage of cybersecurity development as being based on ever-increasing amounts of analysis, but rather on smarter decisions. ONEKEY refers to this approach as “Decision Intelligence” for product security.
From the Age of Analysis to the Age of Decision-Making
In recent years, cybersecurity has focused on identifying risks. With the advent of advanced AI systems, this process is becoming more automated. Consequently, companies are receiving more indications of potential security issues.
According to ONEKEY, this creates a new challenge. The volume of available information is growing faster than many manufacturers' human resources can handle. Security teams must evaluate thousands of pieces of information, correlate them, and derive concrete measures.
"More information does not automatically mean more security," said Jan Wendenburg. "Those who cannot prioritize findings amid a flood of data do not gain control but rather face additional complexity, which generally means less security."
Security Requires Context
With connected products in particular, knowing that a vulnerability exists is not enough to determine its significance. Whether a risk is relevant depends on several factors, including the firmware and software components used, existing protection mechanisms, the area of application, and regulatory requirements.
From ONEKEY’s perspective, therefore, contextual knowledge is a decisive factor for success. The platform analyzes firmware directly at the binary level and links technical insights with product knowledge, compliance requirements, and lifecycle information. All of these can be customized to individual risks via profiles. The result is a comprehensive overview that goes far beyond traditional vulnerability lists.
The Digital Security Assistant
Consequently, ONEKEY continues to expand the use of artificial intelligence within its platform. The goal is to support security managers throughout the entire decision-making process, not merely to automate analyses.
In the future, ONEKEY VerityAI, an intelligent assistant, will present complex relationships in an understandable way, explain technical issues in natural language, and generate actionable recommendations tailored to different target groups.
"We're transitioning from basic analysis tools to a digital security assistant," said Jan Wendenburg. "The system helps experts speed up their work and make more informed decisions."
New Regulatory Requirements
Meanwhile, new legal requirements are placing greater demands on manufacturers. The Cyber Resilience Act, in particular, requires traceable security processes, documented assessments, and substantial evidence.
According to ONEKEY’s assessment, transparently justifying and documenting decisions in an audit-proof manner will become a key competitive factor.
"Security will no longer be measured solely by how many vulnerabilities were detected," said Jan Wendenburg. He explained: "What will be decisive is whether companies can provide transparent evidence of why they made the decisions they did."
AI as a Guidepost, Not as an Autopilot
Therefore, ONEKEY sees the future of product safety as being based on close collaboration between human expertise, technical evidence, and intelligent software. Artificial intelligence is intended to help safety managers arrive at the right answers more quickly without assuming sole responsibility for decisions.
"The most successful companies will not be those that blindly trust AI," Jan Wendenburg summarized, "but those that use AI to make better, faster, and more informed decisions."
With ONEKEY VerityAI, an AI-powered assistant, intelligent workflows, and advanced analytics, ONEKEY is working toward the next stage of product safety.
ONEKEY is the leading European specialist in Product Cybersecurity & Compliance Management and part of the investment portfolio of PricewaterhouseCoopers Germany (PwC). The unique combination of the automated ONEKEY Product Cybersecurity & Compliance Platform (OCP) with expert knowledge and consulting services provides fast and comprehensive analysis, support, and management to improve product cybersecurity and compliance from product purchasing, design, development, production to end-of-life.
Critical vulnerabilities and compliance violations in device firmware are automatically identified in binary code by AI-based technology in minutes – without source code, device, or network access. Proactively audit software supply chains with integrated Software Bills of Materials (SBOMs) generation. "Digital Cyber Twins" enable automated 24/7 post-release cybersecurity monitoring throughout the product lifecycle.
The integrated ONEKEY Compliance Wizard already supports compliance with requirements from IEC 62443-4-2, ETSI EN 303 645, UNECE R155, and many other standards and regulations.
As part of the EU-funded CRACoWi (Cyber Resilience Act Compliance Wizard) project, ONEKEY is collaborating with 13 European partners to develop an AI-powered assistant for the automated implementation of the EU Cyber Resilience Act (CRA).
The solution will guide companies through the entire compliance process—from the initial CRA scope assessment to the generation of the required Declaration of Conformity.
The Product Security Incident Response Team (PSIRT) is effectively supported by the integrated automatic prioritization of vulnerabilities, significantly reducing the time to remediation.
Leading international companies in Asia, Europe and the Americas already benefit from the ONEKEY Product Cybersecurity & Compliance Platform (OCP) and ONEKEY Cybersecurity Experts.
Further information: ONEKEY GmbH, Sara Fortmann, email: sara.fortmann@onekey.com, Toulouser Allee 19A, 40211 Düsseldorf, Germany, web: onekey.com
PR Agency: euromarcom public relations GmbH, Mühlhohle 2, 65205 Wiesbaden, Germany, email: team@euromarcom.de, web: www.euromarcom.de
Notice to readers: These are archived articles. Contact information, links and other details may be out of date. We regret any inconvenience.
Source: Company press release. 
Categories: Reports and research