On Wednesday 31 January, the European Commission adopted the first European cybersecurity certification scheme, in accordance with the provisions of the cybersecurity legislation (see EUROPE 13293/7).
“Today we are launching a new framework to ensure that the products we use in some of the most sensitive environments, such as routers and ID cards, are cyber-secure. We want our citizens, businesses and the public sector to be able to trust the products they depend on to secure their networks and deliver sensitive public services”, commented Internal Market Commissioner Thierry Breton.
In concrete terms, the certification scheme must make it possible to define a set of rules and procedures to certify that products in the information and communication technology sector are recognised as reliable and safe throughout their life cycle. The certification complements legislation on cyber resilience (see EUROPE 13335/41), which introduces requirements for all connected products and software.
In parallel with the publication of the certification scheme in the Official Journal of the EU, the Commission will publish a work programme for future European cybersecurity certification schemes, taking into account legislative and market developments.
See the document: https://aeur.eu/f/anu (Original version in French by Thomas Mangin)