INDUSTRIES

CE RED Cybersecurity

European CE RED Cybersecurity Requirements, Mandatory from August 2025

The European Commission (EC) has announced that manufacturers, importers, and distributors must comply with the
Radio Equipment Directive (RED) Article 3(3) cybersecurity requirements to sell wireless devices and IoT products in the European market.
As a KOLAS internationally accredited testing laboratory, we issue reliable test reports in accordance with the EN 18031 standard.
RED Cybersecurity Obligations (Article 3(3))
  • Improving Network Resilience – (Article 3(3)(d))
  • Enhancing Protection of Personal Data and Privacy – (Article 3(3)(e))
  • Preventing Financial Fraud – (Article 3(3)(f))

Effective Date: Mandatory across Europe starting August 1, 2025

Scope of Application
  • All wireless devices communicating directly or indirectly via the Internet
  • All wireless devices processing personal, traffic, or location data
  • All wireless devices enabling financial transactions or cryptocurrency payment/transfer
CE RED Cybersecurity Scope
Reduced Processing Time with Document Automation Platform
 
Normally, cybersecurity certification requires extensive technical documentation review, and the preparation process by manufacturers typically takes 3–4 weeks.
However, NTREE Research Institute has implemented a proprietary document automation platform to streamline the documentation process,
significantly reducing both manufacturers’ document preparation time and the laboratory’s review period.
Testing Process
Cybersecurity Testing Process
  1. Application and Registration
        We receive the client’s application and conduct a preliminary review of product characteristics and testing scope.

  2. Documentation and Review
        We provide efficient and systematic support for technical documentation using our proprietary document automation platform.

  3. Establishing the Test Plan
        We prepare a detailed test plan according to the product’s security requirements, defining methods and items.

  4. Testing Execution
        We perform a variety of tests such as vulnerability assessment, cryptographic verification, and network security tests based on standards.

  5. Issuing Test Reports
        We analyze the test results and issue official reports.

  6. Certification (NB Certificate)
        Through partnerships with multiple European Notified Bodies (NBs), we can issue CE RED international certificates quickly and reliably.
Evaluation and Testing Standards
 
NTREE Research Institute evaluates products’ cybersecurity levels
and provides certification testing in accordance with the European EN 18031 series.
This is an essential procedure to comply with CE RED Cybersecurity Certification (3.3(d/e/f)).

 Contact: Team Manager Hanju Kim
 Phone: 010-5765-7162
 Email: hjkim3@ntree.or.kr