CE RED Cybersecurity
European CE RED Cybersecurity Requirements, Mandatory from August 2025
The European Commission (EC) has announced that manufacturers, importers, and distributors must comply with the
Radio Equipment Directive (RED) Article 3(3) cybersecurity requirements to sell wireless devices and IoT products in the European market.
As a KOLAS internationally accredited testing laboratory, we issue reliable test reports in accordance with the EN 18031 standard.
The European Commission (EC) has announced that manufacturers, importers, and distributors must comply with the
Radio Equipment Directive (RED) Article 3(3) cybersecurity requirements to sell wireless devices and IoT products in the European market.
As a KOLAS internationally accredited testing laboratory, we issue reliable test reports in accordance with the EN 18031 standard.
RED Cybersecurity Obligations (Article 3(3))
- Improving Network Resilience – (Article 3(3)(d))
- Enhancing Protection of Personal Data and Privacy – (Article 3(3)(e))
- Preventing Financial Fraud – (Article 3(3)(f))
Effective Date: Mandatory across Europe starting August 1, 2025
Scope of Application
- All wireless devices communicating directly or indirectly via the Internet
- All wireless devices processing personal, traffic, or location data
- All wireless devices enabling financial transactions or cryptocurrency payment/transfer
Reduced Processing Time with Document Automation Platform
Normally, cybersecurity certification requires extensive technical documentation review, and the preparation process by manufacturers typically takes 3–4 weeks.
However, NTREE Research Institute has implemented a proprietary document automation platform to streamline the documentation process,
significantly reducing both manufacturers’ document preparation time and the laboratory’s review period.
However, NTREE Research Institute has implemented a proprietary document automation platform to streamline the documentation process,
significantly reducing both manufacturers’ document preparation time and the laboratory’s review period.
Testing Process

- Application and Registration
We receive the client’s application and conduct a preliminary review of product characteristics and testing scope. - Documentation and Review
We provide efficient and systematic support for technical documentation using our proprietary document automation platform. - Establishing the Test Plan
We prepare a detailed test plan according to the product’s security requirements, defining methods and items. - Testing Execution
We perform a variety of tests such as vulnerability assessment, cryptographic verification, and network security tests based on standards. - Issuing Test Reports
We analyze the test results and issue official reports. - Certification (NB Certificate)
Through partnerships with multiple European Notified Bodies (NBs), we can issue CE RED international certificates quickly and reliably.
Evaluation and Testing Standards
NTREE Research Institute evaluates products’ cybersecurity levels
and provides certification testing in accordance with the European EN 18031 series.
This is an essential procedure to comply with CE RED Cybersecurity Certification (3.3(d/e/f)).
Contact: Team Manager Hanju Kim
Phone: 010-5765-7162
Email: hjkim3@ntree.or.kr
and provides certification testing in accordance with the European EN 18031 series.
This is an essential procedure to comply with CE RED Cybersecurity Certification (3.3(d/e/f)).
Contact: Team Manager Hanju Kim
Phone: 010-5765-7162
Email: hjkim3@ntree.or.kr