
CCLab Ltd. was founded in 2013 as an agile, ISO 17025 accredited cybersecurity laboratory primarily to work in Common Criteria evaluations and consultations.It has been accredited by OCSI, Certification Body of the Italian Scheme since 2015, by TrustCB, the Dutch CB since 2025, and by IECEE CB Scheme from 2024.
CCLab has conducted many successful Common Criteria evaluation and consultation projects, and the number keeps increasing in size and quality continuously each year.
In 2023 CClab has joined the QIMA group, a global Testing, Inspection and Certification player, operating in more than 100 countries from 60 offices and labs.
Navigate the complex landscape of cybersecurity certifications
with expert guidance
ISO 15408 Common Criteria Compliance and Certification up to EAL4+ or EAL5.
Professional support to prepare for a successful Common Criteria evaluation saves you cost and effort.
Comply with ETSI EN 303 645 standards, providing guidelines and expertise for the security of consumer Internet of Things (IoT) devices.
Data security solutions for smart metering system components with independent verification by out certified laboratory.
Learn more about the Radio Equipment Directive (RED) specifying cybersecurity requirements for radio equipment sold within the EU.
How to get your connected device compliant with the upcoming cybersecurity regulation in the UK, the Product Security and Telecommunications Infrastructure (PSTI) Act.
Cybersecurity evaluation and certification of industrial automation and control system based on ISA/IEC 62443-4-1 and 62443-4-2 standards.
Get your IoT, IIoT device certified after successful evaluation and testing based on ETSI 3030 645 or IEC 62443-4-1, 62443-4-2.
What does it mean?
8
min reading time
This article is a practical guide to the EU Cybersecurity Certification Scheme (EUCC) and what it actually means for ICT product security. It explains how the scheme's two assurance levels (Substantial and High) translate Common Criteria requirements into a clear security baseline for manufacturers. Understand what ENISA EUCC means for your conformity assessment, how ISO 15408 underpins the assurance methodology, and why building secure-by-design products is the most reliable path to ICT product compliance in the evolving EU digital security framework.
7
min reading time
This article is a practical guide to the Radio Equipment Directive and its RED cybersecurity requirements. It explains what Article 3.3 demands of wireless device manufacturers, how the RED-DA Delegated Act reshaped the compliance landscape, and what role EN 18031 and other harmonised standards play in demonstrating conformity. Learn how RED testing requirements, RED technical documentation, and conformity assessment work in practice, and why building secure-by-design wireless products from day one is the only approach that actually holds up.

min reading time
The era of unregulated smart devices has officially come to an end. With the European Union having rolled out stringent regulations like the Cyber Resilience Act (CRA), manufacturers can no longer treat cybersecurity as an afterthought. Whether you are producing smart cameras, wearable health trackers, or connected home appliances, navigating this evolving regulatory landscape is critical. Fortunately, a globally recognized standard has emerged to cut through the complexity: ETSI EN 303 645. This guide breaks down exactly how this foundational standard acts as your security passport, ensuring your devices meet the rigorous compliance demands of today's market.
Join our captivating cybersecurity events to enhance your knowledge and engage with our team of experts.
