
3
min reading time
CCLab was chosen to be the information security laboratory for this project in 2016. These evaluation processes were very complex challenges for both the Common Criteria laboratory and the developer team. Through professional cooperation between the parties, ID&Trust Identity Applet Suite v3.4 on NXP® Semiconductors’ JCOP 4 P71 successfully gained 4 Common Criteria (EAL4+) security certificates on 28th October, 2020 according to 4 different Protection Profiles.
NXP brought many lessons and pleasant moments during the past 4 years. CCLab was flexible and well-organized throughout the work, thanks to which the client's development team also received the necessary support for successful evaluation projects for the following 4 configurations of the product:
“It was a well-managed project which achieved success in an effortless manner. “– Mr. Jaime Chica, Product Manager at NXP Semiconductors pointed out summarizing the common work.
„I have to say thanks to everyone for the successful evaluation processes. It was a great challenge and we are ever happy that NXP chose us for this project. It was fun to work with NXP, and also with OCSI, who were the best of all, even while the responsible representative handed over the project to a new colleague during the work.” – said Mr. Gábor Hornyák, CCLab CTO.
It was another time when CCLab has proven its expertise on the security evaluation field of smart card applets. Both parties highlighted the helpful and solution-oriented attitude at the end of the collaboration.
Congratulations to the NXP and ID&Trust teams on successful product certification and we also look forward to working together more.
ID&Trust is a global expert in digital identity verification technologies. Founded in 2002, ID&Trust has worked on pioneering projects, both local and international, for private and public organizations. We have developed electronic passports with ICAO PKD in Japan, health cards for 20 million people in Romania and a multifunctional card solution for eIDAS-compliant, new-generation electronic ID cards in Hungary.


This downloadable infographics introduces the Common Criteria Evaluation process to you. Explore now for free.


Learn everything you need to know for a successful Common Criteria certification project. Save costs and effort with your checklist.


Download our ETSI EN 303 635 infographics today and learn about the product certification process for this consumer IoT device cybersecurity standard.

The European Union has launched an ambitious digital transformation initiative centered on digital identity and trust services. Building upon the foundation of the original eIDAS Regulation (Regulation (EU) No. 910/2014), the updated eIDAS 2.0 framework (Regulation (EU) 2024/1183) establishes a European Digital Identity (EUDI) Framework that requires all Member States to make interoperable EU Digital Identity Wallets available to citizens and businesses by 2026. This effort aims to create consistency in legal certainty, interoperability, and data protection across borders, strengthening trust in Europe’s digital landscape.
9
min reading time

The journey of achieving Common Criteria certification represents just the beginning of a complex, ongoing process that demands continuous attention and strategic management. Organizations worldwide invest significant resources in obtaining these prestigious security certifications, yet many underestimate the critical importance of proper lifecycle management once their products become Common Criteria certified. Effective CC certification lifecycle management ensures continuous security assurance, regulatory compliance, and market credibility throughout a product’s operational lifespan.
9
min reading time

In an increasingly interconnected world, cybersecurity has become more than just a technical requirement, it's a critical shield protecting organizations from potential digital threats. Common Criteria (CC), an internationally recognized standard also known as ISO/IEC 15408, emerges as a comprehensive framework that meticulously evaluates the security properties of IT products and systems. This international standard provides a structured approach to assessing technological security, offering governments, enterprises, and technology developers a robust methodology for understanding and validating the security mechanisms embedded within their digital solutions. Moreover, Common Criteria serves as a critical benchmark, ensuring that technological products meet rigorous security standards before entering the marketplace.
10
min reading time