
Founded in 2013, CCLab Ltd. is an agile cybersecurity laboratory specializing in Common Criteria evaluations and consultations. Our cybersecurity lab has been accredited by OCSI (Certification Body of the Italian Scheme) since 2015 and BSI (Certification Body of the German Scheme) since 2022.
We have successfully executed numerous projects, with the scale and quality of evaluations consistently increasing each year.
In 2023 CClab joined the QIMA group, a global Testing, Inspection, and Certification player, operating in more than 100 countries from 60 offices and labs.
Navigate the complex landscape of cybersecurity certifications
with expert guidance
ISO 15408 Common Criteria Compliance and Certification up to EAL4+ or EAL5.
Professional support to prepare for a successful Common Criteria evaluation saves you cost and effort.
Comply with ETSI EN 303 645 standards, providing guidelines and expertise for the security of consumer Internet of Things (IoT) devices.
Data security solutions for smart metering system components with independent verification by out certified laboratory.
Learn more about the Radio Equipment Directive (RED) specifying cybersecurity requirements for radio equipment sold within the EU.
How to get your connected device compliant with the upcoming cybersecurity regulation in the UK, the Product Security and Telecommunications Infrastructure (PSTI) Act.
Cybersecurity evaluation and certification of industrial automation and control system based on ISA/IEC 62443-4-1 and 62443-4-2 standards.
Get your IoT, IIoT device certified after successful evaluation and testing based on ETSI 3030 645 or IEC 62443-4-1, 62443-4-2.
What does it mean?

8
min reading time
This article is a practical guide to the EU Cybersecurity Certification Scheme (EUCC) and what it actually means for ICT product security. It explains how the scheme's two assurance levels (Substantial and High) translate Common Criteria requirements into a clear security baseline for manufacturers. Understand what ENISA EUCC means for your conformity assessment, how ISO 15408 underpins the assurance methodology, and why building secure-by-design products is the most reliable path to ICT product compliance in the evolving EU digital security framework.

7
min reading time
This article is a practical guide to the Radio Equipment Directive and its RED cybersecurity requirements. It explains what Article 3.3 demands of wireless device manufacturers, how the RED-DA Delegated Act reshaped the compliance landscape, and what role EN 18031 and other harmonised standards play in demonstrating conformity. Learn how RED testing requirements, RED technical documentation, and conformity assessment work in practice, and why building secure-by-design wireless products from day one is the only approach that actually holds up.

min reading time
The era of unregulated smart devices has officially come to an end. With the European Union having rolled out stringent regulations like the Cyber Resilience Act (CRA), manufacturers can no longer treat cybersecurity as an afterthought. Whether you are producing smart cameras, wearable health trackers, or connected home appliances, navigating this evolving regulatory landscape is critical. Fortunately, a globally recognized standard has emerged to cut through the complexity: ETSI EN 303 645. This guide breaks down exactly how this foundational standard acts as your security passport, ensuring your devices meet the rigorous compliance demands of today's market.
Join our captivating cybersecurity events to enhance your knowledge and engage with our team of experts.

.png)
CCLab is excited to be part of the 24th International Common Criteria Conference taking place from 21st to 23rd of October 2025 at the Central Park Hotel in Songdo, Korea.