My bookmarksSign up free

Commission Implementing Regulation (EU) 2024/482 Article 17

Commission Implementing Regulation (EU) 2024/482 Article 17

Issuance of EUCC certificates for protection profiles

Article 17

1.   The applicant for certification shall provide the certification body and the ITSEF with all the necessary complete and correct information. 2.   Articles 9 and 10 shall apply mutatis mutandis. 3.   The ITSEF shall evaluate whether a protection profile is complete, consistent, technically sound and effective for the intended use and the security objectives of the ICT product’s category covered by that protection profile. 4.   A protection profile shall be certified solely by: (a) a national cybersecurity certification authority or another public body accredited as certification body; or (b) a certification body, upon prior approval by the national cybersecurity certification authority for each individual protection profile.

Read the full instrument → · Read this in context: SECTION II — Issuing, renewing and withdrawing EUCC certificates for protection profiles →

Other provisions in SECTION II — Issuing, renewing and withdrawing EUCC certificates for protection profiles

Compiled from an official source version. Later amendments or repeals may not be reflected; the official text prevails. · Read the official text ↗ · Data as of 2026-07-04

CitationArticle 17 of Commission Implementing Regulation (EU) 2024/482 (LawPlayer, data as of 2026-07-04)

© European Union, https://eur-lex.europa.eu, 1998-2026. Reuse authorised under Commission Decision 2011/833/EU, provided the source is acknowledged.

What to look at next