Issuance of EUCC certificates for protection profiles
Article 17
1. The applicant for certification shall provide the certification body and the ITSEF with all the necessary complete and correct information. 2. Articles 9 and 10 shall apply mutatis mutandis. 3. The ITSEF shall evaluate whether a protection profile is complete, consistent, technically sound and effective for the intended use and the security objectives of the ICT product’s category covered by that protection profile. 4. A protection profile shall be certified solely by: (a) a national cybersecurity certification authority or another public body accredited as certification body; or (b) a certification body, upon prior approval by the national cybersecurity certification authority for each individual protection profile.