DIN Standards Committee Information Technology and IT Applications
Fixed-time cybersecurity evaluation methodology for ICT products
Abstract
This document describes a cybersecurity evaluation methodology that can be implemented using pre-defined time and workload resources, for ICT products. It is intended to be applicable for all three assurance levels defined in the CSA (i.e. basic, substantial and high). The methodology comprises different evaluation blocks including assessment activities that comply with the evaluation requirements of the CSA for the mentioned three assurance levels. Where appropriate, it can be applied both to third-party evaluation and self-assessment.
Begin
2026-03-25
WI
JT013112
Planned document number
EN 17640+A1
Responsible national committee
NA 043-04-13 GA - DIN/DKE Joint working committee Cybersecurity
Responsible european committee
CEN/CLC/JTC 13/WG 3 - Security evaluation and assessment
previous edition(s)
Fixed-time cybersecurity evaluation methodology for ICT products
2022-10