RED cyber and EN 18031

Successfully implement EN 18031 to simplify your product compliance with RED articles 3.3 (d), (e), (f)

Since August 2025, wireless products must implement cyber security requirements to receive the CE mark. The Radio Equipment Directive Delegated Act (RED cyber) is an important shift: manufacturers must integrate mandatory cyber security requirements into their connected devices and document them accurately.

Manufacturers must then verify their product compliance using either:

  • Self-assessment, which is only possible when adopting the harmonised standard hEN 18031 (with restrictions).
  • EU-Type examination by a Notified Body, which guarantees the highest level of assurance.
    A Notified Body is mandatory when using another standard such as EN 303 645 or IEC 62443-4-2.

What you get

We work with product manufacturers to make their products:

Stronger against risks

We review your architecture to eliminate flaws before release.

Faster on the market

We reduce your certification timeline by weeks thanks to our proven methodology.

Better prepared for CE requirements

We create high-fidelity technical documentation to pass the review of notified bodies.

Ready for CRA compliance

We make RED compliance the foundation to fulfil your CRA requirements.

Our services

We designed our services to support you at every stage of your RED compliance journey.

Pre-compliance check

Evaluate the market-readiness of your product with RED harmonised standards to close structural gaps before they impact your release timeline.

It is the fastest way to know where a product stands before the test lab does.

Architecture engineering

Integrate a unified architecture that bridges the gap between product constraints and RED requirements to eliminate costly last-minute redesign.

From hardware root-of-trust to mutual authentication, secure your products against cyber attacks.

Compliance roadmap

Optimise governance by defining key actions, milestones, and required resources to align technical execution with business objectives.

This service helps you focus on priorities and secure a budget in preparation for the Cyber Resilience Act.

Cyber security risk assessment

Formalise your secure-by-design approach and justify your architectural choices.

This is an important step to protect your assets with appropriate security mechanisms.

Technical documentation

Ensure your technical E.Info documentation is accurate and ready for certification.

To prepare your documentation, get our free REDact toolkit.

Liaison with test lab

Accelerate time-to-market by leveraging our expertise to interpret lab results and resolve non-conformities.

We support you until you pass.
Note: we have a 100% success rate.

How we work

From RED to CE-marked products

People, processes, tools and strategy: we work with your entire product team, so the capability stays in your company.

  1. Scoping call

    Thirty minutes to understand your products, your markets and your deadlines. We tell you honestly whether and how we can help.
  2. Assessment

    We assess your products, processes and documentation against RED articles 3.3 (d), (e) and (f) and EN 18031, together with your team.
  3. Roadmap

    You receive prioritised actions, the evidence to produce for self-assessment or your notified body, and a realistic budget and timeline: EN 18031 turned into actionable tasks.
  4. Delivery with your teams

    Documentation, tooling, training and reviews, alongside your developers, product owners and compliance managers, until the product is CE marked.

Scope and price

Each service can be taken on its own, and every price is per product type.

Pre-compliance check

Was 5,000 €, now 3,000 €

New price from Q4 2026

1 to 2 weeks

Your product assessed against the RED harmonised standards (EN 18031), with every gap rated and a roadmap to close them.

The fastest way to know where a product stands before the test lab does.

Cyber security risk assessment

5,000 €

1 to 2 weeks

The risk assessment that justifies your architectural choices and the security mechanisms that protect your assets, ready to go into the technical documentation.

Technical documentation: review

5,000 €

3 weeks

We review the E.Info and IXITs your teams have written, and return every point a test lab would raise, with how to fix it.

Technical documentation: writing

10,000 €

to 15,000 €, 3 to 6 weeks

We write your E.Info or IXITs from your product and your teams’ input: 10,000 € for a traditional wireless product, up to 15,000 € for a complex one.

Liaison with test lab

5,000 €

usually 2 weeks, set by the lab

We accompany you through testing: we interpret the lab’s findings and resolve the non-conformities with your teams, until you pass.

Prices exclude VAT. Travel for on-site work is extra.

Next step

Let's talk about your RED compliance

A first call takes thirty minutes and costs nothing: tell us about your product, your market and your timeline, and we will tell you honestly how we can help.