Skip to main content
Back
NEW

EVS-EN 17640:2022+A1:2026

Fixed-time cybersecurity evaluation methodology for ICT products

General information

Valid from 15.07.2026
Base Documents
EN 17640:2022+A1:2026
Directives or regulations
None

Standard history

Status
Date
Type
Name
15.07.2026
Main + amendment
01.11.2022
Main
This document describes a cybersecurity evaluation methodology that can be implemented using pre-defined time and workload resources, for ICT products. It is intended to be applicable for all three assurance levels defined in the CSA (i.e. basic, substantial and high).
The methodology comprises different evaluation blocks including assessment activities that comply with the evaluation requirements of the CSA for the mentioned three assurance levels. Where appropriate, it can be applied both to third-party evaluation and self-assessment.

Required fields are indicated with *

*
*
*
PDF
32.24 € incl tax
Paper
32.24 € incl tax
Browse standard from 2.48 € incl tax
Standard monitoring