EMC China Lab

Introduction to the RED-EN 18031 Testing Project

Views :
Update time : 2025-03-11

Background

On January 12, 2022, the Official Journal of the European Union published Delegated Regulation 2022/30/EU, which mandates compliance with Article 3.3(d), (e), and (f) of the RED (Radio Equipment Directive). This regulation requires applicable wireless devices in the EU market to meet cybersecurity, personal data privacy, and fraud protection standards. The goal is to enhance the cybersecurity of such devices and strengthen consumer confidence. The regulation will be enforced starting August 1, 2025, providing a 42-month transition period for device manufacturers.

 

Introduction to the RED-EN 18031 Testing Project(图1)


In 2024, the EU published the en 18031 standard, which defines cybersecurity requirements for RED compliance.

 

EN 18031 Series: The Basis for Cybersecurity Evaluation under RED

- EN 18031-1 – Corresponding to Article 3.3(d), applicable to all networked devices. It evaluates cybersecurity mechanisms such as authentication, secure updates, and communication encryption. The standard requires that device designs do not compromise network infrastructure, restrict unauthorized use of network resources, and prevent service disruptions.

- EN 18031-2 – Corresponding to Article 3.3(e), targeting data-processing devices (e.g., wearables, child monitoring devices). It mandates log recording, user notifications, and data deletion mechanisms to protect personal data and privacy. Devices must integrate encryption and access control mechanisms to prevent data breaches.

- EN 18031-3 – Corresponding to Article 3.3(f), for financial transaction devices (e.g., payment terminals). It requires software integrity verification and transaction tracking mechanisms to prevent financial fraud. Devices must be capable of identifying and blocking fraudulent activities.

 

Comparison of EN 18031 and ETSI EN 303 645

- EN 18031 builds upon the ETSI standard but introduces stricter requirements while adding “not applicable” conditions for greater flexibility.

- Companies already compliant with the ETSI standard will find it easier to pass the EN 18031 evaluation.

 

Mandatory Enforcement Date

- August 1, 2025 – Enforcement begins after a 42-month transition period.

 

Scope of Cybersecurity Requirements

The requirements apply to both directly and indirectly connected wireless radio equipment. Supported wireless communication technologies include, but are not limited to:

- Wi-Fi, Bluetooth, ZigBee, 4G/5G, LoRa, and more.

 

This means that almost all wireless devices with networking capabilities must comply with cybersecurity regulations—including smartphones, smartwatches, and industrial wireless communication devices.

 

RED-EN 18031 Testing Project

Cybersecurity Evaluation

- Authentication mechanisms

- Secure storage

- Key management

- Traffic control

 

Traditional RED Testing

- Electromagnetic Compatibility (EMC)

- Radio Frequency (RF) Performance

- Electrical Safety (LVD)

 

Required Documents for RED-en 18031 certification

- Application form

- Product specification

- User manual

- Circuit schematic

- PCB layout

- BOM list

- CDF (Constructional Data Form)

- Antenna report

- Risk assessment report

 

## JJR Laboratory (China) Services

JJR Laboratory in China provides certification services that can help you save up to 50% on certification costs.


Email:hello@jjrlab.com


Leave Your Message


Write your message here and send it to us


Related News
Read More >>
Biological Evaluation of Medical Devices ISO 10993 Biological Evaluation of Medical Devices ISO 10993
04 .16.2026
JJR LAB performs ISO 10993 biological evaluations to ensure medical devices are safe for human use, ...
In Vitro Cytotoxicity Test for Biomedical Devices In Vitro Cytotoxicity Test for Biomedical Devices
04 .16.2026
JJR LAB conducts ISO 10993-5 in vitro cytotoxicity tests to ensure medical device safety, assessing ...
EU Responsible Person on Amazon EU Responsible Person on Amazon
04 .16.2026
EU Responsible Person is EU rep for non-EEA manufacturers ensuring compliance and regulatory require...
GPSR EU Responsible Person Service GPSR EU Responsible Person Service
04 .16.2026
EU Responsible Person compliance is essential for selling in Europe, covering requirements, risks, a...
UK Responsible Person for Medical Devices UK Responsible Person for Medical Devices
04 .16.2026
UK rules clarify UK Responsible Person info: required for UKCA, not CE, but always MHRA-registered. ...
UK Cosmetics Responsible Person Service UK Cosmetics Responsible Person Service
04 .16.2026
JJR LAB’s UK Cosmetics Responsible Person Service ensures imported products meet UK labeling rules, ...
FDA Registration US Agent FDA Registration US Agent
04 .15.2026
FDA registration requires foreign mfrs to appoint a US Agent to liaise with FDA, handle inspections,...
ASTM F963 Toy Safety Standard ASTM F963 Toy Safety Standard
04 .15.2026
ASTM F963 defines mandatory toy safety rules covering mechanical chemical electrical flammability an...

Leave Your Message