EMC China Lab

Introduction to the RED-EN 18031 Testing Project

Views :
Update time : 2025-03-11

Background

On January 12, 2022, the Official Journal of the European Union published Delegated RegULation 2022/30/EU, which mandates compliance with Article 3.3(d), (e), and (f) of the RED (Radio Equipment Directive). This regulation requires applicable wireless devices in the EU market to meet cybersecurity, personal data privacy, and fraud protection standards. The goal is to enhance the cybersecurity of such devices and strengthen consumer confidence. The regulation will be enforced starting August 1, 2025, providing a 42-month transition period for device manufacturers.

 

Introduction to the RED-EN 18031 Testing Project(图1)


In 2024, the EU published the en 18031 standard, which defines cybersecurity requirements for RED compliance.

 

EN 18031 Series: The Basis for Cybersecurity Evaluation under RED

- EN 18031-1 – Corresponding to Article 3.3(d), applicable to all networked devices. It evaluates cybersecurity mechanisms such as authentication, secure updates, and communication encryption. The standard requires that device designs do not compromise network infrastructure, restrict unauthorized use of network resources, and prevent service disruptions.

- EN 18031-2 – Corresponding to Article 3.3(e), targeting data-processing devices (e.g., wearables, child monitoring devices). It mandates log recording, user notifications, and data deletion mechanisms to protect personal data and privacy. Devices must integrate encryption and access control mechanisms to prevent data bREACHes.

- EN 18031-3 – Corresponding to Article 3.3(f), for financial transaction devices (e.g., payment terminals). It requires software integrity verification and transaction tracking mechanisms to prevent financial fraud. Devices must be capable of identifying and blocking fraudulent activities.

 

Comparison of EN 18031 and ETSI EN 303 645

- EN 18031 builds upon the ETSI standard but introduces stricter requirements while adding “not applicable” conditions for greater flexibility.

- Companies already compliant with the ETSI standard will find it easier to pass the EN 18031 evaluation.

 

Mandatory Enforcement Date

- August 1, 2025 – Enforcement begins after a 42-month transition period.

 

Scope of Cybersecurity Requirements

The requirements apply to both directly and indirectly connected wireless radio equipment. Supported wireless communication technologies include, but are not limited to:

- Wi-Fi, Bluetooth, ZigBee, 4G/5G, LoRa, and more.

 

This means that almost all wireless devices with networking capabilities must comply with cybersecurity regulations—including smartphones, smartwatches, and industrial wireless communication devices.

 

RED-EN 18031 Testing Project

Cybersecurity Evaluation

- Authentication mechanisms

- Secure storage

- Key management

- Traffic control

 

Traditional RED Testing

- Electromagnetic Compatibility (EMC)

- Radio Frequency (RF) Performance

- Electrical Safety (LVD)

 

Required Documents for RED-en 18031 certification

- Application form

- Product specification

- User manual

- Circuit schematic

- PCB layout

- BOM list

- CDF (Constructional Data Form)

- Antenna report

- Risk assessment report

 

## JJR Laboratory (China) Services

JJR Laboratory in China provides certification services that can help you save up to 50% on certification costs.


Email:hello@jjrlab.com


Leave Your Message


Write your message here and send it to us


Related News
Read More >>
Canada ISED Certification RSS-247 Standard Testing Canada ISED Certification RSS-247 Standard Testing
01 .29.2026
Canada ISED RSS-247 Issue 3 testing by JJR: CMS, CNAS, ISO/IEC 17025 labs provide full testing per R...
What Are the Product Compliance for Amazon Austral What Are the Product Compliance for Amazon Austral
01 .29.2026
Amazon Australia sellers must meet GST rules, product safety, RCM/SAA/ISO standards; JJR labs (CMS, ...
Australia IoT Security Compliance Australia IoT Security Compliance
01 .29.2026
Australia IoT Security Rules 2025 mandate unique passwords, vulnerability policies & lifetime up...
V16 Warning Light EU EN 18031 Cybersecurity Certif V16 Warning Light EU EN 18031 Cybersecurity Certif
01 .29.2026
EN 18031 cybersecurity compliance for V16 warning lights under EU RED, including complete full testi...
Japan IoT Security JC-STAR Certification Japan IoT Security JC-STAR Certification
01 .29.2026
Japan IoT Security JC-STAR defines in-scope IoT devices and services. JJR, a CMS-recognized, CNAS-ac...
FCC SDoC Compliance Information Statement FCC SDoC Compliance Information Statement
01 .29.2026
FCC SDoC Compliance—JJR LAB provides FCC SDoC testing, declarations and manuals per FCC rules, with ...
What Does FCC SDoC Certification Mean? What Does FCC SDoC Certification Mean?
01 .29.2026
FCC SDoC certifies EMC compliance for non-wireless products per FCC Part 15B/18 via supplier declara...
What is Bisphenol A (BPA) Testing? What is Bisphenol A (BPA) Testing?
01 .29.2026
BPA testing evaluates BPA migration in food-contact materials per EU, China, US and Japan limits. CM...

Leave Your Message