EMC China Lab

What is EN 18031 Cybersecurity?

Views :
Update time : 2025-11-29

What is the en 18031 Cybersecurity Standard?

Starting from August 1, 2025, the EU will enforce the en 18031 standard mandatorily. All connected radio equipment must pass triple certifications for cybersecurity, privacy protection, and anti-fraud; otherwise, their sale will be prohibited. Ranging from smartphones to payment terminals, the EN 18031 standard has become an indispensable pass to access the European market. It is not only a technical specification but also the core embodiment of meeting the cybersecurity clauses in the CE-red directive.

What is EN 18031 Cybersecurity?(图1)


01 Standard Meaning

EN 18031 is a harmonized cybersecurity standard formulated by the EU under the framework of the CE-RED Directive for radio equipment (especially products with encryption functions). Its core purpose is to ensure that wireless devices put on the EU market have strong data protection capabilities and cybersecurity resilience, safeguarding user privacy and network integrity.

02 Applicable Products

This standard mainly applies to all radio equipment that requires CE-RED certification and involves data processing, especially:

① Wireless communication devices: such as 4G/5G terminals, Wi-Fi routers, Bluetooth devices

② Internet of Things (IoT) products: such as smart home devices, smart wearable devices, industrial IoT sensors

The table below clearly lists their applicable conditions for your quick reference:

Standard

Corresponding RED Directive Clause

Core Judgment Basis for Applicable Product Categories

Core Objective

EN 18031-1

Article 3.3(d)

Devices capable of connecting to the internet (whether directly or indirectly via a gateway)

Ensure that devices do not damage the network or abuse network resources

EN 18031-2

Article 3.3(e)

Devices that process personal data, traffic data, or location data. Special note: including connected devices, as well as non-connected toys, child care devices, and wearable devices

Protect users' personal data and privacy

EN 18031-3

Article 3.3(f)

Connected devices that allow the transfer of currency, financial value, or virtual currency

Ensure that devices support anti-fraud functions

03 Scope of Applicable Products

The EN 18031 standard applies to all radio equipment with wireless connection functions that involve data processing or financial transactions.

It specifically includes the following three categories:

Connected Devices

① Consumer electronics: smartphones, tablet computers, smart watches, Bluetooth speakers, Wi-Fi routers

② Smart homes: connected refrigerators, air conditioners, cameras, voice assistants (e.g., Amazon Echo)

③ Vehicle-mounted devices: vehicle infotainment systems, remote control modules, autonomous driving components

④ Industrial IoT: sensors, RFID tags, industrial gateways

Privacy Data Devices

① Children's devices: baby monitors, smart toys (e.g., dolls with voice interaction)

② Wearable devices: fitness trackers, medical bracelets

③ Mobile terminals: TWS earphones, portable hotspots

④ Security devices: home cameras, GPS trackers

Financial Transaction Devices

① Payment terminals: POS machines, ATMs

② Cryptocurrency devices: cold wallets, virtual currency transaction terminals

③ Financial service devices: smart card readers that support fund transfers

Special Notes

① EN 18031-3: For financial products applicable to EN 18031-3, regulations require third-party evaluation by a notified body instead of relying solely on self-declaration.

② Exemption situations: Some product categories are explicitly exempted, mainly including devices governed by other specific regulations, such as medical devices, aviation equipment, certain vehicle emergency systems, and road toll systems.


Email:hello@jjrlab.com


Leave Your Message


Write your message here and send it to us


Related News
Read More >>
CPSC eFiling Customs Clearance Guide CPSC eFiling Customs Clearance Guide
05 .26.2026
CPSC eFiling: US import filing by 2026-07-08. JJR Compliance Lab offers eFiling support, testing (AS...
US CPSC eFiling Electronic Filing Compliance Guide US CPSC eFiling Electronic Filing Compliance Guide
05 .26.2026
CPSC eFiling ACE mandatory Jul 8 2026 imports; JJR testing & cert service (fees apply); CPC/GCC ...
2026 CPSC eFiling Process Guide 2026 CPSC eFiling Process Guide
05 .26.2026
2026 CPSC eFiling: certified products require ACE eFiling before U.S. import. JJR supports CPC/GCC, ...
What is an Importer of Record What is an Importer of Record
05 .25.2026
US Importer of Record (IOR) service ensures compliant customs clearance using matching EIN and Custo...
Importer of Record Services USA Importer of Record Services USA
05 .25.2026
Importer of Record Services USA | IOR Service Provider: JJR provides professional U.S. IOR complianc...
Amazon PPWR EU Packaging Regulation Guide Amazon PPWR EU Packaging Regulation Guide
05 .25.2026
Amazon PPWR EU Packaging Regulation effective Aug 12, 2026 requires EPR registration; noncompliance ...
Cybersecurity Compliance for Electrical and Electr Cybersecurity Compliance for Electrical and Electr
05 .25.2026
Amazon EU elec/electronic cybersecurity requires LVD EMC RoHS GPSR plus RED EN18031 and CRA. JJR tes...
Amazon US & Canada Laser Pointer Compliance Amazon US & Canada Laser Pointer Compliance
05 .25.2026
US & Canada Amazon removes non-compliant laser listings after July 3, 2026. JJR provides FDA 21 ...

Leave Your Message