Four service lines covering the full certification lifecycle. We
engage on any single line, or run the entire program as a single
accountable owner.
Strategy & advisory
Decide whether to certify, which scheme to target, and at what assurance level - before you commit budget or schedule.
- Scheme selection across CCRA, EUCC, SESIP, EMVCo, PSA, MIFARE, ESA
- Assurance level scoping (EAL, SESIP, PSA Levels)
- Composition strategy for products built on certified components
- Reuse and maintenance planning for existing certificates
Security Target authoring
We write the Security Target, supporting design rationale, and required architectural artifacts in formats labs and certifiers expect.
- ST scoping, security problem definition, and SFR derivation
- Conformance to relevant Protection Profiles where applicable
- Aligning ST scope with product reality - not aspirational claims
- CC:2022 and legacy CC v3.1r5 documentation
Lab selection & coordination
Match the right evaluation lab to your product, scheme, and timeline. We manage the lab relationship through evaluation.
- Lab shortlisting based on scheme, technology, and capacity
- Quote review and engagement scoping
- Evaluator-question (OR) handling and response coordination
- Single point of contact between vendor, lab, and certifier
End-to-end program management
We run the certification program from kickoff to certificate issuance so your engineering team can stay focused on the product.
- Project plan, milestones, and risk register tailored to the scheme
- Documentation deliverables tracked against the lab work programme
- Stakeholder management across vendor, lab, and certifier
- Maintenance and surveillance planning post-certification