What conformity assessment routes does the CRA recognise?
The CRA recognises four ways to demonstrate conformity with the essential cybersecurity requirements:
- internal control based on module A
- EU-type examination based on module B followed by conformity to EU-type based on module C
- full quality assurance based on module H
- where available and applicable, a European cybersecurity certification scheme specified under Article 27(9)
Article 32(1) and Annex VIII
section 6