Details
- Publication date
- 10 December 2025
- Author
- European Union Agency for Cybersecurity
Description
This guidance document supports practical implementation of the assurance continuity activities provisions laid down in Annex IV of the Implementing Regulation (IR), providing illustrative guidance on how to identify and manage minor and major changes to certified targets of evaluation (TOE) or their environments, and seeks to provide some practical examples to help identifying the cases where evaluation work previously performed would need or not to be repeated.
This document mainly focuses on the AVA class and its dependencies on other CC classes.
Files
EUCC Guidelines on assurance continuity - practical change scenarios for certified ICT products - version 1