This implementing regulation sets out operational rules for the peer‑review mechanism under the EU cybersecurity certification framework. It establishes scheduling and rotation of peer reviews of National Cybersecurity Certification Authorities (NCCAs), criteria for peer‑review teams, observer roles (e.g., ENISA), procedures for conducting reviews, and reporting templates to support consistent evaluation and shared learning across Member States.
Author: European Commission
Status: Adopted / Published
Adoption date: 2025-12-09
Last updated: 23 Dec 2025
Category: Relevant legislation
Subcategory: Implementing Regulation