Independent cybersecurity directory, built from public sources. Featured listings are paid placements and always labelled. How we work

DEKRA

Major TIC organization offering CRA readiness, security evaluation, and certification, with EUCC accreditation and CRA notified-body status from June 2026.

CompanyCyber Resilience Act Compliance

Pricing: Custom (contact sales)

Reviewed by the Cyber Vendor Guide editorial team against the public sources cited below · Last reviewed June 2026 · How we review listings

What is DEKRA?

DEKRA is the world's largest non-listed testing, inspection, and certification body, with a product-cybersecurity practice covering the full product lifecycle. It provides CRA readiness strategy, training, and turnkey projects, plus evaluation services mapped to harmonized and draft standards. DEKRA is an accredited ITSEF and Certification Body for the EUCC scheme and is set to become a CRA Notified Conformity Assessment Body, with notification beginning June 2026.

Best for: Manufacturers planning ahead for CRA conformity assessment who want an EUCC-accredited evaluator and future notified body

Pros

  • Accredited EUCC ITSEF and Certification Body, directly relevant to CRA higher-assurance routes
  • Prior Notified Body experience under the RED Delegated Act
  • Broad scheme coverage: EUCC, Common Criteria, FIPS 140-3, SESIP, IEC 62443, EN 18031, MDSCERT
  • World's largest non-listed inspection body (~48,000 employees) with dedicated cybersecurity labs

Things to check

  • CRA Notified-Body notification only begins June 2026 — formal CRA conformity certificates not issuable before then
  • Large enterprise TIC firm with formal, certification-led engagements
  • No public pricing

Reported in public reviews and vendor documentation. See sources below.

Key Features

CRA readiness strategy and gap assessment
CRA training and turnkey readiness projects
Product security evaluation against harmonized, draft, or mapped standards
Third-party conformity assessment (Notified Body, from June 2026)
EUCC certification (accredited ITSEF and CB)
Common Criteria, FIPS 140-3, SESIP, and MDSCERT evaluations
RED cybersecurity / EN 18031 evaluation
Lifecycle support from risk assessment through continuous monitoring

Do you work at DEKRA? to confirm the details or send us a correction.

Add the Cyber Vendor Guide badge to your site

Sources & references

Where the information on this listing comes from. Always verify pricing and capabilities against the vendor before a purchasing decision.

Spot an error, or do you represent DEKRA? Request a correction.

Key facts

Pricing
Custom (contact sales)
Model
Training + evaluation + certification
Founded
1925

DEKRA Alternatives

  • pi3gGerman embedded-Linux and IoT specialist helping SME manufac...
  • ONEKEYEuropean product-cybersecurity platform automating SBOM gene...
  • TUV SUDGlobal testing and certification body offering CRA readiness...
  • SGSWorld-leading testing and certification company that, throug...
  • Bureau VeritasGlobal TIC group whose cybersecurity unit delivers end-to-en...
View all alternatives

Where DEKRA appears

Guides

Certifications

EU Cyber Resilience Act, EUCC, Common Criteria, FIPS 140-3, ETSI EN 303 645, IEC 62443, EN 18031, SESIP