Draft Details

Number:Draft ETSI EN 304 626 V1.0.1 (2026-08)
Source:NSAI
Committee:NSAI/TC 2
Committee name:ICT
Review published:24 Aug 2026
Review end date:05 Oct 2026
Categories:General
Contact email:nepadmin(at)nsai.ie
Draft Scope:

1.1 
General 
The present document specifies technical requirements and corresponding assessment criteria for operating systems 
related to cybersecurity. The products with digital elements in scope, thereafter "the operating system": 
• are specified within the "technical description" of the "category of product" number 11 of Annex III, Class I by 
the Commission Implementing Regulation (EU) 2025/2392 [i.2] as: 
"software products with digital elements that provide an abstract interface of the underlying hardware and 
control the execution of software, and that may provide services such as computing resource management and 
configuration, scheduling, input-output control, managing data, and providing an interface through which 
applications interact with system resources and peripherals. This category includes but is not limited to real
time operating systems, general-purpose and special-purpose operating systems". 
• are only covered within the product context described in clause 4. 
The present document covers those products to demonstrate compliance with essential cybersecurity requirements in the 
Regulation (EU) 2024/2847 [i.1] Annex I Part I under the conditions identified in Annex A. 
The use of harmonised standards is voluntary. 

You may comment on any clause of this document. Simply enter the clause number, make your comment and your proposed changed text for each clause, subclause, paragraph, table or figure.

All comments are checked by a moderator before they are made public on the site. This is to ensure that improper language or marketing is not placed on the site – we will not judge or modify technical content. Similarly, we will not correct your grammar or spelling