PP for a Secure Signature Creation Device - Part 3: Device with key import

SSCD / Smart card and similar devices

Certification Body

Bundesamt für Sicherheit in der Informationstechnik (BSI)



Point of Contact

  • CEN/ISSS, Rue de Stassart 36, 1050, Brussels, Belgium

Certification ID


PP Version


CC Version

3.1 Revision 3

CC Conformance Claim

CC part 2 extended
CC part 3 conformant
EAL 4 augmented by AVA_VAN.5
Conformance claims to this protection profile requires strict conformance

Certification status

Certified 27 September 2012




The Protection Profile is established by CEN/ISSS for use by the European Commission in accordance with the procedure laid down in Article 9 of the Directive 1999/93/ec of the European parliament and of the council of 13 December 1999 on a Community framework for electronic signatures, also referred to as the 'Directive' in the remainder of the PP, as generally recognised standard for electronic-signature products in the Official Journal of the European Communities.

The intent of the Protection Profile is to specify functional and assurance requirements defined in the Directive for a secure signature-creation device (SSCD) which is the target of evaluation (TOE). The Protection Profile describes core security requirements for a secure device that can import a signing key (Signature Creation Data, SCD) and operates to create electronic signatures with the imported key.

Relation to other PPs

The Protection Profile is an update of the Protection Profile V1.05 certified under BSI-PP-0006-2002 in order to comply to Common Criteria Version 3.1.

PP for Secure Signature Creation Device Type 1 and 2