For many startups and SMEs, cybersecurity conformity assessment still feels out of reach. The process can be complex, time-consuming, and difficult to navigate without the right support. That is exactly the challenge the CUSTODES project is working to address.
CUSTODES is a Horizon Europe project focused on making cybersecurity conformity assessment and certification more agile, transparent, and reusable for ICT products, services, and processes, especially in more complex or composite environments. The project is developing an integrated approach that helps organizations make better use of certification information, improve traceability, and support greater trust across the assessment process.
As part of this effort, Pilot 3 is designed specifically to support startups, micro-enterprises, and SMEs. Its goal is to help smaller companies carry out cybersecurity conformity self-assessment and improve their preparedness for future certification of ICT products, ICT services, or ICT processes. The pilot also aims to reduce some of the usual friction that prevents smaller organizations from engaging with conformity assessment early enough.
Participating companies can gain exposure to practical support around key preparation steps such as:
- self-assessment
- risk analysis
- evidence collection
- conformity documentation
- understanding certification expectations and possible next steps
This work is part of the broader CUSTODES effort to make conformity assessment more usable and more accessible, while also validating how the project’s approach can support a diverse range of ICT offerings. The project is being validated through three pilots and is funded under Horizon Europe. It started on 1 October 2023 and runs for 36 months.
For Red Alert Labs, this initiative fits directly with our role in European cybersecurity projects and our broader work to help organizations move from security intent to executable assessment and certification workflows. CUSTODES is providing agile, cost-effective conformity assessments for ICT products while improving vulnerability sharing and trust.
Companies interested in learning more are invited to register. Interested in participating or learning more?