accelerated security certification accreditations Approvals career Career Checking electronic components in payment transactions Compliance in banks Compliance within banks General General

Information workshop for solution providers of e-voting systems – certification according to CC protection profile BSI-CC-PP-0121

Author: 1

To evaluate e-voting solutions for non-political online elections, the German Federal Office for Information Security (BSI) published a series of technical guidelines in April 2023 as well as a Common Criteria protection profile for e-voting systems [PP-0121] was published. In particular, this specifies that compliant products must meet the EAL4 + ALC_FLR.2 test depth.

E-voting systems: maximum security and growth potential thanks to BSI certification

Solution providers are therefore faced with the strategic question of whether they want to have their solution certified in accordance with the Common Criteria protection profile BSI-CC-PP-0121. The increased development and certification effort is offset by a growing commercial market.

Strategic decision: Your success in the growing e-voting market

To answer the question of whether an e-voting manufacturer should seek CC certification for its solution, SRC is offering a workshop in collaboration with Alter Solutions Deutschland GmbH. Alter Solutions played a leading role in the study conducted and published by the BSI on the market and security analysis of online voting products. As an accredited testing body for Common Criteria, SRC will report on its experience from comparable market launches and approval procedures.

The successful route to CC certification

The workshop will focus on the following topics:

  • Presentation of the CC certification process
  • Product presentation and initial comparison with the requirements of BSI-CC-PP-0121
    • Principles Cast-as-intended, Recorded-as-cast, Counted-as-recorded
    • Protection of cast / counted votes against deletion and changes
    • Archiving of Election Execution Data
    • Maintaining the integrity of the ballot box and manual recovery
    • Protection of the secrecy of the ballot and the identity of the voter
  • Insight into a vulnerability analysis according to the Common Criteria family AVA_VAN.3 as required by BSI-CC-PP-0121
  • Special features in the definition of security for online voting procedures
  • CC evaluation process / time and resource planning
  • Implementation risks, preparation of manufacturer documents and evaluation
  • Discussion TOE Security Functions and implementation in the security architecture
  • Presentation of the evaluator test

Benefit from our offer!

SRC offers the planned workshop with a duration of 1.5 days. The costs for this amount to 4,000 euros (plus VAT and travel expenses, if applicable). The workshop can take place in presence or hybrid. Half of the costs will be reimbursed if an evaluation is started with the help of the SRC within three months of the workshop.

SRC – Your recognized expert for safety inspections

With more than 20 years of experience, SRC is recognized by the BSI as a leading testing laboratory for security testing in accordance with the international Common Criteria (ISO 15408). But that’s not all: we are also recognized assessors for payment transaction components in international payment systems and Internet-based payment procedures in the Payment Card Industry (PCI). Put your trust in our extensive expertise and let us accompany you on your way to certification.

Interested or still have questions?

If you are interested in organizing such a workshop or have any further questions, please contact

This article was also published on:
Press contact:
Patrick Schulze
WORDFINDER GmbH & CO. KG Lornsenstraße 128-130 22869 Schenefeld