Shenzhen LSD Testing Technology Co., Ltd. — Cybersecurity Compliance LaboratoryRigorous · Impartial · Professional · EfficientHotline400-661-8031
CHEN
03 · TESTING CAPABILITIES

Cybersecurity
Testing Services

Coverage includes global product cybersecurity regulations, IoT and industrial system testing, penetration testing, code audit and attack-defense exercises from applicability assessment to remediation retest.

Compliance testing

Current regulation and standard service catalog

Combine primary regulations, testing standards, implementation rules and extended assessment items according to product type, connectivity, data processing and target market.

EU · RED CYBERSECURITY

EN 18031 series

Network protection, personal data and privacy protection, and anti-fraud requirements for radio equipment.

  • EN 18031-1 / -2 / -3
  • RED Article 3(3)(d)(e)(f)
  • Delegated Regulation (EU) 2022/30
  • Applicability, gap analysis, formal test and retest
View topic
EU · CYBER RESILIENCE ACT

EU CRA compliance

Lifecycle security, vulnerability handling, security updates and technical documentation for products with digital elements.

  • Regulation (EU) 2024/2847
  • prEN 40000 horizontal standards
  • EN 304 xxx vertical drafts
  • Vulnerability reporting, PSIRT and secure development
View topic
CONSUMER IOT BASELINE

ETSI EN 303 645

Consumer IoT cybersecurity baseline and conformity assessment support.

  • ETSI EN 303 645
  • ETSI TS 103 701 assessment specification
  • Default passwords, disclosure, updates and data protection
  • Product baseline pre-check and evidence preparation
View service
UNITED KINGDOM

UK PSTI

Mandatory consumer connectable product security requirements, statement of compliance and market access support.

  • Product Security and Telecommunications Infrastructure Act 2022
  • PSTI Security Requirements Regulations 2023
  • Password, vulnerability disclosure and support-period requirements
  • Statement of Compliance document review
View service
JAPAN

Japan JC-STAR security label

Product scope judgment, level requirements and application testing support for Japan IoT security labeling.

  • JC-STAR STAR-1 / STAR-2
  • Pre-assessment for future higher levels
  • Communication, authentication, update, data protection and vulnerability management
  • Mapping with ETSI EN 303 645 and related baselines
View service
AUSTRALIA

Australia smart device security

Mandatory security standards and manufacturer statement support for relevant connectable products.

  • Cyber Security Act 2024
  • Security Standards for Smart Devices Rules 2025
  • Default password, vulnerability reporting policy and support-period information
  • Statement of Compliance and supply-chain data
View service
EU · ACCESSIBILITY

European Accessibility Act

Accessibility requirement review and remediation verification for products, websites, mobile apps and digital services.

  • Directive (EU) 2019/882
  • EN 301 549
  • WCAG 2.1 / 2.2 technical check
  • EN 17161, EN 17210 and process assessment
View service
CHINA · CYBERSECURITY LABEL

Connected camera cybersecurity label

Level judgment, product testing and application material support for consumer connected camera security labeling.

  • TC260-PG-20265A practice guide
  • Basic, enhanced and leading level assessment
  • Identity, data protection, communication and firmware update
  • Companion App, cloud platform and supply-chain checks
View service
MULTI-MARKET MAPPING

Combined standards and extension assessment

Reuse evidence across markets, reduce repeated testing and identify market-specific gaps for the same product.

  • Singapore CLS, US state-level IoT requirements and other extensions
  • Common evidence for SBOM, disclosure, support period and security updates
  • Integrated hardware, firmware, App and cloud scope
  • Regulatory change tracking and launch-plan management
Get Applicable Standard List
Security testing

Cover major attack surfaces across products, platforms and organizations

Beyond compliance verification, testing depth can be extended according to architecture, attack paths and business risk.

Cyber attack-defense exercise

Simulate external attacks, internal lateral movement and key business compromise.

Red-blue drillPhishing exerciseLateral movementIncident responseHardening review

Industrial IoT security

Security assessment for industrial gateways, PLC, HMI, edge platforms and industrial protocols.

IEC 62443 gapOT asset reviewModbus/OPC UAIndustrial gatewaySecurity zoning

Penetration testing

Validate Web, App, API, cloud, intranet and device-interface risks from a realistic attacker perspective.

Web/APIMobile AppCloud platformInternal networkWireless/Bluetooth

Code audit

Combine automated scanning and manual review to find authentication, authorization, input handling and cryptography flaws.

SASTManual reviewOpen-source componentsMalicious codeFix review

Network and wireless interfaces

Check exposed services, protocol behavior, authentication, pairing, abnormal input and communication protection.

Wi-FiBluetoothZigbeeNFCCustom protocols

Firmware and hardware security

Analyze firmware extraction, sensitive information, boot chain, debug interfaces and update mechanism.

Firmware reverseSecure bootUART/JTAGOTA updateFault injection

App, API and cloud security

Verify account system, sessions, API authorization, tenant isolation, data flow and cloud configuration.

App securityAPI access controlCloud configPrivacy dataBusiness logic

Protocol fuzzing and robustness

Use malformed messages, state combinations and long-running pressure to find crashes and validation flaws.

FuzzingProtocol mutationBoundary valuesDoSStability

Software supply chain and SBOM

Identify third-party components, licenses, known vulnerabilities, dependency relations and build-chain risks.

SBOMSCACVELicensesBuild chain

Vulnerability management and PSIRT

Assist in building intake, triage, fixing, disclosure, regulatory reporting and user notification mechanisms.

Disclosure policyCVSSPatch validationCRA reportingEmergency drill
Combined implementation

One evidence system, multiple markets

Use product architecture and evidence libraries as the core to manage regulations, test items, remediation tasks and technical files.

Product and market portrait

Confirm model, functions, connectivity, user data, supply-chain role and planned sales countries.

Standard matrix and gap

Build a regulation matrix and identify mandatory remediation and reusable evidence.

Testing and retest

Arrange testing by risk and launch timeline, track issue closure and preserve audit records.

Reports and maintenance

Deliver reports, technical documentation and future update, vulnerability and regulatory tracking plans.

Lab capability

From development support to formal test delivery

Project records remain traceable across model, firmware version, test configuration, issue records and retest results.

Applicability assessmentDefine standards, scope and priorities according to product and markets.
Development pre-testFind key issues before formal submission and provide remediation direction.
Lab testingExecute standard-based verification and preserve reproducible evidence.
Remediation retestConfirm issue closure and support reports and technical documentation.

Not sure which regulations and tests apply?

Share product type, architecture, interfaces, target markets and launch plan for an applicable route.

Book Technical Assessment
Hotline400-661-8031