Source: OJ L 2024/2847, 20.11.2024

Current language: SV

Artikel 41 Dotterbolag och underentreprenörer till anmälda organ


Summary What does Article 41 of the CRA regulation say?

This article governs the rules that apply when notified bodies — the organisations responsible for carrying out conformity assessments — choose to subcontract tasks or use subsidiaries.

It builds directly on Article 39, which sets out the core requirements that notified bodies themselves must meet, and extends those same standards down to any third party they engage.

The article makes clear that outsourcing conformity assessment work does not dilute the notified body's accountability; it remains fully responsible regardless of who actually performs the tasks.

Important points:

  • Notified bodies retain full responsibility for all tasks performed by subcontractors or subsidiaries, regardless of where those entities are established.
  • Subcontracting or use of a subsidiary requires the agreement of the manufacturer whose product is being assessed.
  • Notified bodies are required to keep documentation on subcontractor and subsidiary qualifications and work available to the notifying authority upon request.

Springlex's summary of the article, a reading aid, not a substitute for the legal text.

    1. Om det anmälda organet lägger ut specifika uppgifter med anknytning till bedömningen av överensstämmelse på underentreprenad eller anlitar ett dotterbolag ska det säkerställa att underentreprenören eller dotterbolaget uppfyller kraven som anges i artikel 39 och informera den anmälande myndigheten om detta.

    1. De anmälda organen ska ta det fulla ansvaret för underentreprenörernas eller dotterbolagens uppgifter, oavsett var de är etablerade.

    1. Verksamhet får läggas ut på underentreprenad eller utföras av ett dotterbolag endast om tillverkaren samtycker till det.

    1. De anmälda organen ska se till att den anmälande myndigheten har tillgång till de relevanta dokumenten rörande bedömningen av underentreprenörens eller dotterbolagets kvalifikationer och det arbete som dessa har utfört i enlighet med denna förordning.

We're continuously improving our platform to serve you better.

Your feedback matters! Let us know how we can improve.

Found a bug?

Springflod is a Swedish boutique consultancy firm specialising in cyber security within the financial services sector.

We offer professional services concerning information security governance, risk and compliance.

Crafted with ❤️ by Springflod