The course is addressed to operators and other organizations to facilitate understanding and implementation of requirements for Information Security applicable to European aviation organizations under regulations (EC) No. 2023/203 and 2022/1645. The course covers Part-IS.OR requirements including AMC & GM material and is aligned with industry standards such as ISO 27001 & NIST Cybersecurity Framework.
Syllabus
- Fundamental Concepts, Principles and Definitions
- Overview of Cyber Threats in Aviation
- Understanding Cybersecurity Management Methods and Strategies
- Information Security Risk Mitigation in Aviation Operations
- Real-world Case Studies
- Regulatory landscape and requirements (ICAO, FAA, EASA guidelines) and how PART-IS aligns with Global Standards - ISO 27001 & NIST Cybersecurity Framework
- Introduction to ISMS and EASA regulatory background
- Establishing EASA-compliant ISMS Framework
- Information Security Risk Assessment Processes and Methodologies
- Information Security Risk Treatment
- Threat/Incident Management and Reporting
- Integration with External Providers
- Performance Monitoring and Continuous Improvement
- Integration with existing Aviation Security, Safety and Compliance Management Systems and building employee training and security awareness programs
Objectives
This course is ideal for organizations that need to implement and maintain an Information Security Management System (ISMS) in compliance with EASA Part-IS requirements, and that seek to ensure their personnel understand the implications of both Cybersecurity and Part-IS for themselves and the competent Civil Aviation Authority (CAA) overseeing their operations.
Target Group
Operators: Safety Managers, Compliance Managers, Information Security Managers, Information Security Officers and any other personnel having accountabilities, responsibilities and/or duties in the context of information security in the organisation.
Civil Aviation Authorities
Prerequisite
Knowledge and experience with Management Systems within aviation organizations.
Certification
After successfully passing a written exam the participants will be provided with certificates.