Blog Series

Cybersecurity Compliance in an EASA Part 145 Organization: Definitions and Scope

read more
Cybersecurity Compliance in an EASA Part 145

March 05, 2025

Steven Bentley

Sofema Aviation Services (SAS) www.sassofia.com considers key elements related to Cybersecurity Compliance within an EASA Part 145 Organisation. Introduction – Cybersecurity in Aviation Cybersecurity within EASA Part 145 Organisations involves protecting systems, networks, and data from unauthorized access, attacks, or disruptions. The focus is on safeguarding maintenance operations, ensuring safety, and securing data and systems. Compliance…

EASA is Driving Information & Cyber Security Regulations – WHY?

read more
Cyber-Security-Regulations – WHY?

March 05, 2025

Steven Bentley

Sofema Aviation Services considers key aspects of Information & Cyber Security Management, since EASA is mandating Aviation Information and Cyber Security Regulations. Cyber threats pose a significant risk to aviation safety, operational continuity, and compliance with international standards.While organizations are responsible for managing their security risks, a regulatory framework ensures a harmonized, risk-based, and proactive…

Cyber Security Considerations Related to NIS2

read more
Cyber Security blog image

January 08, 2025

Steven Bentley

Sofema Aviation Services (SAS) www.sassofia.com considers fundamental issues related to the challenge to address cyber security threats within EASA regulated Organisation Introduction The NIS2 Directive—Directive (EU) 2022/2555—represents the European Union’s updated legislative framework aimed at achieving a high common level of cybersecurity across all Member States. It replaces the original NIS Directive (2016/1148) and came into force…