Cyber Risk Management

Contracting Considerations for Cyber Risk Management (IS.I.OR.235)

read more
Cyber Risk blog image.

April 08, 2025

Steven Bentley

Sofema Aviation Services (SAS) considers key aspects related to the Information and Cyber Risk organisational exposure resulting from contracting activities To proactively manage cybersecurity risks through clear contractual arrangements, aviation organizations ensure they meet EASA requirements, mitigate risks, and contribute to overall aviation system security and safety. Organizations should: Review existing contracts for compliance gaps…

EASA Part 145 and Cyber Security Auditing Requirements

read more
A digital fingerprint surrounded by cybersecurity icons, such as padlocks and data protection symbols, representing information security auditing. The Sofema Aviation Services logo is in the top-left corner, with a text overlay focusing on EASA Part 145 auditing of information and cybersecurity requirements.

February 18, 2025

Steven Bentley

Sofema Aviation Services (SAS) Considers the Elements to be considered related to Information & Cyber Security Auditing within an EASA Part 145 Organisation As cybersecurity becomes a regulatory focus, EASA Part 145 audits will incorporate cyber resilience checks within maintenance organizations. National Aviation Authorities (NAAs) and internal compliance managers will be responsible for assessing the security of maintenance data, IT systems,…