EASA Cybersecurity Regulations

Contracting Considerations for Cyber Risk Management (IS.I.OR.235)

read more
Cyber Risk blog image.

April 08, 2025

Steven Bentley

Sofema Aviation Services (SAS) considers key aspects related to the Information and Cyber Risk organisational exposure resulting from contracting activities To proactively manage cybersecurity risks through clear contractual arrangements, aviation organizations ensure they meet EASA requirements, mitigate risks, and contribute to overall aviation system security and safety. Organizations should: Review existing contracts for compliance gaps…

Cyber Security – Initial Airworthiness Role and Purpose of AMC 20-42

read more
Digital network sphere representing cyber security in aviation, highlighting the initial airworthiness role and purpose of AMC 20-42

January 27, 2025

Steven Bentley

Sofema Aviation Services (SAS) www.sassofia.com considers fundamental issues related to the challenge to address cyber security threats within EASA Regulated Design Organisations Introduction AMC 20-42 serves as a structured framework for identifying, assessing, and mitigating information security risks in aviation products and systems. By leveraging EUROCAE/RTCA standards, it ensures airworthiness and safety are maintained against evolving cybersecurity…