SAS blogs

How to Establish an EASA-Recognised CS-25 Appendix F Flammability Test House

read more
How to Establish an EASA-Recognised CS-25 Appendix F Flammability Test House

November 14, 2025

Steven Bentley

An Appendix F flammability test house plays a key role in supporting EASA certification programs, and growing industry demand is encouraging many organisations to establish their own facilities. However, creating a test house capable of performing EASA CS-25 Appendix F flammability testing is not a simple “certification” process, as EASA does not directly approve independent…

EASA Aerodrome Accountable Manager Responsibilities

read more
EASA Aerodrome Accountable Manager Responsibilities

November 12, 2025

Steven Bentley

Sofema Aviation Services (SAS) considers key roles & responsibilities for Aerodrome Key Management Personnel, including the critical function of the Accountable Manager. Introduction The responsibilities of the Airport Accountable Manager and Post Holders (often referred to as Nominated Persons) at an aerodrome under EASA Regulation (EU) No 139/2014 are central to establishing and maintaining the…

Maintenance Error Management Systems (MEMS) and Boeing MEDA – Developing Corrective Actions

read more
Maintenance Error Management Systems (MEMS) and Boeing MEDA - Developing Corrective Actions

November 10, 2025

Steven Bentley

Sofema Online (SOL) Takes a Deep Dive into MEDA Best Practices Developing effective and corrective actions is the ultimate goal of any MEMS investigation. The MEDA process is specifically designed to facilitate this by having investigators, typically using the MEDA Results Form, uncover the why behind the error- the contributing factors. Issues and Concerns in…

What is the Position Regarding the Use of GSM Mobile Phones to Comply with EASA ISMS requirements?

read more
A smartphone with a glowing security padlock icon on its screen, placed on a high-tech circuit board. The text asks about the use of GSM mobile phones to comply with EASA ISMS requirements.

November 06, 2025

Steven Bentley

Specific Exposures and Threat Scenarios Malware/Ransomware Initial Access (Exploitation via device) General Ransomware Campaigns: Ransomware actors often gain initial access through phishing campaigns targeting aviation employees or by exploiting exposed VPN/RDP servers. Mobile devices are the primary target for phishing/social engineering attempts. Ransomware group LockBit demanded $200 million from Boeing in 2023. Attacks on airport…