Supply Chain Security

Cybersecurity Compliance in an EASA Part 145 Organization: Definitions and Scope

read more
Cybersecurity Compliance in an EASA Part 145

March 05, 2025

Steven Bentley

Sofema Aviation Services (SAS) www.sassofia.com considers key elements related to Cybersecurity Compliance within an EASA Part 145 Organisation. Introduction – Cybersecurity in Aviation Cybersecurity within EASA Part 145 Organisations involves protecting systems, networks, and data from unauthorized access, attacks, or disruptions. The focus is on safeguarding maintenance operations, ensuring safety, and securing data and systems. Compliance…

EASA is Driving Information & Cyber Security Regulations – WHY?

read more
Cyber-Security-Regulations – WHY?

March 05, 2025

Steven Bentley

Sofema Aviation Services considers key aspects of Information & Cyber Security Management, since EASA is mandating Aviation Information and Cyber Security Regulations. Cyber threats pose a significant risk to aviation safety, operational continuity, and compliance with international standards.While organizations are responsible for managing their security risks, a regulatory framework ensures a harmonized, risk-based, and proactive…

EASA Part 145 and Cyber Security Auditing Requirements

read more
A digital fingerprint surrounded by cybersecurity icons, such as padlocks and data protection symbols, representing information security auditing. The Sofema Aviation Services logo is in the top-left corner, with a text overlay focusing on EASA Part 145 auditing of information and cybersecurity requirements.

February 18, 2025

Steven Bentley

Sofema Aviation Services (SAS) Considers the Elements to be considered related to Information & Cyber Security Auditing within an EASA Part 145 Organisation As cybersecurity becomes a regulatory focus, EASA Part 145 audits will incorporate cyber resilience checks within maintenance organizations. National Aviation Authorities (NAAs) and internal compliance managers will be responsible for assessing the security of maintenance data, IT systems,…