Navigate / EASA

GM1 Article 15(1)(f) Conditions for obtaining a certificate

ED Decision 2022/022/R

SECURITY MANAGEMENT SYSTEM

Regarding the security management requirements, reference is made to point ATM/ANS.OR.A.D.010 of Subpart D of Annex III to Regulation (EU) 2017/373. Nevertheless, it has to be noted that Opinion No 03/2021 ā€˜Management of information security risks’[26] proposes amendments to both Subpart B and D of Annex III to Regulation (EU) 2017/373.

Therefore, once the related regulation is published, the provisions as regards the management of information security risks (Part-IS) will be applicable to the applicant.