Light
Dark
System
Log In
Loading...
Compare / EASA/
Incorporated Amendments
/
Compare & Highlight Differences
ARA.GEN.205 Allocation of tasks to qualified entities
Available versions for ERULES-1963177438-10929
Regulation (EU) 2023/203
found in: Aircrew (1178/2011) Part-FCL Part-MED Part-CC Part-ARA Part-ORA Part-DTO (Dec 2024)
From
Aircrew (1178/2011... (Nov 2025)
Aircrew (1178/2011... (Dec 2024)
Aircrew (1178/2011... (Aug 2023)
From section
To
Aircrew (1178/2011... (Nov 2025)
Aircrew (1178/2011... (Dec 2024)
Aircrew (1178/2011... (Aug 2023)
To section
No visible text changes
0 removals
0 additions
View
Rich
Plain
Sync scrolling
Share
From
Show details
Hide details
To
Show details
Hide details
Version
Show side by side
ARA.GEN.205 Allocation of tasks to qualified entities Regulation (EU) 2023/203 [applicable until 21 February 2026 — Regulation (EU) No 290/2012] ARA.GEN.205 Allocation of tasks *[applicable from 22 February 2026 — Implementing Regulation (EU) 2023/203]* (a) Tasks related to the initial certification or continuing oversight of persons or organisations subject to Regulation (EC) No 216/2008 and its Implementing Rules shall be allocated by Member States only to qualified entities. When allocating tasks, the competent authority shall ensure that it has: (1) a system in place to initially and continuously assess that the qualified entity complies with Annex V to Regulation (EC) No 216/2008. This system and the results of the assessments shall be documented; (2) established a documented agreement with a the qualified entity, approved by both parties at the appropriate management level, which clearly defines: (i) the tasks to be performed;) (ii) the declarations, reports and records to be provided; (iii) the technical conditions to be met in performing such tasks; (iv) the related liability coverage; and (v) the protection given to information acquired in carrying out such tasks. (b) The competent authority shall ensure that the internal audit process and a safety risk management process required by [ARA.GEN.200(a)(4)](#_DxCrossRefBm894736043) cover all certification or continuing oversight tasks performed on its behalf. (c) With regard to the certification and oversight of the organisation’s compliance with point [ORA.GEN.200A](#_DxCrossRefBm894736055), the competent authority may allocate tasks to qualified entities in accordance with point (a), or to any relevant authority responsible for information security or cybersecurity within the Member State. When allocating tasks, the competent authority shall ensure that: (1) all aspects related to aviation safety are coordinated and taken into account by the qualified entity or relevant authority; (2) the results of the certification and oversight activities performed by the qualified entity or relevant authority are integrated in the overall certification and oversight files of the organisation; (3) its own information security management system established in accordance with point [ARA.GEN.200(e)](#_DxCrossRefBm894736043) covers all the certification and continuing oversight tasks performed on its behalf. *[applicable from 22 February 2026 — Implementing Regulation (EU) 2023/203]*
ARA.GEN.205 Allocation of tasks to qualified entities Regulation (EU) 2023/203 [applicable until 21 February 2026 — Regulation (EU) No 290/2012] ARA.GEN.205 Allocation of tasks *[applicable from 22 February 2026 — Implementing Regulation (EU) 2023/203]* (a) Tasks related to the initial certification or continuing oversight of persons or organisations subject to Regulation (EC) No 216/2008 and its Implementing Rules shall be allocated by Member States only to qualified entities. When allocating tasks, the competent authority shall ensure that it has: (1) a system in place to initially and continuously assess that the qualified entity complies with Annex V to Regulation (EC) No 216/2008. This system and the results of the assessments shall be documented; (2) established a documented agreement with a the qualified entity, approved by both parties at the appropriate management level, which clearly defines: (i) the tasks to be performed;) (ii) the declarations, reports and records to be provided; (iii) the technical conditions to be met in performing such tasks; (iv) the related liability coverage; and (v) the protection given to information acquired in carrying out such tasks. (b) The competent authority shall ensure that the internal audit process and a safety risk management process required by [ARA.GEN.200(a)(4)](#_DxCrossRefBm1199963898) cover all certification or continuing oversight tasks performed on its behalf. (c) With regard to the certification and oversight of the organisation’s compliance with point [ORA.GEN.200A](#_DxCrossRefBm1199963910), the competent authority may allocate tasks to qualified entities in accordance with point (a), or to any relevant authority responsible for information security or cybersecurity within the Member State. When allocating tasks, the competent authority shall ensure that: (1) all aspects related to aviation safety are coordinated and taken into account by the qualified entity or relevant authority; (2) the results of the certification and oversight activities performed by the qualified entity or relevant authority are integrated in the overall certification and oversight files of the organisation; (3) its own information security management system established in accordance with point [ARA.GEN.200(e)](#_DxCrossRefBm1199963898) covers all the certification and continuing oversight tasks performed on its behalf. *[applicable from 22 February 2026 — Implementing Regulation (EU) 2023/203]*
#### ARA.GEN.205 Allocation of tasks to qualified entities *Regulation (EU) 2023/203* *[applicable until 21 February 2026 — Regulation (EU) No 290/2012]* #### ARA.GEN.205 Allocation of tasks *[applicable from 22 February 2026 — Implementing Regulation (EU) 2023/203]* (a) Tasks related to the initial certification or continuing oversight of persons or organisations subject to Regulation (EC) No 216/2008 and its Implementing Rules shall be allocated by Member States only to qualified entities. When allocating tasks, the competent authority shall ensure that it has: (1) a system in place to initially and continuously assess that the qualified entity complies with Annex V to Regulation (EC) No 216/2008. This system and the results of the assessments shall be documented; (2) established a documented agreement with a the qualified entity, approved by both parties at the appropriate management level, which clearly defines: (i) the tasks to be performed;) (ii) the declarations, reports and records to be provided; (iii) the technical conditions to be met in performing such tasks; (iv) the related liability coverage; and (v) the protection given to information acquired in carrying out such tasks. (b) The competent authority shall ensure that the internal audit process and a safety risk management process required by [ARA.GEN.200(a)(4)](#_DxCrossRefBm1743303709) cover all certification or continuing oversight tasks performed on its behalf. (c) With regard to the certification and oversight of the organisation’s compliance with point [ORA.GEN.200A](#_DxCrossRefBm1743303721), the competent authority may allocate tasks to qualified entities in accordance with point (a), or to any relevant authority responsible for information security or cybersecurity within the Member State. When allocating tasks, the competent authority shall ensure that: (1) all aspects related to aviation safety are coordinated and taken into account by the qualified entity or relevant authority; (2) the results of the certification and oversight activities performed by the qualified entity or relevant authority are integrated in the overall certification and oversight files of the organisation; (3) its own information security management system established in accordance with point [ARA.GEN.200(e)](#_DxCrossRefBm1743303709) covers all the certification and continuing oversight tasks performed on its behalf. *[applicable from 22 February 2026 — Implementing Regulation (EU) 2023/203]*