Light
Dark
System
Log In
Loading...
Compare / EASA/
Incorporated Amendments
/
Compare & Highlight Differences
ATM/ANS.AR.B.005 Allocation of tasks to qualified entities
Available versions for ERULES-1963177438-2968
Regulation (EU) 2023/203
found in: ATM/ANS Provision of Services (2017/373) (Mar 2025)
Regulation (EU) 2017/373
found in: ATM/ANS Provision of Services (2017/373) (Feb 2023)
From
ATM/ANS Provision ... (Mar 2025)
ATM/ANS Provision ... (Feb 2023)
From section
To
ATM/ANS Provision ... (Mar 2025)
ATM/ANS Provision ... (Feb 2023)
To section
No visible text changes
0 removals
0 additions
View
Rich
Plain
Sync scrolling
Share
From
Show details
Hide details
To
Show details
Hide details
Version
Show side by side
ATM/ANS.AR.B.005 Allocation of tasks to qualified entities Regulation (EU) 2023/203 [applicable until 21 February 2026 - Regulation (EU) 2017/373] ATM/ANS.AR.B.005 Allocation of tasks *[applicable from 22 February 2026 - Regulation (EU) 2023/203]* (a) The competent authority may allocate its tasks related to the certification or oversight of service providers under this Regulation, other than the issuance of certificates themselves, to qualified entities. When allocating such tasks, the competent authority shall ensure that it has: (1) a system in place to initially and continuously assess that the qualified entity complies with Annex V to [Regulation (EC) No 216/2008](http://eur-lex.europa.eu/legal-content/EN/TXT/?uri=CELEX:02008R0216-20130129). This system and the results of the assessments shall be documented; and (2) established a documented agreement with the qualified entity, approved by both parties at the appropriate management level, which clearly defines: (i) the tasks to be performed; (ii) the declarations, reports and records to be provided; (iii) the technical conditions to be met when performing such tasks; (iv) the related liability coverage; (v) the protection given to information acquired when carrying out such tasks. (b) The competent authority shall ensure that the internal audit process and the safety risk management process required by point [ATM/ANS.AR.B.001(a)(4)](#_DxCrossRefBm647742042) cover all tasks performed on its behalf by the qualified entity. (c) With regard to the certification and oversight of the organisation’s compliance with point [ATM/ANS.OR.B.005A](#_DxCrossRefBm647742050), the competent authority may allocate tasks to qualified entities in accordance with point (a), or to any relevant authority responsible for information security or cybersecurity within the Member State. When allocating tasks, the competent authority shall ensure that: (1) all aspects related to aviation safety are coordinated and taken into account by the qualified entity or relevant authority; (2) the results of the certification and oversight activities performed by the qualified entity or relevant authority are integrated in the overall certification and oversight files of the organisation; (3) its own information security management system established in accordance with point [ATM/ANS.AR.B.001](#_DxCrossRefBm647742050)(e) covers all the certification and continuing oversight tasks performed on its behalf. *[applicable from 22 February 2026 - Regulation (EU) 2023/203]*
ATM/ANS.AR.B.005 Allocation of tasks to qualified entities Regulation (EU) 2017/373 (a) The competent authority may allocate its tasks related to the certification or oversight of service providers under this Regulation, other than the issuance of certificates themselves, to qualified entities. When allocating such tasks, the competent authority shall ensure that it has: (1) a system in place to initially and continuously assess that the qualified entity complies with Annex V to [Regulation (EC) No 216/2008](http://eur-lex.europa.eu/legal-content/EN/TXT/?uri=CELEX:02008R0216-20130129). This system and the results of the assessments shall be documented; and (2) established a documented agreement with the qualified entity, approved by both parties at the appropriate management level, which clearly defines: (i) the tasks to be performed; (ii) the declarations, reports and records to be provided; (iii) the technical conditions to be met when performing such tasks; (iv) the related liability coverage; (v) the protection given to information acquired when carrying out such tasks. (b) The competent authority shall ensure that the internal audit process and the safety risk management process required by point [ATM/ANS.AR.B.001(a)(4)](#_DxCrossRefBm1726554890) cover all tasks performed on its behalf by the qualified entity.