EASA Part-IS - Information Security in Aviation
What is EASA Part-IS - Information Security in Aviation?
EASA (European Union Aviation Safety Agency) Part‑IS (Information Security) regulation establishes mandatory information security requirements for aviation organisations. It requires the implementation of an Information Security Management System (ISMS) aligned with ISO/IEC 27001, covering 15 security domains and 34 controls, to protect the confidentiality, integrity and availability of aviation‑related information. It comprises 34 controls organised across 15 domains, and applies in the European Union.
How EASA Part-IS - Information Security in Aviation maps to other frameworks
All 34 controls, each one mapped to the equivalent requirement in other standards, with the evidence that carries across and the mappings that were judged and rejected shown alongside. No account needed to look.
See the control mappings →The 15 domains EASA Part-IS - Information Security in Aviation groups its controls into
Where EASA Part-IS - Information Security in Aviation overlaps with the standards you already hold
What EASA Part-IS - Information Security in Aviation means in your sector
What EASA Part-IS - Information Security in Aviation means for your job
Questions people ask about EASA Part-IS - Information Security in Aviation
What is EASA Part-IS - Information Security in Aviation?
How many controls does EASA Part-IS - Information Security in Aviation have?
Where does EASA Part-IS - Information Security in Aviation apply?
What frameworks does EASA Part-IS - Information Security in Aviation map to?
How do I get started with EASA Part-IS - Information Security in Aviation compliance?
Query EASA Part-IS - Information Security in Aviation programmatically
EASA Part-IS - Information Security in Aviation, its 34 controls and every mapping into other standards are available over a REST endpoint and an MCP server, so an agent can read them directly. The free tier is 10 calls a day and needs no signup.
EASA Part-IS - Information Security in Aviation API reference and MCP config →What EASA Part-IS - Information Security in Aviation requires, control by control
Each page carries the requirement text for one EASA Part-IS - Information Security in Aviation control and what an assessor expects to see as evidence.
- IS-AR-210 Findings and Corrective Actions
- IS-AR-215 Information Security Incident Response
- IS-D-OR-200 Information Security Management System
- IS-D-OR-205 Information Security Risk Assessment
- IS-D-OR-210 Information Security Risk Treatment
- IS-D-OR-220 Information Security Risk Management Process
- IS-D-OR-225 External Reporting of Information Security Events
- IS-I-OR-110 Cryptographic Controls
- IS-I-OR-200 Information Security Management System
- IS-I-OR-205 Information Security Risk Assessment
How ready are you for EASA Part-IS - Information Security in Aviation?
Answer 25 questions and get a professional readiness report with gap analysis, maturity scores, and prioritised action items. Results in 5 minutes.