Integration of QMS, SMS,



Similar documents
States shall establish a State safety programme, in order to achieve an acceptable level of safety in civil aviation.

Common SES-Certification 4-States/Eurocontrol ANSPs Common Requirements AMCs and analyses working sheet Status: 2 February 2006

MODEL REGULATION SAFETY MANAGEMENT SYSTEM REGULATION. International Civil Aviation Organisation

51 st CONFERENCE OF DIRECTORS GENERAL OF CIVIL AVIATION ASIA AND PACIFIC REGIONS

ICAO Safety Management Systems (SMS) Course Information and outline

Kuala Lumpur, Malaysia, May Report

Regulation of Air Traffic Service SMS and. Air Traffic Service Units/Facilities SMS

CAUSES OF AIRCRAFT ACCIDENTS

RUSSIAN FEDERATION MINISTRY OF TRANSPORT INNOVATION

Aviation Safety Policy. Aviation Safety (AVS) Safety Management System Requirements

Security Management Systems (SEMS) for Air Transport Operators. Executive Summary

Advanced Master SAFETY MANAGEMENT IN AVIATION. NEW Syllabus

Emerging Threats from Cyber Security in Aviation Challenges and Mitigations

ICAO State Safety Programme (SSP) Overview 4ta Jornada de Seguridad Operacional del INAC Caracas, Venezuela, November 2011

PLANNIN WORKING PAPER. International. Theme 1: WORK. (Presented by SUMMARY. in this paper. feasibility of. system in the future.

TRAINING IN SAFETY MANAGEMENT SYSTEMS

SECOND HIGH-LEVEL SAFETY CONFERENCE 2015 (HLSC 2015) PLANNING FOR GLOBAL AVIATION SAFETY IMPROVEMENT

Paper presented at ISASI 2014 Seminar, October 2014, Adelaide, Australia. Safety Management; Reversing the False Glide Slope Myth

BUSINESS CONTINUITY PLAN. Specific Issues for Public Health Emergencies. Guidelines for Air Carriers

How To Understand And Understand The Rules Of International Civil Aviation

Air Traffic Service Providers Entry Control Procedures Manual 3. Approved Provider s Operations Manual

Subject: Establishment of a Safety Management System (SMS)

Emirates Airline. Cargo Security The EK Experience

PRESENTATION. Patrick Ky Executive Director EUROPEAN COMMISSION

BUSINESS CONTINUITY POLICY

Safety Management System

SESAR Studies & Demonstration Projects on RPAS & Cyber-Security

PSPSOHS606A Develop and implement crisis management processes

Is securing personal information a priority? Reassure clients and achieve data protection compliance with BS 10012

DORSET & WILTSHIRE FIRE AND RESCUE AUTHORITY Performance, Risk and Business Continuity Management Policy

Flying NZ - Aero Club Safety Management System Checklist

ICAO Regional Workshop. Implementation of Safety Management System in French ANSP. Patricia LEZIN

ICAO Crisis Management Framework Document (EUR Doc 031)

Business Continuity Policy and Business Continuity Management System

ICAO Safety Management Systems (SMS) Course Handout N 5 Cuzco International Airport operation

STATE OF QATAR - LAW NO. 15 OF 2002 ON CIVIL AVIATION. Table of Contents. Chapter (1)

Business Continuity Policy

Meeting of the Cooperation Arrangement for the Prevention of Spread of Communicable Diseases Through Air Travel

THE UNIVERSAL SECURITY AUDIT PROGRAMME (USAP)

NHS Hardwick Clinical Commissioning Group. Business Continuity Policy

Final Draft/Pre-Decisional/Do Not Cite. Forging a Common Understanding for Critical Infrastructure. Shared Narrative

airsight Company Profile

Business Continuity Policy

Agreement on International Civil Aviation (Sops 11/1949), Annex 19 Safety Management) Modification details

NGO security coordination and other sources of support WITHIN FIRST 1-2 WEEKS. Office/compound/ facility security

SCHEME OF EXAMINATION PG DIPLOMA IN CORPORATE AND INDUSTRIAL SECURITY MANAGEMENT (PGDCISM) ONE YEAR PROGRAMME

ANNEX 6 -ATM SECURITY OVERSIGHT 1. INTRODUCTION 2. SCOPE. Holistic approach. Understanding ATM Security

NOTICE TO AERODROME CERTIFICATE HOLDERS (NOTAC) No. 02/2013

Aerodrome Advisory Circular

RISK CONTEXT STATEMENT

CS5 EAIMS Call For Interest Technical annexe

3. regulations issued on the basis of provisions included under 1 or 2,

El Camino College Homeland Security Spring 2016 Courses

ANNEX 1 (ESF-1) TRANSPORTATION SERVICES. Department of Transportation

Validity: until further notice Legal basis: Underlying international standards, recommendations and other documents:

Basics of Sustainability. Environmental Management Systems (EMS)

AIR CARGO SECURITY: An Overview of Several Regulatory Initiatives around the World

THE WHITE HOUSE. Office of the Press Secretary. For Immediate Release February 12, February 12, 2013

BUSINESS CONTINUITY MANAGEMENT POLICY

Safety Oversight Audit Section

civil air navigation services organisation CANSO Cyber Security and Risk Assessment Guide

Operational Risk, Business Continuity & Crisis Management

NORTH HAMPSHIRE CLINICAL COMMISSIONING GROUP BUSINESS CONTINUITY MANAGEMENT POLICY AND PLAN (COR/017/V1.00)

Critical Infrastructure Security and Resilience

The need for Safety Intelligence based on European safety data analysis

WEST YORKSHIRE FIRE & RESCUE SERVICE. Business Continuity Management Strategy

ICAO Strategic Objective: Economic Development of Air Transport Electronic Tools for Dissemination of Air Transport Data

1.0 Policy Statement / Intentions (FOIA - Open)

The 7 th International Scientific Conference DEFENSE RESOURCES MANAGEMENT IN THE 21st CENTURY Braşov, November 15 th 2012

Temple university. Auditing a business continuity management BCM. November, 2015

About the Port Authority

ATM Security. Emergent challenges and opportunities focusing on increasing automation and cyber-security. Antonio Nogueras

SARPS about Emergency frequency. 12 May 2015

ESKISP Conduct security testing, under supervision

Annex to Decision 2013/008/R

JOINT EXPLANATORY STATEMENT TO ACCOMPANY THE CYBERSECURITY ACT OF 2015

Department of Homeland Security

Security risk analysis approach for on-board vehicle networks

CIVIL AVIATION REGULATIONS SURINAME PART 13 AVIATION SECURITY VERSION 1.0

ToR and Concept Paper MDM.060 (RMT.0262 & RMT.0611 and RMT.0550 & RMT.0612) ToR and Concept Paper MDM.060

Operation of Aircraft

Medical Certificates Issued under the Air Navigation (Hong Kong) Order 1995

BSO Board Director of Human Resources & Corporate Services Business Continuity Policy. 28 February 2012

Safety Management 1st edition

Business Continuity. Is your Business Prepared for the worse? What is Business Continuity? Why use a Business Continuity Plan?

Section A: Introduction, Definitions and Principles of Infrastructure Resilience

Maritime cybersecurity using ISPS and ISM codes

How To Manage Risk At The Foundation

Bradford J. Willke, CISSP

International Civil Aviation Organization ASSEMBLY 38TH SESSION EXECUTIVE COMMITTEE

NFPL IMPLEMENTATION ATS OPERATIONAL ASPECTS

ISO 22301:2012 Societal Security Appendix B Business Continuity Management Systems Requirements 347

Statement for the Record. The Honorable Janet Napolitano. Secretary United States Department of Homeland Security

HAMAD INTERNATIONAL AIRPORT (RESTRICTED AREAS) REGULATIONS 2015

Transcription:

Integration of QMS, SMS, WMO/QM Task Team, 4th Meeting 20.-22. January 2015 / Gerold Fletzer DIESER TEXT DIENT DER NAVIGATION

Since last meeting the world has changed: 2015 we are facing ISO 9001:2015 Riskmanagement will be a major topic Safetymanagement was discussed in Melbourne 2013 We are doing Safety Assessments in MET Established Occurence Management in MET Security Management in ANSP

Focus: Dealing with risks in a QMS ISO 9001:2008 chapter 8.5.3. Preventive action ISO 9001:2015 strong focus on risk management

Risk = Probability x Severity ISO Guide 73:2009 effect of uncertainty on objectives Financial, Health, Regulatory..Risks etc. Basic approach to any risk assessment (Safety, Security, )

Quality RISK ASSESSMENT TOOLS Safety Assessment Security Assessment

Safety- and Security-objectives are an expression of customer requirements!

Safety, a generic definition The avoidance of death, injury or poor health to customers, employees, contractors and the general public; also avoidance of damage to property and the environment British Rail Safety Programme, April 1992

System Border Environment Element Relations S y s t e m Function, Service Need for change Equipment Human Procedure System Elements

External Requirements (ICAO, SES, etc.) (8) Documentation (7) Occurance Reporting & Investigation (1) Organization & Responsibilities Safety Policy (6) Performance & Improvement (2) Competency (5) Safety Promotion (4) Safety Assurance (3) Safety Achievement 9

Sidestep: Change in Safety-Management- System: Change in European SMS perspective From SAFETY I to SAFETY-II Based on OCC Reports: - from as few things as possible go wrong to as many things as possible go right - What works well?

ICAO Annex 17 Security : Aviation Security = Safeguarding civil aviation against acts of unlawful interference. with intent, willful, on purpose,.

Security, a generic definition measures with a view on safeguarding elements at risk (assets) against a broad range of threats (e.g. crime, fire, accidents, espionage, sabotage and attack) and vulnerabilities.

Motivaters (and a glimpse of something to read): Safety ISO 9001:2008 2015 Securtiy ICAO Annex 19 ICAO Annex 17 EU Regulation 1035/2011 IS0 31000 Risk Management ISO 27000 IT-Security OHSAS 18001 Occupational Health and Safety Assessment Series etc.

SAFETY - ICAO Annex 19 Chapter 3.1.3: As part of its SSP, each State shall require that the following service providers under its authority implement an SMS: e) air traffic services (ATS) providers in accordance with Annex 11 Note. The provision of AIS, CNS, MET and/or SAR services, when under the authority of an ATS provider, are included in the scope of the ATS provider s SMS. When the provision of AIS, CNS, MET and/or SAR services are wholly or partially provided by an entity other than an ATS provider, the related services that come under the authority of the ATS provider, or those aspects of the services with direct operational implications, are included in the scope of the ATS provider s SMS SECURITY - ICAO Annex 17: chapter 3.5 Air traffic service providers Each Contracting State shall require air traffic service providers operating in that State to establish and implement appropriate security provisions to meet the requirements of the national civil aviation security programme of that State.

ICAO Annex 17: Acts of unlawful interference. These are acts or attempted acts such as to jeopardize the safety of civil aviation, including but not limited to: unlawful seizure of aircraft, destruction of an aircraft in service, hostage-taking on board aircraft or on aerodromes, forcible intrusion on board an aircraft, at an airport or on the premises of an aeronautical facility, introduction on board an aircraft or at an airport of a weapon or hazardous device or material intended for criminal purposes, use of an aircraft in service for the purpose of causing death, serious bodily injury, or serious damage to property or the environment, communication of false (MET) information such as to jeopardize the safety of an aircraft in flight or on the ground, of passengers, crew, ground personnel or the general public, at an airport or on the premises of a civil aviation facility.

EU Regulation 1035/2011, Annex 1, General requirements for the provision of air navigation services 3.1. Safety management: Air navigation service providers shall manage the safety of all their services. In doing so, they shall establish formal interfaces with all stakeholders which may influence directly the safety of their services. Air navigation service providers shall develop procedures for managing safety when introducing new functional systems or changing the existing functional systems. 4. Security Air navigation service providers shall establish a security management system to ensure: (a) the security of their facilities and personnel so as to prevent unlawful interference with the provision of air navigation services; (b) the security of operational data they receive or produce or otherwise employ, so that access to it is restricted only to those authorised. The security management system shall define: (a) the procedures relating to security risk assessment and mitigation, security monitoring and improvement, security reviews and lesson dissemination; (b) the means designed to detect security breaches and to alert personnel with appropriate security warnings; (c) the means of containing the effects of security breaches and to identify recovery action and mitigation procedures to prevent reoccurrence. Air navigation service providers shall ensure the security clearance of their personnel, if appropriate, and coordinate with the relevant civil and military authorities to ensure the security of their facilities, personnel and data. The safety, quality and security management systems may be designed and operated as an integrated management system.

Resilience = Adaptive capacity of an organization in a complex and changing environment Resilience = An organization s capacity to anticipate disruptions, adapt to events, and create lasting value."

Safety Breaches Security Breaches Dealing with Risks Planned Change Safety Assessment Security Assessment Threats Security Assessment Safety Assessment From man-made products to automatisation: Don t underestimate Human Factor!

Before Incident After Incident Change / Threat Prevention Preparedness Emergency Response Operational Continuity System Recovery Reducing Risk Enhancing Stability

(Q, S, SEC, ) M S