Integration of QMS, SMS, WMO/QM Task Team, 4th Meeting 20.-22. January 2015 / Gerold Fletzer DIESER TEXT DIENT DER NAVIGATION
Since last meeting the world has changed: 2015 we are facing ISO 9001:2015 Riskmanagement will be a major topic Safetymanagement was discussed in Melbourne 2013 We are doing Safety Assessments in MET Established Occurence Management in MET Security Management in ANSP
Focus: Dealing with risks in a QMS ISO 9001:2008 chapter 8.5.3. Preventive action ISO 9001:2015 strong focus on risk management
Risk = Probability x Severity ISO Guide 73:2009 effect of uncertainty on objectives Financial, Health, Regulatory..Risks etc. Basic approach to any risk assessment (Safety, Security, )
Quality RISK ASSESSMENT TOOLS Safety Assessment Security Assessment
Safety- and Security-objectives are an expression of customer requirements!
Safety, a generic definition The avoidance of death, injury or poor health to customers, employees, contractors and the general public; also avoidance of damage to property and the environment British Rail Safety Programme, April 1992
System Border Environment Element Relations S y s t e m Function, Service Need for change Equipment Human Procedure System Elements
External Requirements (ICAO, SES, etc.) (8) Documentation (7) Occurance Reporting & Investigation (1) Organization & Responsibilities Safety Policy (6) Performance & Improvement (2) Competency (5) Safety Promotion (4) Safety Assurance (3) Safety Achievement 9
Sidestep: Change in Safety-Management- System: Change in European SMS perspective From SAFETY I to SAFETY-II Based on OCC Reports: - from as few things as possible go wrong to as many things as possible go right - What works well?
ICAO Annex 17 Security : Aviation Security = Safeguarding civil aviation against acts of unlawful interference. with intent, willful, on purpose,.
Security, a generic definition measures with a view on safeguarding elements at risk (assets) against a broad range of threats (e.g. crime, fire, accidents, espionage, sabotage and attack) and vulnerabilities.
Motivaters (and a glimpse of something to read): Safety ISO 9001:2008 2015 Securtiy ICAO Annex 19 ICAO Annex 17 EU Regulation 1035/2011 IS0 31000 Risk Management ISO 27000 IT-Security OHSAS 18001 Occupational Health and Safety Assessment Series etc.
SAFETY - ICAO Annex 19 Chapter 3.1.3: As part of its SSP, each State shall require that the following service providers under its authority implement an SMS: e) air traffic services (ATS) providers in accordance with Annex 11 Note. The provision of AIS, CNS, MET and/or SAR services, when under the authority of an ATS provider, are included in the scope of the ATS provider s SMS. When the provision of AIS, CNS, MET and/or SAR services are wholly or partially provided by an entity other than an ATS provider, the related services that come under the authority of the ATS provider, or those aspects of the services with direct operational implications, are included in the scope of the ATS provider s SMS SECURITY - ICAO Annex 17: chapter 3.5 Air traffic service providers Each Contracting State shall require air traffic service providers operating in that State to establish and implement appropriate security provisions to meet the requirements of the national civil aviation security programme of that State.
ICAO Annex 17: Acts of unlawful interference. These are acts or attempted acts such as to jeopardize the safety of civil aviation, including but not limited to: unlawful seizure of aircraft, destruction of an aircraft in service, hostage-taking on board aircraft or on aerodromes, forcible intrusion on board an aircraft, at an airport or on the premises of an aeronautical facility, introduction on board an aircraft or at an airport of a weapon or hazardous device or material intended for criminal purposes, use of an aircraft in service for the purpose of causing death, serious bodily injury, or serious damage to property or the environment, communication of false (MET) information such as to jeopardize the safety of an aircraft in flight or on the ground, of passengers, crew, ground personnel or the general public, at an airport or on the premises of a civil aviation facility.
EU Regulation 1035/2011, Annex 1, General requirements for the provision of air navigation services 3.1. Safety management: Air navigation service providers shall manage the safety of all their services. In doing so, they shall establish formal interfaces with all stakeholders which may influence directly the safety of their services. Air navigation service providers shall develop procedures for managing safety when introducing new functional systems or changing the existing functional systems. 4. Security Air navigation service providers shall establish a security management system to ensure: (a) the security of their facilities and personnel so as to prevent unlawful interference with the provision of air navigation services; (b) the security of operational data they receive or produce or otherwise employ, so that access to it is restricted only to those authorised. The security management system shall define: (a) the procedures relating to security risk assessment and mitigation, security monitoring and improvement, security reviews and lesson dissemination; (b) the means designed to detect security breaches and to alert personnel with appropriate security warnings; (c) the means of containing the effects of security breaches and to identify recovery action and mitigation procedures to prevent reoccurrence. Air navigation service providers shall ensure the security clearance of their personnel, if appropriate, and coordinate with the relevant civil and military authorities to ensure the security of their facilities, personnel and data. The safety, quality and security management systems may be designed and operated as an integrated management system.
Resilience = Adaptive capacity of an organization in a complex and changing environment Resilience = An organization s capacity to anticipate disruptions, adapt to events, and create lasting value."
Safety Breaches Security Breaches Dealing with Risks Planned Change Safety Assessment Security Assessment Threats Security Assessment Safety Assessment From man-made products to automatisation: Don t underestimate Human Factor!
Before Incident After Incident Change / Threat Prevention Preparedness Emergency Response Operational Continuity System Recovery Reducing Risk Enhancing Stability
(Q, S, SEC, ) M S