Management of Changes and Improvements of the Information Security Management System in Civil Aviation
Description: After completing the course, participants will be able to demonstrate the following competences:
- Coordinate and manage ISMS change activities and corrective/preventive actions,
- Evaluate audit findings and trigger improvement measures based on objective evidence,
- Maintain structured documentation for tracking changes, nonconformities, and actions taken,
- Facilitate communication of changes and ensure alignment with ISMS objectives,
- Contribute to continual improvement and performance evaluation of the ISMS in civil aviation.
Previous skills/knowledge: Participants are expected to have the following basic knowledge:
- Basic understanding of ISMS structure and ISO/IEC 27001 clauses,
- Familiarity with internal audit, nonconformity, and corrective/preventive action terminology,
- Awareness of civil aviation oversight and documentation processes.
Authorized Partners:
Teaching requirements: Trainers should meet the following requirements:
- Subject Matter Expertise: Advanced knowledge of ISO/IEC 27001:2022 and ISO 19011, with experience in change control, nonconformity management, and continual improvement processes.
- Certifications – Recommended credentials include ISO/IEC 27001 Lead Auditor or Implementer, with practical experience in ISMS improvement cycles and corrective action systems.
- Training & Practical Experience: At least 2–3 years of hands-on experience managing ISMS changes, internal audits, and improvement planning in civil aviation or other regulated industries.
Objectives to achieve: The course aims to achieve the following objectives:
- Understand how to manage changes within the ISMS in accordance with ISO/IEC 27001 and EASA PART-IS expectations,
- Learn methods for identifying nonconformities, planning corrective actions, and monitoring effectiveness,
- Develop skills to initiate, control, and document improvement actions across ISMS components,
- Enable participants to establish effective review cycles, improvement indicators, and change communication processes,
- Support alignment between ISMS maturity development and aviation sector regulatory obligations.


