The document provides guidance to States and stakeholders to harmonize cyber risk management in civil aviation. It comprises a methodology that supports integrating cyber risk management into aviation safety and security, and air navigation efficiency and capacity risk management processes along with implementation examples and references to relevant general cybersecurity standards related to cyber risk assessment.
The document also includes restricted parts that provide a high-level description of cyber risks impacting civil aviation and a high-level categorization of cyber threats into aviation domains and disciplines. Those parts would support States and stakeholders in their efforts to assess and mitigate cyber threats and risks to their respective civil aviation sectors.
The unrestricted version is available to download from this page. The full restricted version of the document is available to concerned personnel in the civil aviation community, and can be found on ICAO-NET or can be requested by sending an email to ASP [at] icao.int (ASP[at]icao[dot]int).