IRImplementing rule
List of acronyms and abbreviations
| Acronym/Abbreviation | Means / Stands for |
|---|---|
| ACC | area control centre |
| ACMS | aircraft conditioning management system |
| AD | airworthiness directive |
| AIM | aeronautical information management |
| AIREP | air report [typically, about an in-flight event needed to be reported] |
| A-ISAC | Aviation Information Sharing and Analysis Center |
| AISP | aeronautical information service provider |
| AMC | acceptable means of compliance |
| AOC | air operator certificate |
| APP | approach [autopilot mode], approach control [radio telephony] |
| ARINC | aeronautical radio, incorporated [standard] |
| ASM | airspace management |
| ATC | air traffic control |
| ATCO | air traffic controller |
| ATCO TO | air traffic controller training organisation |
| ATFCM | air traffic flow and capacity management |
| ATM/ANS | air traffic management / air navigation services |
| ATO | approved training organisation |
| ATS | air traffic services |
| ATSP | air traffic services provider |
| AU | airspace user |
| BPM | baggage processed message |
| CAMO | continuing airworthiness management organisation |
| CDM | collaborative decision-making |
| CERT | computer emergency response team |
| CIP | continuous improvement process |
| CISO | chief information security officer |
| CMS | centralised maintenance system [of an aircraft] |
| COBIT | control objectives for information and related technology [framework] |
| CRP | common responsible person [delegate of the accountable manager to implement information security provisions across organisation parts (ref. point IS.I.OR.240(d))] |
| CSIRT | computer security incident response team |
| DCB | demand–capacity balancing |
| DLP | data loss prevention |
| DMAIC | define–measure–analyse–improve–control |
| DOA | design organisation approval |
| DoS | denial of service |
| DR | delegated regulation |
| EAR | easy access rules |
| EASA | European Union Aviation Safety Agency |
| ECCSA | European Centre for Cyber Security in Aviation |
| E-CF | [European] e-Competence Framework |
| ECSF | European Cybersecurity Skills Framework |
| ED (EASA) | Executive Director (of the European Union Aviation Safety Agency) |
| EDR | endpoint detection and response |
| ED-XXX (EUROCAE) | EUROCAE document [standard] |
| EFB | electronic flight bag |
| EGNOS | European Geostationary Navigation Overlay Service |
| ELA2 | aeroplane with a maximum take-off mass (MTOM) of 2000 kg or less, which is not classified as ‘complex motor-powered aircraft’; [ref. FAQ: When is an organisation, designing a product (aircraft, engine, propeller), exempt from having a DOA?] |
| ENISA | European Union Agency for Cybersecurity |
| ER ACC | en-route area control centre |
| EU | European Union |
| EUROCAE | European Organisation for Civil Aviation Equipment |
| EUSPA | European Union Agency for the Space Programme |
| FDR | flight data recorder |
| FIS | flight information service |
| FSTD | flight simulation training device |
| GM | guidance material |
| GRC | governance, risk [management] and compliance |
| ICAO | International Civil Aviation Organization |
| ICT | information and communication technology |
| IEC | International Electrotechnical Commission |
| IFPS | integrated initial flight plan processing system [at EUROCONTROL] |
| IOC | indicator of compromise |
| IR | implementing regulation |
| ISAP | information security assessment process |
| ISMM | information security management manual |
| ISMS | information security management system |
| ISO | International Organisation for Standardisation |
| ISP | internet service provider |
| IT | information technology |
| KPI | key performance indicator |
| MET | meteorological services |
| NICE | National Initiative for Cybersecurity Education |
| NIS (2) | Network and Information Systems Directive (2) |
| NIST CSF | National Institute of Standards and Technology Cybersecurity Framework |
| NISTIR | NIST interagency/internal report |
| NOTAM | notice to airmen; notice to air missions; notice to aviators |
| OT | operational technology |
| PDCA | plan–do–check–act [cycle] |
| portable document format | |
| PHMR | passagers handicapés ou à mobilité réduite [EN: passengers with disabilities or limited mobility] |
| PNR | passenger name record |
| POA | production organisation approval |
| QAR | quick-access recorder |
| QNH | altimeter setting equal to local average sea-level pressure |
| RBAC | role-based access control |
| RF | radio frequency |
| RPAS | remotely piloted aircraft system |
| SAB | Security Accreditation Board [EUSPA] |
| SAP | safety assessment process |
| SIEM | security information and event management |
| SMM | safety management manual |
| SMS | safety management system |
| SOA | statement of applicability |
| SOC | security operations centre |
| SW | software |
| TIS | traffic information service |
| TMA | terminal manoeuvring area |
| TOBT | target off-block time |
| TTPS | tactics, techniques and procedures |
| TWR | tower |
| UAS | unmanned aircraft system |
| VFR | visual flight rules |
| XML | extensible markup language |
IR — Regulations (EU) 2023/203 and 2022/1645 · n/a · Part-IS Easy Access Rules · EAR revision 5 Dec 2025