{
  "node_id": "eu-part-is-information-security-delegated-2022-1645",
  "title": "Commission Delegated Regulation (EU) 2022/1645 of 14 July 2022 laying down rules for the application of Regulation (EU) 2018/1139 regarding requirements for the management of information security risks with potential impact on aviation safety for organisations covered by Commission Regulations (EU) No 748/2012 and (EU) No 139/2014 (Part-IS)",
  "domain": "Aviation, Defense & Quantum",
  "version": "1.0.0",
  "last_updated": "2026-06-27",
  "bluf": "This Part-IS delegated rule requires design and production organisations and aerodrome operators and apron management service providers to set up, implement and maintain an information security management system that identifies and reviews information security risks with potential impact on aviation safety, treats those risks, and reports significant incidents to the competent authority within 72 hours; it applies from 16 October 2025.",
  "paywall": {
    "status": "LOCKED",
    "unlock_cost_usd": "0.01",
    "skyfire_id": "41779894-ece2-4163-9761-b3b1b76e19b0"
  },
  "crosswalks": {
    "_available_keys": [
      "nist_framework",
      "iso_standard",
      "industry_mapping",
      "ai_overlay_2026"
    ],
    "_note": "Full crosswalk values included in vault response"
  },
  "dependencies": [
    "eu-easa-basic-regulation-2018-1139-common-rules-civil-aviation",
    "faa-part-21-certification",
    "easa-cybersecurity-aviation-ed-202a-2022"
  ],
  "primary_citations_count": 5
}