This article was accepted into the corpus but its outbound wikilinks were never NER-processed — typical at the deepest BFS hop or when the run's entity cap was reached. No expansion funnel to show.
| Aviation ISAC | |
|---|---|
| Name | Aviation ISAC |
| Abbreviation | AISAC |
| Formation | 2012 |
| Type | Non-profit corporation |
| Headquarters | Alexandria, Virginia |
| Region served | Global aviation sector |
| Membership | Airlines, airports, manufacturers, suppliers, service providers |
Aviation ISAC
Aviation ISAC is a U.S.-based nonprofit information sharing and analysis center focused on cybersecurity and physical security for the civil aviation sector. It serves as a clearinghouse for actionable threat intelligence among airlines, airports, original equipment manufacturers, national aviation authorities, and international organizations. Aviation ISAC facilitates risk reduction across stakeholders including carriers, manufacturers, airports, regulators, and service providers.
Aviation ISAC operates at the intersection of aviation safety and cybersecurity, enabling exchange among stakeholders such as Federal Aviation Administration, Transportation Security Administration, International Civil Aviation Organization, European Union Aviation Safety Agency, and industry groups like Airlines for America, International Air Transport Association, Airports Council International, and Civil Air Navigation Services Organisation. It ingests inputs from private firms including Boeing, Airbus, Lockheed Martin, Raytheon Technologies, Northrop Grumman, and Honeywell Aerospace while coordinating with technology companies such as Microsoft, Amazon Web Services, Google, Cisco Systems, and Palo Alto Networks. The center aligns with standards and frameworks from bodies like National Institute of Standards and Technology, International Organization for Standardization, ENISA, and Payment Card Industry Security Standards Council where applicable.
Aviation ISAC was incorporated following industry recognition of cyber and physical threats after incidents involving carriers and air traffic systems influenced policy debates in forums including U.S. Department of Transportation, U.S. Department of Homeland Security, European Commission, and multilateral gatherings such as the ICAO Assembly. Its formation drew on precedents set by sector ISACs including Financial Services Information Sharing and Analysis Center, Electricity Information Sharing and Analysis Center, and Health Information Sharing and Analysis Center. Early engagement included collaborations with academic and research institutions like Massachusetts Institute of Technology, Carnegie Mellon University, Georgia Institute of Technology, and Stanford University to develop threat modeling and vulnerability assessment methodologies. Over time the organization expanded services in response to high-profile incidents involving vendors such as Sabre Corporation, SITA, and cloud providers, and to regulatory changes inspired by events like the NotPetya attacks and other supply chain compromises.
Aviation ISAC’s membership spans legacy carriers such as American Airlines, Delta Air Lines, United Airlines, Lufthansa, British Airways, and regional and low-cost carriers like Ryanair, Southwest Airlines, EasyJet, and JetBlue. Its constituency includes airport operators such as Heathrow Airport Holdings, Hartsfield–Jackson Atlanta International Airport, Dubai Airports, and Changi Airport Group as well as air navigation service providers including Nav Canada, NATS (air traffic services), and Airservices Australia. Members also comprise manufacturers and lessors like CFM International, GE Aviation, Pratt & Whitney, GOL Linhas Aéreas, Avolon, and suppliers such as Thales Group, Safran, Rockwell Collins, and Bombardier. Membership categories reflect commercial carriers, airports, manufacturers, technology vendors, and research partners. Aviation ISAC maintains liaison roles with government agencies including Department of Defense, National Cybersecurity Center, and national CERTs such as US-CERT and CERT-EU.
The organization provides tactical and strategic intelligence products, incident response coordination, vulnerability advisories, and best-practice playbooks. It publishes alerts drawing on threat feeds from commercial providers like FireEye, CrowdStrike, Mandiant, Recorded Future, and Anomali while integrating open-source reporting tracked by entities such as MITRE Corporation and SANS Institute. Services include sector-specific indicators of compromise, tabletop exercise facilitation modeled on scenarios used by NATO, Five Eyes, and G7 partners, and threat hunting guidance informed by frameworks like MITRE ATT&CK. Aviation ISAC hosts secure communication platforms, automated sharing via STIX/TAXII, and coordinated disclosure processes involving vendors and national regulators during incidents affecting passenger data, flight systems, or operational networks.
Aviation ISAC partners with intergovernmental organizations and industry consortia including ICAO, IATA, ACI World, ENISA, and regional bodies like ASEAN aviation working groups. It collaborates with cybersecurity initiatives such as Cybersecurity and Infrastructure Security Agency, NIST Cybersecurity Framework outreach programs, and multinational exercises like CyberShield and Locked Shields. Research partnerships involve universities and labs such as Sandia National Laboratories, Lawrence Livermore National Laboratory, RAND Corporation, and consortia like MITRE’s Aviation Program. The ISAC also engages insurers and legal firms involved in aviation incident response and compliance drawn from networks such as International Air Transport Association Legal Advisory and specialty insurers like AIG and Lloyd's of London.
Governance is typically by a board composed of industry leadership from airlines, airports, and manufacturers, with advisory inputs from regulatory representatives and independent cybersecurity experts from institutions like Council on Foreign Relations and think tanks including Brookings Institution and Chatham House. Funding derives from member dues, grants, and cooperative agreements with agencies and philanthropic foundations such as Cybersecurity and Infrastructure Security Agency Grants Program and technology partner sponsorships from firms like Splunk and IBM Security. The ISAC adheres to nonprofit corporate law and data protection obligations under regimes such as General Data Protection Regulation and national privacy statutes, with counsel from law firms experienced in aviation and cybersecurity litigation.
Aviation ISAC has facilitated coordinated responses to ransomware and supply-chain incidents, contributed to resilience standards adopted by ICAO and regional regulators, and run exercise programs that informed contingency planning at major hubs like O'Hare International Airport and Tokyo Haneda Airport. Notable initiatives include sectorwide threat intelligence sharing pilots with IATA, development of aviation-specific cyber risk lexicons aligned with ISO/IEC standards, and joint research projects with MITRE and Carnegie Mellon University CERT/CC on avionics and network segmentation. The ISAC’s advisories have influenced vendor patching timetables at firms including SITA and Sabre, and supported incident coordination during disruptions involving passenger data breaches and industrial control system anomalies.
Category:Aviation security Category:Cybersecurity organizations