AS Sustainability Report

Social

Materiality analysis and stakeholder engagement

Economic value and connectivity

Introduction

CEO letter

Air SERBIA’s Story

Air Serbia in 2025 - year in review

Governance

Environment

Appendix

Aviation security (AVSEC) Why this topic matters

Of the 13,016 hours of mandatory safety and security training delivered in 2025 (see Section 8.1), the current reporting figure is combined and does not distinguish between safety-specific and security-specific training hours. During the reporting period, Air Serbia recorded zero security-related incidents. Performance in 2025 For flights operated under codeshare or wet-lease (ACMI) arrangements, aviation-security responsibilities are specified in each individual agreement concluded with the relevant partner or operator, ensuring the consistent application of security measures across all parties involved in the operation. coordinates on aviation-security matters with the relevant national and airport authorities, including the Civil Aviation Directorate of the Republic of Serbia.

Alongside flight safety, the protection of civil aviation against acts of unlawful interference , including terrorism, sabotage and hijacking , is fundamental to the trust passengers, employees and partners place in Air Serbia. As aviation systems become increasingly digitized and interconnected, the industry faces an evolving range of threats, from cyberattacks on operational systems to unauthorized access to restricted areas. Reflecting its importance, flight safety and security together form Air Serbia's highest-rated material topic in the 2025 materiality assessment (see Chapter 5.5). Our approach Air Serbia manages aviation security through a dedicated Security Policy, separate from the company's Safety Management System (SMS), and a Security Management System (SeMS) aligned with ICAO Annex 17 and applicable national regulations. The SeMS embeds security awareness across the organization and is verified through an internal quality-control programme, structured to ensure compliance with the National Civil Aviation Security Programme (NCASP). Its implementation supports a proactive, risk-based approach to threat assessment, rather than one focused solely on reactive procedures. The framework addresses the principal categories of risk facing modern civil aviation, including cyber threats to air traffic control, passenger data and in-flight navigation systems; insider risk associated with access to restricted airside areas; concealed weapons and explosives; unauthorized drone activity near airports; breaches of secure perimeter areas; and traditional threats such as hijacking and sabotage. As with the company's approach to flight safety reporting (see Just Culture, above), employees are encouraged to raise security-related concerns through a non-punitive, voluntary reporting system, on the understanding that an open reporting culture is essential to identifying and addressing risk at an early stage. Governance and oversight Oversight of the aviation-security framework is provided by the Aviation Security Review Board (AVSECRB), a strategic body chaired by the Accountable Manager and comprising nominated security personnel, with the ability to include other senior line managers where relevant. The AVSECRB convenes at least once a year, or more frequently where the Accountable Manager, the Senior Manager Aviation Security, or another Board member consider it necessary, and reviews the effectiveness of the SeMS and all of its core elements. Air Serbia

Sustainability Report 68

Made with FlippingBook interactive PDF creator