Management review that actually improves the business
Learn how to run an ISO 9001 Clause 9.3 management review that turns evidence into decisions, with the right inputs, actionable outputs, and a cadence that fits your risks.
STANAG 4537
Government agencies and the contractors who develop, integrate or export NATO's shared fire control software components for artillery.
STANAG 4537 sets the rules NATO nations use to develop, share and disclose the shared fire control software suite (S4) for artillery. NATO has not released it publicly; this page describes it from the Czech defence standard that implements it.
NATO has not released this STANAG publicly. It is NATO UNCLASSIFIED, and organisations that need it obtain it through their national standardization authority.
STANAG 4537 is the NATO Standardization Agreement covering the sub-group 2 sharable (fire control) software suite (S4). Edition 4, promulgated on 7 October 2015 under CNAD, AC/225 NAAG, ICGIF, it acts as the covering agreement for three further publications: APP-18 edition A, the software suite itself; AOP-37 edition 2, the NATO Artillery Ballistic Kernel (NABK); and AOP-49 edition D, the S4 quality system.
NATO has not released STANAG 4537 publicly. This page describes it from a public national implementation, the Czech defence standard ČOS 109005 (1st edition, 2020), which states that it introduces STANAG 4537 edition 4, AOP-37 edition 2 (Volume 1 and Volume 2), APP-18 edition A and AOP-49 edition D into Czech use. ČOS 109005 carries the original NATO English text of each publication alongside a Czech translation; what follows is drawn from that English text as reproduced in the Czech standard.
ČOS 109005 gives the aim of STANAG 4537 as fire control interoperability: the standard supports fire control interoperability in multinational operations and sets a standard procedure for how software and documentation of the SG/2 Shareable (Fire Control) Software Suite (S4) are developed, shared, disclosed and used. Participating nations agree to implement APP-18, AOP-37 and AOP-49 to do this, and each NATO member government is individually responsible for its own national application of the S4 software and documentation.
APP-18 sets the S4 software's intellectual property terms: the software and documentation are NATO's intellectual property, held jointly with the AC/225 (ICG IF-SG/2) participating governments, and users may not reverse engineer, decompile or disassemble any part of the S4 software, or otherwise try to discover its source code, except with the prior written authorisation of AC/225 (ICG IF-SG/2). Any contract or export disclosing S4 materiel must carry the legal disclaimer wording set out in the standard's Annex C. AOP-37, the ballistic kernel, is issued as software only, in electronic form; its Volume 2 is marked NATO RESTRICTED and is not freely disclosed, and because the software itself is reissued annually it is held separately from ČOS 109005 rather than being reproduced in it.
AOP-49 sets the quality system that governs how S4 products are developed. It organises eleven policies into four domains: programme management (coordination and oversight), project management (planning, monitoring and control, and risk), engineering (requirements, technology development and software development), and support (configuration management, process assurance, product evaluation and archiving). Each policy follows a fixed structure of purpose, responsibilities, inputs, activities and outputs. Within each national agency or contractor active in an S4 project, a Process Auditor verifies local conformance to the framework and supplies evidence to the project's Independent Safety Auditor.
A supplier bound by STANAG 4537 through a contract holds the obtained text through its national authority. In ComplyTrain you record the requirements that apply to you as your own requirements, give each an owner, and keep the evidence that shows you meet them against each one.
Tell us how you need to work with STANAG 4537 and what you need from it. We will come back to you about what ComplyTrain can do.
Thank you. Your list is on its way to your inbox, and we will come back to you on what working with these standards in ComplyTrain involves, usually within one business day.
One system for the whole compliance programme. Start with the module you need most.
Collect information the same way every time, and decide in advance what happens next.
Know whether your controls are operating, not just whether a policy says they exist.
Turn the compliance work you already know about into a plan with owners, dependencies and dates.
Know what you can offer, and hold the evidence behind every configuration you offer it in.
Eight built-in reports across every module, scheduled, delivered, and filed where the evidence lives.
The sector news that matters to your organisation - read and rated by AI, and delivered as a scheduled digest in your own language.
AI reads the tender pack and pulls out the requirements, deadlines and rules - then helps you draft the response from your own approved content, with you reviewing every step.
One current register of the suppliers and partners you depend on - each risk-assessed, re-assessing itself on schedule, and wired straight into your risk register.
See every requirement you face - across every standard, plus your own contracts and policies - traced to the documents, evidence and processes that satisfy it.
Identify, score, treat and review your risks in one place - with AI to help anyone run a proper assessment, and a defensible trail behind every decision.
Assign training, prove it was understood, and hold the competence records an auditor asks for.
Draft compliance documents with AI, keep every version under control, and export them beautifully branded - all in one place.
Audits, corrective actions, processes and approvals in one quality system, organised around ISO 9001.
Learn how to run an ISO 9001 Clause 9.3 management review that turns evidence into decisions, with the right inputs, actionable outputs, and a cadence that fits your risks.
The types of ISO 9001 audit, what Stage 1 and Stage 2 each check, how nonconformities are graded and closed, and how to prepare for your first certification.
The EDF consortium rule is usually quoted as three entities from three Member States. It has a second limb about control that the word independent quietly hides, and two exceptions that disapply it entirely.