Management review that actually improves the business
Learn how to run an ISO 9001 Clause 9.3 management review that turns evidence into decisions, with the right inputs, actionable outputs, and a cadence that fits your risks.
STANAG 5637
NATO, NATO nations and partner nations running network infrastructure projects that implement Protected Core Networking.
STANAG 5637 is the NATO head standard for Protected Core Networking (PCN), promulgated in December 2019. NATO has not released its text publicly; this page describes it from public NATO publications that cite it.
NATO has not released this STANAG publicly. It is NATO UNCLASSIFIED, and organisations that need it obtain it through their national standardization authority.
STANAG 5637 is Protected Core Networking (PCN), published as AComP-5637 Edition A. Edition 1 was promulgated on 10 December 2019 under NATO's DPC, DPC, CaP1, N&S CaT committee. NATO marks it NATO UNCLASSIFIED but has not released it publicly, so this page describes it only from public NATO publications that cite it.
Two PCN specifications, AComP-5639 (the PCN Static Environment Specifications) and AComP-5640 (the PCN Deployable Specifications), both cite STANAG 5637 and call it the PCN Head STANAG. AComP-5639 states that "The overall PCN concept is described in the PCN Head STANAG", and both documents state that "The PCN principles, the functional requirements and the offered services are described in detail in PCN Head STANAG".
Both specifications also give a brief overview of the PCN Overarching Architecture and PCN Management Services "as already described in the PCN Head STANAG". In that overview they say that "The PCore is a non-classified network and will not provide information confidentiality and integrity of the consumer data/payload", and that "PCore is an IP network that can rely on multiple different carriers for data transport". The management capabilities they list include a Network Management and Cyber Defence (NMCD) capability and a PCN Addressing Authority (PAA).
Both also say the IP addressing schema to be used "will be included in the Standards Related Document (SRD) [SRD for STANAG 5637] for the PCN Head STANAG Edition 2 (under development)", and AComP-5639 refers to that SRD for nation numbers.
A supplier bound by STANAG 5637 through a contract holds the obtained text through its national authority. In ComplyTrain you record the requirements that apply to you as your own requirements, give each an owner, and keep the evidence that shows you meet them against each one.
Tell us how you need to work with STANAG 5637 and what you need from it. We will come back to you about what ComplyTrain can do.
Thank you. Your list is on its way to your inbox, and we will come back to you on what working with these standards in ComplyTrain involves, usually within one business day.
One system for the whole compliance programme. Start with the module you need most.
Collect information the same way every time, and decide in advance what happens next.
Know whether your controls are operating, not just whether a policy says they exist.
Turn the compliance work you already know about into a plan with owners, dependencies and dates.
Know what you can offer, and hold the evidence behind every configuration you offer it in.
Eight built-in reports across every module, scheduled, delivered, and filed where the evidence lives.
The sector news that matters to your organisation - read and rated by AI, and delivered as a scheduled digest in your own language.
AI reads the tender pack and pulls out the requirements, deadlines and rules - then helps you draft the response from your own approved content, with you reviewing every step.
One current register of the suppliers and partners you depend on - each risk-assessed, re-assessing itself on schedule, and wired straight into your risk register.
See every requirement you face - across every standard, plus your own contracts and policies - traced to the documents, evidence and processes that satisfy it.
Identify, score, treat and review your risks in one place - with AI to help anyone run a proper assessment, and a defensible trail behind every decision.
Assign training, prove it was understood, and hold the competence records an auditor asks for.
Draft compliance documents with AI, keep every version under control, and export them beautifully branded - all in one place.
Audits, corrective actions, processes and approvals in one quality system, organised around ISO 9001.
Learn how to run an ISO 9001 Clause 9.3 management review that turns evidence into decisions, with the right inputs, actionable outputs, and a cadence that fits your risks.
The types of ISO 9001 audit, what Stage 1 and Stage 2 each check, how nonconformities are graded and closed, and how to prepare for your first certification.
The EDF consortium rule is usually quoted as three entities from three Member States. It has a second limb about control that the word independent quietly hides, and two exceptions that disapply it entirely.