The needs assessment should include a detailed review of current prevention and intervention practice, and the organization shall compare its current policies, procedures and practices with what this standard requires or recommends and identify the gaps. Useful questions include whether: violence prevention policies or programs exist, alone or within wider policies; management supports prevention from the top; professionalism and respect are enforced through discipline with clear behavioral lines; the culture values safety and encourages reporting; prevention training is held periodically; employees know the policies and how to report; there is an established way to handle reports raising safety or security concerns and a central means to record and track them, and how well it works; incidents at remote locations can be managed; there are trusted links to threat assessment specialists and to lawyers; background screening and safe procedures for ending employment or business relationships are in place; workplace emergency protocols exist; employees are trained to recognize warning signs and to de-escalate; and there is a documented process for reviewing the program's effectiveness.
This control maps to 2 controls across 2 other frameworks. If you already hold one of them, the evidence you collected for it is the starting point here rather than new work.
Every mapping shown was judged rather than inferred from wording similarity, and the ones that failed review are published too. See the coverage reports and what was rejected.
The graph holds this control, the 2 it maps to, and the evidence behind each claim, over MCP and REST.