A hazard and risk analysis is carried out using the scope definition, and repeated whenever later decisions change the basis of earlier ones. Elimination or reduction of hazards at source is considered. Hazards, hazardous events and hazardous situations of the EUC together with its control system are determined across every reasonably foreseeable circumstance (faults, foreseeable misuse, malicious or unauthorised acts), with all relevant human factors and special attention to abnormal or infrequent operating modes; where malevolent action is foreseeable, a security threat analysis should follow. The event sequences leading to each hazardous event are determined, their likelihood evaluated, their consequences determined, and the EUC risk evaluated or estimated for each. Qualitative or quantitative techniques may be used, chosen according to the hazards, complexity, sector practice, legal requirements, EUC risk and data available. The analysis must address each hazardous event and contributing components, consequences and likelihood of event sequences, the tolerable risk per event, measures that reduce or remove hazards, and assumptions including demand rates and equipment failure rates, with any credit for operational constraints or human intervention set out in detail. Results are documented and maintained from this phase through to decommissioning.
This control maps to 2 controls across 1 other frameworks. If you already hold one of them, the evidence you collected for it is the starting point here rather than new work.
Every mapping shown was judged rather than inferred from wording similarity, and the ones that failed review are published too. See the coverage reports and what was rejected.
The graph holds this control, the 2 it maps to, and the evidence behind each claim, over MCP and REST.