ISO/SAE 21434
Clause 15: Threat analysis and risk assessment methods – ISO/SAE 21434

ISO/SAE 21434 RQ-15-03: [RQ-15-03] Threat scenarios

Threat scenarios shall be identified, including the targeted asset, the compromised cybersecurity property and the cause of the compromise; methods include brainstorming and systematic approaches (misuse cases, EVITA, TVRA, PASTA, STRIDE); a damage scenario can correspond to several threat scenarios and a threat scenario to several damage scenarios.

Maintained by Gerard BlokdykControl text last updated

Other controls in Clause 15: Threat analysis and risk assessment methods – ISO/SAE 21434

Query this from an agent

The graph holds this control, the 0 it maps to, and the evidence behind each claim, over MCP and REST.