TRA1 HARMONIZED THREAT AND RISK ASSESSMENT METHODOLOGY APPENDIX E2

0 TIMEBASED FORM OF CONTRACT HARMONIZED STANDARD FORM OF
2 HARMONIZED SIMPLIFIED STANDARD FORM OF CONTRACT CONSULTANT’S SERVICES
2 USER GUIDE FOR THE HARMONIZED CALCULATION METHOD ON

ANNEX G3 APRPIR HARMONIZED FORMAT UNDP ANNUAL PROJECT REPORT
HARMONIZED LIST OF SCHENGEN VISA REQUIREMENTS BRIEFLY ALL DOCUMENTS
REQUESTED ADDITIONSHARMONIZED QUESTIONS FOR RUFIJI & IFAKARA DSS FOR

Forword

TRA-1 Harmonized Threat and Risk Assessment Methodology


Appendix E-2 - List of Assessed Residual Risks


Asset

(Group/Subgroup)

Asset Values

Associated Threat

(Activity/Agent Category)

T

Related Vulnerability

V

Residual Risk

(AVal T V)

R

C

A

I





















































































































































































































































































































































Legend

C – Confidentiality. A – Availability. I – Integrity.

T – Threat. V – Vulnerability. AVal – Asset Value. R – Risk.

1 Instructions


Using the results of the Asset Identification Phase, the Threat Assessment Phase and the Vulnerability Assessment segment of the Risk Assessment Phase, specifically the Asset Valuation Table or Statement of Sensitivity, the Threat Assessment Table and the Vulnerability Assessment Table in Appendices B-5, C-4 and

D-4 respectively:



2 Example


The example explained in Appendix E-1, a regional medical storage facility, would generate the following entry in the List of Residual Risks:


Asset

(Group/Subgroup)

Asset Values

Associated Threat

(Activity/Agent Category)

T

Related Vulnerability

V

Residual Risk

(AVal T V)

R

C

A

I

Medicine/Morphine


H↓


Motorcycle Gangs/Theft

H↓

Structural Integrity

Slow Response

H

(4-1)1 4 4 = 48

H











1 Both asset value and threat level have been assessed at the low end of the High range (H↓), so the lower value is reduced by one level for the calculation of residual risk. In this particular case, either the asset value or the threat level might have been adjusted because both variables have the same value.

Appendix E-2 E2-2 2007-10-23

List of Assessed Residual Risks


STF27906270 ETSI EN 300 6762 V0010 (200602) HARMONIZED EUROPEAN
STF279083 ETSI EN 302 0172 V112 (200606) CANDIDATE HARMONIZED
TRA1 HARMONIZED THREAT AND RISK ASSESSMENT METHODOLOGY APPENDIX E2


Tags: appendix e-2, value. appendix, threat, appendix, assessment, methodology, harmonized