Skip to main content
RM-003CriticalProviderDetective

Risk Estimation and Probability Assessment

Providers must estimate and evaluate the likelihood and severity of potential harm, taking into account the intended purpose, foreseeable misuse, and the vulnerability of affected natural persons.

Articles:Article 9(2)(b)Article 9(5)

Evidence Examples

  • Risk probability matrix
  • Severity assessment worksheet
  • Harm estimation methodology

Standards

ISO 42001:2023 §6.1.2ISO/IEC 23894

Upgrade when it needs to be

The free questionnaire returns preliminary signals. The Full Assessment turns real system material into a governed decision record - extraction, component separation, evidence, national overlays, and a review-ready dossier.

Start free risk preview
Risk Estimation and Probability Assessment (RM-003) | AZComply Controls