Document control
e.g. 01/06/2026
Marking applied to every printed page and export
Scope of assessment
SEC-01 Appendix A — determines the applicable directives
Threat environment ratings avg —
Threat category ratings
Design basis
Add asset
Asset register 0
| Ref | Category | Asset | Zone | Exposure | C | Severity class | Depends on |
|---|
Site survey evidence 0
Adversary profiles
| Adversary type | Source | Intent (I) | Capability (C) | Motivation (M) | DBT tier | Confidence | Threat ranking |
|---|
Personnel security register 0
Criticality C—
Vulnerability V—
Attractive A—
Historical H—
Severity S—
Likelihood L—(A + H + V) ÷ 3
Untreated risk—S × L
Residual risk—
Scenario definition
Risk treatment 0 selected
Adversary path timeline —
Summary
Register 0
| # | Security event type | Cat | Asset | C | V | A | H | S | L | R | Untreated | RR | Residual | Treatment |
|---|
Security risk matrix — untreated
Security risk matrix — residual
Protection objectives coverage
Residual risk statement
HCIS classification compliance —
Maritime and aviation regime compliance
Phased residual risk
Implementation roadmap 0
Compliance matrix — submission format 0
Treatment factor coverage
Standards and regulatory basis 0
Risk bands and threat domains
Highest-rated risks 0
Risk maps — untreated and residual
Coverage and gaps
Design basis, confidence and phasing
Roadmap, evidence and integrity
Assessment journal 0
HARISAGENT.AI