ABSTRACT

The paper shows and exemplifies the practicability of established risk analysis (RA) methodology in the area of information and communication technology (outlined as IT in the following). Established RA is understood as defined in (ISO 2002) following approaches as common, e.g., in nuclear power generation and process industry. Associated concepts and techniques (FMEA, FTA, etc.) are presumably known to the reader and are not explicated in this paper (otherwise see, e.g., (Lees 1996), (Kumamoto and Henley 1996)). Reliability analysis is considered as an integral part of the RA methodology for the sake of simplicity.