Part VIII: Security under changing conditions

Controls and evidence can lose validity when the sector, operating conditions, or system capabilities change.

A control tested for one service may be inadequate when the data becomes more sensitive or an agent gains new permissions. Chapter 23 examines changes in sector duties, operating scale, and possible harm. Chapter 24 examines technical changes such as physical access, shared training, persistent memory, and delegation. The final case combines both kinds of change and asks which earlier evidence still supports a decision to continue, restrict, redesign, or stop the system.

A titled technical map begins with an earlier system decision and splits into Chapter 23 sector adaptation and Chapter 24 changed assumptions. Independent arrows merge before Chapter 25 system decision and four review outcomes. Lower strips identify system boundaries, change-record units, and risks including outdated evidence.
Figure 1: An earlier system decision branches into two independent reviews. Chapter 23 checks how sector context changes assets, permissions, duties, scale, consequences, oversight, and recovery evidence. Chapter 24 checks changed technical assumptions such as physical access, participant trust, persistence, delegation, and model access. Both branches join in Chapter 25 for a whole-system decision to continue, limit, redesign, or stop.

Chapters in this part