SaS

STPA

STPA-sec

1)-Scope and context asset identification

1)-Identify accidents and hazard

1)-Determining unacceptable losses

2)-Determination of dependability objectives

2)-Construct functional control structure

2)-Creating a model of the high level control

structure-HLCS

3)-Risk analysis and assessment

3)-Identify unsafe control actions

3)-Identifying unsafe/unsecure control actions

4)-Risk treatment

4)-Identify causal factors and control flaws

4)-Developing security requirements and constraints

5)-Dependability requirements definition

5)-Identifying casual scenarios

6)-Constraint selection and implementation