Art. 21(2)(f)
Mapped SPARTA techniques (2)
Techniques referencing this article
Validating that anomaly detectors actually detect — including against adversarial-input campaigns — is exactly how the entity assesses the effectiveness of its cybersecurity risk-management measures under Art. 21(2)(f).
Coverage thresholds, mutation testing, and the gating logic between testing and release are how the entity assesses the effectiveness of its cybersecurity risk-management measures under Art. 21(2)(f).