Section 5.27 14 CFR Ch. I (1-1-19 Edition) (5) Regularly report to the accountable executive on the performance of the SMS and on any need for improvement. (4) The personnel, equipment, and facilities necessary for operation of the system. (c) The certificate holder must develop and maintain processes to identify hazards within the context of the system analysis. Section 5.27 Coordination of emergency response planning. Where emergency response procedures are necessary, the certificate holder must develop and the accountable executive must approve as part of the safety policy, an emergency response plan that addresses at least the following: (a) Delegation of emergency authority throughout the certificate holder-s organization; (b) Assignment of employee responsibilities during the emergency; and (c) Coordination of the certificate holder-s emergency response plans with the emergency response plans of other organizations it must interface with during the provision of its services. Section 5.55 Safety risk assessment and control. (a) The certificate holder must develop and maintain processes to analyze safety risk associated with the hazards identified in Section 5.53(c). (b) The certificate holder must define a process for conducting risk assessment that allows for the determination of acceptable safety risk. (c) The certificate holder must develop and maintain processes to develop safety risk controls that are necessary as a result of the safety risk assessment process under paragraph (b) of this section. (d) The certificate holder must evaluate whether the risk will be acceptable with the proposed safety risk control applied, before the safety risk control is implemented. Subpart C - Safety Risk Management spaschal on DSK3GDR082PROD with CFR Section 5.51 Applicability. A certificate holder must apply safety risk management to the following: (a) Implementation of new systems. (b) Revision of existing systems. (c) Development of operational procedures. (d) Identification of hazards or ineffective risk controls through the safety assurance processes in subpart D of this part. Subpart D - Safety Assurance Section 5.71 Safety performance monitoring and measurement. (a) The certificate holder must develop and maintain processes and systems to acquire data with respect to its operations, products, and services to monitor the safety performance of the organization. These processes and systems must include, at a minimum, the following: (1) Monitoring of operational processes. (2) Monitoring of the operational environment to detect changes. (3) Auditing of operational processes and systems. (4) Evaluations of the SMS and operational processes and systems. (5) Investigations of incidents and accidents. (6) Investigations of reports regarding potential non-compliance with regulatory standards or other safety risk controls established by the certificate holder through the safety risk management process established in subpart C of this part. Section 5.53 System analysis and hazard identification. (a) When applying safety risk management, the certificate holder must analyze the systems identified in Section 5.51. Those system analyses must be used to identify hazards under paragraph (c) of this section, and in developing and implementing risk controls related to the system under Section 5.55(c). (b) In conducting the system analysis, the following information must be considered: (1) Function and purpose of the system. (2) The system-s operating environment. (3) An outline of the system-s processes and procedures. 24 VerDate Sep<11>2014 12:50 Apr 30, 2019 Jkt 247046 PO 00000 Frm 00034 Fmt 8010 Sfmt 8010 Y:\SGML\247046.XXX 247046