**Article 9**

**Establishment of the Risk Management System**  
Sentinel Technologies has established and documented a risk management system specifically for Priority Response Analytics, acknowledging its classification as a high-risk AI system under the intended use of prioritizing emergency calls. The system follows a lifecycle-oriented, iterative process, encompassing development, deployment, operation, and maintenance phases. The risk management framework includes scheduled assessments aligned with system updates or retraining cycles of the Gradient Boosted Decision Tree (GBDT) and Transformer encoder components, ensuring continuous awareness and documentation of potential risks related to emergency prioritization.

**Identification and Analysis of Known and Foreseeable Risks**  
During the initial and ongoing risk assessments, Priority Response Analytics was analyzed to identify hazards related to inaccurate prioritization of emergency incidents. The combination of structured incident data processed via the GBDT and unstructured textual dispatch notes processed through the Transformer encoder introduces interpretative uncertainties. Known risks include false negatives or under-prioritization of critical calls, which may delay time-sensitive interventions and adversely affect health or fundamental rights. Foreseeable misuse scenarios considered include reliance on system outputs without adequate dispatcher override, misinterpretation of ambiguous language in notes, and scenarios where anomalous input distributions fall outside training domain boundaries.

**Estimation and Evaluation of Risks Under Intended Use and Foreseeable Misuse**  
Quantitative evaluation of model performance employed a comprehensive test dataset consisting of 1.2 million labeled emergency call records aggregated from multiple European dispatch centers over a five-year period. The GBDT and Transformer ensemble demonstrated an overall prioritization accuracy of 87% with a sensitivity for high-priority incidents at 82%, a level consistent with current industry-standard benchmarks for risk assessment AI in public safety applications. However, residual false negative rates for life-threatening emergencies—estimated at approximately 3.5%—remain non-negligible. Scenario-based estimations under reasonably foreseeable misuse conditions indicate that these errors could produce delayed dispatch responses with potentially severe consequences, particularly when dispatcher over-reliance on the AI output is combined with limited corroborating contextual information.

**Evaluation of Post-Market Data and Additional Risks**  
Post-market monitoring data, collected during a six-month pilot deployment involving three emergency response centers, revealed a pattern of prioritization errors correlating with less commonly encountered incident types and complex linguistic descriptions in dispatch notes. Despite no system redesign during this period, these findings informed incremental updates to dispatcher guidance documents but did not precipitate structural alterations in model architecture or training data augmentation aimed at mitigating these risks. Thus, risks deriving from distributional shifts and edge cases remain present and unmitigated at the model component level.

**Risk Management Measures and their Design Focus**  
Risk mitigation for Priority Response Analytics has been explicitly implemented through two principal measures: comprehensive dispatcher training and clear disclaimers embedded within the user interface. The training program, delivered periodically to deployment centers, emphasizes the AI system’s function as decision support, explicitly noting its probabilistic nature and known limitations in prioritization reliability. Disclaimers delivered via system documentation and on-screen prompts reinforce the necessity of human judgment and override capabilities. No technical redesigns, such as altering model architectures (GBDT or Transformer encoder) to reduce residual risk, have been incorporated. The decision to focus risk management on operational controls rather than mitigating inherent model limitations is documented as a trade-off reflecting current technical constraints, resource considerations, and deployment context assumptions.

**Consideration of Risk Elimination or Reduction Through Design**  
Although alternative technical approaches—such as incorporating uncertainty quantification, conservative decision thresholds, or explicit error detection modules—were explored during early development phases, no modifications were ultimately integrated into the production model to reduce residual life-threatening dispatch errors. Model retraining protocols followed standard supervised procedures on static datasets without system-intrinsic risk reduction mechanisms. This approach aligns with an operational risk management philosophy placing primary reliance on dispatcher intervention, rather than systemic elimination or reduction at the AI model design level.

**Residual Risk and Acceptability Assessment**  
Residual risk associated with delayed or incorrect prioritization remains quantitatively characterized but not eliminated. The provider has neither demonstrated technical feasibility nor taken measures to lower these residual risks below existing thresholds. Risk assessments acknowledge that the residual risk of life-threatening dispatch errors is substantively high and persists despite human-in-the-loop controls. Consequently, residual risk acceptability judgments have been deferred, reflecting current design limitations and reliance on procedural mitigations rather than comprehensive system-intrinsic risk management.

**Testing Strategy and Compliance Verification**  
Priority Response Analytics underwent extensive pre-market validation, including stratified hold-out testing and stress tests simulating complex incident descriptions and rare event categories. Testing metrics employed include precision, recall, and F1-scores for priority categorization with defined thresholds derived from clinical and operational impact analyses. No real-world condition testing beyond the pilot phase was conducted. The lack of technical intervention to mitigate risk informed the testing focus on verifying dispatcher training effectiveness and system disclaimer clarity rather than on model robustness enhancements.

**Considerations for Vulnerable Groups**  
Given the system’s impact on life-critical decisions, special attention was directed toward the potential adverse effects on vulnerable populations, including minors and medically compromised individuals. Training materials and disclaimers explicitly highlight the system’s limitations in reliably detecting emergency severity in cases involving language and context nuances often associated with these groups. However, no technical model adaptations targeting these vulnerabilities were implemented, reflecting a risk mitigation strategy centralized on dispatcher awareness rather than systemic redesign.

**Integration with Applicable Internal Risk Management Procedures**  
Where integration with broader internal risk management policies at Sentinel Technologies exists, priority is given to discrete documentation and control of Priority Response Analytics as a standalone high-risk AI system. The risk management system aligns with general corporate quality assurance and software lifecycle management but specifies targeted processes for dispatch prioritization AI, including separate data governance, audit trails of prioritization decisions, and dispatcher feedback loops. These procedures, however, do not extend to architectural risk reduction within AI components.