Why Statistics?
SOTIF residual risk evaluation requires claiming that the probability of hazardous behaviour is below an acceptable threshold. This claim cannot be made from a finite number of test scenarios alone -- it requires statistical inference. ISO 21448 Cl. 9 specifies that residual risk evaluation must be supported by evidence from both targeted testing (specific triggering condition scenarios) and statistical testing (sufficient exposure to support confidence claims).
The core statistical question: "How many test scenarios without failure are needed to claim that the failure probability is below P with confidence C?"