Professional Documents
Culture Documents
Michal Sojka
SESAMO
Security and Safety Modelling
1 / 72
Outline
1 What is safety?
2 System safety
3 Standards
4 Example
5 Achieving safety
Generic safety process
Safety case
Safety integrity
Miscellaneous
2 / 72
What is safety?
Outline
1 What is safety?
2 System safety
3 Standards
4 Example
5 Achieving safety
Generic safety process
Safety case
Safety integrity
Miscellaneous
3 / 72
What is safety?
What is safety?
4 / 72
What is safety?
What is safety?
Classical definition
Freedom from those conditions that can cause death, injury, occupational
illness, damage to or loss of equipment or property, or damage to the
environment.
5 / 72
What is safety?
What is safety?
Classical definition
Freedom from those conditions that can cause death, injury, occupational
illness, damage to or loss of equipment or property, or damage to the
environment.
Alternative definition
Safety = Managing complexity without going crazy and ensuring
completeness and consistency.
6 / 72
What is safety?
Environment Environment
Source: TU Wien
7 / 72
What is safety?
Environment Environment
Source: TU Wien
9 / 72
What is safety?
10 / 72
System safety
Outline
1 What is safety?
2 System safety
3 Standards
4 Example
5 Achieving safety
Generic safety process
Safety case
Safety integrity
Miscellaneous
11 / 72
System safety
System safety
12 / 72
System safety
System safety
Why management? Because experience has shown that many failures are
not due to systems being built the wrong way but actually the wrong systems
having been built. With other words management is there to make sure that
engineering actually is doing the right thing (in all aspects).
13 / 72
System safety
System safety
14 / 72
System safety
System safety
15 / 72
System safety
System safety
16 / 72
System safety
System safety
17 / 72
System safety
System safety
18 / 72
System safety
What is a system?
19 / 72
System safety
What is a system?
20 / 72
System safety
What is a system?
21 / 72
System safety
Is terminology important?
22 / 72
System safety
Is terminology important?
23 / 72
System safety
Functional safety
24 / 72
System safety
Functional safety
25 / 72
Standards
Outline
1 What is safety?
2 System safety
3 Standards
4 Example
5 Achieving safety
Generic safety process
Safety case
Safety integrity
Miscellaneous
26 / 72
Standards
27 / 72
Standards
Liability
MOD Def Stan 00-74 Part 1 Preface (or any other Def Stan)
Compliance with this Defence Standard shall not in itself relieve any
person from any legal obligations imposed upon them.
This standard has been devised solely for the use of the Ministry of
Defence (MOD) and its contractors in the execution of contracts for
the MOD. To the extent permitted by law, the MOD hereby excludes
all liability whatsoever and howsoever arising (including, but without
limitation, liability resulting from negligence) for any loss or damage
however caused when the standard is used for any other purpose.
28 / 72
Standards
30 / 72
Example
Outline
1 What is safety?
2 System safety
3 Standards
4 Example
5 Achieving safety
Generic safety process
Safety case
Safety integrity
Miscellaneous
31 / 72
Example
32 / 72
Example
What happened?
33 / 72
Example
34 / 72
Example
35 / 72
Example
36 / 72
Example
37 / 72
Example
38 / 72
Example
39 / 72
Example
40 / 72
Example
41 / 72
Example
42 / 72
Example
Outline
1 What is safety?
2 System safety
3 Standards
4 Example
5 Achieving safety
Generic safety process
Safety case
Safety integrity
Miscellaneous
44 / 72
Achieving safety
45 / 72
Achieving safety
Risk-based approach
46 / 72
Achieving safety
Using standards
47 / 72
Achieving safety Generic safety process
48 / 72
Achieving safety Generic safety process
49 / 72
Achieving safety Generic safety process
50 / 72
Achieving safety Safety case
Lowest-level standard
51 / 72
Achieving safety Safety case
Safety case
Definition
A safety case is an evidence-based explanation of why it is believed that a
system is safe enough to be used in its intended application.
Specific for each application. This can be a Word document or a
structured safety case.
Structured safety case
Overall approach.
Claim-Argument-Evidence (CAE) structure.
Top-level claim supported by arguments and evidences that the
arguments are correct.
Split into sub-claims.
Safety standards give guidance how to construct arguments.
52 / 72
Achieving safety Safety case
CAE example
53 / 72
Achieving safety Safety case
Safety integrity
Safety-related systems are used to reduce the
System
identified risks to tolerable level. Therefore,
Safety-related
safety of our system depends on proper system
55 / 72
Achieving safety Safety integrity
Safety integrity
Safety-related systems are used to reduce the
System
identified risks to tolerable level. Therefore,
Safety-related
safety of our system depends on proper system
Two components:
Random failure integrity
Systematic failure integrity
Question: How can I determine, that my safety-related system has
sufficient safety integrity?
56 / 72
Achieving safety Safety integrity
Standards (i.e. IEC 61508) gives the answer by defining safety integrity
level and requirements for each level.
Definition (Safety Integrity Level)
Required level of protection against systematic failure in specification of the
functions allocated to the safety-related systems.
57 / 72
Achieving safety Safety integrity
Standards (i.e. IEC 61508) gives the answer by defining safety integrity
level and requirements for each level.
Definition (Safety Integrity Level)
Required level of protection against systematic failure in specification of the
functions allocated to the safety-related systems.
58 / 72
Achieving safety Safety integrity
59 / 72
Achieving safety Safety integrity
60 / 72
Achieving safety Safety integrity
61 / 72
Achieving safety Safety integrity
62 / 72
Achieving safety Safety integrity
63 / 72
Achieving safety Safety integrity
64 / 72
Achieving safety Safety integrity
65 / 72
Achieving safety Safety integrity
66 / 72
Achieving safety Safety integrity
67 / 72
Achieving safety Safety integrity
68 / 72
Achieving safety Safety integrity
Risk classes
MIL-STD-882E, Table III
69 / 72
Achieving safety Miscellaneous
Traceability
70 / 72
Achieving safety Miscellaneous
Safety culture
71 / 72
Achieving safety Miscellaneous
References
72 / 72