Safety Evaluation with AADLv2

Size: px
Start display at page:

Download "Safety Evaluation with AADLv2"

Transcription

1 Safety Evaluation with AADLv2 Software Engineering Institute Carnegie Mellon University Pittsburgh, PA Julien Delange 09/24/2013

2 Agenda Overview of AADL Error-Model Annex Approach for Safety Evaluation Support of Safety Evaluation with AADL Case-Study On-Going Work Discussion 2

3 Agenda Overview of AADL Error-Model Annex Approach for Safety Evaluation Support of Safety Evaluation with AADL Case-Study On-Going Work Discussion 3

4 Error-Model Annex within the AADL ecosystem Reliability Performance Evaluation Code Generation System Validation System Configuration Security Safety ARINC653 Requirements description 4

5 Overview of Error-Model Annex Extension of AADL for fault description: error events, propagations, etc. Integration with current models by extending existing components Draft document to be proposed as a standard annex Support for Safety Evaluation and Analysis 5

6 Error Types and propagations Error types: error classification ValueError Extensions and renaming OutOfRange Inconsistent Error propagations across components Associate errors with system connections Define error sources, sinks and containment Error Source Sink for ValueError & Error Sink of ValueError source for NoData for NoData Sensor ValueError Processing NoData Actuator 6

7 Error behavior States machines Error-related transitions Propagation rules Use of error types Failure (BadData) Normal Failed Recover Failed (NoValue) Composite behavior Define system states according to its parts ex: I am failing if one of my component is failing Subsystem 1 (Normal) Subsystem 2 (Normal) Subsystem 1 (Normal) Subsystem 2 (Failing) 7

8 Specific Error-Model Properties Severity, likelihood, error description Support for generating validation documentation Tailoring for safety standards (ARP4761, MIL-STD-882) 8

9 Agenda Overview of AADL Error-Model Annex Approach for Safety Evaluation Analysis of System Safety with AADL Case-Study On-Going Work Discussion 9

10 Safety Analyses Aircraft-Level FHA Define aircraft failure conditions Allocate failure to system functions Preliminary System Safety Assessment System Functional Hazard Analysis (FHA) System Fault-Tree Analysis (FTA) System Safety Assessment Failure Mode and Effect Analysis Refined FTA with Quantitative Failures Rates System Development Cycle 10

11 Functional Hazard Analysis ARP4761, section 3 Identify and classify functions failure conditions Aircraft or System Level Aircraft, High-Level View Refinement at System Level Input for safety requirements specification Description and specification in FTA, DD or MA Reference of Aircraft Low-Level to System FHA Spreadsheet with reference to functions failures description 11

12 Fault-Tree Analysis ARP4761, section 4.1 Relationship of failure effects and failure modes Initial Failure Mode Reference to system hierarchy Support with Open-Source and Commercial Tools Failure Mode Fault Occurrence 12

13 Markov Chain ARP4761, section 4.1 Evaluation of system behavior over time Probability of being in particular states Analysis and evaluation of fault states Support with Commercial and Open-Source Tools 13

14 Failure Mode and Effect Analysis ARP4761, section 4.2 Impact of Fault at a Higher Levels Start from Function Level to System/Aircraft Level Spreadsheet/textual document 14

15 Agenda Overview of AADL Error-Model Annex Approach for Safety Evaluation Support of Safety Evaluation with AADL Case-Study On-Going Work Discussion 15

16 AADL & Safety Evaluation Tool Overview FHA Spreadsheet FTA CAFTA OpenFTA Markov Chain PRISM FMEA Spreadsheet Use error propagations Use composite behavior Error flows Use error flow Error behavior Error behavior Propagations 16

17 Safety Analysis & AADL Preliminary System Safety Assessment (PSSA) support High-level component, interfaces from the OEM Automatic generation of validation materials (FHA, FTA) System Safety Assessment (SSA) support Use refined models from suppliers Enhancement of error specifications Support of quantitative safety analysis (FTA, FMEA, MA) System Development Cycle 17

18 Evolution of Safety Analysis process with AADL Preliminary System Safety Assessment Component types (system interfaces) Component implementation Validation Materials (FHA, FTA) Check PSSA and SSA consistencies Validation with quantitative fault rates (FMEA, FTA, DD, MA) Refinement & development evolution System Safety Assessment 18

19 Functional Hazard Analysis Support Use of component error behavior Error propagations rules Internal error events FHA Specify initial failure mode Define error description and related information Create spreadsheet containing FHA elements To be reused by commercial or open-source tools 19

20 Fault-Tree Analysis Support Use of composite error behavior FTA nodes FTA Use of component error behavior Incoming error events Walk through the components hierarchy Generate the complete fault-tree Focus on specific AADL subcomponents Export to several tools Commercial: CAFTA Open-Source: OpenFTA 20

21 Markov-Chain Support Use of component error behavior Error propagations rules Error transitions Markov Chain Map states and error types into specific values Tool-specific approach Ability to evaluate system state over time What is the probability my system is failing within 30 days? Export to open-source tools, PRISM 21

22 Failure Mode and Effects Support Use of component error behavior Error propagations rules (source, sink, etc.) Internal error events FMEA Traverse all error paths Record impact over the components hierarchy Use error description and related information Create spreadsheet containing FHA elements To be reused by commercial or open-source tools 22

23 Reliability Block Diagram aka ARP4761 Dependence Diagram (DD) Use of composite error behavior Error propagations rules (source, sink, etc.) Internal error events RDB Compute reliability of the Dependence Diagram Use of recover and failure events Overall probability of system failure Support in OSATE (built-in) 23

24 Agenda Overview of AADL Error-Model Annex Approach for Safety Evaluation Support of Safety Evaluation with AADL Case-Study On-Going Work Discussion 24

25 Wheel Brake System Development of a public model Use of Error-Model and ARINC annexes Relevance for the avionics community Reuse for SAVI Provide support for the AFE61 demo Apply the technology/toolset on a known example Generation of FHA, FTA, MA & FMEA 25

26 AADL model root system NoService NoPower NoPressure InvalidReport Software and/or RuntimeError 26

27 AADL model, BSCU variations 27

28 FHA of the root system 28

29 FTA of the root system Focus on a specific AADL subcomponent 29

30 FTA of the BSCU subcomponent 30

31 FMEA of the root system Current State Out propagation Propagation path Out propagation or error containment Component 1 Component 2 31

32 Agenda Overview of AADL Error-Model Annex Approach for Safety Evaluation Support of Safety Evaluation with AADL Case-Study On-Going Work Discussion 32

33 Consistency Checks Consistency at integration time Consistency between models from different suppliers Strengthen the Virtual Integration promoted by SAVI Consistency of the internal model ex: Can I propagate this error according to my actual state? Consistency across error models specifications Component Error Behavior with Composite Error Behavior Correctness of a state according to subcomponents Error information with Behavior information 33

34 Providing Modeling Guidance Improve tooling aspects Help engineers to use the toolset Enhance tool support & functions Release documentation Technical report, webinar or other media Modeling best practices & AADL patterns Guidance for using tools To be published in 2013 Customer training, consulting services for specific needs 34

35 Agenda Overview of AADL Error-Model Annex Approach for Safety Evaluation Support of Safety Evaluation with AADL Case-Study Case-Study Discussion 35

36 Contact Presenter / Point of Contact Dr. Julien Delange Telephone: jdelange@sei.cmu.edu U.S. Mail Software Engineering Institute Customer Relations 4500 Fifth Avenue Pittsburgh, PA USA Web Customer Relations info@sei.cmu.edu Telephone: SEI Phone: SEI Fax:

37 Copyright 2013 Carnegie Mellon University This material is based upon work funded and supported by the Department of Defense under Contract No. FA C-0003 with Carnegie Mellon University for the operation of the Software Engineering Institute, a federally funded research and development center. NO WARRANTY. THIS CARNEGIE MELLON UNIVERSITY AND SOFTWARE ENGINEERING INSTITUTE MATERIAL IS FURNISHED ON AN AS-IS BASIS. CARNEGIE MELLON UNIVERSITY MAKES NO WARRANTIES OF ANY KIND, EITHER EXPRESSED OR IMPLIED, AS TO ANY MATTER INCLUDING, BUT NOT LIMITED TO, WARRANTY OF FITNESS FOR PURPOSE OR MERCHANTABILITY, EXCLUSIVITY, OR RESULTS OBTAINED FROM USE OF THE MATERIAL. CARNEGIE MELLON UNIVERSITY DOES NOT MAKE ANY WARRANTY OF ANY KIND WITH RESPECT TO FREEDOM FROM PATENT, TRADEMARK, OR COPYRIGHT INFRINGEMENT. This material has been approved for public release and unlimited distribution. This material may be reproduced in its entirety, without modification, and freely distributed in written or electronic form without requesting formal permission. Permission is required for any other use. Requests for permission should be directed to the Software Engineering Institute at permission@sei.cmu.edu. DM

Supporting Safety Evaluation Process using AADL

Supporting Safety Evaluation Process using AADL Supporting Safety Evaluation Process using AADL Software Engineering Institute Carnegie Mellon University Pittsburgh, PA 15213 Julien Delange and Peter Feiler 12/09/2013 Safety Analysis issues (aka the

More information

OSATE overview & community updates

OSATE overview & community updates OSATE overview & community updates Software Engineering Institute Carnegie Mellon University Pittsburgh, PA 15213 Julien Delange 04/22/2013 Overview of OSATE2 Eclipse-based AADL editor Support for AADLv2.1,

More information

Virtual Integration for Model Based Safety Assessment of Complex Systems

Virtual Integration for Model Based Safety Assessment of Complex Systems Aerospace Vehicle Systems Institute Virtual Integration for Model Based Safety Assessment of Complex Systems System Architecture t Virtual Integration Program David Redman, AVSI Director Presentation to

More information

Effective Reduction of Avoidable Complexity in Embedded Systems

Effective Reduction of Avoidable Complexity in Embedded Systems Effective Reduction of Avoidable Complexity in Embedded Systems Dr. Julien Delange Software Engineering Institute Carnegie Mellon University Pittsburgh, PA 15213 Copyright 2015 Carnegie Mellon University

More information

Designing the Infrastructure for an Enterprise IT System

Designing the Infrastructure for an Enterprise IT System Designing the Infrastructure for an Enterprise IT System William E. Novak Patrick R.H. Place Software Solutions Conference 2015 November 16 18, 2015 Copyright 2015 Carnegie Mellon University This material

More information

A Case Study: Experiences with Agile and Lean Principles

A Case Study: Experiences with Agile and Lean Principles A Case Study: Experiences with Agile and Lean Principles Jeff Davenport Software Solutions Conference 2015 November 16 18, 2015 Copyright 2015 Carnegie Mellon University This material is based upon work

More information

Reducing Architecture Complexity with AADL

Reducing Architecture Complexity with AADL Reducing Architecture Complexity with AADL Julien Delange Jerome Hugues Software Engineering Institute Carnegie Mellon University Pittsburgh, PA 15213 Copyright

More information

Incremental Lifecycle Assurance of Critical Systems

Incremental Lifecycle Assurance of Critical Systems Incremental Lifecycle Assurance of Critical Systems Peter Feiler Incremental Lifecycle Assurance of Critical of Critical Systems Systems Oct 2016 2016Carnegie Mellon University 1 Copyright 2016 Carnegie

More information

Architecture-led Incremental System Assurance (ALISA) Demonstration

Architecture-led Incremental System Assurance (ALISA) Demonstration Architecture-led Incremental System Assurance (ALISA) Demonstration Peter Feiler Software Engineering Institute Carnegie Mellon University Pittsburgh, PA 15213 [DISTRIBUTION STATEMENT A] This material

More information

Introduction to Software Product Lines Patrick Donohoe Software Engineering Institute Carnegie Mellon University Pittsburgh, PA 15213

Introduction to Software Product Lines Patrick Donohoe Software Engineering Institute Carnegie Mellon University Pittsburgh, PA 15213 Introduction to Software Product Lines Patrick Donohoe Software Engineering Institute Carnegie Mellon University Pittsburgh, PA 15213 2014 by Carnegie Mellon University Copyright 2014 Carnegie Mellon University

More information

Complexity and Safety (FAA) SEI Board of Visitors. Sarah Sheard, Team Lead Team: Mike Konrad, Chuck Weinstock, Bill Nichols, Greg Such

Complexity and Safety (FAA) SEI Board of Visitors. Sarah Sheard, Team Lead Team: Mike Konrad, Chuck Weinstock, Bill Nichols, Greg Such Complexity and Safety (FAA) SEI Board of Visitors October 27, 2016 Sarah Sheard, Team Lead Team: Mike Konrad, Chuck Weinstock, Bill Nichols, Greg Such Software Engineering Institute Carnegie Mellon University

More information

What Metrics Should a CSIRT Collect to Measure. Success?

What Metrics Should a CSIRT Collect to Measure. Success? What Metrics Should a CSIRT Collect to Measure (Or What Questions Should We Be Asking and How Do We Get the Answers?) Robin Ruefle, Audrey Dorofee June 15, 2017 Software Engineering Institute Carnegie

More information

I ve Evaluated My Architecture. Now What?

I ve Evaluated My Architecture. Now What? Experience with the Architecture Improvement Workshop Software Engineering Institute Carnegie Mellon University Pittsburgh, PA 15213 Larry Jones, SEI Rick Kazman, SEI SATURN Conference, May 7, 2009 I ve

More information

From Virtual System Integration to Incremental Lifecycle Assurance

From Virtual System Integration to Incremental Lifecycle Assurance From Virtual System Integration to Incremental Lifecycle Assurance Peter H. Feiler Software Solutions Conference 2015 November 16 18, 2015 Copyright 2015 Carnegie Mellon University This material is based

More information

Complexity and Software: How to Meet the Challenge. NDIA CMMI Technology Conference

Complexity and Software: How to Meet the Challenge. NDIA CMMI Technology Conference Complexity and Software: How to Meet the Challenge NDIA CMMI Technology Conference Software Engineering Institute Carnegie Mellon University Pittsburgh, PA 15213 Paul Nielsen November 15, 2011 2011 Carnegie

More information

Acquisition Overview: The Challenges

Acquisition Overview: The Challenges Acquisition Overview: The Challenges Rita Creel Robert J. Ellison June 2007 ABSTRACT: The challenges of acquiring software-intensive systems continue to grow along with the increasingly critical role software

More information

Integrated Environment for Development and Assurance

Integrated Environment for Development and Assurance Integrated Environment for Development and Assurance Software Engineering Institute Carnegie Mellon University Pittsburgh, PA 15213 Peter H. Feiler Feb 4, 2015 Copyright 2015 Carnegie Mellon University

More information

Implementing Product Development Flow: The Key to Managing Large Scale Agile Development

Implementing Product Development Flow: The Key to Managing Large Scale Agile Development Implementing Product Development Flow: The Key to Managing Large Scale Agile Development Will Hayes SEI Software Solutions Conference 2015 November 16 18, 2015 Copyright 2015 Carnegie Mellon University

More information

CARNEGIE MELLON UNIVERSITY

CARNEGIE MELLON UNIVERSITY CARNEGIE MELLON UNIVERSITY 1 Integrated Risk Management for the Enterprise Brett Tucker December 2018 Carnegie Mellon University Software Engineering Institute Carnegie Mellon University Pittsburgh, PA

More information

The Business Case for Systems Engineering: Comparison of Defense-Domain and Non- Defense Projects

The Business Case for Systems Engineering: Comparison of Defense-Domain and Non- Defense Projects The Business Case for Systems Engineering: Comparison of Defense-Domain and Non- Defense Projects Presenter: Joseph P. Elm The Software Engineering Institute (SEI) a DoD Research FFRDC Copyright 2014 Carnegie

More information

Agile In Government: A Research Agenda for Agile Software Development

Agile In Government: A Research Agenda for Agile Software Development Agile In Government: A Research Agenda for Agile Software Development Will Hayes Suzanne Miller Eileen Wrubel Software Engineering Institute Carnegie Mellon University Pittsburgh, PA 15213 March 201720

More information

Adapting Agile to the. Framework. Mary Ann Lapham, PMP, CSM Principal Engineer Software Engineering Institute

Adapting Agile to the. Framework. Mary Ann Lapham, PMP, CSM Principal Engineer Software Engineering Institute Adapting Agile to the Defense Acquisition Framework Mary Ann, PMP, CSM Principal Engineer Software Engineering Institute Carnegie Mellon University Agile?? 2013 Carnegie Mellon University Agenda The Problem

More information

The Business Case for Systems Engineering: Comparison of Defense-Domain and Non- Defense Projects

The Business Case for Systems Engineering: Comparison of Defense-Domain and Non- Defense Projects The Business Case for Systems Engineering: Comparison of Defense-Domain and Non- Defense Projects Presenter: Joseph P. Elm The Software Engineering Institute (SEI) a DoD Research FFRDC Report Documentation

More information

Architecture-Centric Procurement

Architecture-Centric Procurement Architecture-Centric Procurement SATURN Conference April 29 May 3, 2013 Minneapolis, MN John Bergey Larry Jones Software Engineering Institute Carnegie Mellon University Pittsburgh, PA 15213-2612 Presentation

More information

Defining a Maturity Scale for Governing Operational Resilience

Defining a Maturity Scale for Governing Operational Resilience Defining a Maturity Scale for Governing Operational Resilience Katie Stewart Julia Allen Audrey Dorofee Michelle Valdez Lisa Young March 2015 TECHNICAL NOTE CMU/SEI-2015-TN-004 CERT Division http://www.sei.cmu.edu

More information

Measuring What Matters Lisa Young

Measuring What Matters  Lisa Young SESSION ID: GRC-R05 Measuring What Matters www.cert.org/rsa/ Lisa Young Senior Engineer CERT-Software Engineering Institute-Carnegie Mellon University Notices Copyright 2016 Carnegie Mellon University

More information

Achieving Agility and Stability in Large-Scale Software Development. Ipek Ozkaya Senior Researcher, Research, Technology, and System Solutions Program

Achieving Agility and Stability in Large-Scale Software Development. Ipek Ozkaya Senior Researcher, Research, Technology, and System Solutions Program Achieving Agility and Stability in Large-Scale Software Development Ipek Ozkaya Senior Researcher, Research, Technology, and System Solutions Program Ipek Ozkaya is a senior member of the technical staff

More information

Integrated Environment for Development and Assurance

Integrated Environment for Development and Assurance Integrated Environment for Development and Assurance Software Engineering Institute Carnegie Mellon University Pittsburgh, PA 15213 Peter H. Feiler Jan 26, 2015 Report Documentation Page Form Approved

More information

Architecture Support for Testing

Architecture Support for Testing Architecture Support for Testing Software Engineering Institute Carnegie Mellon University Pittsburgh, PA 15213 Paul Clements 29 March 2011 2010 Carnegie Mellon University Goal: Explore how architecture

More information

Reliability Analysis Techniques: How They Relate To Aircraft Certification

Reliability Analysis Techniques: How They Relate To Aircraft Certification Reliability Analysis Techniques: How They Relate To Aircraft Certification Mark S. Saglimbene, Director Reliability, Maintainability and Safety Engr., The Omnicon Group, Inc., Key Words: R&M in Product

More information

Methodology for the Cost Benefit Analysis of a Large Scale Multi-phasic Software Enterprise Migration

Methodology for the Cost Benefit Analysis of a Large Scale Multi-phasic Software Enterprise Migration Methodology for the Cost Benefit Analysis of a Large Scale Multi-phasic Software Enterprise Migration Bryce Meyer Jerry Jackson Jim Wessel Software Engineering Institute Carnegie Mellon University Pittsburgh,

More information

Fall 2014 SEI Research Review. Team Attributes &Team Performance FY14-7 Expert Performance and Measurement

Fall 2014 SEI Research Review. Team Attributes &Team Performance FY14-7 Expert Performance and Measurement Fall 2014 SEI Research Review Team Attributes &Team Performance FY14-7 Expert Performance and Measurement Software Engineering Institute Carnegie Mellon University Pittsburgh, PA 15213 Jennifer Cowley

More information

Oh No, DevOps is Tough to Implement!

Oh No, DevOps is Tough to Implement! [DISTRIBUTION STATEMENT Please copy and paste the appropriate distribution statement into this space.] Oh No, DevOps is Tough to Implement! Hasan Yasar Copyright 2018 Carnegie Mellon University. All Rights

More information

TSP Performance and Capability Evaluation (PACE): Customer Guide

TSP Performance and Capability Evaluation (PACE): Customer Guide Carnegie Mellon University Research Showcase @ CMU Software Engineering Institute 9-2013 TSP Performance and Capability Evaluation (PACE): Customer Guide William R. Nichols Carnegie Mellon University,

More information

It Takes an Ecosystem Gary Chastek John D. McGregor

It Takes an Ecosystem Gary Chastek John D. McGregor Gary Chastek John D. McGregor Software Engineering Institute Carnegie Mellon University Pittsburgh, PA 15213 Gary Chastek April 25, 2012 Introduction During the second half of 2011, the Software Engineering

More information

Fall 2014 SEI Research Review Edge-Enabled Tactical Systems (EETS)

Fall 2014 SEI Research Review Edge-Enabled Tactical Systems (EETS) Fall 2014 SEI Research Review Edge-Enabled Tactical Systems (EETS) Software Engineering Institute Carnegie Mellon University Pittsburgh, PA 15213 Grace A. Lewis October 29, 2014 Report Documentation Page

More information

CMMI Version 1.3: Are you Ready for Release?

CMMI Version 1.3: Are you Ready for Release? CMMI Version 1.3: Are you Ready for Release? Software Engineering Institute Carnegie Mellon University Pittsburgh, PA 15213 Eileen Forrester October 2010 2 3 How to Participate Today Open and close your

More information

AADL and Model-based Engineering

AADL and Model-based Engineering AADL and Model-based Engineering Software Engineering Institute Carnegie Mellon University Pittsburgh, PA 15213 Peter H. Feiler Oct 20, 2014 Report Documentation Page Form Approved OMB No. 0704-0188 Public

More information

Creating a Computer Security Incident Response Team Action Plan

Creating a Computer Security Incident Response Team Action Plan Creating a Computer Security Incident Response Team CERT Training and Education Networked Systems Survivability Software Engineering Institute Carnegie Mellon University This material is approved for public

More information

OCTAVE -S Implementation Guide, Version 1.0. Volume 9: Strategy and Plan Worksheets. Christopher Alberts Audrey Dorofee James Stevens Carol Woody

OCTAVE -S Implementation Guide, Version 1.0. Volume 9: Strategy and Plan Worksheets. Christopher Alberts Audrey Dorofee James Stevens Carol Woody OCTAVE -S Implementation Guide, Version 1.0 Volume 9: Strategy and Plan Worksheets Christopher Alberts Audrey Dorofee James Stevens Carol Woody January 2005 HANDBOOK CMU/SEI-2003-HB-003 Pittsburgh, PA

More information

CERT Resilience Management Model, Version 1.2

CERT Resilience Management Model, Version 1.2 CERT Resilience Management Model, Organizational Process Focus (OPF) Richard A. Caralli Julia H. Allen David W. White Lisa R. Young Nader Mehravari Pamela D. Curtis February 2016 CERT Program Unlimited

More information

Agile Development and Software Architecture: Understanding Scale and Risk

Agile Development and Software Architecture: Understanding Scale and Risk Agile Development and Software Architecture: Understanding Scale and Risk Ipek Ozkaya Research, Technology and Systems Solutions (RTSS) Program Ozkaya is a senior member of the SEI technical staff within

More information

Prioritizing IT Controls for Effective, Measurable Security

Prioritizing IT Controls for Effective, Measurable Security Prioritizing IT Controls for Effective, Measurable Security Daniel Phelps Gene Kim Kurt Milne October 2006 ABSTRACT: This article summarizes results from the IT Controls Performance Study conducted by

More information

CERT Resilience Management Model, Version 1.2

CERT Resilience Management Model, Version 1.2 CERT Resilience Management Model, Asset Definition and Management (ADM) Richard A. Caralli Julia H. Allen David W. White Lisa R. Young Nader Mehravari Pamela D. Curtis February 2016 CERT Program Unlimited

More information

Garbage Collection: Using Flow to Understand Private Network Data Leakage

Garbage Collection: Using Flow to Understand Private Network Data Leakage Garbage Collection: Using Flow to Understand Private Network Data Leakage Sid Faber sfaber@cert.org 2010 Carnegie Mellon University 2010 Carnegie Mellon University NO WARRANTY THIS MATERIAL OF CARNEGIE

More information

Software in System Engineering: Affects on Spacecraft Flight Software

Software in System Engineering: Affects on Spacecraft Flight Software Software in System Engineering: Affects on Spacecraft Flight Software Software Engineering Institute Carnegie Mellon University Pittsburgh, PA 15213 Charles (Bud) Hammons, PhD Mary Ann Lapham Nov 4, 2009

More information

Inferring Patterns in Network Traffic: Time Scales and Variation

Inferring Patterns in Network Traffic: Time Scales and Variation Inferring Patterns in Network Traffic: Time Scales and Variation Soumyo Moitra smoitra@sei.cmu.edu INFORMS 2014 San Francisco 2014 Carnegie Mellon University Report Documentation Page Form Approved OMB

More information

Driving Out Technical Risk by Blending Architecture, Process, and Project Discipline

Driving Out Technical Risk by Blending Architecture, Process, and Project Discipline Driving Out Technical Risk by Blending Architecture, Process, and Project Discipline Software Engineering Institute Carnegie Mellon University Pittsburgh, PA 15213 James McHale, Robert Nord In collaboration

More information

Risk and Resilience: Considerations for Information Security Risk Assessment and Management

Risk and Resilience: Considerations for Information Security Risk Assessment and Management Risk and Resilience: Considerations for Information Security Risk Assessment and Management Julia Allen and Jim Cebula CERT Program Software Engineering Institute Session ID: GRC-202 Session Classification:

More information

Qualification Profile

Qualification Profile Dr. David Endler WORTH IT! Qualification Profile Achieving excellence in Systems Engineering requires professional expertise. Take advantage of my proven SE knowledge for the benefit of your organization.

More information

An Introduction to Influence Maps: Foundations, Construction, and Use

An Introduction to Influence Maps: Foundations, Construction, and Use An Introduction to Influence Maps: Foundations, Construction, and Use Jim Smith NDIA Systems Engineering Conference October 29, 2009 Overview This presentation will provide an overview of Influence Maps

More information

The Agile Program Office

The Agile Program Office [Distribution Statement A] Approved for public FOUO - UNCLASSIFIED February 2019 2018 by Carnegie Mellon University. Published by The Aerospace Corporation with permission. Software Engineering Institute

More information

Garbage Collection: Using Flow to Understand Private Network Data Leakage

Garbage Collection: Using Flow to Understand Private Network Data Leakage Garbage Collection: Using Flow to Understand Private Network Data Leakage Sid Faber sfaber@cert.org 2010 Carnegie Mellon University Report Documentation Page Form Approved OMB No. 0704-0188 Public reporting

More information

Designing Collaborative Systems of Systems in support of Multi-sided Markets

Designing Collaborative Systems of Systems in support of Multi-sided Markets Designing Collaborative Systems of Systems in support of Multi-sided Markets Philip Boxer, Software Engineering Institute Dr Nicholas J. Whittall, Thales UK Aerospace 12 th NDIA Annual Systems Engineering

More information

Aircraft Systems Mechanical, Electrical and Avionics.pdf Chap System Design and Development

Aircraft Systems Mechanical, Electrical and Avionics.pdf Chap System Design and Development UNIVERSITY OF SALENTO SCHOOL OF INDUSTRIAL ENGINEERING DEPT. OF ENGINEERING FOR INNOVATION Lecce-Brindisi (Italy) MASTER OF SCIENCE IN AEROSPACE ENGINEERING PROPULSION AND COMBUSTION Aircraft Systems Mechanical,

More information

Creating a Computer Security Incident Response Team Attendee Workbook

Creating a Computer Security Incident Response Team Attendee Workbook Creating a Computer Security Incident Response Team Attendee Workbook CERT Training and Education Networked Systems Survivability Software Engineering Institute Carnegie Mellon University This material

More information

Guidelines for Development of Civil Aircraft and Systems. Introduction to ARP4754A

Guidelines for Development of Civil Aircraft and Systems. Introduction to ARP4754A Guidelines for Development of Civil Aircraft and Systems Introduction to ARP4754A 23 July, 2014 Avionics Systems Evolution DO-178 ARP4754 ARP4761 DO-254 ARP4754A Early Aviation: mainly mechanical equipment

More information

Acquisition & Management Concerns for Agile Use in Government Series. Agile Culture in the DoD

Acquisition & Management Concerns for Agile Use in Government Series. Agile Culture in the DoD 2 Acquisition & Management Concerns for Agile Use in Government Series Agile Culture in the DoD Acquisition & Management Concerns for Agile Use in Government This booklet is part of a series based on material

More information

Finding a Vendor You Can Trust in the Global Marketplace

Finding a Vendor You Can Trust in the Global Marketplace Finding a Vendor You Can Trust in the Global Marketplace Art Conklin Dan Shoemaker August 2008 ABSTRACT: This article introduces the concept of standardized third-party certification of supplier process

More information

INTERNATIONAL STANDARD

INTERNATIONAL STANDARD INTERNATIONAL STANDARD IEC 60812 Second edition 2006-01 Analysis techniques for system reliability Procedure for failure mode and effects analysis (FMEA) This English-language version is derived from the

More information

Improving Acquisition in Government Requirements Management Leading Practices: CMMI-ACQ Visualization

Improving Acquisition in Government Requirements Management Leading Practices: CMMI-ACQ Visualization the way we see it Improving Acquisition in Government Requirements Management Leading Practices: CMMI-ACQ Visualization July 2008 Capgemini Government Solutions Table of Contents 1 The Challenge: Increase

More information

Security Measurement and Analysis

Security Measurement and Analysis Security Measurement and Analysis Christopher Alberts Julia Allen Robert Stoddard Software Engineering Institute Carnegie Mellon University Pittsburgh, PA 15213 This presentation is entitled. It describes

More information

Use and Organizational Impact of Process Performance Modeling in CMMI High Maturity Organizations

Use and Organizational Impact of Process Performance Modeling in CMMI High Maturity Organizations Use and Organizational Impact of Process Performance Modeling in CMMI High Maturity Organizations Dennis R. Goldenson James McCurley Robert W. Stoddard, II 13th Annual PSM Users Group Conference Orlando,

More information

The Smart Grid Maturity Model & The Smart Grid Interoperability Maturity Model. #GridInterop

The Smart Grid Maturity Model & The Smart Grid Interoperability Maturity Model. #GridInterop The Smart Grid Maturity Model & The Smart Grid Interoperability Maturity Model #GridInterop Maturity Models Dueling or Complementary? SGMM? SGIMM? SGIMM? SGMM? #GridInterop Phoenix, AZ, Dec 5-8, 2011 2

More information

Analyzing and Evaluating Enterprise Architectures John Klein Senior Technical Staff

Analyzing and Evaluating Enterprise Architectures John Klein Senior Technical Staff Analyzing and Evaluating Enterprise Architectures John Klein Senior Technical Staff John has over 20 years experience developing systems and software. He joined SEI in 2008. Before joining SEI, John was

More information

Common System and Software Testing Pitfalls

Common System and Software Testing Pitfalls Common System and Software Testing Pitfalls TSP-2014 Conference Pittsburgh, Pennsylvania Software Engineering Institute Carnegie Mellon University Pittsburgh, PA 15213 Donald G. Firesmith, Principle Engineer

More information

Driving Out Technical Risk by Blending Architecture, Process, and Project Discipline

Driving Out Technical Risk by Blending Architecture, Process, and Project Discipline Driving Out Technical Risk by Blending Architecture, Process, and Project Discipline Software Engineering Institute Carnegie Mellon University Pittsburgh, PA 15213 James McHale, Robert Nord In collaboration

More information

Safety-Critical Systems and the TSP

Safety-Critical Systems and the TSP Safety-Critical Systems and the TSP Watts S. Humphrey November 2005 Software Engineering Process Management Unlimited distribution subject to the copyright. Technical Note CMU/SEI-2005-TN-011 This work

More information

QUEST Boston As Requirements Go, So Goes the Project. Thursday, April 7 th, :00 PM 2:00 PM. PRESENTER: Charlene Gross

QUEST Boston As Requirements Go, So Goes the Project. Thursday, April 7 th, :00 PM 2:00 PM. PRESENTER: Charlene Gross Thursday, April 7 th, 2011 1:00 PM 2:00 PM QUEST Boston 2011 As Go, So Goes the Project PRESENTER: Charlene Gross COMPANY: Software Engineering Institute This was page intentionally left blank As Go, So

More information

System Architecture Virtual Integration: An Industrial Case Study

System Architecture Virtual Integration: An Industrial Case Study System Architecture Virtual Integration: An Industrial Case Study Peter H. Feiler Jorgen Hansson Dionisio de Niz Lutz Wrage November 2009 TECHNICAL REPORT CMU/SEI-2009-TR-017 ESC-TR-2009-017 Research,

More information

Acquisition & Management Concerns for Agile Use in Government Series. Agile Development and DoD Acquisitions

Acquisition & Management Concerns for Agile Use in Government Series. Agile Development and DoD Acquisitions 1 Acquisition & Management Concerns for Agile Use in Government Series Agile Development and DoD Acquisitions Acquisition & Management Concerns for Agile Use in Government This booklet is part of a series

More information

Common System and Software Testing Pitfalls

Common System and Software Testing Pitfalls Common System and Software Testing Pitfalls Donald Firesmith Software Solutions Conference 2015 November 16 18, 2015 Copyright 2015 Carnegie Mellon University This material is based upon work funded and

More information

Hazard Analysis. Techniques for. System Safety. Second Edition. Clifton A. Ericson, II Fredericksburg, Virginia. Wiley

Hazard Analysis. Techniques for. System Safety. Second Edition. Clifton A. Ericson, II Fredericksburg, Virginia. Wiley Hazard Analysis Techniques for System Safety Second Edition Clifton A. Ericson, II Fredericksburg, Virginia Wiley Contents PREFACE ACKNOWLEDGMENTS xxi xxiii 1. System Safety and Hazard Analysis 1 1.1 Introduction

More information

Relationships Between the Systems Engineering Capability Maturity Model SM and Other Products, Version 1.0

Relationships Between the Systems Engineering Capability Maturity Model SM and Other Products, Version 1.0 Technical Report SECMM-94-09 CMU/SEI-94-TR-26 ESC-TR-94-026 Carnegie Mellon University Software Engineering Institute Relationships Between the Systems Engineering Capability Maturity Model SM and Other

More information

Avoiding the Time Trap Timothy A. Chick

Avoiding the Time Trap Timothy A. Chick Timothy A. Chick oftware Engineering Institute Carnegie Mellon University Pittsburgh, PA 15213 Topics The time trap Time that does matter What makes task time so special 2 1 The Time Traps The Traditional

More information

Establishing Requirements for Exception Handling Herbert Hecht SoHaR Incorporated

Establishing Requirements for Exception Handling Herbert Hecht SoHaR Incorporated Establishing Requirements for Exception Handling Herbert Hecht SoHaR Incorporated 1. Introduction Software for embedded systems is expected to protect the system from a wide range of conditions that can

More information

The System Architecture Virtual Integration (SAVI) Project

The System Architecture Virtual Integration (SAVI) Project The System Architecture Virtual Integration (SAVI) Project An Integrated Modeling Environment for Improved Design of Complex Systems David Redman, Aerospace Vehicle System Institute (AVSI) Safe & Secure

More information

CMMI for Services (CMMI-SVC): Current State

CMMI for Services (CMMI-SVC): Current State : Current State Software Engineering Institute Carnegie Mellon University Pittsburgh, PA 15213 Eileen Forrester April 2011 What I will cover Explain what the CMMI-SVC is and why we built it Discuss service

More information

Architecture Centric Virtual Integration Process (ACVIP) Shadow Effort

Architecture Centric Virtual Integration Process (ACVIP) Shadow Effort Presented at: 18th Annual Systems Engineering Conference at NDIA Architecture Centric Virtual Integration Process (ACVIP) Shadow Effort DISTRIBUTION A. Approved for public release: distribution unlimited.

More information

Collaborative Autonomy with Group Autonomy for Mobile Systems (GAMS)

Collaborative Autonomy with Group Autonomy for Mobile Systems (GAMS) Collaborative Autonomy with Group Autonomy for Mobile Systems (GAMS) Presenter: (jredmondson@sei.cmu.edu) Date: November 18, 2014 Report Documentation Page Form Approved OMB No. 0704-0188 Public reporting

More information

Safety Analysis. Chapter 24. RAM Commander s Safety Module. Chapter 24 Safety Analysis 551

Safety Analysis. Chapter 24. RAM Commander s Safety Module. Chapter 24 Safety Analysis 551 Chapter 24 Safety Analysis 551 Chapter 24 Safety Analysis RAM Commander s Safety Module RAM Commander s Safety module is the latest addition to the unique scope of the RAM Commander features. It implements

More information

INTERNATIONAL STANDARD

INTERNATIONAL STANDARD INTERNATIONAL STANDARD IEC 60300-3-1 Second edition 2003-01 Dependability management Part 3-1: Application guide Analysis techniques for dependability Guide on methodology Gestion de la sûreté de fonctionnement

More information

RAM & LCC for railways Industry: What s really necessary to high performance achievement?

RAM & LCC for railways Industry: What s really necessary to high performance achievement? RAM & LCC for railways Industry: What s really necessary to high performance achievement? Despite the very well organized and clear information in standard EN 50126, additional RAMS methods must be implemented,

More information

Supply-Chain Risk Analysis

Supply-Chain Risk Analysis Supply-Chain Risk Analysis Bob Ellison, Chris Alberts, Rita Creel, Audrey Dorofee, and Carol Woody 2010 Carnegie Mellon University Report Documentation Page Form Approved OMB No. 0704-0188 Public reporting

More information

Designing Collaborative. support of Multi-sided Markets. Philip Boxer, Software Engineering Institute Dr Nicholas J. Whittall, 28 th October 2009

Designing Collaborative. support of Multi-sided Markets. Philip Boxer, Software Engineering Institute Dr Nicholas J. Whittall, 28 th October 2009 Designing Collaborative Systems of Systems in support of Multi-sided Markets Philip Boxer, Software Engineering Institute Dr Nicholas J. Whittall, Thales UK Aerospace 28 th October 2009 Working within

More information

Agile Security Review of Current Research and Pilot Usage

Agile Security Review of Current Research and Pilot Usage Agile Security Review of Current Research and Pilot Usage Carol Woody April 2013 OVERVIEW This paper was produced to focus attention on the opportunities and challenges for embedding information assurance

More information

COMPARISON OF PROCESS HAZARD ANALYSIS (PHA) METHODS

COMPARISON OF PROCESS HAZARD ANALYSIS (PHA) METHODS COMPARISON OF PROCESS HAZARD ANALYSIS (PHA) METHODS by Primatech Inc. The hazard and operability (HAZOP) study is the most commonly used process hazard analysis (PHA) method. However, there are many other

More information

One Identity Manager Business Roles Administration Guide

One Identity Manager Business Roles Administration Guide One Identity Manager 8.0.1 Business Roles Administration Guide Copyright 2018 One Identity LLC. ALL RIGHTS RESERVED. This guide contains proprietary information protected by copyright. The software described

More information

Using the Architecture Tradeoff Analysis Method SM to Evaluate a Reference Architecture: A Case Study

Using the Architecture Tradeoff Analysis Method SM to Evaluate a Reference Architecture: A Case Study Carnegie Mellon Software Engineering Institute Using the Architecture Tradeoff Analysis Method SM to Evaluate a Reference Architecture: A Case Study Brian P. Gallagher June 2000 Architecture Tradeoff Analysis

More information

Safety cannot rely on testing

Safety cannot rely on testing Standards 1 Computer-based systems (generically referred to as programmable electronic systems) are being used in all application sectors to perform non-safety functions and, increasingly, to perform safety

More information

CMMI for Acquisition (CMMI-ACQ) Primer, Version 1.2

CMMI for Acquisition (CMMI-ACQ) Primer, Version 1.2 CMMI for Acquisition (CMMI-ACQ) Primer, Version 1.2 Dr. Karen J. Richter, Institute for Defense Analyses May 2008 TECHNICAL REPORT CMU/SEI-2008-TR-010 ESC-TR-2008-010 Software Engineering Process Management

More information

Dr. Nader Mehravari Research Scientist, CERT Division

Dr. Nader Mehravari Research Scientist, CERT Division Everything You Always Wanted to Know About Maturity Models Dr. Nader Mehravari Research Scientist, CERT Division Dr. Nader Mehravari is with the CERT Program at the Software Engineering Institute (SEI),

More information

ISO INTERNATIONAL STANDARD. Cleanrooms and associated controlled environments Biocontamination control Part 1: General principles and methods

ISO INTERNATIONAL STANDARD. Cleanrooms and associated controlled environments Biocontamination control Part 1: General principles and methods INTERNATIONAL STANDARD ISO 14698-1 First edition 2003-09-01 Cleanrooms and associated controlled environments Biocontamination control Part 1: General principles and methods Salles propres et environnements

More information

Combining Architecture-Centric Engineering with the Team Software Process

Combining Architecture-Centric Engineering with the Team Software Process Combining Architecture-Centric Engineering with the Team Software Process Robert L. Nord, James McHale, Felix Bachmann December 2010 TECHNICAL REPORT CMU/SEI-2010-TR-031 ESC-TR-2010-031 Research, Technology,

More information

Techniques and benefits of incorporating Safety and Security analysis into a Model Based System Engineering Environment

Techniques and benefits of incorporating Safety and Security analysis into a Model Based System Engineering Environment Techniques and benefits of incorporating Safety and Security analysis into a Model Based System Engineering Environment Gavin Arthurs P.E Solution Architect Systems Engineering IBM Software, Rational Common

More information

A Comparison of STPA and the ARP 4761 Safety Assessment Process 1

A Comparison of STPA and the ARP 4761 Safety Assessment Process 1 A Comparison of STPA and the ARP 4761 Safety Assessment Process 1 MIT Technical Report 2 Nancy Leveson, MIT Chris Wilkinson, Honeywell Cody Fleming, MIT John Thomas, MIT Ian Tracy, MIT June, 2014 1 This

More information

TABLE OF CONTENTS. Abstract 3. Importance of reliability engineering in product industry 3. Current trends in reliability engineering 4

TABLE OF CONTENTS. Abstract 3. Importance of reliability engineering in product industry 3. Current trends in reliability engineering 4 Reliability Engineering: Trends, Strategies and Best Practices Predictive Engineering Think. Design. Perfect! WHITE PAPER S e p t e m b e r 2 0 0 7 HCL s Predictive Engineering encompasses the complete

More information

ISO : Rustam Rakhimov (DMS Lab)

ISO : Rustam Rakhimov (DMS Lab) ISO 26262 : 2011 Rustam Rakhimov (DMS Lab) Introduction Adaptation of IEC 61508 to road vehicles Influenced by ISO 16949 Quality Management System The first comprehensive standard that addresses safety

More information

CMMI for Services (CMMI-SVC): Current State

CMMI for Services (CMMI-SVC): Current State : Current State Software Engineering Institute Carnegie Mellon University Pittsburgh, PA 15213 Eileen Forrester July 2012 What I will cover Explain what the CMMI-SVC is and why we built it Discuss service

More information

Definition and Measurement of Complexity in the Context of Safety Assurance

Definition and Measurement of Complexity in the Context of Safety Assurance Definition and Measurement of Complexity in the Context of Safety Assurance Sarah Sheard Michael Konrad Chuck Weinstock William R. Nichols November 2016 TECHNICAL REPORT CMU/SEI-2016-TR-013 Software Solutions

More information