Reliability Improvement of Electric Power Steering System Based on ISO 26262

Size: px
Start display at page:

Download "Reliability Improvement of Electric Power Steering System Based on ISO 26262"

Transcription

1 2013 International Conference on Quality, Reliability, Risk, Maintenance, and Safety Engineering (QR2MSE) 2013 International Conference on Materials and Reliability (ICMR) 2013 International Conference on Maintenance Engineering (ICME) Reliability Improvement of Electric Power Steering System Based on ISO Xuewu Ji, Jingguang Ge, Hongliang Tian State Key Laboratory of Automotive Safety and Energy Tsinghua University Beijing, China Abstract Electric power steering (EPS) systems have been more and more widely used in medium and large cars. As a safetycritical system, its safety and reliability are uttermost important. ISO adapted from IEC provides a V-model as a reference process model for different phases of product development. In this paper, DFMEA (design mode and effects analysis) and FTA (fault tree analysis) complied with ISO are taken to analyze the safety aspects of EPS so as to enhance the safety and reliability of EPS. Firstly, the EPS system is decomposed into subsystems and components, and the familiar modes and undesired top events are separately divided into several categories. Then a comprehensive DFMEA for every single potential mode is carried out without omission as far as possible. The qualitative FTA is put into practice to identify the weak link as well. Since the DFMEA and FTA for EPS are finished, countermeasures for each potential hazard should be taken to guarantee the safety and reliability of EPS which are always achieved by fault detection and fault isolation algorithms of EPS hardware and software. Besides, some preventive actions are also taken in the early design stage to find out the potential causes. Keywords-EPS; ISO 26262; DFMEA; system structure tree; FTA; preventive actions I. INTRODUCTION The past few years have witnessed a great increase in the number and sophistication of EPS system, as it is more fuel efficient and enviromental friendly compared with the traditional hydraulic power steering (HPS) system [1]. Nowadays, the EPS has been a standard feature for most small and medium size cars. The EPS is a typical feedback control system composed of PMSM (Permanent Magnet Synchronous Motor), an electronic control unit (ECU), sensors and other mechanical components. The electric motor applies assistant torque which is calculated by the ECU to the steering column via the reduction gear, thus it releases the driver s effort to steer the steering wheel as depicted in Fig. 1. Though EPS control logic has been studied by several literatures, the safety design process has not been extensively explored [2-5]. Any of these components or the software program implementation will lead to negative effects which will directly influence the driver s safety. Therefore, the EPS system should be designed and analyzed integrally to guarantee not only that it works as it was desired, but to prevent it from operating in any way that was not intended. As a safety-critical part, the safety and reliability or EPS system is of great significance. Figure 1. Schematic diagram of EPS control method [6]. Meanwhile, the ISO [7] ( Road Vehicles-Functional Safety ) provides a specific analysis method to determine the Automotive Safety Integral Level (ASIL) for each undesirable effect. ISO is a functional safety standard and it comprises the whole lifecycle of a product. The implementation of the EPS safety design with respect to ISO is a very complex and huge project. Though happening can t be forbidden, proper fail-safe control strategies can be made in advance, which could be achieved through some qualitative and quantitive analysis methods such as DFMEA and FTA, which are also strongly recommended by ISO To improve the reliability and safety of EPS, measures should be taken to decrease the rates (such as taking highly durable and reliable electronic pieces) and improve the diagnostic coverage to mitigrate the risks based on careful analysis of which happened in the past or will potentially occur in the future. In this paper, we will focus on the EPS safety and reliability design using DFMEA and FTA to satisfy the ISO requirements. 129

2 II. ISO 26262, DFMEA AND FTA A. ISO The standard ISO consisits of 9 parts as shown in Fig. 2, providing an automotive-specific risk-based approach to determine ASIL used to specify applicable requirements of ISO so as to avoid risks. The shaded V s represent the interconnection among different parts. It offers a V-model as a reference process model to conduct the different phases of product development step by step. Firstly, based upon severity, probability of exposure and controlability according to ISO 26262, EPS is ASIL D [8], which is the highest risk level as well as the most demanding to functional safety. Then, the corresponding specific safety goal should be determined according to the specific mode. Thirdly, to achieve the safety goal, we have to rely on the fault detection and isolation algorithms, which are implemented through ECU hardware and software, transitioning to a safe state. Finally, the functional safety requirements become the requirements of hardware and software that can be continued by inductive and deductive methods such as DFMEA and FTA. Figure 2. Overview of ISO B. DFMEA Method FMEA born in the 1950s is a systematic method used to recognize and evaluate the potential of a product and the effects of the, specify actions that could mitigate risks or reduce the chance of the potential occurrence [9]. Timeliness is one of the key factors to implement an FMEA process so that the potential modes can be designed out in advance. There are two types of FMEA, i.e. DFMEA and PFMEA (process mode and effect analysis). The former one taken in this paper is applied in the design phase during product development process while the latter one is used for manufacturing. Fig. 3 briefly depicts the process of DFMEA. Aiming at a certain item of EPS, modes should be identified as many as possible based on group brainstorm or collection of past known s. What s more, each mode may be aroused by several causes and each of these causes should be analyzed and evaluated. The numbers of severity of the effects (S), likelyhood of detection (D) and probability of occurrence (O) are determined according to the DFMEA evaluation criteria suggested by Automotive Industry Action Group (AIAG) [9]. The risk priority number (RPN) used to rank and assess criticalality of differernt modes is calculated according to Eq. (1). RPN S D O (1) If the RPN (ranges between 0 and 1000) exceeds a preset threshhold, actions should be taken to reduce risk level to a permissive range. However, there is no definite threshold for the preset value, it is always determined through DFMEA team discussions. When the severity is 9 or 10, preventive 130

3 measures should be adopted as well regardless the RPN value. Once the corresponding actions have been taken the S and RPN values will be reassessed, until they are acceptable. This is a constantly optimized and iterative process. Effects of Failure Severity of the Effects Identify Design Item s Function Identify Potential Failure Identify Causes Fault Detection Algorithm Likelihood of Detection Risk Priority Number (RPN) Actions to Mitigating Risks Figure 3. DFMEA process. Failure Isolation Algorithm Probability of Occurrence A thoroughly DFMEA should consist of corrective and preventive actions; otherwise it will be difficult to be put in practice. C. FTA Method While the FMEA is a bottom-up approach, the FTA is a top-down process. FTA produces a fault tree; the fault tree is a graphical logic model that displays various parallel and sequential combinations of faults and s that will result in the predefined top undesired event [10]. It s made up of top undesired event, intermediate events and basic events which are connected by logic gates, for example, AND gate, and logic symbols. In this paper, we carry out the qualitative FTA for valid and reliable data related to the system are always difficult to be obtained. III. APPLICATION OF DFMEA AND FTA IN EPS The application of DFMEA and FTA in EPS is part of the EPS safety design complying with the ISO Moreover, they can help us gain a full understanding of the EPS system as well as identify the causes of a and system weakness so as to take proper action to enhance the reliability and safety design of system. A. DFMEA of EPS Theoretically, all potential modes of EPS can be analyzed during the early development phase and have a RPN ranking list. If we control the causes or take measures to prevent the problem before it occurs, it is possible to decrease the high RPN number to a level that system can tolerate. Thus, we must take every mode related to the EPS system, subsystems and components into consideration. First of all, to avoid leaving out any mode, we break down the EPS system and build an EPS structure tree, as shown in Fig. 4; each module in the tree consists of the function of the subsystem or component name and its potential malfunctions. As to the EPS system, the familiar modes are listed as follows which should be emphasized overall in the DFMEA process.in general, there are five main categories of potential causes of EPS modes: (1) Faults in the DSP on the ECU. (2) Faults from steering torque sensor and steering angle sensor. (3) Faults aroused by the EPS actuator, PMSM. (4) Faults caused by power source. (5) CAN communication faults. In addition, each category is caused by varieties of specific problems. Take the fourth category for example, it includes over voltage, under voltage, short circuit, leakage current too high, and so on. Then, aiming at each module of the EPS structure tree, the potential modes based on the five kinds of faults are analyzed according to Figure 2 so as to avoid omission. The final analysis result forms a living document which should always be updated when improvement measures are taken or designs are changed. Part of the analysis results is shown in Fig. 5. B. FTA of EPS The FTA and DFMEA are complementary hazard analysis methods. In the EPS system, there are two kinds of undesired events. (1) PMSM produces an undesired torque. (2) PMSM doesn t produce an required torque. On the one hand, if the PMSM produced an unintended torque, the vehicle may steer by itself when it were unnecessary or dangerous which could lead to terrible accidents. On the other hand, if the motor couldn t provide assistance torque as required, it may decrease the drive pleasure of the driver, what s worse, it may lead to his or her panic in some urgency situation, such as emergency obstacle avoidance. Both of these two types hazardous events can be placed emphasis for further testing, analysis and validation according to the FTA. We take the steering is heavy for example to implement FTA as depicted in Figure 6. In this way, we can identify the weakness and reasons leading to the top event so that we can prevent the top event by controlling the basic events especially the weak nodes. IV. CONCLUSION Safety and reliablity are two key factors in the EPS design phase, and they are the foundation for the normal working of EPS. And at the same time, the ISO has been officially published to instruct the design of electrical and/or electronic systems within road vehicles. It presents guidence to avoid 131

4 Figure 4. EPS structure tree. Figure 5. DFMEA of EPS. 132

5 Steering is heavy Mechanical steering system Torque sensor The assistance motor ECU Power supply Front tire pressure improper or tire wear Front wheel alignment incorrect Steering column wear Pinion and gear wear Internal winding partly open Rotor position sensor(resolver) malfunction Software Hardware error Power voltage low Poor contact between EPS and the power source Main signal open or short Sub signal open or short Torque sensor supply voltage low Wiring harness(eps control module and resolver terminal)open or short Poor connection at connectors Failure in acquiring torque sensor signal Execution error Failure in delivery of current command to motor Figure 6. Fault tree example. risks by providing appropriate requirement and process. The FMEA and FTA are two frequently-used methods to satisfy the requirement of ISO Additionally, they can also help the design team to identify the system vulnerable REFERENCES [1] A. A. Badawy and F. Bolourchi, The design and benefits of electric power steering. SAE Technical Paper, [2] F. Bolourchi and C. Etienne, Active damping controls algorithm for an electric power steering application, In Proceedings of 30th International Symposium on Automotive Technology & Automation, pp , [3] J. H. Kim and J. B. Song, Control logic for an electric power steering system using assist motor, Mechatronics, vol. 12, no. 3, pp , [4] C. H. Hu, Modeling and simulation of automotive electric power steering system, In Intelligent Information Technology Application, Second International Symposium, vol. 3, no. 2, pp , spots,define the hazards which need to be improved and draw up corresponding countermeasures, and evaluate the potential hazard effects. [5] D. Mahendra, Modelling and analysis of power steering system, International Journal of Electric and Hybrid Vehicles, vol. 4, no. 8, pp , [6] T. Nozawa, Y. Shintani, T. Tamizumi, T. Hib, and H. Itamoto, Development of brushless EPS assist control for disconnection control, JTEKT Corporation Technical report, available at: [7] ISO 26262, Road Vehicles-Functional Safety, [8] P. O. Jacob, Design & safety considerations for electric power steering (EPS) systems based on automotive safety integrity levels, SAE Technical Paper, [9] Automotive Industry Action Group (AIAG), Potential Failure Mode and Effects Analysis (FMEA Third Edition), [10] W. E. Vesely and N. H. Roberts, Fault Tree Handbook. Nuclear Regulatory Commission,

The specifics of the application of the Failure Mode and Effects Analysis (FMEA) in the automotive industry

The specifics of the application of the Failure Mode and Effects Analysis (FMEA) in the automotive industry The specifics of the application of the Failure Mode and Effects Analysis (FMEA) in the automotive industry NEAGOE B.S., MARTINESCU I. Quality Management Department University Transilvania of Braşov Bld.

More information

Delivering Safety Through Design Using Early Analysis Methods. Mark A. Vernacchia, MSES, PE General Motors Company; Milford, Michigan, USA

Delivering Safety Through Design Using Early Analysis Methods. Mark A. Vernacchia, MSES, PE General Motors Company; Milford, Michigan, USA Delivering Safety Through Design Using Early Analysis Methods Mark A. Vernacchia, MSES, PE General Motors Company; Milford, Michigan, USA Keywords: systems engineering, SEFA, STPA, interactions, safety,

More information

HOW TO AVOID FAILURES-(FMEA and/or FTA)

HOW TO AVOID FAILURES-(FMEA and/or FTA) HOW TO AVOID FAILURES-(FMEA and/or FTA) "It is the responsibility of the practicing engineer and scientist to understand failures and their role in discovery, invention and design in order to minimize

More information

Dependability Assurance of Industrial Production Processes

Dependability Assurance of Industrial Production Processes Dependability Assurance of Industrial Production Processes Dr. Marianna Lendvay Associate Professor, Institute of Microelectronics and Technology, Budapest Tech Kandó Kálmán Faculty of Electrical Engineering

More information

Overview of the 2nd Edition of ISO 26262: Functional Safety Road Vehicles

Overview of the 2nd Edition of ISO 26262: Functional Safety Road Vehicles Overview of the 2nd Edition of ISO 26262: Functional Safety Road Vehicles Rami Debouk, General Motors Company, Warren, MI, USA ABSTRACT Functional safety is of utmost importance in the development of safety-critical

More information

Reliability Analysis Techniques: How They Relate To Aircraft Certification

Reliability Analysis Techniques: How They Relate To Aircraft Certification Reliability Analysis Techniques: How They Relate To Aircraft Certification Mark S. Saglimbene, Director Reliability, Maintainability and Safety Engr., The Omnicon Group, Inc., Key Words: R&M in Product

More information

Available online at Procedia Engineering 45 (2012 ) Peter KAFKA*

Available online at   Procedia Engineering 45 (2012 ) Peter KAFKA* Available online at www.sciencedirect.com Procedia Engineering 45 (2012 ) 2 10 2012 International Symposium on Safety Science and Technology The Automotive Standard ISO 26262, the innovative driver for

More information

Functional Safety: ISO26262

Functional Safety: ISO26262 Functional Safety: ISO26262 Seminar Paper Embedded systems group Aniket Kolhapurkar, University of Kaiserslautern, Germany kolhapur@rhrk.uni kl.de September 8, 2015 1 Abstract Functions in car, such as

More information

Module 5 Design for Reliability and Quality. IIT, Bombay

Module 5 Design for Reliability and Quality. IIT, Bombay Module 5 Design for Reliability and Quality Lecture 1 Failure Mode and Effect Analysis Instructional objectives By the end of this lecture, the students are expected to learn (a) the principle, basic structure,

More information

FMEA Failure Mode Effects Analysis. ASQ/APICS Joint Meeting May 10, 2017

FMEA Failure Mode Effects Analysis. ASQ/APICS Joint Meeting May 10, 2017 FMEA Failure Mode Effects Analysis ASQ/APICS Joint Meeting May 10, 2017 FMEA (Failure Mode and Effects Analysis) Failure Mode and Effects Analysis Agenda What is it? Motivation FMEA Methods Examples What

More information

Chapter 6-1: Failure Modes Effect Analysis (FMCEA)

Chapter 6-1: Failure Modes Effect Analysis (FMCEA) Chapter 6-1: Failure Modes Effect Analysis (FMCEA) Learning Outcomes: After careful studying this lecture You should be able: To Define FMEA To understand the use of Failure Modes Effect Analysis (FMEA)

More information

TRIZ METHODOLOGY APPLIED IN D-FMEA PREVENTION AND DETECTION ACTIONS

TRIZ METHODOLOGY APPLIED IN D-FMEA PREVENTION AND DETECTION ACTIONS TRIZ METHODOLOGY APPLIED IN D-FMEA PREVENTION AND DETECTION ACTIONS Daniel TIUC 1 and George DRAGHICI 1 ABSTRACT: One of the most actual problems faced by the automotive industry is that generally OEM

More information

Reliability Modelling of Automated Guided Vehicles by the Use of Failure Modes Effects and Criticality Analysis, and Fault Tree Analysis

Reliability Modelling of Automated Guided Vehicles by the Use of Failure Modes Effects and Criticality Analysis, and Fault Tree Analysis Reliability Modelling of Automated Guided Vehicles by the Use of Failure Modes Effects and Criticality Analysis, and Fault Tree Analysis Rundong Yan 1, Sarah J. Dunnett 2, and Lisa M. Jackson 3 1 Department

More information

Using STPA in Compliance with ISO26262 for developing a Safe Architecture for Fully Automated Vehicles

Using STPA in Compliance with ISO26262 for developing a Safe Architecture for Fully Automated Vehicles Bitte decken Sie die schraffierte Fläche mit einem Bild ab. Please cover the shaded area with a picture. (24,4 x 11,0 cm) Using STPA in Compliance with ISO26262 for developing a Safe Architecture for Fully

More information

Safety Management Center. DNV IT Global Services Safety Engineering / Management in the automotive industry. Content

Safety Management Center. DNV IT Global Services Safety Engineering / Management in the automotive industry. Content DNV IT Global Services Safety Engineering / Management in the automotive industry Enhancing Trust and Confidence in IT Automotive SPIN Italia 4 Workshop on Automotive Software Torino, 11.12.2009 Dr. Klaus

More information

Using STPA in Compliance with ISO26262 for developing a Safe Architecture for Fully Automated Vehicles

Using STPA in Compliance with ISO26262 for developing a Safe Architecture for Fully Automated Vehicles Bitte decken Sie die schraffierte Fläche mit einem Bild ab. Please cover the shaded area with a picture. (24,4 x 11,0 cm) Using STPA in Compliance with ISO26262 for developing a Safe Architecture for Fully

More information

Safety cannot rely on testing

Safety cannot rely on testing Standards 1 Computer-based systems (generically referred to as programmable electronic systems) are being used in all application sectors to perform non-safety functions and, increasingly, to perform safety

More information

Design and Research on Co-simulation Training System of Large-Scale Power Grid with Distribution Network Based on Intelligent Materials System

Design and Research on Co-simulation Training System of Large-Scale Power Grid with Distribution Network Based on Intelligent Materials System Design and Research on Co-simulation Training System of Large-Scale Power Grid with Distribution Network Based on Intelligent Materials System BaiShan Mei 1, XiPing Zhang 2, Jie Xu 2, and YueHong Xing

More information

Prof. Rob Leachman IEOR 130 Fall, /13/16 FMEA Rob Leachman 1

Prof. Rob Leachman IEOR 130 Fall, /13/16 FMEA Rob Leachman 1 Prof. Rob Leachman IEOR 130 Fall, 2016 9/13/16 FMEA Rob Leachman 1 Definition: FMEA is a systematic approach to the management of product or process development. It involves: Identifying all potential

More information

Application of Reliability Analysis in Preliminary Design Stage of Digital I&C System

Application of Reliability Analysis in Preliminary Design Stage of Digital I&C System Application of Reliability Analysis in Preliminary Design Stage of Digital I&C System Wenjie Qin a*, Xuhong He b, Xiufeng Tian c, Dejun Du c a Lloyd s Register Consulting Energy Inc., Shanghai, China b

More information

Automotive Systems Engineering und Functional Safety: The Way Forward

Automotive Systems Engineering und Functional Safety: The Way Forward Automotive Systems Engineering und Functional Safety: The Way Forward Dr. Simon Burton Albert Habermann Vector Informatik GmbH Ingersheimer Strasse 24 70499 Stuttgart, Germany +49 711 80670 1529 albert.habermann@vector.com

More information

420 INDEX. Basic event, in FTA, see Fault Tree Analysis, glossary Bicycle examples, see All-terrain bicycle examples

420 INDEX. Basic event, in FTA, see Fault Tree Analysis, glossary Bicycle examples, see All-terrain bicycle examples Index Accelerated testing, 172 173 Access to failure information, 76 78 Action strategies to reduce risk to acceptable level, 108, 109, 163, 165, 250, 258 actions to reduce detection risk, 172 actions

More information

Reliability Engineering - Business Implication, Concepts, and Tools

Reliability Engineering - Business Implication, Concepts, and Tools Reliability Engineering - Business Implication, Concepts, and Tools Dominique A. Heger, Fortuitous Technologies, Austin, TX, (dom@fortuitous.com) Introduction An emerging consensus in the systems performance

More information

Smart Strategic Approach for Functional Safety Implementation. Chandrashekara N Santosh Kumar Molleti

Smart Strategic Approach for Functional Safety Implementation. Chandrashekara N Santosh Kumar Molleti Smart Strategic Approach for Functional Safety Implementation Chandrashekara N Santosh Kumar Molleti August 2015 1 Table of Contents Abstract... 3 1. Introduction... 3 2. Approach-To-Concept... 4 2.1.

More information

Root Cause Analysis of Water Wastage in Hot - Cold Water Dispenser

Root Cause Analysis of Water Wastage in Hot - Cold Water Dispenser RESEARCH ARTICLE OPEN ACCESS Root Cause Analysis of Water Wastage in Hot - Cold Water Dispenser Sunil Kokane¹, Dinesh Joshi², Annaso Patil³ ¹ (Department of Research & Development, Emerson Innovation Center,

More information

The University of Bradford Institutional Repository

The University of Bradford Institutional Repository The University of Bradford Institutional Repository http://bradscholars.brad.ac.uk This work is made available online in accordance with publisher policies. Please refer to the repository record for this

More information

M.E POWER ELECTRONICS AND DRIVES Course Outcome R2009 ( BATCH)

M.E POWER ELECTRONICS AND DRIVES Course Outcome R2009 ( BATCH) GST Road, Chinna Kolambakkam, Padalam-6008 MA96 Course Outcome R009 (0-0 BATCH) Applied Mathematics for Electrical Engineers Apply various methods in matrix theory to solve system of linear equations.

More information

ISO : Rustam Rakhimov (DMS Lab)

ISO : Rustam Rakhimov (DMS Lab) ISO 26262 : 2011 Rustam Rakhimov (DMS Lab) Introduction Adaptation of IEC 61508 to road vehicles Influenced by ISO 16949 Quality Management System The first comprehensive standard that addresses safety

More information

Application of MBD to Development of ECU Prototype for EPS

Application of MBD to Development of ECU Prototype for EPS Technology Introduction Application of MBD to Development of ECU Prototype for EPS KOBAYASHI Masayuki 1 Introduction Conventionally, most of the embedded control systems have been developed, using a document-based

More information

SINUMERIK 828 Safety Integrated Safe machines with a high productivity. Unrestricted Siemens AG 2018

SINUMERIK 828 Safety Integrated Safe machines with a high productivity. Unrestricted Siemens AG 2018 SINUMERIK 828 Safety Integrated Safe machines with a high productivity siemens.com/sinumerik 1 2 3 4 5 6 7 8 9 10 Agenda Machinery directive and standards Overview of the SINUMERIK portfolio Safety Integrated

More information

AUTOMATING SAFETY ENGINEERING WITH MODEL-BASED TECHNIQUES

AUTOMATING SAFETY ENGINEERING WITH MODEL-BASED TECHNIQUES WHITE PAPER AUTOMATING SAFETY ENGINEERING WITH MODEL-BASED TECHNIQUES E-mail: WWW: info@metacase.com http://www.metacase.com Ylistönmäentie 31 FI 40500 Jyväskylä, Finland Phone +358 400 648 606 Fax +358

More information

Hazard Analysis. Techniques for. System Safety. Second Edition. Clifton A. Ericson, II Fredericksburg, Virginia. Wiley

Hazard Analysis. Techniques for. System Safety. Second Edition. Clifton A. Ericson, II Fredericksburg, Virginia. Wiley Hazard Analysis Techniques for System Safety Second Edition Clifton A. Ericson, II Fredericksburg, Virginia Wiley Contents PREFACE ACKNOWLEDGMENTS xxi xxiii 1. System Safety and Hazard Analysis 1 1.1 Introduction

More information

Overview of the 2nd Edition of ISO 26262: Functional Safety Road Vehicles

Overview of the 2nd Edition of ISO 26262: Functional Safety Road Vehicles Overview of the 2nd Edition of ISO 26262: Functional Safety Road Vehicles Rami Debouk GM Research and Development rami.debouk@gm.com August 16 th, 2018 2010 ISSC Functional Minneapolis, Safety Road Vehicles

More information

Commercial vehicles Functional safety implementation process and challenges. Dr Chitra Thyagarajan Safety and Reliability Consultant Mahindra Satyam

Commercial vehicles Functional safety implementation process and challenges. Dr Chitra Thyagarajan Safety and Reliability Consultant Mahindra Satyam Commercial vehicles Functional safety implementation process and challenges Dr Chitra Thyagarajan Safety and Reliability Consultant Mahindra Satyam Agenda Functional safety Importance of safety in commercial

More information

Next Generation Design and Verification Today Requirements-driven Verification Methodology (for Standards Compliance)

Next Generation Design and Verification Today Requirements-driven Verification Methodology (for Standards Compliance) Next Generation Design and Verification Today Requirements-driven Verification Methodology (for Standards Compliance) Mike Bartley, TVS Agenda Motivation - Why Requirements Driven Verification? Introduction

More information

Saber Automotive Overview

Saber Automotive Overview Datasheet Saber Automotive Overview Overview Hybrid- and electric-vehicle development demand more and more accurate simulation of Automotive systems to achieve quality-, reliabilityand cost-requirements.

More information

Hazard Analysis Technique Selection

Hazard Analysis Technique Selection Hazard Analysis Technique Selection Kelsey L. F. Curran, CIH, CHMM Principal Hazard Analyst and ES&H Specialist Clover Leaf Solutions Alliance of Hazard Materials Professionals 2016 National Conference

More information

International Journal of Industrial Engineering Research and Development (IJIERD), ISSN 0976 INTERNATIONAL JOURNAL OF INDUSTRIAL ENGINEERING

International Journal of Industrial Engineering Research and Development (IJIERD), ISSN 0976 INTERNATIONAL JOURNAL OF INDUSTRIAL ENGINEERING INTERNATIONAL JOURNAL OF INDUSTRIAL ENGINEERING RESEARCH AND DEVELOPMENT (IJIERD) ISSN 0976 6979 (Print) ISSN 0976 6987 (Online) Volume 4, Issue 3, September - December (2013), pp. 61-72 IAEME: www.iaeme.com/ijierd.asp

More information

Investigation of Rod Control System Reliability of Pwr Reactors

Investigation of Rod Control System Reliability of Pwr Reactors International Conference on Nuclear Energy Technologies and Sciences (2015), Volume 2016 Conference Paper Investigation of Rod Control System Reliability of Pwr Reactors Deswandri and Syaiful Bakhri Center

More information

A Framework of Dynamic Environmental Risk Assessment and its Evolution Forecast of Hazardous Chemicals Accidents

A Framework of Dynamic Environmental Risk Assessment and its Evolution Forecast of Hazardous Chemicals Accidents A Framework of Dynamic Risk Assessment and its Evolution Forecast of Hazardous Chemicals Accidents Shuxia LI School of Business, East China University of Science & Technology; Department of Industrial

More information

Compliance driven Integrated circuit development based on ISO26262

Compliance driven Integrated circuit development based on ISO26262 Compliance driven Integrated circuit development based on ISO26262 Haridas Vilakathara Manikantan panchapakesan NXP Semiconductors, Bangalore Accellera Systems Initiative 1 Outline Functional safety basic

More information

Maintainability Tools and Specific Maintainability Design Considerations

Maintainability Tools and Specific Maintainability Design Considerations 8 Maintainability Tools and Specific Maintainability Design Considerations 8.1 INTRODUCTION Many methods and techniques have been developed to perform various types of reliability and quality analyses.

More information

EUROPEAN COMMISSION SEVENTH FRAMEWORK PROGRAMME. Theme: ICT. Small or medium-scale focused research projects (STREP) FP7-ICT

EUROPEAN COMMISSION SEVENTH FRAMEWORK PROGRAMME. Theme: ICT. Small or medium-scale focused research projects (STREP) FP7-ICT Ref. Ares(2014)4249386-17/12/2014 EUROPEAN COMMISSION SEVENTH FRAMEWORK PROGRAMME Theme: ICT Small or medium-scale focused research projects (STREP) FP7-ICT-2013-10 Objective ICT-2013.6.5 Co-operative

More information

2018 ncode User Group Meeting

2018 ncode User Group Meeting 2018 ncode User Group Meeting February 28 March 1, 2018 Novi, MI USA Analysis of Connected Vehicle Data Dr. Andrew Halfpenny Director of Technology ncode Products Contents 3 1. What are Connected Vehicles

More information

AUTOMATIC VERIFICATION OF SAFETY INSTRUMENTED SYSTEM IN CHEMICAL PROCESSES

AUTOMATIC VERIFICATION OF SAFETY INSTRUMENTED SYSTEM IN CHEMICAL PROCESSES AUTOMATIC VERIFICATION OF SAFETY INSTRUMENTED SYSTEM IN CHEMICAL PROCESSES Jinkyung Kim, Younghee Lee and Il Moon Department of Chemical Engineering, Yonsei University, 134 Shinchon-dong Seodaemun-ku,

More information

By choosing to view this document, you agree to all provisions of the copyright laws protecting it.

By choosing to view this document, you agree to all provisions of the copyright laws protecting it. Copyright 2015 IEEE. Reprinted, with permission, from Carl S. Carlson, Understanding and Applying the Fundamentals of FMEAs, 2015 Reliability and Maintainability Symposium, January, 2015. This material

More information

FACILITATING AGRICULTURE AUTOMATION USING STANDARDS

FACILITATING AGRICULTURE AUTOMATION USING STANDARDS FACILITATING AGRICULTURE AUTOMATION USING STANDARDS Robert K. Benneweis P. Eng Outline Available standards Developing standards Implemented automation Standard based automation implementation Potential

More information

Mechatronics Courses by School Period

Mechatronics Courses by School Period Mechatronics Courses by School Period Year One P1 P1 P2 P3 P3 P3 P4 P4 P4 Integrated Systems Industrial Math (Geometry, Trig, Algebra,) Blueprint Reading Machine Tool I (Hand tools-measuring-saws & Drill

More information

Outline of IEC62506, International Standard for Accelerated Reliability Testing and Key Points. Fumiaki Harada

Outline of IEC62506, International Standard for Accelerated Reliability Testing and Key Points. Fumiaki Harada Outline of IEC62506, International Standard for Accelerated Reliability Testing and Key Points Abstract Fumiaki Harada Fuji Xerox Advanced Technology Co., Ltd. Accelerated testing is performed under severer

More information

CIS 890: High-Assurance Systems

CIS 890: High-Assurance Systems CIS 890: High-Assurance Systems Introduction to Safety Concepts Lecture: Differences in Conventional Development and Safety-Critical Development Copyright 2013, John Hatcliff, Kim Fowler. The syllabus

More information

RAM & LCC for railways Industry: What s really necessary to high performance achievement?

RAM & LCC for railways Industry: What s really necessary to high performance achievement? RAM & LCC for railways Industry: What s really necessary to high performance achievement? Despite the very well organized and clear information in standard EN 50126, additional RAMS methods must be implemented,

More information

Certificating a safety related part of a control system

Certificating a safety related part of a control system Certificating a safety related part of a control system Marita Hietikko, Mika Riihimaa VTT Expert Services Ltd, P.O. Box 345, FI-33101 Tampere, Finland Tel: +358 20 722 111, E-mail: marita.hietikko@vtt.fi,

More information

FME 461 ENGINEERING DESIGN II

FME 461 ENGINEERING DESIGN II FME 461 ENGINEERING DESIGN II Failure modes Effects and Analysis (FMEA) Learning outcomes To understand the use of Failure Modes Effect Analysis (FMEA) - Engineering To learn the steps to developing FMEA

More information

Iterative Application of STPA for an Automotive System

Iterative Application of STPA for an Automotive System Iterative Application of STPA for an Automotive System GM Team Joe D Ambrosio Rami Debouk Dave Hartfelder Padma Sundaram Mark Vernacchia Sigrid Wagner MIT Team John Thomas Table of Contents Introduction/Background

More information

Comparison of Hazard Analysis Requirements for Instrumentation and Control System of Nuclear Power Plants

Comparison of Hazard Analysis Requirements for Instrumentation and Control System of Nuclear Power Plants of Hazard Analysis Requirements for Instrumentation and Control System of Nuclear Power Plants Jang Soo Lee and Jun Beom Yoo 2. I&C.HF Division, KAERI, Daejeon, Korea (jslee@kaeri.re.kr) 2. Department

More information

Development Tools for Active Safety Systems: PreScan and VeHIL

Development Tools for Active Safety Systems: PreScan and VeHIL Development Tools for Active Safety Systems: PreScan and VeHIL F. Hendriks, M. Tideman and R. Pelders, TNO Automotive, The Netherlands R. Bours and X.Liu, TASS, China Keywords: Active safety systems; ADAS;

More information

Solutions for the Improvement of the Failure Mode and Effects Analysis in the Automotive Industry

Solutions for the Improvement of the Failure Mode and Effects Analysis in the Automotive Industry Solutions for the Improvement of the Failure Mode and Effects Analysis in the Automotive Industry NEAGOE B.S. Advanced Technologies and Manufacturing Systems Department University Transilvania of Braşov

More information

Improving the effectiveness of FMEA analysis in automotive a case study

Improving the effectiveness of FMEA analysis in automotive a case study Acta Univ. Sapientiae, Informatica 8, 1 (2016) 82 95 DOI: 10.1515/ausi-2016-0005 Improving the effectiveness of FMEA analysis in automotive a case study Gábor VÁNYI Eötvös Loránd University, Budapest email:

More information

Requirements-driven Verification Methodology for Standards Compliance Serrie-justine Chapman (TVS) Dr Mike Bartley (TVS)

Requirements-driven Verification Methodology for Standards Compliance Serrie-justine Chapman (TVS) Dr Mike Bartley (TVS) Requirements-driven Verification Methodology for Standards Compliance Serrie-justine Chapman (TVS) Dr Mike Bartley (TVS) in collaboration with Test and Verification Solutions Ltd Infineon Technologies

More information

SAFETY RELATED SYSTEMS

SAFETY RELATED SYSTEMS SAFETY RELATED SYSTEMS Golden Hill Centre School Lane Leyland Preston Lancashire PR25 2TU Tel: 01772 622200 Fax: 01772 622455 Email: contactus@jfnl.co.uk Web: www.jfnuclear.co.uk James Fisher Nuclear Limited

More information

Using Safety Contracts to Verify Design Assumptions During Runtime

Using Safety Contracts to Verify Design Assumptions During Runtime Using Safety Contracts to Verify Design Assumptions During Runtime Omar T. Jaradat and Sasikumar Punnekkat Mälardalen University (Västerås, Sweden) {omar.jaradat, sasikumar.punnekkat}@mdh.se 23rd International

More information

FUNCTIONAL SAFETY CERTIFICATE. IQT3 Actuator manufactured by

FUNCTIONAL SAFETY CERTIFICATE. IQT3 Actuator manufactured by FUNCTIONAL SAFETY CERTIFICATE This is to certify that the IQT3 Actuator manufactured by Rotork Controls Ltd (A Division of Rotork PLC) Brassmill Lane Bath, BA1 3JQ UK have been assessed by with reference

More information

Development Support. Worldwide Activities Support in all Areas of Safety

Development Support.   Worldwide Activities Support in all Areas of Safety Consulting Training Development Support Worldwide Activities Support in all Areas of Safety innotec GmbH Heinrich-Wildung-Weg 3 D-21224 Rosengarten +49-4105-1559182 innotec GmbH Salurner Straße 16 A-5020

More information

Expert System of Fault Diagnosis of Dry-mixed Mortar Fieldbus Control System

Expert System of Fault Diagnosis of Dry-mixed Mortar Fieldbus Control System International Conference on Artificial Intelligence and Software Engineering (ICAISE 2013) Expert System of Fault Diagnosis of Dry-mixed Mortar Fieldbus Control System Huan Zhang Shuqi Shang, Dongwei Wang,

More information

Deriving Safety-Related Scenarios to Support Architecture Evaluation

Deriving Safety-Related Scenarios to Support Architecture Evaluation 32 Lu, Lutz and Chang Chapter II Deriving Safety-Related Scenarios to Support Architecture Evaluation Dingding Lu Iowa State University, USA Robyn R. Lutz Iowa State University, USA Carl K. Chang Iowa

More information

Automotive Safety and Security in a Verification Continuum Context

Automotive Safety and Security in a Verification Continuum Context Automotive Safety and Security in a Verification Continuum Context Accelerating the Development of Automotive Electronic Systems Jean-Marc Forey Automotive Functional Safety Professional Synopsys Inc.

More information

Implementation of International Safety Standard EN ISO into Machinery of Tyre Industry

Implementation of International Safety Standard EN ISO into Machinery of Tyre Industry Proceedings of the International MultiConference of Engineers and Computer Scientists 207 Vol II, IMECS 207, March 5-7, 207, Hong Kong Implementation of International Safety Standard EN ISO 3849 into Machinery

More information

A Model-Based Reference Workflow for the Development of Safety-Critical Software

A Model-Based Reference Workflow for the Development of Safety-Critical Software A Model-Based Reference Workflow for the Development of Safety-Critical Software A. Michael Beine 1 1: dspace GmbH, Rathenaustraße 26, 33102 Paderborn Abstract: Model-based software development is increasingly

More information

Sri Padhmam Consultancy & Training

Sri Padhmam Consultancy & Training Sri Padhmam Consultancy & Training Failure Mode & Effects Analysis ( FMEA ) Key changes to implement from Sept 2018 office@sripadhmam.com www.sripadhmam.com + 91 94428 92185 1 2 Failure Mode & Effects

More information

Ing.-Büro Pfeufer. FMEA Alignment AIAG and VDA. Join the conversation: #AQMS2018 VDA QMC

Ing.-Büro Pfeufer. FMEA Alignment AIAG and VDA. Join the conversation: #AQMS2018 VDA QMC Ing.-Büro Pfeufer New Your global Workshop FMEA Title standard Goes Here FMEA Alignment AIAG and VDA Join the conversation: #AQMS2018 Status November 2018 FMEA Alignment AIAG and VDA Project Leader: AIAG:

More information

OVERVIEW. AVL Reliability Engineering & Load Matrix

OVERVIEW. AVL Reliability Engineering & Load Matrix AVL Reliability Engineering and Load Matrix OVERVIEW January 2006 Page 1 Content The Reliability Challenge AVL s Reliability Engineering Approach The Load Matrix Conclusions January 2006 Page 2 The Reliability

More information

RISK MANAGEMENT AND SAFETY ANALYSIS OF THE GAS TURBINE AND ITS OPERABILITY

RISK MANAGEMENT AND SAFETY ANALYSIS OF THE GAS TURBINE AND ITS OPERABILITY RISK MANAGEMENT AND SAFETY ANALYSIS OF THE GAS TURBINE AND ITS OPERABILITY Stefan JONAS - Karol BALOG ABSTRACT A risk can produce especially serious safety problems especially in the context of technical

More information

Safety Assessment of Excavation with Fault Tree Analysis

Safety Assessment of Excavation with Fault Tree Analysis ISGSR2007 First International Symposium on Geotechnical Safety & Risk Oct. 18~19, 2007 Shanghai Tongji University, China Safety Assessment of Excavation with Fault Tree Analysis L. Z. Chen Shanghai Jiao

More information

Automating Safety Engineering with Model-Based Techniques

Automating Safety Engineering with Model-Based Techniques Automating Safety Engineering with Model-Based Techniques Juha-Pekka Tolvanen MetaCase Jyväskylä, Finland jpt@metacase.com Abstract Fault Trees and Failure Models and Effects Analyses are well known methods

More information

Recognize the need and possess a desire for. Demonstrate leadership skills and interact. Provide communities and workplaces with

Recognize the need and possess a desire for. Demonstrate leadership skills and interact. Provide communities and workplaces with Provide communities and workplaces with highly skilled, integrity-filled, professionals. Understand technical concepts and apply them to various automotive subsystems. Apply critical thinking skills to

More information

COMPARISON OF PROCESS HAZARD ANALYSIS (PHA) METHODS

COMPARISON OF PROCESS HAZARD ANALYSIS (PHA) METHODS COMPARISON OF PROCESS HAZARD ANALYSIS (PHA) METHODS by Primatech Inc. The hazard and operability (HAZOP) study is the most commonly used process hazard analysis (PHA) method. However, there are many other

More information

Deliverable: D 4.1 Gap analysis against ISO 26262

Deliverable: D 4.1 Gap analysis against ISO 26262 (ITEA 2 13017) Enabling of Results from AMALTHEA and others for Transfer into Application and building Community around Deliverable: D 4.1 Gap analysis against ISO 26262 Work Package: 4 Safety Task: 4.1

More information

Agent Based Reasoning in Multilevel Flow Modeling

Agent Based Reasoning in Multilevel Flow Modeling ZHANG Xinxin *, and LIND Morten * *, Department of Electric Engineering, Technical University of Denmark, Kgs. Lyngby, DK-2800, Denmark (Email: xinz@elektro.dtu.dk and mli@elektro.dtu.dk) 1 Introduction

More information

Software Requirements Specification (SRS) Automated Pedestrian Collision Avoidance System (APCA)

Software Requirements Specification (SRS) Automated Pedestrian Collision Avoidance System (APCA) Software Requirements Specification (SRS) Automated Pedestrian Collision Avoidance System (APCA) Authors: Team GReEN; Garret Smith, Rebecca Collins, Eric Austin, Nikhil Andrews Customer: Mr. David Agnew,

More information

4. Hazard Analysis. CS 313 High Integrity Systems/ CS M13 Critical Systems. Limitations of Formal Methods. Limitations of Formal Methods

4. Hazard Analysis. CS 313 High Integrity Systems/ CS M13 Critical Systems. Limitations of Formal Methods. Limitations of Formal Methods CS 313 High Integrity Systems/ CS M13 Critical Systems Course Notes Chapter 4: Hazard Analysis Anton Setzer Dept. of Computer Science, Swansea University http://www.cs.swan.ac.uk/ csetzer/lectures/ critsys/11/index.html

More information

Production Scheduling System for Oil and Gas Storage and Transportation Based on GIS and SCADA Technology

Production Scheduling System for Oil and Gas Storage and Transportation Based on GIS and SCADA Technology Production Scheduling System for Oil and Gas Storage and Transportation Based on GIS and SCADA Technology Binghe Liu School of Mechanical Engineering, Beijing Institute of Petrochemical Technology, China

More information

How to Monitor Food Equipment Critical Parts to Design Reliable Maintenance Tasks

How to Monitor Food Equipment Critical Parts to Design Reliable Maintenance Tasks How to Monitor Food Equipment Critical Parts to Design Reliable Maintenance Tasks Abstract Compliance with EEC directives and international standards on product safety is mandatory for those who operate

More information

ISO Software Compliance with Parasoft: Achieving Functional Safety in the Automotive Industry

ISO Software Compliance with Parasoft: Achieving Functional Safety in the Automotive Industry ISO 26262 Software Compliance with Parasoft: Achieving Functional Safety in the Automotive Industry Some modern automobiles have more lines of code than a jet fighter. Even moderately sophisticated cars

More information

INTEGRATION OF AUTONOMOUS SYSTEM COMPONENTS USING THE JAUS ARCHITECTURE

INTEGRATION OF AUTONOMOUS SYSTEM COMPONENTS USING THE JAUS ARCHITECTURE INTEGRATION OF AUTONOMOUS SYSTEM COMPONENTS USING THE JAUS ARCHITECTURE Shane Hansen Autonomous Solutions, Inc. Phone: (435) 755-2980 Fax: (435) 752-0541 shane@autonomoussolutions.com www.autonomoussolutions.com

More information

Your Mechatronics Teaching and Training Platform

Your Mechatronics Teaching and Training Platform The Tool of Choice for Teaching, Training and Learning Automation, Electrical and Fluid Power Engineering Technologies Your Mechatronics Teaching and Training Platform A Product of If you teach subjects

More information

Whitepaper. Five steps to safer machines. A primer on safety technology in standard automation. usa.siemens.com/motioncontrol

Whitepaper. Five steps to safer machines. A primer on safety technology in standard automation. usa.siemens.com/motioncontrol Whitepaper Five steps to safer machines A primer on safety technology in standard automation usa.siemens.com/motioncontrol Siemens Industry, Inc. Digital Factory Motion Control Competent support throughout

More information

CBTC (Communication Based Train Control): system and development

CBTC (Communication Based Train Control): system and development Advanced Train Control Systems 37 CBTC (Communication Based Train Control): system and development N. Bin, T. Tao, Q. K. Min & G. C. Hai Department of Control Engineering, School of Electronics and Information

More information

Technological Training Programs

Technological Training Programs Technological Training Programs On behalf of Noaman Engineering, I would like to introduce you to our training courses. All of our courses cover Theoretical, Practical, and software implementation and

More information

A handle on the future

A handle on the future Translated article Die Zukunft im Griff, Automobil Elektronik 05-06 / 2018 A handle on the future Virtualized testing and XiL for automated driving Advanced driver assistance systems (ADAS) have come so

More information

Critical Systems Specification. Ian Sommerville 2004 Software Engineering, 7th edition. Chapter 9 Slide 1

Critical Systems Specification. Ian Sommerville 2004 Software Engineering, 7th edition. Chapter 9 Slide 1 Critical Systems Specification Ian Sommerville 2004 Software Engineering, 7th edition. Chapter 9 Slide 1 Objectives To explain how dependability requirements may be identified by analysing the risks faced

More information

Requirements Specification (SRS) Project Squeaky Wheel

Requirements Specification (SRS) Project Squeaky Wheel Requirements Specification (SRS) Project Squeaky Wheel Authors: Team Autobots: Kevin Shreve Project Manager, Seung-Min Kim Project Facilitator, Andrew Crouch Domain Expert/Customer Liason, Cory Harter

More information

Automotive Functional Safety and Robustness - Never the Twain or Hand in Glove?

Automotive Functional Safety and Robustness - Never the Twain or Hand in Glove? Automotive Functional Safety and Robustness - Never the Twain or Hand in Glove? Roger Rivett, Ibrahim Habli, Tim Kelly To cite this version: Roger Rivett, Ibrahim Habli, Tim Kelly. Automotive Functional

More information

Autonomous Control for Generation IV Nuclear Plants

Autonomous Control for Generation IV Nuclear Plants Autonomous Control for Generation IV Nuclear Plants R. T. Wood E-mail: woodrt@ornl.gov C. Ray Brittain E-mail: brittaincr@ornl.gov Jose March-Leuba E-mail: marchleubaja@ornl.gov James A. Mullens E-mail:

More information

Condition-Based Maintenance Decision-making Support System (DSS) of Hydropower Plant

Condition-Based Maintenance Decision-making Support System (DSS) of Hydropower Plant International Journal of Innovation and Applied Studies ISSN 2028-9324 Vol. 4 No. 3 Nov. 2013, pp. 593-602 2013 Innovative Space of Scientific Research Journals http://www.issr-journals.org/ijias/ Condition-Based

More information

Cultivating Knowledge methodically: Improving analysis resolution with DeCoDe and FMEA

Cultivating Knowledge methodically: Improving analysis resolution with DeCoDe and FMEA Cultivating Knowledge methodically: Improving analysis resolution with DeCoDe and FMEA Dipl.-Ing. Stefan Ott e-mail: ott.stefan@vdi.de Prof. Dr.-Ing. habil. Petra Winzer phone: +49 (0) 202 / 439-2061 e-mail:

More information

Functional Architecture as the Core of Model-Based Systems Engineering

Functional Architecture as the Core of Model-Based Systems Engineering Boeing Defense, Space & Security Integrated Product Functional as the Core of Model-Based Systems Engineering Ronald S. Carson, PhD Barbara J. Sheeley The Boeing Company Presented to National Defense Industrial

More information

IEC KHBO, Hobufonds SAFESYS ing. Alexander Dekeyser ing. Kurt Lintermans

IEC KHBO, Hobufonds SAFESYS ing. Alexander Dekeyser ing. Kurt Lintermans IEC 61508 KHBO, Hobufonds SAFESYS ing. Alexander Dekeyser ing. Kurt Lintermans page 2 PART 1 : GENERAL REQUIREMENTS 1 Scope The first objective of this standard is to facilitate the development of application

More information

Objectives. Dependability requirements. Topics covered. Stages of risk-based analysis. Risk-driven specification. Critical Systems Specification

Objectives. Dependability requirements. Topics covered. Stages of risk-based analysis. Risk-driven specification. Critical Systems Specification Objectives Critical Systems Specification To explain how dependability requirements may be identified by analysing the risks faced by critical systems To explain how safety requirements are generated from

More information

Deliverable D21.3 Generic platform core demonstrator available in lab

Deliverable D21.3 Generic platform core demonstrator available in lab Highly automated vehicles for intelligent transport 7th Framework programme ICT-2007.6.1 ICT for intelligent vehicles and mobility services Grant agreement no.: 212154 The future of driving. Deliverable

More information

Continuous Improvement Toolkit. Risk Analysis. Continuous Improvement Toolkit.

Continuous Improvement Toolkit. Risk Analysis. Continuous Improvement Toolkit. Continuous Improvement Toolkit Risk Analysis The Continuous Improvement Map Managing Risk FMEA Understanding Performance Check Sheets Data Collection PDPC RAID Log* Risk Analysis* Fault Tree Analysis Traffic

More information