IEC Functional Safety Assessment. General Electric Salem, VA USA

Size: px
Start display at page:

Download "IEC Functional Safety Assessment. General Electric Salem, VA USA"

Transcription

1 IEC Functional Safety Assessment Project: Mark VIe PPRO Protection Module Customer: General Electric Salem, VA USA Contract No.: Q12/05-045r1 Report No.: GE R001 Version V1, Revision R2, November 1, 2013 John Yozallinas The document was prepared using best effort. The authors make no warranty of any kind and shall not be liable in any event for incidental or consequential damages in connection with the application of the document. All rights reserved.

2 Management Summary This report summarizes the results of the functional safety assessment according to IEC carried out on the: PPRO Protection Module The functional safety assessment performed by exida consisted of the following activities: - exida assessed the development process used by General Electric through an audit and creation of a detailed safety case against the requirements of IEC exida reviewed and assessed a detailed Failure Modes, Effects, and Diagnostic Analysis (FMEDA) of the devices to document the hardware architecture and failure behavior. - exida reviewed field failure data to ensure that the FMEDA analysis was complete. - exida reviewed the manufacturing quality system in use at General Electric The functional safety assessment was performed to the requirements of IEC 61508: ed2, 2010, up to SIL 3. A full IEC Safety Case was prepared using the exida SafetyCase Workbook tool as the primary audit tool. Hardware process requirements and all associated documentation were reviewed. Environmental test reports were reviewed. The user documentation (safety manual) was also reviewed. The results of the Functional Safety Assessment can be summarized by the following statements: The Mark VIe PPRO Protection Module was found to meet the requirements of SIL 3. The PFD AVG and Architectural Constraint requirements of the standard must be verified for each element of the Safety Function. The manufacturer will be entitled to use the Functional Safety Logo. The manufacturer may use the mark: T-034 V2R4 Page 2 of 18

3 Table of Contents Management Summary Purpose and Scope Project management exida Roles of the parties involved Standards / Literature used Reference documents Documentation provided by General Electric Documentation generated by exida Product Description IEC Functional Safety Assessment Methodology Assessment level Product Modifications Lifecycle Activities and Fault Avoidance Measures Functional Safety Management Safety Requirements Specification and Architecture Design Design Validation Verification Modifications User Documentation Hardware Assessment Terms and Definitions Status of the document Liability Releases Future Enhancements Release Signatures T-034 V2R4 Page 3 of 18

4 1 Purpose and Scope This document shall describe the results of the IEC functional safety assessment of the General Electric PPRO protection module by exida according to the requirements of IEC 61508: ed2, The details of this module are shown in Table 1: Table 1 PPRO Protection Module Components and Sub-components Catalog Number Description Rev IS220PPROS1B I/O Pack Assembly B IS220BPPCS1AC I/O Pack Processor Card AC IS200BPROS1BA Turbine Protection Application Cards BA IS210TPROS1C Emergency Protection 24 V dc CB IS210TREGS2B Emergency Trip 24 V dc BD IS210TREGS1B Emergency Trip 125 V dc BD IS210TREGS3/4/5B Emergency Trip 125 V dc Special 28 V power BD The results of this assessment provides the safety instrumentation engineer with the required failure data as per IEC / IEC and confidence that sufficient attention has been given to systematic failures during the development process of the device. Note: As defined by IEC 61508, IS220PPROS1B is a Type B element. IS200TPRO and IS200TREG are Type A elements. T-034 V2R4 Page 4 of 18

5 2 Project management 2.1 exida exida is one of the world s leading accredited Certification Bodies and knowledge companies specializing in automation system safety and availability with over 300 years of cumulative experience in functional safety. Founded by several of the world s top reliability and safety experts from assessment organizations and manufacturers, exida is a global company with offices around the world. exida offers training, coaching, project oriented system consulting services, safety lifecycle engineering tools, detailed product assurance, cyber-security and functional safety certification, and a collection of on-line safety and reliability resources. exida maintains a comprehensive failure rate and failure mode database on process equipment. 2.2 Roles of the parties involved General Electric exida exida Manufacturer of the Mark VIe PPRO Protection Module Performed the hardware assessment Performed the IEC Functional Safety Assessment General Electric contracted exida with the IEC Functional Safety Assessment of the above mentioned devices. 2.3 Standards / Literature used The services delivered by exida were performed based on the following standards / literature. [N1] IEC (Parts 1-7): 2010 Functional Safety of Electrical/Electronic/Programmable Electronic Safety-Related Systems 2.4 Reference documents Documentation provided by General Electric ID Document Version Date D001 [Quality Manual] D003 D004a GE Energy - Salem - Files - C&PE COE Development Process CPE DEV.doc GE Energy - Salem-Files-FPGA Configuration Management Procedure.docx 2.4 1/11/ /18/2010 T-034 V2R4 Page 5 of 18

6 D004b D004c D005 D007 D007a D016 D018 D022 D023 D023a D026 D036 D038 D040 D041 D041a GE Energy - Salem-Files-PWA Component Configuration Control CPE PWA.docx GE Energy - Salem-Files-PWA Change Control Process CPE PWA.doc GE Energy - Salem-Files-PW _Product_Safety_Reactive_Pr ocess.pdf GE Energy - Salem-Files-Supplier Qualification Process SRCWI 7_4_2.pdf GE Energy - Salem-Files-P28A-AL- 0002_K.pdf GE Energy - Salem-Files-Peer Review Record Instructions.docx GE Energy - Salem - Files - Product Service Bulletin CPE 8_2_1 PS.pdf GE Energy - Salem-Files-ECT Logic Design Process.docx GE Energy - Salem-Files-PWA Change Control Process CPE PWA.doc GE Energy - Salem-Files-ECR Request # pdf GE Energy - Salem - Files - Mark VIe PPRA-PPRO Functional Safety Plan docx GE Energy - Salem-Files- ISO9001_CDC.pdf GE Energy - Salem-Files-ECT Approved Logic Toolsx.pdf GE Energy - Salem - Files - Mark VIe PPRO BPPC SRS pdf GE Energy - Salem-Files-SPR Protection Packs (PPRO, PPRA, PTUR) Meeting Minutes (22, 28 Jan 2013).pdf GE Energy - Salem-Files-Protection Packs SPR Outline.docx 1 7/18/ /19/ /26/ /4/2013 K 7/3/ /10/ /28/ /13/ /19/2010 NA 7/11/ /5/2013 Issue 3 12/12/ /13/ /28/2013 NA 1/31/2013 NA 1/9/2012 T-034 V2R4 Page 6 of 18

7 D041b D042 D045 D045a D047 D047a D047b D053 D059 D059a D059b GE Energy - Salem-Files-eDR-eDRB Screen Capture Page.docx GE Energy - Salem - Files - PPRO FPGA Reqmts rev 1.8.pdf GE Energy - Salem-Files-PPROS1B Protection Module Architectural Overview.pptx GE Energy - Salem-Files-PPRO Protection Module Architectural Overview.pdf GE Energy - Salem-Files-bppc input power.pdf GE Energy - Salem-Files-treg CI volt protection.pdf GE Energy - Salem-Files-tpro Speed Inputs volt protection.pdf GE Energy - Salem-Files-PPRO SIL Architectural Review Meeting Minutes 10 Dec 2012.msg GE Energy - Salem-Files-PPRO- REGRSN-TESTPLAN doc GE Energy - Salem-Files-GE Q R001 V004 Mark VIe Fault Injection Test.pdf GE Energy - Salem-Files- S6_sem_v3_5_test_report v1 2.pdf NA 8/20/ /3/2013 NA 5/10/ /4/2013 IS200BPPC 9/26/2011 H#AAA-S IS200TREG 6/21/2006 S#BD IS200TPRO 11/13/2012 H_CPR2S NA 12/11/2012 V /31/2013 V0, R0.2 6/8/ /1/2014 D060a D067 D067a D068 D069 D069a GE Energy - Salem-Files-ECT Verilog Source Code Standardsx.pdf GE Energy - Salem-Files-PPRO- REGRSN-TESTPLAN doc GE Energy - Salem - Files - Status Review Protection Pack Testing Meeting Minutes 8 May 2013.pdf GE Energy - Salem-Files-PPRO- REGRSN-TESTPLAN doc GE Energy - Salem-Files-PPRO Safety Validation & Verification Test Plan xls GE Energy - Salem-Files-PPRO- REGRSN-TESTPLAN doc /13/2012 V /31/2013 NA 5/8/2013 V /31/ /1/2013 V /31/2013 T-034 V2R4 Page 7 of 18

8 D070 D071 D071b D074 D076 D078 D078b GE Energy - Salem - Files - PPRO Test Plan Review Meeting Minutes 3 Apr 2013.pdf GE Energy - Salem-Files- HALT_TPRO_13-May-08.xls GE Energy - Salem-Files- BPPC_HALT_18NOV2010.xls GE Energy - Salem-Files-PPRO_SIL- TPRO-TREG Validation Summary SIL V0407.UCSB.xlsx GE Energy - Salem-Files- DoC_MarkVe_VIe_S_16_May_2013. pdf GE Energy - Salem-Files-GEH- 6721V_Vol_I.pdf GE Energy - Salem-Files-PPRO GEI Pack Replacement.pdf NA 4/3/2013 N/A 5/13/2008 NA 12/13/2010 V0407 5/29/2013 NA 5/16/2013 V 6/1/2013 N/A 6/27/2013 D078c GE Energy - Salem - Files - GEH- V 6/27/ V_Vol_II.pdf D079 GE Energy - Salem-Files-GEI- N/A 8/21/ _Aug21.pdf D087 GE Energy - Salem-Files-test_bed.v N/A 3/28/2013 D087b GE Energy - Salem-Filescodecoverage_screenshot.docx N/A 7/17/2013 D088 GE Energy - Salem-Files-_build.cmdx N/A 7/17/2013 D089 GE Energy - Salem-Filespprofpga.par N/A 3/28/2013 D090 GE Energy - Salem-Files-ug116.pdf 9.4 5/13/2013 D091 GE Energy - Salem-Files-ug393.pdf /17/2012 D092 GE Energy - Salem-Filespprofpga.srr NA 3/28/2013 D093 GE Energy - Salem-Filespprofpga.bld NA 8/20/2013 D094 GE Energy - Salem-Files-map.mrp NA 3/28/2013 T-034 V2R4 Page 8 of 18

9 D095 GE Energy - Salem-Filespprofpga.par NA 3/38/ Documentation generated by exida [R1] GE R001 V1R1 IEC Functional Safety Assessment for PPRO Assessment PPRO.doc, Protection Module (This document) 1-Nov-13 [R2] [R3] PPRO FMEDA Summary for updated FPGA design xls GE PPRO SafetyCase V1R6 Final WB-61508, Nov. 1, 2013 Failure Modes, Effects and Diagnostics Analysis worksheet for Mark VIe PPRO. PPRO Safety Case Workbook T-034 V2R4 Page 9 of 18

10 3 Product Description The PPRO Protection Module provides independent overspeed Estop and Trip Interlock contact input protection. The PPRO protection module operates as an independent subsystem within the non-sil certified Mark VIe Control system, using non-sil certified IONet communication. The PPRO safety loop functions are independent from the Mark VIe control system and IONet. The safety loop functionality is resident within the hardware circuits and FPGA of the PPRO protection module. The PPROS1B protection module for safety loops is based upon the existing Mark Vie protection module (PPROH1A) and the Mark VIeS Safety control (YPROS1A). Hardware overspeed protection is provided by the speed signal conditioning through the input of up to nine speed inputs three each from three shafts. Each of the three PPRO packs mounted on a TPRO are independent in detecting of overspeed and protection action. However, the three packs have a feedback signal through the TPRO terminal board that determines if two out of three (2oo3) of the packs are detecting speed on their respective speed inputs. The 2oo3 detected speed signal is used to determine if a broken wire condition exists. T-034 V2R4 Page 10 of 18

11 Figure 1: Mark VIe PPRO Protection Module within Entire Application 4 IEC Functional Safety Assessment The IEC Functional Safety Assessment was performed based on the information received from General Electric and is documented in the safety case workbook [R3] T-034 V2R4 Page 11 of 18

12 4.1 Methodology The full functional safety assessment includes an assessment of all fault avoidance and fault control measures during hardware and software development and demonstrates full compliance with IEC to the end-user. The assessment considers all requirements of IEC Any requirements that have been deemed not applicable have been marked as such in the full Safety Case report, e.g. software development requirements for a product with no software. As part of the IEC functional safety assessment the following aspects have been reviewed: Development process, including: o o o o o o Functional Safety Management, including training and competence recording, FSM planning, and configuration management Specification process, techniques and documentation Design process, techniques and documentation, including tools used Validation activities, including development test procedures, test plans and reports, production test procedures and documentation Verification activities and documentation Modification process and documentation o Installation, operation, and maintenance requirements, including user documentation Product design o o Hardware architecture and failure behavior, documented in a FMEDA Software architecture and failure behavior, documented in a Software Criticality and HAZOP report The review of the development procedures is described in section 4.3. The review of the product design is described in section Assessment level The Mark VIe PPRO Protection Module Overspeed Protection Function and E-Stop function have been assessed per IEC to the following levels: Random Safety Integrity, SIL HFT = 1; Route 1 H : PFD AVG and Architectural Constraints must be verified for each application. The Mark VIe PPRO Protection Module Trip Interlock Protection Functions have been assessed per IEC to the following levels: Random Safety Integrity, SIL HFT = 1; Route 1 H : PFD AVG and Architectural Constraints must be verified for each application. The development procedures were assessed as suitable for use in applications with a maximum Systematic Capability Level of 3 (SIL 3 capable) according to IEC T-034 V2R4 Page 12 of 18

13 4.3 Product Modifications General Electric may make modifications to this product as needed. Results of the IEC Functional Safety Assessment exida assessed the development process used by General Electric during the product development against the objectives of IEC parts 1, 2, and 3, see [N1]. The development of the Mark VIe PPRO Protection Module was done per this IEC SIL 3 compliant development process. The Safety Case was updated with project specific design documents. 4.4 Lifecycle Activities and Fault Avoidance Measures General Electric has an IEC compliant development process as assessed during the IEC certification. This compliant development process is documented in [D003] and [D022]. This functional safety assessment investigated the compliance with IEC of the processes, procedures and techniques as implemented for the product development. The investigation was executed using subsets of the IEC requirements tailored to the SIL 3 work scope of the development team. The result of the assessment can be summarized by the following observations: The audited development process complies with the relevant managerial requirements of IEC SIL Functional Safety Management FSM Planning The functional safety management of any General Electric development is documented in the Functional Safety Management Plan [D026] and the C&PE COE Development Process [D003]. For each development General Electric creates a functional safety management plan which defines all of the tasks that must be done to ensure functional safety as well as the person responsible for each task. The team structure is documented in the FSM plan as well. A meeting is held with management at the end of each phase gate to determine if the team should proceed to the next phase (Phases are aligned to the NPI design process according to PG-120 Design Review Procedure). These processes and the procedures referenced herein fulfill the requirements of IEC with respect to functional safety management. Version Control All documents are under version control as documented in [D54]. Configuration control of design documents will be in accordance with C&PE ISO QMS procedures as listed in [D026]. General Electric uses Microsoft Team Server for its version control tool. Training, Competency recording Personnel training records are kept in accordance with IEC requirements as documented in [D26]. General Electric hired exida to be the independent assessor per IEC T-034 V2R4 Page 13 of 18

14 4.4.2 Safety Requirements Specification and Architecture Design As defined in [D26], a safety requirements specification (SRS) is done for all products that must meet IEC certification. The requirements specification contains three major sections: System Safety Constraint requirements, External Interface requirements, and Safety User Programming and Configuration requirements. Non-safety functions are also listed. For the PPRO Protection Module, the SRS [D040], has been reviewed by exida for completeness per the requirements of IEC Requirements are tracked throughout the development process and mapped to the design. Requirements are also mapped to appropriate validation tests in the validation test plan [D069]. Requirements from IEC , Table B.1 that have been met by General Electric include project management, documentation, separation of safety systems from non-safety-related systems, structured specification, and inspection of the specification. The Safety Case documents more details on how each of these requirements has been met. This meets the requirements of SIL Design Hardware design for FPGA development is done according to [D022]. The design process includes component selection, detailed drawings and schematics, safety case documents for agency justification, a failure modes and effect analysis (FMEA), a failure modes, effects and diagnostic analysis (FMEDA), a design review, the creation of prototypes, and hardware verification tests. Requirements from IEC , Table B.2 that have been met by General Electric include observance of guidelines and standards, project management, documentation, structured design, modularization, use of well-tried components, checklists, computer aided design tools and inspection of the specification. This meets the requirements of IEC SIL Validation Validation Testing is done via a set of documented tests (see [D074]). The validation tests are traceable to the Safety Requirements Specification [D040] in the validation test plan [D069]. In addition to the Safety Validation Test plan, a complete regression test [D068] is also performed. Besides standard Test Specification Documents, third party testing may be included as part of agency approvals [D071, D071b]. Procedures are in place for corrective actions to be taken when tests fail as documented in [D023, D026]. Requirements from IEC , Table B.3 that have been met by General Electric include functional testing, project management, documentation, and black-box testing. Field experience and statistical testing via regression testing are not applicable. The Safety Case documents more details on how each of these requirements has been met. This meets the requirements of IEC SIL 3. T-034 V2R4 Page 14 of 18

15 Requirements from IEC , Table B.5 that have been met by General Electric include functional testing and functional testing under environmental conditions, Interference surge immunity testing, fault insertion testing, project management, documentation, static analysis, dynamic analysis, and failure analysis, expanded functional testing and black-box testing. The Safety Case documents more details on how each of these requirements has been met. This meets the requirements of IEC SIL Verification The development and verification activities are defined in [D026]. Verification activities include the following: Simulations for Digital Logic [D087a], EMC Testing [D076], Validation Testing [D074], Requirements Review [D041], Design Review [D053], FMEDA [R2], Test Plan reviews [D067a, D070]. This meets the requirements of IEC SIL Modifications Modifications are done per General Electric s IEC SIL 3 compliant development process as documented in [D026], [D023] and [D023a]. This process requires that a safety impact analysis be done for all changes, and that changes must be made with the same process used for initial development. Consequently this meets the requirements of SIL User Documentation General Electric created a Safety Manual for the PPRO Protection Module, see [D079]. This safety manual was assessed by exida. The final version is considered to be in compliance with the requirements of IEC The document includes all required reliability data and operations, maintenance, and proof test procedures. Requirements from IEC , Table B.4 that have been met by General Electric include operation and maintenance instructions, user friendliness, maintenance friendliness, documentation, and limited operation possibilities. The Safety Case documents more details on how each of these requirements has been met. This meets the requirements for SIL 3. T-034 V2R4 Page 15 of 18

16 4.5 Hardware Assessment To evaluate the hardware design of the PPRO, a Failure Modes, Effects, and Diagnostic Analysis was performed by exida for each component in the system. This is documented in [R2]. The FMEDA was verified using Fault Injection Testing as part of the development, see [D77], and as part of the IEC assessment. A Failure Modes and Effects Analysis (FMEA) is a systematic way to identify and evaluate the effects of different component failure modes, to determine what could eliminate or reduce the chance of failure, and to document the system in consideration. An FMEDA (Failure Mode Effect and Diagnostic Analysis) is an FMEA extension. It combines standard FMEA techniques with extension to identify online diagnostics techniques and the failure modes relevant to safety instrumented system design. From the FMEDA failure rates are derived for each important failure category. These results must be considered in combination with PFD AVG of other devices of a Safety Instrumented Function (SIF) in order to determine suitability for a specific Safety Integrity Level (SIL). The Safety Manual states that the application engineer should calculate the PFD AVG for each defined safety instrumented function (SIF) to verify the design of that SIF. T-034 V2R4 Page 16 of 18

17 5 Terms and Definitions Fault tolerance FIT FMEDA HFT Low demand mode PFD AVG PFH SFF SIF SIL SIS Ability of a functional unit to continue to perform a required function in the presence of faults or errors (IEC , 3.6.3) Failure In Time (1x10-9 failures per hour) Failure Mode Effect and Diagnostic Analysis Hardware Fault Tolerance Mode, where the demand interval for operation made on a safety-related system is greater than twice the proof test interval. Average Probability of Failure on Demand Probability of dangerous Failure per Hour Safe Failure Fraction - Summarizes the fraction of failures, which lead to a safe state and the fraction of failures which will be detected by diagnostic measures and lead to a defined safety action. Safety Instrumented Function Safety Integrity Level Safety Instrumented System Implementation of one or more Safety Instrumented Functions. A SIS is composed of any combination of sensor(s), logic solver(s), and final element(s). Type A element Type B element Non-Complex element (using discrete components); for details see of IEC Complex element (using complex components such as micro controllers or programmable logic); for details see of IEC T-034 V2R4 Page 17 of 18

18 6 Status of the document 6.1 Liability exida prepares reports based on methods advocated in International standards. Failure rates are obtained from a collection of industrial databases. exida accepts no liability whatsoever for the use of these numbers or for the correctness of the standards on which the general calculation methods are based. 6.2 Releases Version: Revision: V1 R2 Version History: V1, R2: Authors: John Yozallinas Review: Mike Medoff Release status: Released Updated D045a to reference a later version V1, R1: Updated based on review V0, R0: Created 6.3 Future Enhancements At request of client. 6.4 Release Signatures Certifying Assessor: John Yozallinas, Senior Safety Engineer CFSE Evaluating Assessor: Mike Medoff, Senior Safety Engineer, CFSE, CISA exida ( GE R001 V1R2 Assessment PPRO.docx, November 1, 2013 T-034 V1R2 Page 18 of 18 Main Offices Service Centers Sellersville, PA, USA Munich, Germany Switzerland United Kingdom Houston, TX, USA Calgary, AB, Canada South Africa Singapore Mexicothe Netherlands New Zealand/Australia Brazil

IEC Functional Safety Assessment

IEC Functional Safety Assessment IEC 61508 Functional Safety Assessment Project: Rosemount 5300 Series 4-20mA HART Guided Wave Radar Level and Interface Transmitter Device Label SW 2.A1 2.J0 Customer: Rosemount Tank Radar (an Emerson

More information

Results of the IEC Functional Safety Assessment

Results of the IEC Functional Safety Assessment Results of the IEC 61508 Functional Safety Assessment Project: 3051S Electronic Remote Sensors (ERS ) System Customer: Emerson Automation Solutions (Rosemount, Inc.) Shakopee, MN USA Contract No.: Q16/12-041

More information

IEC Functional Safety Assessment

IEC Functional Safety Assessment IEC 61508 Functional Safety Assessment Project: LESV - Flow Sensor Customer: Woodward Industrial Controls Fort Collins, CO USA Contract Number: Q13/04-021 Report No.: WOO Q13-04-021 R001 Version V0, Revision

More information

IEC Functional Safety Assessment

IEC Functional Safety Assessment IEC 61508 Functional Safety Assessment Project: Rosemount 2051 4-20mA Pressure Transmitter Device Label SW 1.0.0-1.4.x Company: Rosemount Inc. (an Emerson Process Management company) Chanhassen, MN USA

More information

IEC Functional Safety Assessment

IEC Functional Safety Assessment IEC 61508 Functional Safety Assessment Project: 3051S HART Advanced Diagnostics Pressure Transmitter, option code DA2 Customer: Rosemount Inc. (an Emerson Process Management company) Chanhassen, MN USA

More information

ida Certification Services IEC Functional Safety Assessment Project: Series 327 Solenoid Valves Customer: ASCO Numatics

ida Certification Services IEC Functional Safety Assessment Project: Series 327 Solenoid Valves Customer: ASCO Numatics e ida Certification Services IEC 61508 Functional Safety Assessment Project: Series 327 Solenoid Valves Customer: ASCO Numatics Scherpenzeel The Netherlands Contract Number: Q13/01-001 Report No.: ASC

More information

IEC Functional Safety Assessment

IEC Functional Safety Assessment IEC 61508 Functional Safety Assessment Project: Rosemount 3051 4-20mA HART Pressure Transmitter Device Label SW 1.0.0-1.4.x Company: Rosemount Inc. (an Emerson Process Management company) Chanhassen, MN

More information

ida Certification Services IEC Functional Safety Assessment Project: Series 8314, 8316, and Way/2 Position Solenoid Valves Customer:

ida Certification Services IEC Functional Safety Assessment Project: Series 8314, 8316, and Way/2 Position Solenoid Valves Customer: e ida Certification Services IEC 61508 Functional Safety Assessment Project: Series 8314, 8316, and 8320 3 Way/2 Position Solenoid Valves Customer: ASCO Florham Park, NJ USA Contract Number: Q13/01-001

More information

Results of the IEC Functional Safety Assessment. ABB, Inc. Baton Rouge, LA USA

Results of the IEC Functional Safety Assessment. ABB, Inc. Baton Rouge, LA USA Results of the IEC 61508 Functional Safety Assessment Project: MT5000, MT5100 and MT5200 Level Transmitter Customer: ABB, Inc. Baton Rouge, LA USA Contract No.: Q16-06-017 Report No.: ABB 10-02-051 R001

More information

IEC Functional Safety Assessment. SPR Series Spool Valves. Bifold Fluidpower Ltd. Chadderton, Manchester United Kingdom

IEC Functional Safety Assessment. SPR Series Spool Valves. Bifold Fluidpower Ltd. Chadderton, Manchester United Kingdom IEC 61508 Functional Safety Assessment Project: SPR Series Spool Valves Customer: Bifold Fluidpower Ltd. Chadderton, Manchester United Kingdom Contract No.: Q17/05-127 Report No.: BIF 11/02-075 R002 Version

More information

ida Certification Services IEC Functional Safety Assessment Project: Automax Pneumatic Rack & Pinion Actuators Customer: Flowserve Flow Control

ida Certification Services IEC Functional Safety Assessment Project: Automax Pneumatic Rack & Pinion Actuators Customer: Flowserve Flow Control e ida Certification Services IEC 61508 Functional Safety Assessment Project: Automax Pneumatic Rack & Pinion Actuators Customer: Flowserve Flow Control Haywards Heath West Sussex United Kingdom Contract

More information

IEC Functional Safety Assessment

IEC Functional Safety Assessment IEC 61508 Functional Safety Assessment Project: DeltaV SIS DeltaV SIS Relay Module, KJ2231X1- EA1 DeltaV SIS Voltage Monitor, KJ2231X1 EB1 Customer: Emerson Process Management Fisher Rosemount Systems

More information

Results of the IEC Functional Safety Assessment. Rosemount Tank Radar Sweden

Results of the IEC Functional Safety Assessment. Rosemount Tank Radar Sweden Results of the IEC 61508 Functional Safety Project: Rosemount TM 5408 Level Transmitter Customer: Rosemount Tank Radar Sweden Contract No.: Q15/01-149 Report No.: ROS 15-01-149 Version V1, Revision R1,

More information

Results of the IEC Functional Safety Assessment HART transparent repeater. PR electronics

Results of the IEC Functional Safety Assessment HART transparent repeater. PR electronics exida Certification S.A. 2 Ch. de Champ-Poury CH-1272 Genolier Switzerland Tel.: +41 22 364 14 34 email: info@exidacert.com Results of the IEC 61508 Functional Safety Assessment Project: 9106 HART transparent

More information

Results of the IEC Functional Safety Assessment. Pressure, Temperature and Vacuum Switches. BETA B.V. Rijswijk The Netherlands

Results of the IEC Functional Safety Assessment. Pressure, Temperature and Vacuum Switches. BETA B.V. Rijswijk The Netherlands exida Certification S.A. 2 Ch. de Champ-Poury CH-1272 Genolier Switzerland Tel.: +41 22 364 14 34 email: info@exidacert.ch Results of the IEC 61508 Functional Safety Assessment Project: Pressure, Temperature

More information

ida Certification Services IEC Functional Safety Assessment Project: Worcester 51/52, 53/54 1 piece and 519/529 Series Ball Valves Customer:

ida Certification Services IEC Functional Safety Assessment Project: Worcester 51/52, 53/54 1 piece and 519/529 Series Ball Valves Customer: e ida Certification Services IEC 61508 Functional Safety Assessment Project: Worcester 51/52, 53/54 1 piece and 519/529 Series Ball Valves Customer: Flowserve Flow Control Haywards Heath West Sussex United

More information

IEC Functional Safety Assessment

IEC Functional Safety Assessment IEC 61508 Functional Safety Assessment Project: Micro Motion Series 1700/2700 Flowmeters with Standard or Enhanced Core Company: Micro Motion, Inc. Emerson Boulder, Colorado USA Contract No.: Q17/02-079

More information

Comparing Certification under IEC st Edition and 2nd Edition

Comparing Certification under IEC st Edition and 2nd Edition White Paper Project: Comparing Certification under IEC 61508 1st Edition and 2nd Edition Version 1, Revision 5, November 15, 2016 Rudolf P. Chalupa The document was prepared using best effort. The authors

More information

on behalf of TÜV INTERCERT GmbH Group of TÜV Saarland

on behalf of TÜV INTERCERT GmbH Group of TÜV Saarland on behalf of TÜV INTERCERT GmbH Group of TÜV Saarland SIL SUMMARY REPORT IEC 61508-1/7: 2010 Pneumatic / hydraulic compact scotch-yoke spring return actuators Series RC Rotork Sweden AB Kontrollvägen,

More information

Safety Manual In Accordance with IEC 61508

Safety Manual In Accordance with IEC 61508 Direct Acting Pneumatic Trip with Partial Stroke Safety Manual In Accordance with IEC 61508 Elliott Company, 901 North Fourth Street, Jeannette, PA 15644 Document number 5046521 Rev No. Issued By Issued

More information

Results of the IEC Functional Safety Assessment Universal Converter. PR electronics

Results of the IEC Functional Safety Assessment Universal Converter. PR electronics exida Certification S.A. 2 Ch. de Champ-Poury CH-1272 Genolier Switzerland Tel.: +41 22 364 14 34 email: info@exidacert.com Results of the IEC 61508 Functional Safety Assessment Project: 9116 Universal

More information

Spring return and double acting pneumatic rack and pinion actuator

Spring return and double acting pneumatic rack and pinion actuator Test Report No.: FS 28717071 Version-No.: 1 Date: 2017-08-03 Product: Model: Customer/Manufacturer: Spring return and double acting pneumatic rack and pinion actuator Series FieldQ Emerson Automation Solutions

More information

FUNCTIONAL SAFETY CERTIFICATE. IQT3 Actuator manufactured by

FUNCTIONAL SAFETY CERTIFICATE. IQT3 Actuator manufactured by FUNCTIONAL SAFETY CERTIFICATE This is to certify that the IQT3 Actuator manufactured by Rotork Controls Ltd (A Division of Rotork PLC) Brassmill Lane Bath, BA1 3JQ UK have been assessed by with reference

More information

SERIES 92/93 SAFETY MANUAL PNEUMATIC ACTUATOR. The High Performance Company

SERIES 92/93 SAFETY MANUAL PNEUMATIC ACTUATOR. The High Performance Company SERIES 92/93 PNEUMATIC ACTUATOR SAFETY MANUAL The High Performance Company Table of Contents 1.0 Introduction...1 1.1 Terms and Abbreviations... 1 1.2 Acronyms... 1 1.3 Product Support... 2 1.4 Related

More information

Failure Modes, Effects and Diagnostic Analysis

Failure Modes, Effects and Diagnostic Analysis Failure Modes, Effects and Diagnostic Analysis Project: Rosemount 8800D Vortex Flowmeter Company: Emerson Eden Prairie, MN USA Contract Number: Q16/12-042 Report No.: ROS 06/03-34 R001 Version V3, Revision

More information

Session Nine: Functional Safety Gap Analysis and Filling the Gaps

Session Nine: Functional Safety Gap Analysis and Filling the Gaps Session Nine: Functional Safety Gap Analysis and Filling the Gaps Presenter Colin Easton ProSalus Limited Abstract Increasingly regulatory and competent authorities are looking to hazardous Installation

More information

FUNCTIONAL SAFETY CERTIFICATE. IQ3 Valve Actuator manufactured by

FUNCTIONAL SAFETY CERTIFICATE. IQ3 Valve Actuator manufactured by FUNCTIONAL SAFETY CERTIFICATE This is to certify that the IQ3 Valve Actuator manufactured by Rotork Controls Ltd (A Division of Rotork PLC) Brassmill Lane Bath, BA1 3JQ UK have been assessed by with reference

More information

SIL SAFETY MANUAL. Turnex Pneumatic Actuators. Experience In Motion. NAF Turnex Pneumatic Actuators NFENDS A4 02/15 FCD NFENDS A4 05/15

SIL SAFETY MANUAL. Turnex Pneumatic Actuators. Experience In Motion. NAF Turnex Pneumatic Actuators NFENDS A4 02/15 FCD NFENDS A4 05/15 SIL SAFETY MANUAL NAF Turnex Pneumatic Actuators NFENDS7459-00-A4 02/15 Turnex Pneumatic Actuators FCD NFENDS7459-00-A4 05/15 Experience In Motion 1 Contents 1 Introduction... 3 1.1 Scope and purpose of

More information

ida Certification Services IEC Functional Safety Assessment Customer: Flowserve Flow Control Haywards Heath West Sussex United Kingdom

ida Certification Services IEC Functional Safety Assessment Customer: Flowserve Flow Control Haywards Heath West Sussex United Kingdom e ida Certification Services IEC 61508 Functional Safety Assessment Project: Worcester 44/59/459/599 Series Ball Valves Customer: Flowserve Flow Control Haywards Heath West Sussex United Kingdom Contract

More information

FUNCTIONAL SAFETY CERTIFICATE. TVL/TVH/TVF Switchboxes

FUNCTIONAL SAFETY CERTIFICATE. TVL/TVH/TVF Switchboxes FUNCTIONAL SAFETY CERTIFICATE This is to certify that the TVL/TVH/TVF Switchboxes manufactured by TopWorx 3300 Fern Valley Road Louisville Kentucky 40213 USA have been assessed by with reference to the

More information

FUNCTIONAL SAFETY CERTIFICATE. Topworx, Inc 3300 Fern Valley Road, Louisville, Kentucky, 40213, USA

FUNCTIONAL SAFETY CERTIFICATE. Topworx, Inc 3300 Fern Valley Road, Louisville, Kentucky, 40213, USA FUNCTIONAL SAFETY CERTIFICATE This is to certify that the GO TM switch models: 73, 74, 75, 76, 77, 7G, 7H, 7I, 7J Manufactured by Topworx, Inc 3300 Fern Valley Road, Louisville, Kentucky, 40213, USA Have

More information

Mark VIeS. A SIL 2 and SIL 3 functional safety system for today s connected world. geautomation.com

Mark VIeS. A SIL 2 and SIL 3 functional safety system for today s connected world. geautomation.com Mark VIeS * A SIL 2 and SIL 3 functional safety system for today s connected world geautomation.com Mark VIeS Functional Safety System In today s world of brilliant machines, operators require high-performance

More information

FUNCTIONAL SAFETY CERTIFICATE

FUNCTIONAL SAFETY CERTIFICATE FUNCTIONAL SAFETY CERTIFICATE This is to certify that the T-Series Switchbox Manufactured by Topworx 3300 Fern Valley Road Louisville Kentucky 40213 USA Has been assessed by with reference to the CASS

More information

FUNCTIONAL SAFETY CERTIFICATE

FUNCTIONAL SAFETY CERTIFICATE FUNCTIONAL SAFETY CERTIFICATE This is to certify that the D-Series Switchbox Manufactured by Topworx 3300 Fern Valley Road Louisville Kentucky 40213 USA Has been assessed by with reference to the CASS

More information

Development of Safety Related Systems

Development of Safety Related Systems July 2015 LatticeSemiconductor 7 th Floor,111SW5 th Avenue Portland,Oregon97204USA Telephone:(503)268I8000 www.latticesemi.com WP004 The increasing degree of automation brings a lot of comfort and flexibility

More information

FUNCTIONAL SAFETY ASSESSMENT REPORT FOR THE LIFECYCLE AND MANAGEMENT OF FUNCTIONAL SAFETY

FUNCTIONAL SAFETY ASSESSMENT REPORT FOR THE LIFECYCLE AND MANAGEMENT OF FUNCTIONAL SAFETY FUNCTIONAL SAFETY ASSESSMENT REPORT FOR THE LIFECYCLE AND MANAGEMENT OF FUNCTIONAL SAFETY Author:. Paul Reeve BEng CEng MIET MInstMC Functional Safety Consultant Sira Associate Report checked:. Hassan

More information

Requirements Are Evolving In The Elevator Industry. November 28, 2012

Requirements Are Evolving In The Elevator Industry. November 28, 2012 How Safety And Safety Requirements Are Evolving In The Elevator Industry November 28, 2012 UL and the UL logo are trademarks of UL LLC 2012 DISCLAIMER/ TERMS OF USE: THE INFORMATION PROVIDED HEREIN IS

More information

Results of the IEC Functional Safety Assessment

Results of the IEC Functional Safety Assessment Results of the IEC 61508 Functional Safety Assessment Project: SITRANS TH420/320; TR420/320 Customer: Siemens AG 76181 Karlsruhe, Germany Contract No.: Q16/09-078-C Report No.: Q1609-078-C R004 Version

More information

FUNCTIONAL SAFETY CERTIFICATE Series Poppet Valve

FUNCTIONAL SAFETY CERTIFICATE Series Poppet Valve FUNCTIONAL SAFETY CERTIFICATE This is to certify that the 1750 Series Poppet Valve manufactured by Rotork Midland Ltd Patrick Gregory Rd Wolverhampton West Midlands WV11 3DZ UK has been assessed by with

More information

FUNCTIONAL SAFETY CERTIFICATE

FUNCTIONAL SAFETY CERTIFICATE FUNCTIONAL SAFETY CERTIFICATE This is to certify that the 80 series proximity switch manufactured by Topworx, Inc. 3300 Fern Valley Road Louisville Kentucky 40213 USA has been assessed by with reference

More information

FUNCTIONAL SAFETY CERTIFICATE

FUNCTIONAL SAFETY CERTIFICATE FUNCTIONAL SAFETY CERTIFICATE This is to certify that the T-Series Switchbox Manufactured by Topworx 3300 Fern Valley Road Louisville Kentucky 40213 USA Has been assessed by with reference to the CASS

More information

International Safety Standards Designing the Future

International Safety Standards Designing the Future International Safety Standards Designing the Future Wayne Pearse Safety Consultant FSExpert (TÜV Rheinland, Machinery) Rev 5058-CO900D Copyright 2013 Rockwell Automation, Inc. All Rights Reserved. Copyright

More information

Session Seven Functional safety and ageing assets

Session Seven Functional safety and ageing assets Session Seven Functional safety and ageing assets Shane Higgins Principal Safety and Risk Engineer, HIMA Australia Lyn Fernie VP Global Consulting, HIMA Australia Abstract When designing a new facility,

More information

Reliability of Safety-Critical Systems Chapter 2. Concepts and requirements

Reliability of Safety-Critical Systems Chapter 2. Concepts and requirements Reliability of Safety-Critical Systems Chapter 2. Concepts and requirements Mary Ann Lundteigen and Marvin Rausand mary.a.lundteigen@ntnu.no & marvin.rausand@ntnu.no RAMS Group Department of Production

More information

Report. Certificate Z F-CM AS-i Safety for SIMATIC ET 200SP

Report. Certificate Z F-CM AS-i Safety for SIMATIC ET 200SP Report to the Certificate Z10 16 07 38717 052 Safety Components F-CM AS-i Safety for SIMATIC ET 200SP Manufacturer: Siemens AG I IA CE Werner-von-Siemens-Straße 48 D-92220 Amberg Germany Revision 1.7 dated

More information

MIE TALK - January 2017

MIE TALK - January 2017 MIE TALK - January 2017 Functional Safety (SIL) basics for Process Control Compiled by: Gary Friend BSc PrEng, CEng MIET, Sales Director, Extech Safety Systems (MTL, Beka Associates, Extronics, AEGEx,

More information

Functional Safety Machinery

Functional Safety Machinery Functional Safety Machinery One of the fundamental aspects of machinery safety is the reliability of safety-related command parts, namely the Functional Safety, defined as the portion of the overall safety

More information

FUNCTIONAL SAFETY EVALUATION of SIS and APPLICATIONS

FUNCTIONAL SAFETY EVALUATION of SIS and APPLICATIONS TÜV Rheinland International Symposium in China Functional Safety in Industrial Applications October 18 19, 2011 in Shanghai China FUNCTIONAL SAFETY EVALUATION of SIS and APPLICATIONS 1 FUNCTIONAL SAFETY

More information

Introduction and Revision of IEC 61508

Introduction and Revision of IEC 61508 Introduction and Revision of IEC 61508 Ron Bell OBE, BSc, CEng FIET Engineering Safety Consultants Ltd Collingham House 10-12 Gladstone Road Wimbledon London, SW19 1QT UK Abstract Over the past twenty-five

More information

11th International Workshop on the Application of FPGAs in Nuclear Power Plants

11th International Workshop on the Application of FPGAs in Nuclear Power Plants 11th International Workshop on the Application of FPGAs in Nuclear Power Plants Case Study for Tailoring and Adapting IEEE Std 1012 Software Verification and Validation Requirements for FPGA Technology

More information

Functional safety Safety instrumented systems for the process industry sector

Functional safety Safety instrumented systems for the process industry sector BRITISH STANDARD BS IEC 61511-1:2003 Functional safety Safety instrumented systems for the process industry sector Part 1: Framework, definitions, system, hardware and software requirements ICS 25.040.01;

More information

Safety cannot rely on testing

Safety cannot rely on testing Standards 1 Computer-based systems (generically referred to as programmable electronic systems) are being used in all application sectors to perform non-safety functions and, increasingly, to perform safety

More information

Compliance driven Integrated circuit development based on ISO26262

Compliance driven Integrated circuit development based on ISO26262 Compliance driven Integrated circuit development based on ISO26262 Haridas Vilakathara Manikantan panchapakesan NXP Semiconductors, Bangalore Accellera Systems Initiative 1 Outline Functional safety basic

More information

GE Intelligent Platforms. Mark * VIeS. A safety management solution for today s connected world

GE Intelligent Platforms. Mark * VIeS. A safety management solution for today s connected world GE Intelligent Platforms Mark * VIeS A safety management solution for today s connected world Mark VIeS Safety Management Solution In today s world of brilliant machines, operators require high-performance

More information

Process Assessment Model SPICE for Mechanical Engineering - Proposal-

Process Assessment Model SPICE for Mechanical Engineering - Proposal- Process Assessment Model SPICE for Mechanical Engineering - Proposal- Version: 1.4 Release date: 06.07.2017 Distribution: Status: Public. For the worldwide SPICE community and any other interested parties.

More information

WORK PLAN AND IV&V METHODOLOGY Information Technology - Independent Verification and Validation RFP No IVV-B

WORK PLAN AND IV&V METHODOLOGY Information Technology - Independent Verification and Validation RFP No IVV-B 1. Work Plan & IV&V Methodology 1.1 Compass Solutions IV&V Approach The Compass Solutions Independent Verification and Validation approach is based on the Enterprise Performance Life Cycle (EPLC) framework

More information

IEC KHBO, Hobufonds SAFESYS ing. Alexander Dekeyser ing. Kurt Lintermans

IEC KHBO, Hobufonds SAFESYS ing. Alexander Dekeyser ing. Kurt Lintermans IEC 61508 KHBO, Hobufonds SAFESYS ing. Alexander Dekeyser ing. Kurt Lintermans page 2 PART 1 : GENERAL REQUIREMENTS 1 Scope The first objective of this standard is to facilitate the development of application

More information

Technical report. Type testing

Technical report. Type testing Technical report of the Type testing of the Configuration Environment SIMATIC SLS with HMI Applicant Siemens AG Gleiwitzer Straße 555 D-90475 Nürnberg Germany Manufacturer Siemens AG Report no. Revision:

More information

Tool centered Safety Design Support

Tool centered Safety Design Support Tool centered Safety Design Support Stephan Aschenbrenner exida.com GmbH Tel: +49-8362-507274 email: stephan.aschenbrenner@exida.com About myself Stephan H. Aschenbrenner, CFSE Dipl. Ing. (Univ) for Electrical

More information

ISO INTERNATIONAL STANDARD

ISO INTERNATIONAL STANDARD INTERNATIONAL STANDARD ISO 25119-3 First edition 2010-06-01 Tractors and machinery for agriculture and forestry Safety-related parts of control systems Part 3: Series development, hardware and software

More information

Roadblocks to Approving SIS Equipment by Prior Use. Joseph F. Siebert. exida. Prepared For. ISA EXPO 2006/Texas A&M Instrumentation Symposium

Roadblocks to Approving SIS Equipment by Prior Use. Joseph F. Siebert. exida. Prepared For. ISA EXPO 2006/Texas A&M Instrumentation Symposium Roadblocks to Approving SIS Equipment by Prior Use Joseph F. Siebert exida Prepared For ISA EXPO 2006/Texas A&M Instrumentation Symposium Houston, TX/College Station, TX October 18, 2006/ January 24, 2007

More information

SafeDesign: Machine Safety Validation

SafeDesign: Machine Safety Validation SafeDesign: Machine Safety Validation Host: Steve Ludwig Rockwell Automation Safety Business Programs Manager Copyright 2010 Rockwell Automation, Inc. All rights reserved. 1 Today s Agenda 1. Review of

More information

Session Three Management of Functional Safety Gaps in the Operation Phase Andy Yam Functional Expert-Safety Systems, Yokogawa Australia Pty. Ltd.

Session Three Management of Functional Safety Gaps in the Operation Phase Andy Yam Functional Expert-Safety Systems, Yokogawa Australia Pty. Ltd. Session Three Management of Functional Safety Gaps in the Operation Phase Andy Yam Functional Expert-Safety Systems, Yokogawa Australia Pty. Ltd. 1 Abstract According to the IEC 61511 standard, the purpose

More information

On Board Use and Application of Computer based systems

On Board Use and Application of Computer based systems (Dec 2006 (Corr.1 Oct 2007) (Rev.1 Sept 2010) (Rev.2 June 2016 Complete Revision) On Board Use and Application of Computer based systems 1. Introduction 1.1 Scope These requirements apply to design, construction,

More information

A Survey on the Development and Design Strategies for Safety Related Systems according the Standard IEC/EN 61508

A Survey on the Development and Design Strategies for Safety Related Systems according the Standard IEC/EN 61508 Proceedings of the 6th WSEAS International Conference on Applied Computer Science, Tenerife, Canary Islands, Spain, December 16-18, 2006 97 A Survey on the Development and Design Strategies for Safety

More information

Maximizing Safety Without Compromising Reliability

Maximizing Safety Without Compromising Reliability Maximizing Safety Without Compromising Reliability Artesyn Embedded Technologies www.artesyn.com October 2015 A programmable electronic system can be defined as functionally safe if it operates correctly

More information

CASE STUDY: SAFETY INSTRUMENTED BURNER MANAGEMENT SYSTEM (SI-BMS)

CASE STUDY: SAFETY INSTRUMENTED BURNER MANAGEMENT SYSTEM (SI-BMS) CASE STUDY: SAFETY INSTRUMENTED BURNER MANAGEMENT SYSTEM (SI-BMS) Mike Scott VP, Process Safety AE Solutions Greenville, SC 29507 Bud Adler Director, Business Development AE Solutions Lake Mary, FL 32746

More information

Safety-critical Certification of FPGA-based Platform against Requirements of U.S. Nuclear Regulatory Commission (NRC): Industrial Case Study

Safety-critical Certification of FPGA-based Platform against Requirements of U.S. Nuclear Regulatory Commission (NRC): Industrial Case Study Safety-critical Certification of FPGA-based Platform against Requirements of U.S. Nuclear Regulatory Commission (NRC): Industrial Case Study Vladimir Sklyar National Aerospace University KhAI, Kharkiv,

More information

The effect of diagnostic and periodic proof testing on the availability of programmable safety systems

The effect of diagnostic and periodic proof testing on the availability of programmable safety systems The effect of diagnostic and periodic proof testing on the availability of programmable safety systems WOLFGANG VELTEN-PHILIPP Automation, Software, Information TÜV Rheinland Bienwaldstr. 41, 76187 Karlsruhe

More information

Procedure 14 Internal Audits

Procedure 14 Internal Audits Procedure 14 Internal Audits Table of Contents 1 Introduction... 2 2 Audit Planning... 2 2.1 Head Office... 2 2.2 Critical Locations... 3 3 Conducting the Audit... 3 4 Non-conformances... 3 5 Client file

More information

REQUIREMENTS FOR SAFETY RELATED SOFTWARE IN DEFENCE EQUIPMENT PART 1: REQUIREMENTS

REQUIREMENTS FOR SAFETY RELATED SOFTWARE IN DEFENCE EQUIPMENT PART 1: REQUIREMENTS Ministry of Defence Defence Standard 00-55(PART 1)/Issue 2 1 August 1997 REQUIREMENTS FOR SAFETY RELATED SOFTWARE IN DEFENCE EQUIPMENT PART 1: REQUIREMENTS This Part 1 of Def Stan 00-55 supersedes INTERIM

More information

9. Verification, Validation, Testing

9. Verification, Validation, Testing 9. Verification, Validation, Testing (a) Basic Notions (b) Dynamic testing. (c) Static analysis. (d) Modelling. (e) Environmental Simulation. (f) Test Strategies. (g) Tool support. (h) Independent Verification

More information

POLICY MANUAL FOR ISO 9001:2008. Document: PM-9001:2008 Date: April 7, Uncontrolled Copy

POLICY MANUAL FOR ISO 9001:2008. Document: PM-9001:2008 Date: April 7, Uncontrolled Copy POLICY MANUAL FOR ISO 9001:2008 Document: PM-9001:2008 Date: April 7, 2015 REVIEWED BY: Tim Powers DATE: 4-7-2015 APPROVED BY: C._Bickford Uncontrolled Copy DATE: 4-7-2015 1.0 GENERAL ISS: 1 REV: E Page:

More information

Software Safety and Certification

Software Safety and Certification Software Safety and Certification presented to IEEE Spring Switchgear Committee Luncheon Seminar 4 May, 2004 by Howard Cox Laboratories 1 What we will cover... Functional Safety Concepts from IEC 61508

More information

Document 2007 Rev 0 December 2005 Page 1 of 8

Document 2007 Rev 0 December 2005 Page 1 of 8 Document 2007 Rev 0 December 2005 Page 1 of 8 1. Scope... 2 2. Definitions... 2 a. LabTest...2 b. Factory Location/ Manufacturer's Premises...2 c. Manufacturer...2 d. Subcontractor...2 e. f. Out-Worker...2

More information

Mentor Safe IC ISO & IEC Functional Safety

Mentor Safe IC ISO & IEC Functional Safety Mentor Safe IC ISO 26262 & IEC 61508 Functional Alex Grove European Application Engineer Bryan Ramirez Strategic Marketing Manager Automotive Functional Professional Sanjay Pillay Functional Technologist

More information

Functional Safety: ISO26262

Functional Safety: ISO26262 Functional Safety: ISO26262 Seminar Paper Embedded systems group Aniket Kolhapurkar, University of Kaiserslautern, Germany kolhapur@rhrk.uni kl.de September 8, 2015 1 Abstract Functions in car, such as

More information

Software requirements for the control systems according to the level of functional safety

Software requirements for the control systems according to the level of functional safety JAMSI, 12 (2016), No. 1 25 Software requirements for the control systems according to the level of functional safety Abstract D. GABRIŠKA The article describes the main requirements of the software subsystems

More information

City of San Mateo Clean Water Program Programmable Logic Controller (PLC) and Human Machine Interface (HMI) Programming Services

City of San Mateo Clean Water Program Programmable Logic Controller (PLC) and Human Machine Interface (HMI) Programming Services ATTACHMENT A SAMPLE SCOPE OF SERVICES PLC & HMI PROGRAMMING City of San Mateo Clean Water Program Programmable Logic Controller (PLC) and Human Machine Interface (HMI) Programming Services December, 2017

More information

QUALITY MANUAL. Origination Date: XXXX. Latest Revision Date. Revision Orig

QUALITY MANUAL. Origination Date: XXXX. Latest Revision Date. Revision Orig QUALITY MANUAL Origination Date: XXXX Document Identifier: Date: Document Status: Latest Revision Date Revision Orig Abstract: This document describes the tailored quality management system for the build

More information

Functional Safety Assessments of Safety Controls, Alarms, and Interlocks

Functional Safety Assessments of Safety Controls, Alarms, and Interlocks Functional Safety Assessments of Safety Controls, Alarms, and Interlocks How efficient are your functional safety projects? Eloise Roche, Monica Hochleitner, and Angela Summers SIS-TECH Solutions, LP Houston,

More information

Safety Manual. Rotamass TI Coriolis flow meter. IM 01U10D00-00EN-R, 2nd edition,

Safety Manual. Rotamass TI Coriolis flow meter. IM 01U10D00-00EN-R, 2nd edition, Safety Manual Rotamass TI Coriolis flow meter IM 01U10D00-00EN-R, 2nd edition, 2017-03-17 Table of contents Table of contents 1 Scope and purpose of the document... 3 2 Using Rotamass TI for a SIS application...

More information

Automated System Validation By: Daniel P. Olivier & Curtis M. Egan

Automated System Validation By: Daniel P. Olivier & Curtis M. Egan Automated System Validation By: Daniel P. Olivier & Curtis M. Egan In today s technical environment validation practices are both a requirement and an important tool in the medical and pharmaceutical industry.

More information

Mechanical Component Failure Rates - Static vs. Dynamic Operation. Web Seminar March 11, 2015 Loren L. Stewart exida Sellersville, PA USA

Mechanical Component Failure Rates - Static vs. Dynamic Operation. Web Seminar March 11, 2015 Loren L. Stewart exida Sellersville, PA USA Mechanical Component Failure Rates - Static vs. Dynamic Operation Web Seminar March 11, 2015 Loren L. Stewart exida Sellersville, PA USA Mechanical Component Failure Rates - Static vs. Dynamic Operation

More information

Research on software systems dependability at the OECD Halden Reactor Project

Research on software systems dependability at the OECD Halden Reactor Project Research on software systems dependability at the OECD Halden Reactor Project SIVERTSEN Terje 1, and ØWRE Fridtjov 2 1. Institute for Energy Technology, OECD Halden Reactor Project, Post Box 173, NO-1751

More information

ISO : Rustam Rakhimov (DMS Lab)

ISO : Rustam Rakhimov (DMS Lab) ISO 26262 : 2011 Rustam Rakhimov (DMS Lab) Introduction Adaptation of IEC 61508 to road vehicles Influenced by ISO 16949 Quality Management System The first comprehensive standard that addresses safety

More information

Integrating Functional Safety with ARM. November, 2015 Lifeng Geng, Embedded Marketing Manager

Integrating Functional Safety with ARM. November, 2015 Lifeng Geng, Embedded Marketing Manager Integrating Functional Safety with ARM November, 2015 Lifeng Geng, Embedded Marketing Manager 1 ARM: The World s Most Scalable Architecture ARM ecosystem meets needs of vertical markets from sensors to

More information

Life-cycle Management of Safety Instrumented Systems

Life-cycle Management of Safety Instrumented Systems Life-cycle Management of Safety Instrumented Systems Dr. Bernd Schroers Bayer AG, Leverkusen, Germany University of Aachen, Germany University of Kassel, Germany D-51368 Leverkusen, Building 407 Abstract

More information

FOUNDATION Fieldbus Technology Update

FOUNDATION Fieldbus Technology Update FOUNDATION Fieldbus Technology Update Dave Glanzer Director of Technology Development Fieldbus Foundation 1 Topics Safety Instrumented Functions (SIF) Wireless and Remote I/O (WIO) 2 Safety Instrumented

More information

R214 SPECIFIC REQUIREMENTS: INFORMATION TECHNOLOGY TESTING LABORATORY ACCREDITATION PROGRAM

R214 SPECIFIC REQUIREMENTS: INFORMATION TECHNOLOGY TESTING LABORATORY ACCREDITATION PROGRAM A2LA R214 Specific Requirements: Information Technology Testing Laboratory Accreditation Document Revised: 3/5/18 Page 1 of 34 R214 SPECIFIC REQUIREMENTS: INFORMATION TECHNOLOGY TESTING LABORATORY ACCREDITATION

More information

FINDING THE BEST APPROACH FOR I&C MODELING IN THE PSA

FINDING THE BEST APPROACH FOR I&C MODELING IN THE PSA FINDING THE BEST APPROACH FOR I&C MODELING IN THE PSA H. BRUNELIERE, C. LEROY, L. MICHAUD AREVA NP SAS La Défense, France N. SABRI AREVA NP Inc Malborough, United States of America P. OTTO AREVA NP GmbH

More information

QUALITY SYSTEM MANUAL

QUALITY SYSTEM MANUAL TITLE: QUALITY SYSTEM MANUAL Page 1 of 15 QUALITY SYSTEM MANUAL TITLE: QUALITY SYSTEM MANUAL Page 2 of 15 Index PARAGRAPH TITLE... PAGE 1.0 GENERAL INFORMATION... 3 2.0 DEFINITIONS... 5 3.0 RELATED DOCUMENTS...

More information

Application of DO-254 Level A (Appendix B) Design Assurance Objectives of. Elemental Analysis. Mixed Signal (Analog/Digital) Discrete Circuitry

Application of DO-254 Level A (Appendix B) Design Assurance Objectives of. Elemental Analysis. Mixed Signal (Analog/Digital) Discrete Circuitry Application of DO-254 Level A (Appendix B) Design Assurance Objectives of Elemental Analysis To Mixed Signal (Analog/Digital) Discrete Circuitry By Dave Duncan Purple Seal Inc. THE INFORMATION CONTAINED

More information

Summary of TL 9000 R4.0 Requirements Beyond ISO 9001:2000

Summary of TL 9000 R4.0 Requirements Beyond ISO 9001:2000 This summary identifies the additional TL 9000 Release 4.0 requirements beyond those stated in ISO 9001:2000. See the TL 9000 R4.0 Handbook for the actual TL 9000 R4.0 requirements. ISO 9001:2000 section

More information

CASS TOES FOR FUNCTIONAL SAFETY MANAGEMENT ASSESSMENT (IEC : 2010)

CASS TOES FOR FUNCTIONAL SAFETY MANAGEMENT ASSESSMENT (IEC : 2010) CASS S FOR FUNCTIONAL SAFETY MANAGEMENT ASSESSMENT (IEC 61508-1: 2010) For general guidance on using CASS conformity assessment documents, refer to: Guidance for assessors on using the CASS s available

More information

IEC and ISO A cross reference guide

IEC and ISO A cross reference guide and A cross reference guide This guide sets out to explain where the details for different safety lifecycle activities can be found in the standards for the Machinery Sector: and. 1 Concept 2 Overall scope

More information

IEC Is it pain or gain?

IEC Is it pain or gain? IEC 61508 Is it pain or gain? Clive Timms, Director, C&C Technical Support Services Ltd. Introduction IEC 61508 (Ref. 1) provides designers and operators with the first generic internationally accepted

More information

IN-PILE CREEP RELAXATION AND POST-IRRADIATION THERMAL CREEP TESTING

IN-PILE CREEP RELAXATION AND POST-IRRADIATION THERMAL CREEP TESTING Page 1 / 11 Ver. 1.3 MANAGEMENT SPECIFICATION FOR THE IN-PILE CREEP RELAXATION AND POST-IRRADIATION THERMAL CREEP TESTING Abstract This document specifies the management requirements: the Supplier shall

More information

DESIGN CONTROL. Your Logo Here. Operational Procedure: EOP Rev.: A Pg. 1 1 of 7 DISTRIBUTION

DESIGN CONTROL. Your Logo Here. Operational Procedure: EOP Rev.: A Pg. 1 1 of 7 DISTRIBUTION Your Logo Here DESIGN CONTROL Operational Procedure: EOP-04-01 Rev.: A Pg. 1 1 of 7 DISTRIBUTION President Purchasing Human Resources Design Engineering Service Quality Assurance Production Marketing Quality

More information