A pragmatic approach to reasoning about the assurance of safety arguments
Rob Weaver, Jane Fenn, Tim Kelly
Abstract
Rob Weaver, Jane Fenn, Tim Kelly
Abstract
The development of safety critical systems is guided by standards. Many standards require the development of a safety case to demonstrate the acceptability of Safety Critical Systems. The safety case must provide confidence that the system is deemed safe enough to operate. For system components where it is not possible to quantify the associated risks (e.g. software), current standards in the aerospace, rail and defence sectors identify design and safety processes for different Safety Integrity Levels (SILs) or Development Assurance Levels (DALs). The assumption is that components developed against the requirements of higher SILs/DALs will be less prone to critical failures and thus have a lower impact on the safety of the overall system. This paper questions this assumption and instead discusses assurance of the safety argument as a method of demonstrating the confidence that can be placed in a safety case. An industrial case study from the aerospace sector is presented to demonstrate the practical use of the concept.
OpenAlex reports 39 citations for this work. Citation counts describe recorded attention and do not establish research quality.
A contribution statement is not available in the OpenAlex record.
Method details are not available in the OpenAlex metadata.
Findings are not separately available in the OpenAlex metadata.
Limitations are not available in the OpenAlex metadata.
Application details are not available in the OpenAlex metadata.
The development of safety critical systems is guided by standards. Many standards require the development of a safety case to demonstrate the acceptability of Safety Critical Systems. The safety case must provide confidence that the system is deemed safe enough to operate. For system components where it is not possible to quantify the associated risks (e.g. software), current standards in the aerospace, rail and defence sectors identify design and safety processes for different Safety Integrity Levels (SILs) or Development Assurance Levels (DALs). The assumption is that components developed against the requirements of higher SILs/DALs will be less prone to critical failures and thus have a lower impact on the safety of the overall system. This paper questions this assumption and instead discusses assurance of the safety argument as a method of demonstrating the confidence that can be placed in a safety case. An industrial case study from the aerospace sector is presented to demonstrate the practical use of the concept.
Key concepts: Safety assurance, Safety case, Risk analysis (engineering), Aerospace, System safety, Life-critical system, Quality assurance, Safety standards