資源描述:
《principles_of_system_safety_engineering_and_management.pdf》由會(huì)員上傳分享,免費(fèi)在線閱讀,更多相關(guān)內(nèi)容在學(xué)術(shù)論文-天天文庫(kù)。
1、PRINCIPLESOFSYSTEMSAFETYENGINEERINGANDMANAGEMENTFelixRedmillRedmillConsultancy,LondonFelix.Redmill@ncl.ac.ukRISK(c)FelixRedmill,2011CERN,May'112SAFETYENGINEERINGANDMANAGEMENTItisnecessarybothtoachieveappropriatesafetyandtodemonstratethatithasbeenachieved?Achieve-notonlyindesignanddevelopment,butina
2、llstagesofasystem?slifecycle?Appropriate-tothesystemandthecircumstances?Demonstrate-thatallthatcouldreasonablyhavebeendonehasbeendone,ateverystageofthelifecycle(c)FelixRedmill,2011CERN,May'113THEU.K.LAWONSAFETYHealthandSafetyatWorkEtc.Act1974:Safetyrisksimposedonothers(employeesandthepublicatlarge)
3、mustbereduced?sofarasisreasonablypracticable?(SFAIRP)(c)FelixRedmill,2011CERN,May'114THEHSE?SALARPPRINCIPLEIncreasingriskUnacceptableRegion(Riskcannotbejustifiedexceptinextraordinarycircumstances)LimitoftolerabilitythresholdALARPorTolerabilityRegion(Riskistolerableonlyifitsreductionisimpracticableo
4、rifthecostofreductionisgrosslydisproportinatetotheimprovementgained)BroadlyacceptablethresholdBroadlyAcceptableRegion(Riskistolerablewithoutreduction.Butitisnecessarytomaintainassurancethatitremainsatthislevel)(c)FelixRedmill,2011CERN,May'115THEHSE?SALARPPRINCIPLE(c)FelixRedmill,2011CERN,May'116CAL
5、IBRATIONOFTHEALARPMODELRecommendedforNuclearIndustry?Intolerabilitythreshold:–1/10000peryear(forthepublic)–1/1000peryear(foremployees)?Broadlyacceptablethreshold:–1/1000000peryear(foreveryone)(c)FelixRedmill,2011CERN,May'117AVERYSIMPLESYSTEM?ChemicalsAandBaremixedinthetanktoformproductP??Popens&clo
6、sesinputandoutputvalves?Ifemergencysignalarrives,thenceaseoperationEmergencysignalBPA?PController(c)FelixRedmill,2011CERN,May'118QUESTIONS?Howcouldtheaccidenthavebeenavoided?–Betteralgorithm?Howcouldthesoftwaredesignerhaveknownthatabetteralgorithmwasrequired?–Domainknowledge?Butwecan?tbesurethatsuc
7、hafaultwon?tbemade,sohowcanwefindandcorrectsuchfaults?–Riskanalysistechniques(c)FelixRedmill,2011CERN,May'119ASIMPLETHOUGHTEXPERIMENT?Drawaninfusionpump–Noteitsmechanicalparts?Thinkaboutdesigninganddevelopi