A New Safety Theory: Concept, Methodology, and Application

Size: px
Start display at page:

Download "A New Safety Theory: Concept, Methodology, and Application"

Transcription

1 A New Safety Theory: Concept, Methodology, and Application M.Y. Cai, C.J. Liu Complex and Intelligent System Research Center East China University of Science and Technology Shanghai, China C.A. van Luttervelt Faculty of Mechanical Engineering Delft University of Technology Delft, Netherlands J.W. Wang Industrial and Manufacturing Systems Engineering University of Hong Kong Hong Kong, China Y. Lin, Member, IEEE Department of Mechanical and Industrial Engineering Northeastern University Boston, USA W.J. Zhang*, Senior Member, IEEE Complex and Intelligent System Research Center East China University of Science and Technology Shanghai, China And Department of Mechanical Engineering University of Saskatchewan Saskatoon, Canada * Corresponding author: chris.zhang@usask.ca Abstract Critical systems are systems that have direct effects on human health and life. Large production systems are an example of the critical system. Safety is a concept that is ubiquitous in our life but has never been clearly defined. A common confusion with safety is that safety is viewed to be the same as reliability. In this paper, we revisit the concept of safety and propose a new approach for design and operation management of critical systems for safety. The new approach puts its foot on the threats to human health and life and an integrated consideration of reliability, robustness and resilience for safety. The new approach for safety is thus called 3R for safety. Keywords system; safety; reliability; robustness; resilience. I. INTRODUCTION Is it safe is a common question to humans. The word It here refers to a product or a system in general. As a common sense, this question is concerned with any possible threat to the human health and life or more generally to the human freedom to live in connection with a system. Therefore, the concept of safety is related to both the system and human. A system may be completely collapsed, which indicates the poor reliability and/or robustness of the system, but the collapsed system may not affect the human life per se and thus the system is not unsafe. Note that the foregoing system can be a natural system or an engineering system. Human beings have long been battling with natural systems for safety, primarily concerning the environment and resource. Modern industrialization has provided technologies and tools for human beings to create artifact systems (or engineering systems), which are generally of four kinds: agricultural systems, manufacturing systems, product systems, and service systems [19]. These systems have been foundations for the modern society but they have also created some sources of safety problems. It is obvious that these systems may fail and thus may create threats to the human life and health. Safety engineering is a relatively young discipline, and it includes safety science, safety technology, and design and operation of systems for safety. Safety engineering is an interdisciplinary discipline because it makes sense when associated with the foregoing general types of systems. However, not all systems have the sense of safety concerns. Critical systems are the systems that can create a high degree of safety concerns. Examples of critical systems are financial systems, telecommunication systems, manufacturing systems and so on, which produce necessary products for the modern society. The financial crisis in 2008 has given modern human beings a fresh impression of how failures of critical systems could create threats to human life and health at a large scale. This paper concerns the safety of critical systems. The primary objective of this paper is to propose a new paradigm for safety engineering. This is motivated by the critical review of the existing knowledge on safety engineering and by the recent emerging of resilience engineering along with the proposal by Hollnagel et al. [3] that resilience The authors want to thank a financial support to this work by NSERC through a strategic project grant on resilience engineering to the corresponding author.

2 engineering should be considered as an ultimate paradigm of safety engineering. The remaining part of this paper is organized as follows. Section 2 summarizes the state of knowledge on safety engineering. Section 3 presents a new paradigm for safety engineering. Section 4 outlines theories and methodologies for safety engineering based on the new paradigm. Section 5 gives examples to illustrate the application of the theories and methodologies for enhancing the safety of artifact systems. Section 6 concludes this paper. II. THE STATE OF KNOWLEDGE ON SAFETY ENGINEERING 2.1 The Existing Theory for Safety In literature, safety is defined as freedom from those conditions that can cause death, injury, occupational illness, or damage to or loss of equipment or property, or damage to the environment [2]. This definition, however, misses an important element, that is the system element; merely conditions do not allow us to think of means to enhance safety. This definition also misses the human factor which is part of the system. A new definition of safety will be presented later in Section 3 of the present paper. For the time being, the missing elements regarding the safety concept are assumed, and the existing approaches to design and manage artifact systems for safety are then summarized and commented. In the period from the 1950 s to 1990 s, safety is related to a system s reliability and robustness, which further leads to the disciplines of reliability engineering and robust engineering. The representative school of thinking in that period of time is normal accident theory (NAT) [13] and high reliability organizations (HRO) [8]. Perrow s NAT theory considers that accidents of technological systems are inevitable and normal [13]. He further considered two related dimensions interactive complexity and coupling complexity as two sources of the system vulnerability susceptible to accidents. HRO theory examines the system safety from the organizational perspective, which is in essence similar to NAT. In fact, Perrow s first dimension is related to robustness and his second dimension is related to reliability, which will be elaborated later in this paper. Reliability is defined as an ability of a system or component to perform its required functions under stated conditions for a specified period of time [16, 20]. In particular, reliability specifies the probability that no operational interruptions will occur during a stated time interval. It is noted that one of the important means to improve reliability is to design redundancy into a system. Perrow s coupling complexity implies a network topology of an artifact system. One of the tasks in reliability engineering is to analyze the reliability of a network system [1], so Perrow s second dimension is related to reliability. Robustness is a property of a system related with noise; in particular, robustness is a property that allows a system to maintain its functions against internal and external perturbations or noises [7, 20]. In other words, the robustness of a system focuses on how the system is insensitive to noises. Perrow s interactive complexity implies that a kind of uncertainty in a network system can more likely exist in the interface between any two components. Uncertainties are in a broad sense noises, and the two are used interchangeably in the present paper. In short, Perrow s first dimension is related to robust engineering. Remark 1: The relevance of safety to reliability and robustness is such that when a system has failures, the system may become unsafe. However, failures may not treat the human health and life. It is clear that the safety theory of Perrow has only considered the failure of a system but not the treat of the failure to the human health and life, and therefore, the theory of Perrow is not a complete one to safety. Remark 2: From the 1990 s to 2000 s, the artifact system includes humans as a part of the system. This is due to the technological advancement on software and automation, which changes human roles as supervisors. Human reliability and robustness are brought into the domain of system failures [9, 14]. However, inclusion of humans in this manner does not imply that the threat to the human health and life is considered; in fact, this manner merely considers that the human is a part of the system. One method for safety engineering at that time is STAMP (System-Theoretic Accident Model and Processes) proposed by Leveson [9]. The hypothesis of this model is that accidents should be viewed from a systems perspective. In this conception, accidents occur when external disturbances, component failures, or dysfunctional interactions among system components are not adequately handled by the control system; that is, they result from inadequate control or enforcement of safety-related constraints on the development, design, and operation of the system. This approach to safety still misses the human side especially threats to the human health and life. The approach merely puts emphasis on the error coming from a system that includes human operators. Recently, the concept of resilience engineering emerges to relate it to safety engineering. Resilience in the engineering context is defined as a system s ability to recover its function after a partial damage of the system [20, 21, 23]. This definition of resilience is called Resilience I in the present paper. It is noted that the definition of resilience undergoes an evolution. Hollnagel et al. [3] defined resilience with two key phrases, namely (i) function recovery and (ii) disturbance. This definition stays between the definition of robustness (in light of disturbances on the substance flowing in the system and/or on the parameter that describes the structure of a system) and the definition of Resilience I (in light of damages on the structure of a system). Let us call this definition of resilience, Resilience II. Hollnagel et al. [3] further suggested that resilience (Resilience II) be a destiny of safety. However, in fact, Hollnagel et al. s safety theory as such has not considered the threat to the human health and life either. 2.2 The Existing Practice for Safety The existing safety engineering program and curriculum in institutions seems to be a relatively new major in North America and perhaps other places in the world. In general, focuses in the safety engineering program and curriculum in

3 North America are accident analysis (due to both machine and human errors) and software reliability. In the past, several unsafe disasters happened around the world. The first one may refer to Japanese Fukushima Daiichi (FD) nuclear disaster [23]. According to the report of Masayuki Nakao on the 2011 CIRP general assembly, several measures designed for accidents mitigation did not work in that event. The second example is the accident of chemical explosion and fire at Bartlo Packaging Incorporated (BPI) facility located in Arkansas in the United States in 1995 [5]. The fire caused toxic smoke, which further resulted in mass evacuation of residents a couple of miles away from the accident site. The third one is the loss of the Mars Polar Lander (MPL) and the two Deep Space 2 (DS2) probes in the United States [6]. The accident was such that the MPL and DS2 probes were launched and arrived at Mars. Communications ended according to plan. However, since then, communication could never be resumed. 2.3 Critique The existing safety science or theory evolves from reliability, to robustness, and to resilience, but none of them explicitly considers the factor of threats to the human life and health. All the paradigms for safety seem to assume: whenever a system fails, there will be a threat to humans anyway. This assumption is not true. In life cycle engineering, there is a phase called recycling, where a failed product is thrown away and recycled; clearly no unsafe event would happen in this case. The paradigm to think resilience as a destiny of safety in [3] is not adequate, nor is the Perrow s safety theory (which only considers reliability and robustness). In fact, safety is related to system failures as well as threats to the human health and life, and system failures can be caused by the fact that a system is not reliable, not robust, and/or not resilient. The first example of unsafe system (Japanese Fukushima Daiichi (FD) nuclear disaster) can be considered as a failure related to resilience, as it is a post-accident error. The second example can be considered as a failure related to reliability, as it is a pre-accident error. The third example can be considered as a failure related to robustness, as the failure occurs in operation, especially an error in the interface between two components or subsystems. As a final note, the Leveson s theory with STAMP technique [9] may look like it considers all the three, i.e., reliability, robustness, and resilience. However, the approach is much rooted in control engineering, excluding system design. It is perhaps true that the traditional thinking of design is much related to reliability; that is design for reliability. However, design for robustness and design for resilience are meaningful theories for systems [21, 23]. The next section presents a new paradigm for safety engineering. III. THE NEW PARADIGM FOR SAFETY ENGINEERING The new paradigm for safety engineering is composed of two assertions. Assertion I (definition): Safety considers both an artifact which in general includes a human operator (i.e., the artifact is a human-machine system) and a human who receives the effects from the artifact or human-machine system (Fig. 1). Let us call that human human effector or human factor. Safety is about threats to both the human operator and the human effector while the three parties (machine, human operator, and human effector) are interacting (Fig. 1). Fig. 1. Human-in-the-loop safety engineering. Machine Human Operator Threats Human Effector With the above assertion, failures of a system, say a car loses its breaking function, do not necessarily imply an unsafe situation, as there may be no driver in that car or if the car runs in a sufficiently wide field and there is no human effector in that field. Therefore, assessment of an artifact system for safety cannot be made with the artifact system alone. In other words, the assessment for safety must put human in the loop. Assertion II (3R-safety): Assessment of an artifact for safety must consider reliability, robustness and resilience of the artifact, as all of them are relevant to the failure of the artifact. The 3R refers to reliability, robustness, and resilience. Remark 3: Recently, Hollnagel et al. [4] give a new definition to resilience (let us call it Resilience III) as: Resilience is the intrinsic ability of a system to adjust its functioning prior to, during, or following changes and disturbances so that the system can sustain required operations under both expected and unexpected conditions. This definition in fact makes the resilience cover the reliability, robustness, and resilience (Resilience I), which is questionable. This is because each of them, reliability, robustness, and Resilience I, makes sense for their own distinct contribution to the system behavior, and sometimes there may be conflict in design and operation of the system for reliability, robustness, and Resilience I, and as such not separating the three may actually create an integrity problem with the system behavior. For instance, a system may be designed to be more modularized in order that the system is more resilient according to Resilience I [23], but the modularization tends to increase the number of interfaces among components and increase in the number of interfaces may further degrade the system s robustness as well as reliability. IV. THE NEW DISCIPLINE OF SAFETY ENGINEERING Any engineering discipline consists of definition of the discipline such as safety. Then the knowledge of discipline has the three categories: measurement, analysis, synthesis, and

4 operation. In this section, the three categories of knowledge on safety engineering are outlined. 4.1 Safety Assessment and Analysis Assessment or measurement for safety is the foremost important step to consider in the discipline of safety engineering. According to the aforementioned definition of safety, the safety assessment must consider (i) the state of the machine system based on the 3R-safety paradigm (i.e., reliability [1], robustness, and resilience [17]), (ii) the state of the human who receives the effect of the system in particular with respect to the human health and life [21], and (iii) the impact of the machine state on the human state. Several remarks can be made in the following. Remark 4: It is noted that various methods and techniques for assessment for reliability, robustness, and resilience available in the literature can be taken for this activity. It is further noted that the assessment may be subjective in nature and thus should follow the statistics approach in human factors engineering or the expert-opinion approach [11]. Remark 5: The safety measurement as described above differs from the existing one in that the existing safety measurement only considers (1) the reliability but neither the robustness nor resilience and (2) the machine side rather than both the machine and the human who receives the effect of the machine operation. Remark 6: Safety analysis refers to generation of the assessment scores for a given artifact system and human who receives the effect of the system operation. 4.2 Safety Synthesis and Operation Management Safety synthesis refers to the determination of the structure of a system (including the human operator) to achieve both the system function and safety requirement. According to the 3Rsafety paradigm, the operation of a system is also related to the safety. Therefore, the operation management is to determine the procedure of operation or process to meet both the system function and safety requirement for a given system. A couple of remarks are made in the following. Remark 7: The structure of a system here includes the machine (including the human operator) and the human who receives the effect of the machine operation. Remark 8: The procedure of the system operation includes the planning, scheduling and operation controller. The planning and scheduling activities determine the resources allocation and distribution temporarily and spatially. The control is similar to the conventional machine control. The inclusion of the planning, schedule and operation control is due to the shift of the reliability-based safety engineering to the 3R-safety engineering. In essence, the 3R-safety engineering includes not only the design (i.e., determination of the structure of an artifact system) but also the operation management (i.e., determination of the plan and schedule for the operation of an artifact system). An example of the design and operation management for safety based on the 3R-safety approach can be found in the emergency evacuation process [17]. 4.3 Integrated Design and Operation Management The new paradigm actually implies that safety is not only the business of design but also that of operation management. Indeed, resilience is closely related to operation management, planning and scheduling in this case [17]. Let us consider an operation of a system as a process system namely a plan or a schedule as a system that has the structure, behavior, function and so on [10, 22]. The structure of an operation or an operational system makes sense in that for example, a schedule includes the elements such as the time or timing information for a particular vehicle which carries victims or medical resources to leave the manufacturing site to the customer site [17]. It thus naturally comes to a methodology that the structure of an artefact system and the structure of an operational system should be integrated. This is especially true for a production system, as a production system has two subsystems: infrastructure subsystem and substance subsystem [23]. The performance of the production system is therefore an aggregated result of the performances of both subsystems. While the infrastructure subsystem has much to do with design of the artifact system in a conventional sense, the substance system is the business of planning and scheduling [23]. Therefore, integrated design and operation is expected to produce a further optimal solution to a system for a better performance and a better safety [17]. V. APPLICATION OF THE NEW SAFETY THEORY This section will demonstrate the usefulness of the new safety theory outlined in Section 4, in particular to the three accidents mentioned in Section 2.2. The goal is to illustrate how the artifact systems in these accidents can be redesigned to enhance their safety. With respect to the Japanese nuclear disaster, the reactor system has the function to shut down the reactor. There are three redundant approaches for this shut-down function, say A, B, and C. However, A, B, and C are decoupled, i.e., C B A, where means dependent on in this case. This dependency implies that three redundant approaches are in fact not completely independent. In particular, when A is unabled, B and C are unabled too, which is unfortunately the case in that event. With respect to the PBI disaster, a root cause analysis [5] shows that (1) an explosive chemical product was placed near to a heat source and (2) two chemical products (A, B) have opposite properties with respect to water (A is water reactive but B not). In a normal operation, the temperature of that heat source should be T but in that particular event, the real temperature was T+ΔT (ΔT is a tolerance due to some uncertain factors). Unfortunately, in that event, T+ΔT was over the threshold temperature, which caused product A to decompose and become explosive. Since A and B were at the same site, the approach to extinguish the fire with water was then not possible. With respect to Loss of MPL, one of the possible causes in the loss of MPL event is the premature shutdown of the decent engine which is further attributed to inadequate interface between two components [9]. This is perhaps further related to

5 both component physical degradation and unexpected operation condition drifts. Now let us see how the new safety theory, as outlined in Section 3 and Section 4, may improve the design and operation management to avoid or mitigate the foregoing disaster events. For the Japanese nuclear disaster, according to the new safety paradigm, resilience needs to be included in the safety measure for critical systems. Further, design for resilience, in particular, design of redundancy into the post-accident safety measure needs to follow Axiom 1 of the axiomatic design theory [15] that is to make redundant designs uncoupled. For the PBI disaster, it is related to all the R s (i.e., reliability, robustness, and resilience). For reliability, the spatial relation between the product and heat source should rationally be decided. For robustness, insensitivity to an unexpected increase of temperature of the heat source should be considered in the operation of the system that includes A, B, and heat source. For instance, there should be a facility to realtime monitor the temperature of the heat source and to realtime monitor the surrounding materials of the heat resource. Finally, a correct post-accident operation must be such that first of all, no water is used to extinguish the fire (again based on the uncoupling design principle) and second, isolate the heat source from A and B and use a substance C (if any) that does not create any conflicting effect to A and B. For the loss of MPL, according to the new theory for safety, design for robustness needs to be considered. This is helpful to make the MPL more robust with respect to the interface uncertainty. In short, the safety is not only about the design and reliability but the operation and robustness and resilience. VI. CONCLUSION This paper proposed a new paradigm for safety engineering along with an outline of the theory for design and operation of artifact systems for safety. There are two assertions in this new paradigm: (1) putting the human in the safety assessment loop and (2) integrating reliability, robustness and resilience (3R) in design and operation of artifacts for safety. Under the two assertions, safety is connected with reliability, robustness, and resilience. The discussions of the nature of safety and of the application of the proposed safety theory to the three accidents help to conclude that the proposed safety paradigm along with its theory is promising. Another contribution of this paper is to clarify the definition of resilience. According to the present paper, there are three definitions of resilience, namely Resilience I, II, and III. Particularly, Resilience III covers reliability, robustness, and resilience I, and the present paper argues that Resilience III is problematic, as it fails to recognize potential conflicts in systems in terms of reliability, robustness, and resilience. REFERENCES [1] R. Billinton, and R. N. Allan, Reliability Evaluation of Power Systems, 2nd ed., New York: Plenum Press, [2] Department of defense of USA, Standard Practice for System Safety, [3] E. Hollnagel, D. D. Woods, and N. Leveson (Eds.), Resilience Engineering: Concepts and Precepts, Hampshire: Ashgate Publishing, Ltd., [4] E. Hollnagel, J. Paries, D. Woods, and J. Wreathall, Resilience Engineering in Practice: A Guide Book, Ashgate Publishing, Ltd., [5] IEEE, Explainer: What Went Wrong in Japan's Nuclear... - IEEE Spectrum, spectrum.ieee.org/.../nuclear/, [6] JPL special review board, Report on the Loss of the Mars Polar Lander and Deep Space 2 Missions, JPO-D-18709, [7] H. Kitano, Biological robustness, Nat Rev Genet, vol. 5, no. 11, pp , [8] T. R. La Porte, High reliability organizations: unlikely, demanding, and at risk, J Conting Crisis Man, vol. 4, no. 2, pp , [9] N. Leveson, A new accident model for engineering safer systems, Safety Sci, vol. 42, no. 4, pp , [10] Y. Lin, and W. J. Zhang, Towards a novel interface design framework: function-behavior-state paradigm, Int J Hum Comput Stud, vol. 61, no. 3, pp , [11] X. Liu, A. Ghorpade, Y. L. Tu, and W. J. Zhang, A novel approach to probability distribution aggregation, Inf Sci, vol. 188, pp , [12] PBS, EPA/OSHA Joint Chemical Accident Investigation Report, [13] C. Perrow, Normal Accidents: Living with High-Risk Technologies, Princeton University Press, [14] J. Rasmussen, Risk management in a dynamic society: a modelling problem, Safety Sci, vol. 27, no. 2, pp , [15] N. P. Suh, Axiomatic design theory for systems, Res Eng Des, vol. 10, no. 4, pp , [16] A. K. Verma, S. Ajit, and D. R. Karanki, Reliability and Safety Engineering, London: Springer, [17] J. W. Wang, F. Gao, and W. H. IP, Measurement of resilience and its application to enterprise information systems, Enterp Inf Syst, vol. 4, no. 2, pp , [18] J. W. Wang, W. J. Zhang, W. H. Ip, An integrated road construction and resource planning approach to the evacuation of victims from single source to multiple destinations, IEEE trans Intell Transp Syst, vol. 11, no. 2, pp , [19] J. W. Wang, H. F. Wang, W. J. Zhang, W. H. Ip, and K. Furuta, On a unified definition of the service system: What is its identity? Systems Journal, IEEE, vol. 8, no. 3, pp , [20] W. J. Zhang, Is resilience the destiny for safety management paradigm? Presentation at the Northeastern University of China, [21] W. J. Zhang, and Y. Lin, Principles of design of resilient systems and its application to enterprise information systems, Enterp Inf Syst, vol. 4, no. 2, pp , [22] W. J. Zhang, Y. Lin, and N. Sinha, On the function-behavior-structure model for design, Proceedings of the Canadian Engineering Education Association, [23] W. J. Zhang, and C. A.van Luttervelt, Towards a resilient manufacturing system, CIRP Ann Manuf TECHN, vol. 60, no. 1, pp , 2011.

Intro to Systems Theory and STAMP John Thomas and Nancy Leveson. All rights reserved.

Intro to Systems Theory and STAMP John Thomas and Nancy Leveson. All rights reserved. Intro to Systems Theory and STAMP 1 Why do we need something different? Fast pace of technological change Reduced ability to learn from experience Changing nature of accidents New types of hazards Increasing

More information

A New Systems-Theoretic Approach to Safety. Dr. John Thomas

A New Systems-Theoretic Approach to Safety. Dr. John Thomas A New Systems-Theoretic Approach to Safety Dr. John Thomas Outline Goals for a systemic approach Foundations New systems approaches to safety Systems-Theoretic Accident Model and Processes STPA (hazard

More information

Week 2 Class Notes 1

Week 2 Class Notes 1 Week 2 Class Notes 1 Plan for Today Accident Models Introduction to Systems Thinking STAMP: A new loss causality model 2 Accident Causality Models Underlie all our efforts to engineer for safety Explain

More information

Revolutionizing Engineering Science through Simulation May 2006

Revolutionizing Engineering Science through Simulation May 2006 Revolutionizing Engineering Science through Simulation May 2006 Report of the National Science Foundation Blue Ribbon Panel on Simulation-Based Engineering Science EXECUTIVE SUMMARY Simulation refers to

More information

A New Approach to Safety in Software-Intensive Systems

A New Approach to Safety in Software-Intensive Systems A New Approach to Safety in Software-Intensive Systems Nancy G. Leveson Aeronautics and Astronautics Dept. Engineering Systems Division MIT Why need a new approach? Without changing our patterns of thought,

More information

Lecture 13: Requirements Analysis

Lecture 13: Requirements Analysis Lecture 13: Requirements Analysis 2008 Steve Easterbrook. This presentation is available free for non-commercial use with attribution under a creative commons license. 1 Mars Polar Lander Launched 3 Jan

More information

Focusing Software Education on Engineering

Focusing Software Education on Engineering Introduction Focusing Software Education on Engineering John C. Knight Department of Computer Science University of Virginia We must decide we want to be engineers not blacksmiths. Peter Amey, Praxis Critical

More information

Fault Management Architectures and the Challenges of Providing Software Assurance

Fault Management Architectures and the Challenges of Providing Software Assurance Fault Management Architectures and the Challenges of Providing Software Assurance Presented to the 31 st Space Symposium Date: 4/14/2015 Presenter: Rhonda Fitz (MPL) Primary Author: Shirley Savarino (TASC)

More information

Executive Summary. Chapter 1. Overview of Control

Executive Summary. Chapter 1. Overview of Control Chapter 1 Executive Summary Rapid advances in computing, communications, and sensing technology offer unprecedented opportunities for the field of control to expand its contributions to the economic and

More information

Japanese Acceptance of Nuclear and Radiation Technologies after Fukushima Diichi Nuclear Disaster

Japanese Acceptance of Nuclear and Radiation Technologies after Fukushima Diichi Nuclear Disaster Rev. Integr. Bus. Econ. Res. Vol 2(1) 503 Japanese Acceptance of Nuclear and Radiation Technologies after Fukushima Diichi Nuclear Disaster Hiroshi, Arikawa Department of Informatics, Nara Sangyo University

More information

Putting the Systems in Security Engineering An Overview of NIST

Putting the Systems in Security Engineering An Overview of NIST Approved for Public Release; Distribution Unlimited. 16-3797 Putting the Systems in Engineering An Overview of NIST 800-160 Systems Engineering Considerations for a multidisciplinary approach for the engineering

More information

My 36 Years in System Safety: Looking Backward, Looking Forward

My 36 Years in System Safety: Looking Backward, Looking Forward My 36 Years in System : Looking Backward, Looking Forward Nancy Leveson System safety engineer (Gary Larsen, The Far Side) How I Got Started Topics How I Got Started Looking Backward Looking Forward 2

More information

An Alternation of University Students Philosophy of Life after 2011 East-Japan Great Disaster Linking to Students View of Science and Technology

An Alternation of University Students Philosophy of Life after 2011 East-Japan Great Disaster Linking to Students View of Science and Technology An Alternation of University Students Philosophy of Life after 2011 East-Japan Great Disaster Linking to Students View of Science and Technology Shinobu K *, Hiroyuki Y and Shin O School of Agricultural

More information

Empirical Research on Systems Thinking and Practice in the Engineering Enterprise

Empirical Research on Systems Thinking and Practice in the Engineering Enterprise Empirical Research on Systems Thinking and Practice in the Engineering Enterprise Donna H. Rhodes Caroline T. Lamb Deborah J. Nightingale Massachusetts Institute of Technology April 2008 Topics Research

More information

PERFORMANCE IMPROVEMENT OF A PARALLEL REDUNDANT SYSTEM WITH COVERAGE FACTOR

PERFORMANCE IMPROVEMENT OF A PARALLEL REDUNDANT SYSTEM WITH COVERAGE FACTOR Journal of Engineering Science and Technology Vol. 8, No. 3 (2013) 344-350 School of Engineering, Taylor s University PERFORMANCE IMPROVEMENT OF A PARALLEL REDUNDANT SYSTEM WITH COVERAGE FACTOR MANGEY

More information

ARGUING THE SAFETY OF MACHINE LEARNING FOR HIGHLY AUTOMATED DRIVING USING ASSURANCE CASES LYDIA GAUERHOF BOSCH CORPORATE RESEARCH

ARGUING THE SAFETY OF MACHINE LEARNING FOR HIGHLY AUTOMATED DRIVING USING ASSURANCE CASES LYDIA GAUERHOF BOSCH CORPORATE RESEARCH ARGUING THE SAFETY OF MACHINE LEARNING FOR HIGHLY AUTOMATED DRIVING USING ASSURANCE CASES 14.12.2017 LYDIA GAUERHOF BOSCH CORPORATE RESEARCH Arguing Safety of Machine Learning for Highly Automated Driving

More information

Stanford Center for AI Safety

Stanford Center for AI Safety Stanford Center for AI Safety Clark Barrett, David L. Dill, Mykel J. Kochenderfer, Dorsa Sadigh 1 Introduction Software-based systems play important roles in many areas of modern life, including manufacturing,

More information

Engineered Resilient Systems DoD Science and Technology Priority

Engineered Resilient Systems DoD Science and Technology Priority Engineered Resilient Systems DoD Science and Technology Priority Mr. Scott Lucero Deputy Director, Strategic Initiatives Office of the Deputy Assistant Secretary of Defense (Systems Engineering) Scott.Lucero@osd.mil

More information

Chapter 2 Mechatronics Disrupted

Chapter 2 Mechatronics Disrupted Chapter 2 Mechatronics Disrupted Maarten Steinbuch 2.1 How It Started The field of mechatronics started in the 1970s when mechanical systems needed more accurate controlled motions. This forced both industry

More information

Mehrdad Amirghasemi a* Reza Zamani a

Mehrdad Amirghasemi a* Reza Zamani a The roles of evolutionary computation, fitness landscape, constructive methods and local searches in the development of adaptive systems for infrastructure planning Mehrdad Amirghasemi a* Reza Zamani a

More information

Applying systems thinking to safety assurance of Nuclear Power Plants

Applying systems thinking to safety assurance of Nuclear Power Plants Applying systems thinking to safety assurance of Nuclear Power Plants Francisco Luiz de Lemos Instituto de Pesquisas Energeticas/ Comissao Nacional de Energia Nuclear IPEN/CNEN _ Brazil IMPRO Dialog Forum

More information

Co-evolution of agent-oriented conceptual models and CASO agent programs

Co-evolution of agent-oriented conceptual models and CASO agent programs University of Wollongong Research Online Faculty of Informatics - Papers (Archive) Faculty of Engineering and Information Sciences 2006 Co-evolution of agent-oriented conceptual models and CASO agent programs

More information

Key Features of Patent and Utility Models Protection

Key Features of Patent and Utility Models Protection Key Features of Patent and Utility Models Protection Regional Seminar on the Legislative, Economic and Policy Aspects of the Utility Models Protection System, Kuala Lumpur September 3 and 4, 2012 Standard

More information

The Human and Organizational Part of Nuclear Safety

The Human and Organizational Part of Nuclear Safety The Human and Organizational Part of Nuclear Safety International Atomic Energy Agency Safety is more than the technology The root causes Organizational & cultural root causes are consistently identified

More information

(ii) Methodologies employed for evaluating the inventive step

(ii) Methodologies employed for evaluating the inventive step 1. Inventive Step (i) The definition of a person skilled in the art A person skilled in the art to which the invention pertains (referred to as a person skilled in the art ) refers to a hypothetical person

More information

Nuclear Safety and Security Culture Roles and Responsibilities of Individuals. Middle East Scientific Institute for Security (MESIS)

Nuclear Safety and Security Culture Roles and Responsibilities of Individuals. Middle East Scientific Institute for Security (MESIS) Nuclear Safety and Security Culture Roles and Responsibilities of Individuals 8 th Annual RMCC Workshop Middle East Scientific Institute for Security (MESIS) Amman, Jordan June 17-19, 2013 Dr. J. David

More information

Prof. Daniel Roos ESD 10

Prof. Daniel Roos ESD 10 Prof. Daniel Roos ESD 10 1 Engineering Systems Development At MIT Technology and The Civil Sector 1975-1985 Post Vietnam Era End of Apollo Reductions in NASA and DOD Programs War on Poverty Social Awareness

More information

System of Systems Software Assurance

System of Systems Software Assurance System of Systems Software Assurance Introduction Under DoD sponsorship, the Software Engineering Institute has initiated a research project on system of systems (SoS) software assurance. The project s

More information

Systems Engineering Overview. Axel Claudio Alex Gonzalez

Systems Engineering Overview. Axel Claudio Alex Gonzalez Systems Engineering Overview Axel Claudio Alex Gonzalez Objectives Provide additional insights into Systems and into Systems Engineering Walkthrough the different phases of the product lifecycle Discuss

More information

An Introduction to Agent-based

An Introduction to Agent-based An Introduction to Agent-based Modeling and Simulation i Dr. Emiliano Casalicchio casalicchio@ing.uniroma2.it Download @ www.emilianocasalicchio.eu (talks & seminars section) Outline Part1: An introduction

More information

Grundlagen des Software Engineering Fundamentals of Software Engineering

Grundlagen des Software Engineering Fundamentals of Software Engineering Software Engineering Research Group: Processes and Measurement Fachbereich Informatik TU Kaiserslautern Grundlagen des Software Engineering Fundamentals of Software Engineering Winter Term 2011/12 Prof.

More information

Logic Solver for Tank Overfill Protection

Logic Solver for Tank Overfill Protection Introduction A growing level of attention has recently been given to the automated control of potentially hazardous processes such as the overpressure or containment of dangerous substances. Several independent

More information

NUCLEAR SAFETY AND RELIABILITY

NUCLEAR SAFETY AND RELIABILITY Nuclear Safety and Reliability Dan Meneley Page 1 of 1 NUCLEAR SAFETY AND RELIABILITY WEEK 12 TABLE OF CONTENTS - WEEK 12 1. Comparison of Risks...1 2. Risk-Benefit Assessments...3 3. Risk Acceptance...4

More information

ty of solutions to the societal needs and problems. This perspective links the knowledge-base of the society with its problem-suite and may help

ty of solutions to the societal needs and problems. This perspective links the knowledge-base of the society with its problem-suite and may help SUMMARY Technological change is a central topic in the field of economics and management of innovation. This thesis proposes to combine the socio-technical and technoeconomic perspectives of technological

More information

MetaMet - A Soft Systemic Way Toward the Quality of Information Systems

MetaMet - A Soft Systemic Way Toward the Quality of Information Systems 7 MetaMet - A Soft Systemic Way Toward the Quality of Information Systems Peter Kokol and Bruno Stiglic The Facuhy of Technical Sciences 62000 Maribor Slovenia Abstract The quality of information systems

More information

Standard VAR-002-2b(X) Generator Operation for Maintaining Network Voltage Schedules. 45-day Formal Comment Period with Initial Ballot June July 2014

Standard VAR-002-2b(X) Generator Operation for Maintaining Network Voltage Schedules. 45-day Formal Comment Period with Initial Ballot June July 2014 Standard Development Timeline This section is maintained by the drafting team during the development of the standard and will be removed when the standard becomes effective. Development Steps Completed

More information

Towards a Software Engineering Research Framework: Extending Design Science Research

Towards a Software Engineering Research Framework: Extending Design Science Research Towards a Software Engineering Research Framework: Extending Design Science Research Murat Pasa Uysal 1 1Department of Management Information Systems, Ufuk University, Ankara, Turkey ---------------------------------------------------------------------***---------------------------------------------------------------------

More information

Lumeng Jia. Northeastern University

Lumeng Jia. Northeastern University Philosophy Study, August 2017, Vol. 7, No. 8, 430-436 doi: 10.17265/2159-5313/2017.08.005 D DAVID PUBLISHING Techno-ethics Embedment: A New Trend in Technology Assessment Lumeng Jia Northeastern University

More information

Evolving Systems Engineering as a Field within Engineering Systems

Evolving Systems Engineering as a Field within Engineering Systems Evolving Systems Engineering as a Field within Engineering Systems Donna H. Rhodes Massachusetts Institute of Technology INCOSE Symposium 2008 CESUN TRACK Topics Systems of Interest are Comparison of SE

More information

Standard VAR-002-2b(X) Generator Operation for Maintaining Network Voltage Schedules

Standard VAR-002-2b(X) Generator Operation for Maintaining Network Voltage Schedules Standard Development Timeline This section is maintained by the drafting team during the development of the standard and will be removed when the standard becomes effective. Development Steps Completed

More information

Assessment of DU s Natural Science General Education Curriculum: Student Understanding of Evolution Dean Saitta Department of Anthropology

Assessment of DU s Natural Science General Education Curriculum: Student Understanding of Evolution Dean Saitta Department of Anthropology Assessment of DU s Natural Science General Education Curriculum: Student Understanding of Evolution 2009 Dean Saitta Department of Anthropology A simple, standardized test of student understanding of concepts

More information

International Conference on Information Sciences, Machinery, Materials and Energy (ICISMME 2015)

International Conference on Information Sciences, Machinery, Materials and Energy (ICISMME 2015) International Conference on Information Sciences, Machinery, Materials and Energy (ICISMME 2015) The application of Function Analysis in development of rehabilitation product Changqing Gao a,*, Wei Wang

More information

Communication platform for disaster response

Communication platform for disaster response Communication platform for disaster response Mihoko Sakurai University of Agder, Kristiansand, Norway mihoko.sakurai@uia.no Abstract. The present research proposes an information platform for enhanced

More information

Standard VAR-002-2b(X) Generator Operation for Maintaining Network Voltage Schedules

Standard VAR-002-2b(X) Generator Operation for Maintaining Network Voltage Schedules Standard Development Timeline This section is maintained by the drafting team during the development of the standard and will be removed when the standard becomes effective. Development Steps Completed

More information

ARIZONA STATE UNIVERSITY SCHOOL OF SUSTAINABLE ENGINEERING AND THE BUILT ENVIRONMENT. Summary of Allenby s ESEM Principles.

ARIZONA STATE UNIVERSITY SCHOOL OF SUSTAINABLE ENGINEERING AND THE BUILT ENVIRONMENT. Summary of Allenby s ESEM Principles. ARIZONA STATE UNIVERSITY SCHOOL OF SUSTAINABLE ENGINEERING AND THE BUILT ENVIRONMENT Summary of Allenby s ESEM Principles Tom Roberts SSEBE-CESEM-2013-WPS-002 Working Paper Series May 20, 2011 Summary

More information

Technology and Normativity

Technology and Normativity van de Poel and Kroes, Technology and Normativity.../1 Technology and Normativity Ibo van de Poel Peter Kroes This collection of papers, presented at the biennual SPT meeting at Delft (2005), is devoted

More information

PRIMATECH WHITE PAPER COMPARISON OF FIRST AND SECOND EDITIONS OF HAZOP APPLICATION GUIDE, IEC 61882: A PROCESS SAFETY PERSPECTIVE

PRIMATECH WHITE PAPER COMPARISON OF FIRST AND SECOND EDITIONS OF HAZOP APPLICATION GUIDE, IEC 61882: A PROCESS SAFETY PERSPECTIVE PRIMATECH WHITE PAPER COMPARISON OF FIRST AND SECOND EDITIONS OF HAZOP APPLICATION GUIDE, IEC 61882: A PROCESS SAFETY PERSPECTIVE Summary Modifications made to IEC 61882 in the second edition have been

More information

Proposed Curriculum Master of Science in Systems Engineering for The MITRE Corporation

Proposed Curriculum Master of Science in Systems Engineering for The MITRE Corporation Proposed Curriculum Master of Science in Systems Engineering for The MITRE Corporation Core Requirements: (9 Credits) SYS 501 Concepts of Systems Engineering SYS 510 Systems Architecture and Design SYS

More information

Heidi Robinson Today, I m going to talk to you about resiliency. Resiliency is not a term that is easily defined nor is it easily achievable. As I con

Heidi Robinson Today, I m going to talk to you about resiliency. Resiliency is not a term that is easily defined nor is it easily achievable. As I con Heidi Robinson Today, I m going to talk to you about resiliency. Resiliency is not a term that is easily defined nor is it easily achievable. As I continue to talk to you today, I will introduce some more

More information

Kyiv National University of Trade and Economics Faculty of Trade and Marketing INFORMATION PACKAGE

Kyiv National University of Trade and Economics Faculty of Trade and Marketing INFORMATION PACKAGE Kyiv National University of Trade and Economics Faculty of Trade and Marketing INFORMATION PACKAGE European Credit Transfer and Accumulation System (ECTS) Field of knowledge Specialty Specialization Education

More information

WMD Events and Other Catastrophes

WMD Events and Other Catastrophes WMD Events and Other Catastrophes 2012 Joint CBRN Conference National Defense Industrial Association March 13, 2012 Tara O Toole, M.D., M.P.H. Under Secretary for Science and Technology U.S. Department

More information

RESPONSE TO THE HOUSE OF COMMONS TRANSPORT SELECT COMMITTEE INQUIRY INTO GALILEO. Memorandum submitted by The Royal Academy of Engineering

RESPONSE TO THE HOUSE OF COMMONS TRANSPORT SELECT COMMITTEE INQUIRY INTO GALILEO. Memorandum submitted by The Royal Academy of Engineering RESPONSE TO THE HOUSE OF COMMONS TRANSPORT SELECT COMMITTEE INQUIRY INTO GALILEO Memorandum submitted by The Royal Academy of Engineering September 2004 Executive Summary The Royal Academy of Engineering

More information

Consequences of Severe Nuclear Accidents on Social Regulations in Socio-Technical Organizations

Consequences of Severe Nuclear Accidents on Social Regulations in Socio-Technical Organizations Consequences of Severe Nuclear Accidents on Social Regulations in Socio-Technical Organizations Christophe Martin Abstract Major nuclear accidents have generated an abundant literature in the social sciences.

More information

Introduction to Computational Intelligence in Healthcare

Introduction to Computational Intelligence in Healthcare 1 Introduction to Computational Intelligence in Healthcare H. Yoshida, S. Vaidya, and L.C. Jain Abstract. This chapter presents introductory remarks on computational intelligence in healthcare practice,

More information

elaboration K. Fur ut a & S. Kondo Department of Quantum Engineering and Systems

elaboration K. Fur ut a & S. Kondo Department of Quantum Engineering and Systems Support tool for design requirement elaboration K. Fur ut a & S. Kondo Department of Quantum Engineering and Systems Bunkyo-ku, Tokyo 113, Japan Abstract Specifying sufficient and consistent design requirements

More information

rones-vulnerable-to-terrorist-hijackingresearchers-say/

rones-vulnerable-to-terrorist-hijackingresearchers-say/ http://www.youtube.com/v/jkbabvnunw0 http://www.foxnews.com/tech/2012/06/25/d rones-vulnerable-to-terrorist-hijackingresearchers-say/ 1 The Next Step: A Fully Integrated Global Multi-Modal Security and

More information

A/AC.105/C.1/2011/CRP.4

A/AC.105/C.1/2011/CRP.4 4 February 2011 English only Committee on the Peaceful Uses of Outer Space Scientific and Technical Subcommittee Forty-eighth session Vienna, 7-18 February 2011 Item 10 of the provisional agenda * Use

More information

Selecting, Developing and Designing the Visual Content for the Polymer Series

Selecting, Developing and Designing the Visual Content for the Polymer Series Selecting, Developing and Designing the Visual Content for the Polymer Series A Review of the Process October 2014 This document provides a summary of the activities undertaken by the Bank of Canada to

More information

Mission Capability Packages

Mission Capability Packages Mission Capability Packages Author: David S. Alberts January 1995 Note: Opinions, conclusions, and recommendations expressed or implied in this paper are solely those of the author and do not necessarily

More information

Leveraging 21st Century SE Concepts, Principles, and Practices to Achieve User, Healthcare Services, and Medical Device Development Success

Leveraging 21st Century SE Concepts, Principles, and Practices to Achieve User, Healthcare Services, and Medical Device Development Success Leveraging 21st Century SE Concepts, Principles, and Practices to Achieve User, Healthcare Services, and Medical Device Development Success Charles Wasson, ESEP Wasson Strategics, LLC Professional Training

More information

Automating the math makes analytics more democratic and more human

Automating the math makes analytics more democratic and more human Automating the math makes analytics more democratic and more human Operations September 2015 Markus Hammer Christian Johnson Olivier Noterdaeme Christoph Schmitz Automating the math makes analytics more

More information

Organisation for Economic Co-operation and Development Global Science Forum. Report on Science and Technology for a Safer Society

Organisation for Economic Co-operation and Development Global Science Forum. Report on Science and Technology for a Safer Society Organisation for Economic Co-operation and Development Global Science Forum Report on Science and Technology for a Safer Society Final consensus report from the OECD Global Science Forum Workshop held

More information

Naimeh Sadeghi Aminah Robinson Fayek. Dept. of Civil and Environmental Engineering University of Alberta Edmonton, AB, CANADA

Naimeh Sadeghi Aminah Robinson Fayek. Dept. of Civil and Environmental Engineering University of Alberta Edmonton, AB, CANADA Proceedings of the 2008 Winter Simulation Conference S. J. Mason, R. R. Hill, L. Mönch, O. Rose, T. Jefferson, J. W. Fowler eds. A FRAMEWORK FOR SIMULATING INDUSTRIAL CONSTRUCTION PROCESSES Naimeh Sadeghi

More information

Design Principles for Survivable System Architecture

Design Principles for Survivable System Architecture Design Principles for Survivable System Architecture 1 st IEEE Systems Conference April 10, 2007 Matthew Richards Research Assistant, MIT Engineering Systems Division Daniel Hastings, Ph.D. Professor,

More information

NEW TECHNOLOGIES. Philippe Francken. WSRF 2012, Dubai 1

NEW TECHNOLOGIES. Philippe Francken. WSRF 2012, Dubai 1 NEW TECHNOLOGIES Philippe Francken 1 Introduction Insertion of new technologies in space systems is not a goal in itself, but needs to be viewed within the broader context of innovation the ultimate objective

More information

Design Science Research Methods. Prof. Dr. Roel Wieringa University of Twente, The Netherlands

Design Science Research Methods. Prof. Dr. Roel Wieringa University of Twente, The Netherlands Design Science Research Methods Prof. Dr. Roel Wieringa University of Twente, The Netherlands www.cs.utwente.nl/~roelw UFPE 26 sept 2016 R.J. Wieringa 1 Research methodology accross the disciplines Do

More information

MODELING COMPLEX SOCIO-TECHNICAL ENTERPRISES. William B. Rouse November 13, 2013

MODELING COMPLEX SOCIO-TECHNICAL ENTERPRISES. William B. Rouse November 13, 2013 MODELING COMPLEX SOCIO-TECHNICAL ENTERPRISES William B. Rouse November 13, 2013 Overview Complex Socio-Technical Systems Overall Methodology Thinking in Terms of Phenomena Abstraction, Aggregation & Representation

More information

Creating User Experience by novel Interaction Forms: (Re)combining physical Actions and Technologies

Creating User Experience by novel Interaction Forms: (Re)combining physical Actions and Technologies Creating User Experience by novel Interaction Forms: (Re)combining physical Actions and Technologies Bernd Schröer 1, Sebastian Loehmann 2 and Udo Lindemann 1 1 Technische Universität München, Lehrstuhl

More information

A Taxonomy of Perturbations: Determining the Ways That Systems Lose Value

A Taxonomy of Perturbations: Determining the Ways That Systems Lose Value A Taxonomy of Perturbations: Determining the Ways That Systems Lose Value IEEE International Systems Conference March 21, 2012 Brian Mekdeci, PhD Candidate Dr. Adam M. Ross Dr. Donna H. Rhodes Prof. Daniel

More information

Ethics in Materials Engineering

Ethics in Materials Engineering Ethics in Materials Engineering Dr. Parviz Yavari Dr. Ehsan Barjasteh Picture : https://www.linkedin.com/topic/ethical-reasoning Contents 1.Ethics/ Morality/Laws 2.Ethics in Engineering 3.Ethics in material

More information

Assessing the Welfare of Farm Animals

Assessing the Welfare of Farm Animals Assessing the Welfare of Farm Animals Part 1. Part 2. Review Development and Implementation of a Unified field Index (UFI) February 2013 Drewe Ferguson 1, Ian Colditz 1, Teresa Collins 2, Lindsay Matthews

More information

Computational Intelligence for Network Structure Analytics

Computational Intelligence for Network Structure Analytics Computational Intelligence for Network Structure Analytics Maoguo Gong Qing Cai Lijia Ma Shanfeng Wang Yu Lei Computational Intelligence for Network Structure Analytics 123 Maoguo Gong Xidian University

More information

AN2842 Application note

AN2842 Application note Application note Paralleling of power MOSFETs in PFC topology Introduction The current handling capability demands on power supply systems to meet high load current requirements and provide greater margins

More information

A Conceptual Modeling Method to Use Agents in Systems Analysis

A Conceptual Modeling Method to Use Agents in Systems Analysis A Conceptual Modeling Method to Use Agents in Systems Analysis Kafui Monu 1 1 University of British Columbia, Sauder School of Business, 2053 Main Mall, Vancouver BC, Canada {Kafui Monu kafui.monu@sauder.ubc.ca}

More information

Open Systems Architecture in DoD Acquisition: Opportunities and Challenges

Open Systems Architecture in DoD Acquisition: Opportunities and Challenges Open Systems Architecture in DoD Acquisition: Opportunities and Challenges Mr. Stephen P. Welby Deputy Assistant Secretary of Defense for Systems Engineering (DASD(SE)), OUSD(AT&L) Defense Daily 6 th Annual

More information

Counterfeit, Falsified and Substandard Medicines

Counterfeit, Falsified and Substandard Medicines Meeting Summary Counterfeit, Falsified and Substandard Medicines Charles Clift Senior Research Consultant, Centre on Global Health Security December 2010 The views expressed in this document are the sole

More information

Appendix I Engineering Design, Technology, and the Applications of Science in the Next Generation Science Standards

Appendix I Engineering Design, Technology, and the Applications of Science in the Next Generation Science Standards Page 1 Appendix I Engineering Design, Technology, and the Applications of Science in the Next Generation Science Standards One of the most important messages of the Next Generation Science Standards for

More information

Ascendance, Resistance, Resilience

Ascendance, Resistance, Resilience Ascendance, Resistance, Resilience Concepts and Analyses for Designing Energy and Water Systems in a Changing Climate By John McKibbin A thesis submitted for the degree of a Doctor of Philosophy (Sustainable

More information

CONGRESS PROCEEDINGS

CONGRESS PROCEEDINGS CONGRESS PROCEEDINGS CONGRESS PROCEEDINGS ISBN: 978-84-1302-003-7 DOI: 10.14198/EURAU18alicante Editor: Javier Sánchez Merina Attribution-NonCommercial-ShareAlike 4.0 International (CC BY-NC-SA 4.0) Titulación

More information

A FRAMEWORK FOR PERFORMING V&V WITHIN REUSE-BASED SOFTWARE ENGINEERING

A FRAMEWORK FOR PERFORMING V&V WITHIN REUSE-BASED SOFTWARE ENGINEERING A FRAMEWORK FOR PERFORMING V&V WITHIN REUSE-BASED SOFTWARE ENGINEERING Edward A. Addy eaddy@wvu.edu NASA/WVU Software Research Laboratory ABSTRACT Verification and validation (V&V) is performed during

More information

Software Quality Challenges

Software Quality Challenges Software Quality Challenges Ronan Fitzpatrick School of Computing, Dublin Institute of Technology, Kevin Street, Dublin 8, Ireland. ronan.fitzpatrick@comp.dit.ie Peter Smith School of Computing and Technology,

More information

The UK Generic Design Assessment

The UK Generic Design Assessment The UK Generic Design Assessment Dr Diego Lisbona Deputy Delivery Lead Advanced Modular Reactors Nuclear Safety Inspector New Reactors Division Infrastructure Development Working Group (IDWG) workshop,

More information

The Internationalization of R&D in India: Opportunities and Challenges. Rajeev Anantaram National Interest Project March 2009

The Internationalization of R&D in India: Opportunities and Challenges. Rajeev Anantaram National Interest Project March 2009 The Internationalization of R&D in India: Opportunities and Challenges Rajeev Anantaram National Interest Project March 2009 Context of the Paper Part of the Private Sector Advisory Group constituted by

More information

Phase One: Determine Top 5 Teams

Phase One: Determine Top 5 Teams JUDGING SCORECARD This scorecard is a tool for Challenge participants and judges. Challenge participants should review this scorecard to understand the evaluation criteria. Judges will use this tool to

More information

A Novel Robotic Manufacturing System for Learning Innovation

A Novel Robotic Manufacturing System for Learning Innovation A Novel Robotic Manufacturing System for Learning Innovation Yuxin Liang 1, Jin Hu 2, Xiumin Diao 2 1 School of Agricultural & Biological Engineering 2 School of Engineering Technology Purdue University,

More information

Rethinking Software Process: the Key to Negligence Liability

Rethinking Software Process: the Key to Negligence Liability Rethinking Software Process: the Key to Negligence Liability Clark Savage Turner, J.D., Ph.D., Foaad Khosmood Department of Computer Science California Polytechnic State University San Luis Obispo, CA.

More information

THE AXIOMATIC APPROACH IN THE UNIVERSAL DESIGN THEORY

THE AXIOMATIC APPROACH IN THE UNIVERSAL DESIGN THEORY THE AXIOMATIC APPROACH IN THE UNIVERSAL DESIGN THEORY Dr.-Ing. Ralf Lossack lossack@rpk.mach.uni-karlsruhe.de o. Prof. Dr.-Ing. Dr. h.c. H. Grabowski gr@rpk.mach.uni-karlsruhe.de University of Karlsruhe

More information

Innovation: means or end?

Innovation: means or end? Innovation: means or end? Sybille van den Hove, Median, Barcelona Dissection of an obsession Our leaders seem to have become obsessed with innovation. Why? Innovation as the cure for our current ills:

More information

Some Regulatory and Political Issues Related to Space Resources Exploration and Exploitation

Some Regulatory and Political Issues Related to Space Resources Exploration and Exploitation 1 Some Regulatory and Political Issues Related to Space Resources Exploration and Exploitation Presentation by Prof. Dr. Ram Jakhu Associate Professor Institute of Air and Space Law McGill University,

More information

Focus on Mission Success: Process Safety for the Atychiphobist

Focus on Mission Success: Process Safety for the Atychiphobist Focus on Mission Success: Process Safety for the Atychiphobist Mary Kay O Connor Process Safety International Symposium Bill Nelson and Karl Van Scyoc October 28-29, 2008 First: A Little Pop Psychology

More information

Learning and Using Models of Kicking Motions for Legged Robots

Learning and Using Models of Kicking Motions for Legged Robots Learning and Using Models of Kicking Motions for Legged Robots Sonia Chernova and Manuela Veloso Computer Science Department Carnegie Mellon University Pittsburgh, PA 15213 {soniac, mmv}@cs.cmu.edu Abstract

More information

IMPORTANT ASPECTS OF DATA MINING & DATA PRIVACY ISSUES. K.P Jayant, Research Scholar JJT University Rajasthan

IMPORTANT ASPECTS OF DATA MINING & DATA PRIVACY ISSUES. K.P Jayant, Research Scholar JJT University Rajasthan IMPORTANT ASPECTS OF DATA MINING & DATA PRIVACY ISSUES K.P Jayant, Research Scholar JJT University Rajasthan ABSTRACT It has made the world a smaller place and has opened up previously inaccessible markets

More information

European Commission. 6 th Framework Programme Anticipating scientific and technological needs NEST. New and Emerging Science and Technology

European Commission. 6 th Framework Programme Anticipating scientific and technological needs NEST. New and Emerging Science and Technology European Commission 6 th Framework Programme Anticipating scientific and technological needs NEST New and Emerging Science and Technology REFERENCE DOCUMENT ON Synthetic Biology 2004/5-NEST-PATHFINDER

More information

Scoping Paper for. Horizon 2020 work programme Societal Challenge 4: Smart, Green and Integrated Transport

Scoping Paper for. Horizon 2020 work programme Societal Challenge 4: Smart, Green and Integrated Transport Scoping Paper for Horizon 2020 work programme 2018-2020 Societal Challenge 4: Smart, Green and Integrated Transport Important Notice: Working Document This scoping paper will guide the preparation of the

More information

General Rules. 1. Game Outline DRAGON BALL SUPER CARD GAME OFFICIAL RULE The act of surrendering is not affected by any cards.

General Rules. 1. Game Outline DRAGON BALL SUPER CARD GAME OFFICIAL RULE The act of surrendering is not affected by any cards. DRAGON BALL SUPER CARD GAME OFFICIAL RULE MANUAL ver.1.03 Last update: 10/04/2017 1-2-5. The act of surrendering is not affected by any cards. Players can never be forced to surrender due to card effects,

More information

Values in design and technology education: Past, present and future

Values in design and technology education: Past, present and future Values in design and technology education: Past, present and future Mike Martin Liverpool John Moores University m.c.martin@ljmu.ac.uk Keywords: Values, curriculum, technology. Abstract This paper explore

More information

2012 International Symposium on Safety Science and Technology Master of science in safety engineering at KU Leuven, Belgium

2012 International Symposium on Safety Science and Technology Master of science in safety engineering at KU Leuven, Belgium Available online at www.sciencedirect.com Procedia Engineering 45 (2012 ) 276 280 2012 International Symposium on Safety Science and Technology Master of science in safety engineering at KU Leuven, Belgium

More information

FAULT DETECTION AND DIAGNOSIS OF HIGH SPEED SWITCHING DEVICES IN POWER INVERTER

FAULT DETECTION AND DIAGNOSIS OF HIGH SPEED SWITCHING DEVICES IN POWER INVERTER FAULT DETECTION AND DIAGNOSIS OF HIGH SPEED SWITCHING DEVICES IN POWER INVERTER R. B. Dhumale 1, S. D. Lokhande 2, N. D. Thombare 3, M. P. Ghatule 4 1 Department of Electronics and Telecommunication Engineering,

More information

Earth Cube Technical Solution Paper the Open Science Grid Example Miron Livny 1, Brooklin Gore 1 and Terry Millar 2

Earth Cube Technical Solution Paper the Open Science Grid Example Miron Livny 1, Brooklin Gore 1 and Terry Millar 2 Earth Cube Technical Solution Paper the Open Science Grid Example Miron Livny 1, Brooklin Gore 1 and Terry Millar 2 1 Morgridge Institute for Research, Center for High Throughput Computing, 2 Provost s

More information

I&S REASONING AND OBJECT-ORIENTED DATA PROCESSING FOR MULTISENSOR DATA FUSION

I&S REASONING AND OBJECT-ORIENTED DATA PROCESSING FOR MULTISENSOR DATA FUSION I&S REASONING AND OBJECT-ORIENTED DATA PROCESSING FOR MULTISENSOR DATA FUSION A dvanced information technologies provide indispensable contribution to peacekeeping and other crisis response operations.

More information