An "asymmetric" approach to the assessment of safety-critical software during certification and licensing

Size: px
Start display at page:

Download "An "asymmetric" approach to the assessment of safety-critical software during certification and licensing"

Transcription

1 An "asymmetric" approach to the assessment of safety-critical software during certification and licensing Sergiy A. Vilkomir, Vjacheslav S. Kharchenko Abstract The purpose of the present paper is the description of the offered by the authors general approach to the software assessment during certification and licensing. This kind of software assessment has the specific character, taking into account limitation of time, material and human resources available to the experts. The offered asymmetric approach allows to define the most important areas, where the basic efforts of the software assessment should be concentrated. The following tasks have been solved for the formation of this approach: - more precise definition of the purposes of the software safety assessment; - formation of the set of acceptance criteria, which software should satisfy; - development of principles of acceptance criteria application at all stages of the software life cycle; - development of standard contents of stages of the software licensing; - definition of features of software assessment for systems with version redundancy. 1. Introduction The problem of ensuring and assessment of computer systems software has become actual last years in connection with extending application of computer systems in such critical branches, as atomic energetics, astronautics, chemistry, and transportation. Computer systems fulfil more and more crucial functions and accordingly consequences of possible software mistakes increase. Ensuring and assessment of software at various stages of the software life cycle are important parts of the general problem of system dependability. These tasks are considered in plenty of scientific publications, a number of monographs [1-3], national and international standards, for example, in atomic energetics [4, 5]. Several international normative documents in the area of safety-critical software are under approval now [6-8]. Usually the problem is considered from the point of view of two basic participants of a process: a computer system user and a software developer. At the same time in many countries with advanced atomic energetics there is a third participant - state regulatory bodies (authorities), which main task is licensing of activity connected with nuclear and radiation safety. An assessment of software during certification and licensing is usually carried out on behalf of regulatory bodies either by independent experts, or by experts of organisations which provide a scientific and technical support of regulatory bodies. The assessment of software for these purposes has the specific character [9-11] and just this aspect is addressed in the present paper. Irrespective of assessments carried out by the experts, the developer of the system and software has the main responsibility for the safety achievement. For achievement of a required level of software at all stages of life cycle the developer implement verification, i.e. the process of evaluating a system or component to determine whether the products of a given development phase satisfy the conditions imposed at the start of that phase [12]. During licensing the experts implement the assessment both of software and of the process of its development and verification. Theoretically it is possible the symmetric approach, when 467

2 the experts implement the all-round assessment after each separate phase of the development. In that case volumes of efforts of the experts are in a sense proportional to volumes of efforts of the developer at the appropriate stage. However in practice the symmetric approach can be inexpedient and even unrealisable. The main reason consists in limitation of time, material and human resources available to the experts. It involves a complex task of a choice of optimum volumes of materials for the assessment, allocation of most important software characteristics, development of practicable methods of the software assessment during certification and licensing. The purpose of the present paper is the general description of the offered methodology for the solution of this task, named the methodology of the asymmetric assessment of software. 2. General characteristics of the "asymmetric assessment" of software The offered approach is based on the experience of practical works by the software assessment of computer control systems of nuclear power plants (NPPs) in Ukraine [13]. These works are carried out by Ukrainian State Scientific and Technical Center on Nuclear and Radiation Safety and Nuclear Regulatory Administration of Ministry for Environmental Protection and Nuclear Safety of Ukraine. The following tasks have been solved for the formation of this approach: - more precise definition of the purposes of the software assessment and analysis of an opportunity of these purposes achievement at all stages of the software life cycle (see section 3); - formation of the set of acceptance criteria, which software should satisfy to have a demanded safety level; development of the structure of each criterion internal contents and hierarchy of subcriteria and requirements (see section 4); - development of principles of acceptance criteria application at all stages of the software life cycle depending on the safety system class; consideration of a ratio criterion stages for software of safety systems and software of normal operation systems, important for safety (see section 5); - development of standard contents of stages of the software licensing for safety important digital systems at NPPs (see section 6); - definition of the features of the software assessment for systems with version redundancy (see section 7). The solution of these tasks has allowed to define the most important areas, where the basic efforts of the software assessment should be concentrated. For all specified directions the optimum allocation of resources is irregular (asymmetric). Thus, the offered approach to the software assessment is characterised by the asymmetric distribution of: - the purposes of works on software life cycle stages; - criteria on safety classes of systems; - criteria on software life cycle stages; - works on kinds of used diversity. 3. Purposes of the assessment on various stages of the software life cycle The purpose of the expert s activity on the software assessment within the framework of licensing of important for safety systems is to be convinced that software answers criteria, norms and rules of the safety. The reliance on the high level of software safety, received during the assessment, forms the basis for issuing by regulatory bodies of the sanctions on the software and system use. For achievement of this purpose (we name it as the purpose A) the experts can require of the developer to give the additional information (documents), or to 468

3 specify the information, transferred earlier. However, it is necessary to note that the receipt of the additional information from the developer does not influence in any way on the existing level of the software safety. Therefore, alongside with the purpose A the second purpose (the purpose B) of works of the expert also exists - to exert real influence upon the increase of the safety level. For possibility of achievement of the purpose B the special approach to the software assessment is required. First, it is necessary to carry out the assessment parallel and in rate with the development process at all life cycle stages - software requirements, designing, coding (programming), and testing. Secondly, the operative contact with the developers is necessary, so that all remarks and defects, founded out by the experts were transferred to the developers for elimination. The possibility to achieve both the purpose A and the purpose B is different for each stage of the software life cycle. The optimum distribution of efforts of the experts is schematically shown in Figure 1. purpose A purpose B requiremets design coding testing plan testing report purpose A (using tools) purpose B (using tools) Figure 1: Distribution of the software assessment purposes for each stage of the software life cycle During the assessment after the requirements development, experts in principle can have plenty of the remarks, the part of which can require correcting the documentation. However, as the experience shows, elimination of these remarks basically influences on quality of the documentation and to a lesser degree on the real level of software. The similar situation arises with the assessment on the design stage. Hence, the basic efforts of the experts at these stages are directed on the achievement of the purpose A. The opportunity of the fulfilment of the software assessment after the stage of coding directly depends on the presence of special hardware and software means (tools) allowing carrying out static and dynamic analysis of software. The realisation of such analysis is, as a matter of fact, independent verification that is carried out parallel with works of the developer. In principle, the realisation of independent verification is not a direct task of the regulatory body. Therefore, it is possible not to carry out the assessment after the stage of coding, especially as its realisation is practically impossible without tools. However, if the tools were available, the realisation of selective examination of a part of software would be expedient. Since it gives the possibility to reveal software errors, the basic purpose at this stage is increasing of the software safety level (the purpose B). The assessment of the software testing should be carried out separately for two substages: after issue of the testing plan (but prior to the beginning of the testing) and after issue of the software testing report. For the achievement of the purpose B, all experts remarks should be transferred to the developer for their removing and updating of the plan prior to the beginning of the testing. The experts should pay the special attention to testing completeness and 469

4 volumes of such auxiliary (from the functional point of view, but important from the safety point of view) software functions, as diagnostics of hardware, software self-diagnostics, logic redundancy of signals, reconfiguration and switching to reserve channels and so on. If necessary, the experts should oblige to the developer to carry out the additional testing. If the object of the assessment on this substage has been achieved, i.e. the testing plan has been corrected by the developer and has been approved by the experts, during the assessment of the testing report the experts need only to be convinced, that all tests have been carried out according to the plan and have been finished successfully. So the main purpose of this substage is the purpose A. The adducted above review of the software assessment purposes at the various life cycle stages gives evidence, that the greatest possibility for the experts to affect the safety level increasing occurs at the stage of the software testing plan assessment. The basic efforts of the experts should be concentrated just on this part of the assessment. 4. The set of the criteria of the software assessment For the fulfilment of the software assessment the authors propose the set of the acceptance criteria. These criteria are indicators and rules, according to which the assessment is carried out and the final conclusions about software conformity the safety requirements are done. The proposed set includes five criteria: completeness, documentation, intelligibility, independence and conformity. Software satisfies the criterion of completeness, if: - its specifications completely correspond to the specifications of the system; - all functional requirements to software are reflected in the project; - software corresponds to the general requirements, common to software of all important for safety systems, including the requirements to designing and verification; - the performance of all software functions is checked up with testing. Software satisfies the criterion of documentation, if the composition and structure of the developer s documentation on all stages of the development and verification correspond to the requirements of the standards, norms and rules, and also there is a necessary operational documentation. The criteria of documentation and completeness are interconnected. Thus by the criterion of completeness the substantial aspect, and by criterion of documentation - the formal aspect are estimated. Software satisfies the criterion of intelligibility, if the documentation on the software development and verification is stated in the form, clear and intelligible to the experts who are not directly participating in their realisation. In addition, the traceability of the performance of the requirements to software at the various life cycle stages should be provided. Software satisfies the criterion of independence, if a degree of the independence of software verification corresponds to a safety class of the system. For the most critical systems verification should be carried out by the group of the experts (organisation), administratively and(or) financially independent on the experts (organisation), developing software. For less critical systems the realisation of the development and verification by the different experts is recommended, however the administrative and financial independence is not required. Software satisfies the criterion of conformity, if verification has been successfully completed before putting the system into operation, i.e. if by this moment all found out defects have been analysed and are eliminated (or the reasonable decision on their further elimination has been accepted). The criteria are the important part of the general circuit of the software assessment, illustrated in Figure

5 Norms, Rules, Standards Experts Purposes of software assessment Criteria of software assessment Methods and means Subcriteria Final assessment Result Documenta tion Requir. Software object of assessment Life cycle stages Software developer Figure 2: Software assessment The set of subcriteria, which detail the assessment, corresponds to each criterion. The further detailed elaboration is carried out on the basis of the connection of each subcriterion with the set of the requirements, which are checked during the assessment. So the proposed set of criteria has a two-part structure: hierarchy criterion - subcriterion - requirement on a vertical and five described above criteria on a horizontal. First the assessment by each criterion is formed on the basis of separate subcriteria, and then the final assessment is formulated. Two basic loops (evaluation and correction) are present in the proposed circuit according to two purposes of the software assessment. The loop of evaluation is shown by unbroken arrows. The loop of correction is shown by dotted arrows and corresponds to a situation, 471

6 when on account of the negative assessment the developer should modify software (to correct the errors, to carry out the additional tests and so on). 5. The use of acceptance criteria at the various stages of the software life cycle for systems of the various safety classes The proposed set of the criteria has the specific character of the application at each stage of the software life cycle. Some criteria are applied at all stages, some - only on one stage. The character of the application essentially depends on a safety class of the estimated system. Depending on importance of the system for safety we shall divide software on two groups. Following the Ukrainian normative document [14] for NPPs systems, it is software of safety systems (SS) and software of systems of normal operation, important for safety (SIS). Instead of this, it is also possible to divide according to accepted in the USA approach on classes 1E and not 1E, or into categories of safety agrees IEC Std [15]. For software of SS, it is necessary to carry out the assessment in the greatest possible volumes. For software of SIS, the approach is opposite: should check something only if it is especially necessary or it is the most important for safety. Such approach is explained in smaller influence SIS on the safety in comparison with SS. The realisation of the specified approaches results in the asymmetric distribution of criteria both on stages of the life cycle and on classes of safety, as shown in Table 1. It is necessary to note, that the question is to carry out (+) or to not carry out (-) the assessment according to the criterion, and it is not the question if software should or should not satisfy this criterion. Table 1: Acceptance criteria for each stage of the software life cycle Stages Software Software Software testing Criteria requirements design Planning Reporting Completeness SS SIS Intelligibility SS SIS Documentation SS SIS Independence SS SIS Conformity SS SIS For example, both software of SS and software of SIS should satisfy the criterion of intelligibility at all stages of the life cycle software. The task of the developer is to comply with this requirement. But the approach to the assessment of this requirement by the experts is various for software of SS and software of SIS. The influence on the safety of software of SS is so great, that the conformity to the criterion of intelligibility is necessary for estimating at all stages. For software of SIS, it is possible to carry out this assessment only at the stage of the verification plan, since this stage is the most responsible in the general circuit of the assessment. The application of some concrete criterion at various stages of the life cycle also has the specific character. Let us consider it on an example of the criterion of completeness. At the requirements stage according to the criterion of completeness it is necessary to estimate the 472

7 completeness of conformity of the software requirements to the requirements for the system, and also completeness of reflection of the general requirements in the specifications. These general requirements are common for software of all kinds of systems and include the requirements to diagnostics of hardware, software self-diagnostics, opportunity of periodic testing of functions of the system, software structure and others. At the design stage, by the criterion of completeness it is necessary to estimate the reflection of the software requirements in the design documentation. At the stage of the development of the testing plan it is necessary to estimate the completeness of the stipulated checks of software functions (requirements). Besides, the substantiation of the application of tools for software development and verification should be estimated. At last, at the stage of the testing report on the criterion of completeness it should estimate, as far as the carried out testing corresponds to the testing plan and as far as their results are reflected in the final documentation. When the same criterion is applied at any stage both for SS and for SIS, the assessment by subcriteria for software of SS could be more profound, and the requirements could be stricter. 6. Stages of the software review Standard contents of stages of the software licensing based on the acceptance criteria are considered below for safety important digital systems at NPPs [16]. Before the beginning of digital system licensing, the plan of the review is established. This plan covers as well the software assessment. The schedule of the review is established, including deadlines of representation by the developer of the concrete software documents. The plan of the assessment of software includes: - the brief description of the subject of the assessment; - criteria, on which the assessment is conducted; - the list of methods and actions which are carried out during the assessment. The plan of the software review should contain a detailed list of review stages, which is taking into account specificity of the considered system and its software. The standard content of such list of software review stages at all phases of software life should include: - the evaluation of availability and completeness of software documentation; - the evaluation of the reflection of the detailed requirements to software, composed at the previous stage of review; - the evaluation of conformity to the acceptance criteria; - the transfer of the remarks to the developer and obtaining the corrected and supplemented software documentation. The final experts' report and recommendations to the regulatory bodies about possibility of software use should be issued on last phase of the review. 7. Features of the software assessment for systems with version redundancy Features of the methodology of the asymmetric assessment are considered below for software of computer systems with version redundancy, otherwise named multiversion systems [17, 18]. The various kinds of diversity are using in such systems depending on areas of application. These kinds of diversity are classified [19-21] as object and subject diversity; functional (model), program and hardware diversity; design and operational diversity etc. The multiversion system contains two channels or subsystems (basic and diverse) in simple case and could have up to 4-5 subsystems in general case. 473

8 The following tasks should be in addition solved during the software assessment for multiversion systems: - checking of the presence of the real diversity in the system; - determination of the characteristics (parameters) of the diversity; - the assessment of the achieved level of diversity and its conformity to the requirements. Software of subsystems constructed on the different versions should be estimated in such systems. If in case of a failure of one subsystem (for example, basic) the transition to the second (diverse) subsystem is stipulated, then control and reconfiguration software should also be estimated. Within the framework of the software assessment of multiversion systems, the asymmetry is displayed in two directions: on life cycle stages and on subsystems. The asymmetry on the life cycle stages is displayed depending on the kind of diversity. For systems with the functional (model) diversity in comparison with systems with the program diversity, large efforts should be directed on the assessment of the system requirements and software specifications. It is caused by the fact that the effect from introduction functional diversity can take place only with minimal correlation of the appropriate model versions, and consequently, specifications, on the basis of which the versions of software have been elaborated. Opposite, for systems with program diversity large efforts should be directed on the assessment of design and coding stages. The asymmetry on subsystems is displayed for the software assessment of various channels of multiversion systems. On the one hand, the requirements to the assessment of software of these channels, in comparison with software of channels of nondiverse systems, can be weakened, because the probability of a common failure caused by program errors is lower in multiversion systems. On the other hand, the requirements to the assessment of control and reconfiguration software should be increased. 8. Conclusions and further work The optimum distribution of works of the experts is the basis of the proposed methodology of the asymmetric assessment of software during licensing. The assessment is considered at stages of the software life cycle with using of the set of the acceptance criteria depending on the safety class of the system. The stated results can be widespread on the assessment of hardware and a computer system as a whole. Thus, the asymmetric assessment can be used within the framework of a holistic methodology [22], where the human, hardware and software components are considered by an integrated approach. The described methodology has found practical application with the review of the following safety related computer systems at Ukrainian NPPs: - Rod Group and Individual Control System of Skoda-Controls (Czech Republic) at South- Ukrainian-1 NPP and Khmelnitsky-1 NPP; - Turbine Control System of Shevchenko Plant (Ukraine) for Zaporozhye-1 NPP; - Safety Parameters Display System of Westinghouse (USA) at Zaporozhye-5 NPP, Khmelnitsky-1 NPP and Chernobyl-3 NPP; - Unit Information System of WESTRON (Ukraine-USA) at South-Ukrainian-1 NPP and others. The complex of methodical and tool [23] means is developed for realisation of methodology of the asymmetric assessment. The proposed methods can be adapted for the software assessment for critical application systems in other branches. 474

9 9. References [1] Leveson, N, Safeware: System Safety and Computers, Addison-Wesley, [2] Lyu, M. R. (editor), Handbook of Software Reliability Engineering, McGraw-Hill, [3] Kersken, M. and Saglietti, F., Software Fault Tolerance Achievement Assessment Strategies, Springer-Verlag, Berlin, [4] IEC Std. 880, Software for Computers in the Safety Systems of Nuclear Power Stations, [5] IEEE Std , IEEE Standard Criteria for Digital Computers in Safety Systems of Nuclear Power Generating Stations, [6] IAEA Safety Standard Series, Working ID NS 264, Software for Computer Based Systems Important to Safety in Nuclear Power Plants, Draft Safety Guide, [7] IEC Std , Software for Computers Important to Safety for Nuclear Power Plants as a First Supplement to IEC Publication 880, Draft, [8] IEC Std , Functional Safety of Electrical/ Electronic/ Programmable Electronic Safety - Related Systems, Draft, [9] Vilkomir, S. A. and Zhidok, G. I., Software for Nuclear Power-Generating Unit Protection Systems: Safety and Reliability Problem, Control Systems and Machines, num. 4/5, 1995, pp (In Russian). [10] Karpeta, C., Licensing Aspects of the NPP Temelin I&C Replacement Project, Proceedings of the International Topical Meeting on VVER Instrumentation and Control, April 21-24, 1997, Congress Centre, Prague, Czech Republic, pp [11] Bussac,.J. P., Jover, P. and Conflant, M., The Introduction of Computer Systems into Nuclear Power Plant Instrumentation and Control: the French Safety Approach, International Symposium on Nuclear Power Plant Instrumentation and Control, May 1992, Tokyo, Japan. [12] IEEE Std , Glossary of Software Engineering Terminology, [13] Vilkomir, S. A. and Zhidok, G. I., Experience of Licensing of Software for Digital Safety Related Systems in Ukraine, Project Control for 2000 and Beyond, Proceedings of ESCOM- ENCRESS 98, May 1998, Rome, Italy, pp [14] General provisions on safety assurance at nuclear stations (OPB-88), PNAE G , Moscow, 1989 (In Russian). [15] IEC Std. 1226, Nuclear Power Plants. Instrumentation and Control Systems Important for Safety. Classification, [16] Vilkomir, S. A. and Kharchenko, V. S., Methodology of the Review of Software for Safety Important Systems, Proceedings of ESREL 99 The Tenth European Conference on Safety and Reliability, Munich - Garching, Germany, September 1999, pp [17] Avizienis, A., The N-version Approach to Fault-Tolerant Systems, IEEE Transaction on Software Engineering, vol. 11, no. 12, 1985, pp [18] Kharchenko, V. S., Theory of Defect Tolerant Digital Systems with Version Redundancy, Kharkov Military University, Ukraine, 1996 (In Russian). [19] Saglietti, F., Fault Tolerance by Software Diversity: How and When?, Proceedings of the Safecomp'94, Anaheim, California, USA, October 23-26, 1994, pp [20] Kharchenko, V. S. and Mishchenko, S., Dynamical Model for the Operative Forecasting of the Software Reliability, Transport information and control systems, num. 6, 1996, pp. 3-7 (In Russian). [21] Kharchenko, V. S., Choice of Design Technologies and Basic Architectures for the Defect- Tolerant Digital Control and Computing Real-Time Systems, Space Science and Technology, v. 3, num. 5/6, 1997, pp (In Russian). [22] Pasquini, A., Goerke, W., Kanoun, K. and Rizzo, A., An Holistic Approach to Dependability, Proceedings of the Safecomp'96, Vienna, October [23] Vilkomir, S. A., Kharchenko, V. S., Ponomaryev, A. S. and Gorda, A. L., The System Safety Assessment by the Use of Programming Tools during the Licensing Process, Proceedings of the 17th International System Safety Conference, Orlando, Florida, USA, August 1999, pp

The System Safety Assessment by the Use of Programming Tools during the Licensing Process

The System Safety Assessment by the Use of Programming Tools during the Licensing Process The System Safety Assessment by the Use of Programming Tools during the Licensing Process S. A. Vilkomir, Ph.D.; State Center on Nuclear and Radiation Safety; Kharkov, Ukraine V. S. Kharchenko, Prof.;

More information

Goals, progress and difficulties with regard to the development of German nuclear standards on the example of KTA 2000

Goals, progress and difficulties with regard to the development of German nuclear standards on the example of KTA 2000 Goals, progress and difficulties with regard to the development of German nuclear standards on the example of KTA 2000 Dr. M. Mertins Gesellschaft für Anlagen- und Reaktorsicherheit (GRS) mbh ABSTRACT:

More information

SAFIR2014: CORSICA Coverage and rationality of the software I&C safety assurance

SAFIR2014: CORSICA Coverage and rationality of the software I&C safety assurance SAFIR2014: CORSICA Coverage and rationality of the software I&C safety assurance Mid-Term Seminar 21.-22.3.2013 Jussi Lahtinen, Jukka Ranta, Lauri Lötjönen VTT Risto Nevalainen, Timo Varkoi, FiSMA 2 Introduction

More information

The Development of the New Idea Safety Guide for Design of Instrumentation and Control Systems for Nuclear Power Plants

The Development of the New Idea Safety Guide for Design of Instrumentation and Control Systems for Nuclear Power Plants The Development of the New Idea Safety Guide for Design of Instrumentation and Control Systems for Nuclear Power Plants Gary Johnson Independent Consultant Livermore, California kg6un@alumni.calpoly.edu

More information

LICENSING THE PALLAS-REACTOR USING THE CONCEPTUAL SAFETY DOCUMENT

LICENSING THE PALLAS-REACTOR USING THE CONCEPTUAL SAFETY DOCUMENT LICENSING THE PALLAS-REACTOR USING THE CONCEPTUAL SAFETY DOCUMENT M. VISSER, N.D. VAN DER LINDEN Licensing and compliance department, PALLAS Comeniusstraat 8, 1018 MS Alkmaar, The Netherlands 1. Abstract

More information

Technical Specifications: Supply of Seamless Grade TP304L Pipe and Grade WP304L Pipework Fittings to the ITER Organization (IO).

Technical Specifications: Supply of Seamless Grade TP304L Pipe and Grade WP304L Pipework Fittings to the ITER Organization (IO). IDM UID: R22L3M ver 1.4 Technical Specifications: Supply of Seamless Grade TP304L Pipe and Grade WP304L Pipework Fittings to the ITER Organization (IO). Contents 1 Terms and Acronyms... 3 2 Background...

More information

A FRAMEWORK FOR PERFORMING V&V WITHIN REUSE-BASED SOFTWARE ENGINEERING

A FRAMEWORK FOR PERFORMING V&V WITHIN REUSE-BASED SOFTWARE ENGINEERING A FRAMEWORK FOR PERFORMING V&V WITHIN REUSE-BASED SOFTWARE ENGINEERING Edward A. Addy eaddy@wvu.edu NASA/WVU Software Research Laboratory ABSTRACT Verification and validation (V&V) is performed during

More information

SAUDI ARABIAN STANDARDS ORGANIZATION (SASO) TECHNICAL DIRECTIVE PART ONE: STANDARDIZATION AND RELATED ACTIVITIES GENERAL VOCABULARY

SAUDI ARABIAN STANDARDS ORGANIZATION (SASO) TECHNICAL DIRECTIVE PART ONE: STANDARDIZATION AND RELATED ACTIVITIES GENERAL VOCABULARY SAUDI ARABIAN STANDARDS ORGANIZATION (SASO) TECHNICAL DIRECTIVE PART ONE: STANDARDIZATION AND RELATED ACTIVITIES GENERAL VOCABULARY D8-19 7-2005 FOREWORD This Part of SASO s Technical Directives is Adopted

More information

Enabling the convergence of mechanical nuclear codes and standards requirements

Enabling the convergence of mechanical nuclear codes and standards requirements Enabling the convergence of mechanical nuclear codes and standards requirements Dr. Andrew Wasylyk Project Manager - CORDEL October 2016 Moscow International Harmonisation Applicable and internationally

More information

Towards a multi-view point safety contract Alejandra Ruiz 1, Tim Kelly 2, Huascar Espinoza 1

Towards a multi-view point safety contract Alejandra Ruiz 1, Tim Kelly 2, Huascar Espinoza 1 Author manuscript, published in "SAFECOMP 2013 - Workshop SASSUR (Next Generation of System Assurance Approaches for Safety-Critical Systems) of the 32nd International Conference on Computer Safety, Reliability

More information

IEEE STD AND NEI 96-07, APPENDIX D STRANGE BEDFELLOWS?

IEEE STD AND NEI 96-07, APPENDIX D STRANGE BEDFELLOWS? IEEE STD. 1012 AND NEI 96-07, APPENDIX D STRANGE BEDFELLOWS? David Hooten Altran US Corp 543 Pylon Drive, Raleigh, NC 27606 david.hooten@altran.com ABSTRACT The final draft of a revision to IEEE Std. 1012-2012,

More information

Implementing the International Safety Framework for Space Nuclear Power Sources at ESA Options and Open Questions

Implementing the International Safety Framework for Space Nuclear Power Sources at ESA Options and Open Questions Implementing the International Safety Framework for Space Nuclear Power Sources at ESA Options and Open Questions Leopold Summerer, Ulrike Bohlmann European Space Agency European Space Agency (ESA) International

More information

Principled Construction of Software Safety Cases

Principled Construction of Software Safety Cases Principled Construction of Software Safety Cases Richard Hawkins, Ibrahim Habli, Tim Kelly Department of Computer Science, University of York, UK Abstract. A small, manageable number of common software

More information

elaboration K. Fur ut a & S. Kondo Department of Quantum Engineering and Systems

elaboration K. Fur ut a & S. Kondo Department of Quantum Engineering and Systems Support tool for design requirement elaboration K. Fur ut a & S. Kondo Department of Quantum Engineering and Systems Bunkyo-ku, Tokyo 113, Japan Abstract Specifying sufficient and consistent design requirements

More information

The Test and Launch Control Technology for Launch Vehicles

The Test and Launch Control Technology for Launch Vehicles The Test and Launch Control Technology for Launch Vehicles Zhengyu Song The Test and Launch Control Technology for Launch Vehicles 123 Zhengyu Song China Academy of Launch Vehicle Technology Beijing China

More information

Jacek Stanisław Jóźwiak. Improving the System of Quality Management in the development of the competitive potential of Polish armament companies

Jacek Stanisław Jóźwiak. Improving the System of Quality Management in the development of the competitive potential of Polish armament companies Jacek Stanisław Jóźwiak Improving the System of Quality Management in the development of the competitive potential of Polish armament companies Summary of doctoral thesis Supervisor: dr hab. Piotr Bartkowiak,

More information

An Ontology for Modelling Security: The Tropos Approach

An Ontology for Modelling Security: The Tropos Approach An Ontology for Modelling Security: The Tropos Approach Haralambos Mouratidis 1, Paolo Giorgini 2, Gordon Manson 1 1 University of Sheffield, Computer Science Department, UK {haris, g.manson}@dcs.shef.ac.uk

More information

Software Verification and Validation. Prof. Lionel Briand Ph.D., IEEE Fellow

Software Verification and Validation. Prof. Lionel Briand Ph.D., IEEE Fellow Software Verification and Validation Prof. Lionel Briand Ph.D., IEEE Fellow 1 Lionel s background Worked in industry, academia, and industry-oriented research institutions France, USA, Germany, Canada,

More information

INPRO Dialogue Forum on Sustainable Supply Chains for Advanced Nuclear Power Systems

INPRO Dialogue Forum on Sustainable Supply Chains for Advanced Nuclear Power Systems INPRO Dialogue Forum on Sustainable Supply Chains for Advanced Nuclear Power Systems (15th INPRO Dialogue Forum) IAEA Headquarters Vienna, Austria 2 4 July 2018 Ref. No.: EVT1700127 Information Sheet A.

More information

SYSTEMIC APPROACH TO THE CHOICE OF OPTIMUM VARIANT OF RADIOACTIVE WASTE MANAGEMENT 1

SYSTEMIC APPROACH TO THE CHOICE OF OPTIMUM VARIANT OF RADIOACTIVE WASTE MANAGEMENT 1 ISAHP 2001, Berne, Switzerland, August 2-4, 2001 SYSTEMIC APPROACH TO THE CHOICE OF OPTIMUM VARIANT OF RADIOACTIVE WASTE MANAGEMENT 1 Jaroslava Halova Academy of Sciences of The Czech Republic, Institute

More information

Use of the Graded Approach in Regulation

Use of the Graded Approach in Regulation Use of the Graded Approach in Regulation New Major Facilities Licensing Division Directorate of Regulatory Improvement and Major Projects Management Background Information for Meeting of the Office for

More information

Failure Mode and Effects Analysis of FPGA-Based Nuclear Power Plant Safety Systems

Failure Mode and Effects Analysis of FPGA-Based Nuclear Power Plant Safety Systems Failure Mode and Effects Analysis of FPGA-Based Nuclear Power Plant Safety Systems Phillip McNelles, Zhao Chang Zeng, and Guna Renganathan 8 th International Workshop on the Applications of FPGAs in NPPs

More information

KNOWLEDGE MANAGEMENT. IAEA Program and Activities on NKM. Keiko Hanamitsu, Nuclear Knowledge Management Section Department of Nuclear Energy, IAEA

KNOWLEDGE MANAGEMENT. IAEA Program and Activities on NKM. Keiko Hanamitsu, Nuclear Knowledge Management Section Department of Nuclear Energy, IAEA KNOWLEDGE MANAGEMENT IAEA Program and Activities on NKM Keiko Hanamitsu, Nuclear Knowledge Management Section Department of Nuclear Energy, IAEA WNU Summer Institute, 13 August 2012, Oxford, UK 1 Presentation

More information

Rearrangement task realization by multiple mobile robots with efficient calculation of task constraints

Rearrangement task realization by multiple mobile robots with efficient calculation of task constraints 2007 IEEE International Conference on Robotics and Automation Roma, Italy, 10-14 April 2007 WeA1.2 Rearrangement task realization by multiple mobile robots with efficient calculation of task constraints

More information

Study on a Simplified Converter Topology for Fault Tolerant Motor Drives

Study on a Simplified Converter Topology for Fault Tolerant Motor Drives Study on a Simplified Converter Topology for Fault Tolerant Motor Drives L. Szabó, M. Ruba and D. Fodorean Technical University of Cluj, Department of Electrical Machines, Cluj, Romania Abstract Some of

More information

ScienceDirect. Optimization of Fuzzy Controller Parameters for the Temperature Control of Superheated Steam

ScienceDirect. Optimization of Fuzzy Controller Parameters for the Temperature Control of Superheated Steam Available online at www.sciencedirect.com ScienceDirect Procedia Engineering 100 (015 ) 1547 1555 5th DAAAM International Symposium on Intelligent Manufacturing and Automation, DAAAM 014 Optimization of

More information

SAFETY ASSESSMENT METHODOLOGIES AND THEIR APPLICATION IN DEVELOPMENT OF NEAR SURFACE WASTE DISPOSAL FACILITIES ASAM PROJECT

SAFETY ASSESSMENT METHODOLOGIES AND THEIR APPLICATION IN DEVELOPMENT OF NEAR SURFACE WASTE DISPOSAL FACILITIES ASAM PROJECT SAFETY ASSESSMENT METHODOLOGIES AND THEIR APPLICATION IN DEVELOPMENT OF NEAR SURFACE WASTE DISPOSAL FACILITIES ASAM PROJECT B. Batandjieva, P. Metcalf (a) International Atomic Energy Agency Wagrammer Strasse

More information

Yolande Akl, Director, Canadian Nuclear Safety Commission Ottawa, Canada. Abstract

Yolande Akl, Director, Canadian Nuclear Safety Commission Ottawa, Canada. Abstract OVERVIEW OF SOME CHALLENGES IN PSA REVIEWS FOR EXISTING AND NEW NUCLEAR POWER PLANTS IN CANADA 1 Guna Renganathan and Raducu Gheorghe Canadian Nuclear Safety Commission Ottawa, Canada Yolande Akl, Director,

More information

Design Rationale as an Enabling Factor for Concurrent Process Engineering

Design Rationale as an Enabling Factor for Concurrent Process Engineering 612 Rafael Batres, Atsushi Aoyama, and Yuji NAKA Design Rationale as an Enabling Factor for Concurrent Process Engineering Rafael Batres, Atsushi Aoyama, and Yuji NAKA Tokyo Institute of Technology, Yokohama

More information

SMR Regulators Forum. Pilot Project Report. Report from Working Group on Graded Approach

SMR Regulators Forum. Pilot Project Report. Report from Working Group on Graded Approach SMR Regulators Forum Pilot Project Report Report from Working Group on Graded Approach January 2018 APPENDIX II - REPORT FROM WORKING GROUP ON GRADED APPROACH Executive Summary SMR REGULATORS FORUM GRADED

More information

NATIONAL BANK OF THE REPUBLIC OF MACEDONIA

NATIONAL BANK OF THE REPUBLIC OF MACEDONIA NATIONAL BANK OF THE REPUBLIC OF MACEDONIA Pursuant to Article 47 paragraph 1 item 6 of the Law on the National of the Republic of Macedonia ("Official Gazette of the Republic of Macedonia" No. 158/10,

More information

Failures: Their definition, modelling & analysis

Failures: Their definition, modelling & analysis Failures: Their definition, modelling & analysis (Submitted to DSN) Brian Randell and Maciej Koutny 1 Summary of the Paper We introduce the concept of a Structured Occurrence Net (SON), based on that of

More information

DRAFT REGULATORY GUIDE DG-1029

DRAFT REGULATORY GUIDE DG-1029 123-0079.htm at ruleforum.llnl.gov Page 1 of 31 U.S. NUCLEAR REGULATORY COMMISSION February 1998 OFFICE OF NUCLEAR REGULATORY RESEARCH Division 1 Draft DG-1029 DRAFT REGULATORY GUIDE Contact: C.E. Antonescu

More information

MINERVA: IMPROVING THE PRODUCTION OF DIGITAL CULTURAL HERITAGE IN EUROPE. Rossella Caffo - Ministero per i Beni e le Attività Culturali, Italia

MINERVA: IMPROVING THE PRODUCTION OF DIGITAL CULTURAL HERITAGE IN EUROPE. Rossella Caffo - Ministero per i Beni e le Attività Culturali, Italia MINERVA: IMPROVING THE PRODUCTION OF DIGITAL CULTURAL HERITAGE IN EUROPE. Rossella Caffo - Ministero per i Beni e le Attività Culturali, Italia Abstract The MINERVA project is a network of the ministries

More information

(3r d session of the GRE Informal Group. Visibility, Glare and Levelling (VGL), July, 2016)

(3r d session of the GRE Informal Group. Visibility, Glare and Levelling (VGL), July, 2016) GRE-VGL-03-01 Rev.1 (3r d session of the GRE Informal Group Visibility, Glare and Levelling (VGL), 18-19 July, 2016) Draft updated Terms of Reference and Rules of Procedure for the "Informal Working Group

More information

ISO INTERNATIONAL STANDARD

ISO INTERNATIONAL STANDARD INTERNATIONAL STANDARD ISO 17894 First edition 2005-03-15 Ships and marine technology Computer applications General principles for the development and use of programmable electronic systems in marine applications

More information

SAFETY CASE PATTERNS REUSING SUCCESSFUL ARGUMENTS. Tim Kelly, John McDermid

SAFETY CASE PATTERNS REUSING SUCCESSFUL ARGUMENTS. Tim Kelly, John McDermid SAFETY CASE PATTERNS REUSING SUCCESSFUL ARGUMENTS Tim Kelly, John McDermid Rolls-Royce Systems and Software Engineering University Technology Centre Department of Computer Science University of York Heslington

More information

STI OUTLOOK 2002 COUNTRY RESPONSE TO POLICY QUESTIONNAIRE CZECH REPUBLIC. 1. General framework and trends in science, technology and industry policy

STI OUTLOOK 2002 COUNTRY RESPONSE TO POLICY QUESTIONNAIRE CZECH REPUBLIC. 1. General framework and trends in science, technology and industry policy STI OUTLOOK 2002 COUNTRY RESPONSE TO POLICY QUESTIONNAIRE CZECH REPUBLIC 1. General framework and trends in science, technology and industry policy 1.1 Overview and assessment of policies for science,

More information

DEPUIS project: Design of Environmentallyfriendly Products Using Information Standards

DEPUIS project: Design of Environmentallyfriendly Products Using Information Standards DEPUIS project: Design of Environmentallyfriendly Products Using Information Standards Anna Amato 1, Anna Moreno 2 and Norman Swindells 3 1 ENEA, Italy, anna.amato@casaccia.enea.it 2 ENEA, Italy, anna.moreno@casaccia.enea.it

More information

Validation and Verification of Field Programmable Gate Array based systems

Validation and Verification of Field Programmable Gate Array based systems Validation and Verification of Field Programmable Gate Array based systems Dr Andrew White Principal Nuclear Safety Inspector, Office for Nuclear Regulation, UK Objectives Purpose and activities of the

More information

Resource Differentiation of Knowledge

Resource Differentiation of Knowledge usiness, 2011, 3, 213-219 doi:10.4236/ib.2011.32028 Published Online June 2011 (http://www.scirp.org/journal/ib) Evgeny Popov, Maxim Vlasov * Institute of Economics, Ural Branch of the Russian Academy

More information

Procedure for introducing current scientific and technical knowledge into the authorisation procedure for plant protection products

Procedure for introducing current scientific and technical knowledge into the authorisation procedure for plant protection products Procedure for introducing current scientific and technical knowledge into the authorisation procedure for plant protection products Contact address: Bundesamt für Verbraucherschutz und Lebensmittelsicherheit

More information

Logic Solver for Tank Overfill Protection

Logic Solver for Tank Overfill Protection Introduction A growing level of attention has recently been given to the automated control of potentially hazardous processes such as the overpressure or containment of dangerous substances. Several independent

More information

55. IWK Internationales Wissenschaftliches Kolloquium International Scientific Colloquium

55. IWK Internationales Wissenschaftliches Kolloquium International Scientific Colloquium PROCEEDINGS 55. IWK Internationales Wissenschaftliches Kolloquium International Scientific Colloquium 13-17 September 2010 Crossing Borders within the ABC Automation, Biomedical Engineering and Computer

More information

IAEA Training in level 1 PSA and PSA applications. PSA Project. IAEA Guidelines for PSA

IAEA Training in level 1 PSA and PSA applications. PSA Project. IAEA Guidelines for PSA IAEA Training in level 1 PSA and PSA applications PSA Project IAEA Guidelines for PSA Introduction The following slides present the IAEA documents that deal with procedures, guidance and good practices

More information

Fiscal 2007 Environmental Technology Verification Pilot Program Implementation Guidelines

Fiscal 2007 Environmental Technology Verification Pilot Program Implementation Guidelines Fifth Edition Fiscal 2007 Environmental Technology Verification Pilot Program Implementation Guidelines April 2007 Ministry of the Environment, Japan First Edition: June 2003 Second Edition: May 2004 Third

More information

DRAFT UGANDA STANDARD

DRAFT UGANDA STANDARD DRAFT UGANDA STANDARD DUS 193-1 First Edition 2018-09-dd Steel wires and wire products for fencing Part 1: Barbed wires Specification Reference number UNBS 2018 Compliance with this standard does not,

More information

HUMAN RESOURCE DEVELOPMENT STRATEGY NATIONAL NUCLEAR ENERGY AGENCY INDONESIA For FNCA Human Resource Development 2003 Guritno Lokollo

HUMAN RESOURCE DEVELOPMENT STRATEGY NATIONAL NUCLEAR ENERGY AGENCY INDONESIA For FNCA Human Resource Development 2003 Guritno Lokollo HUMAN RESOURCE DEVELOPMENT STRATEGY NATIONAL NUCLEAR ENERGY AGENCY INDONESIA For FNCA Human Resource Development 2003 Guritno Lokollo TRAINING TECHNOLOGY DEVELOPMENT Manpower development is one of the

More information

Optimisation of Cotton Fibre Blends using AI Machine Learning Techniques

Optimisation of Cotton Fibre Blends using AI Machine Learning Techniques Optimisation of Cotton Fibre Blends using AI Machine Learning Techniques ZORAN STJEPANOVIC, ANTON JEZERNIK Department of Textiles, Faculty of Mechanical Engineering University of Maribor Smetanova 17,

More information

California State University, Northridge Policy Statement on Inventions and Patents

California State University, Northridge Policy Statement on Inventions and Patents Approved by Research and Grants Committee April 20, 2001 Recommended for Adoption by Faculty Senate Executive Committee May 17, 2001 Revised to incorporate friendly amendments from Faculty Senate, September

More information

João Cadete de Matos. João Miguel Coelho Banco de Portugal Head of the Current and Capital Accounts Statistics Unit

João Cadete de Matos. João Miguel Coelho Banco de Portugal Head of the Current and Capital Accounts Statistics Unit Challenges in Knowledge Intensive Services: The Technology Balance of Payments 2nd European Conference on Intellectual Capital 2nd Lisbon, International 28-29 29-30 June, March Workshop 2010 /Sharing Best

More information

TECHNICAL AND OPERATIONAL NOTE ON CHANGE MANAGEMENT OF GAMBLING TECHNICAL SYSTEMS AND APPROVAL OF THE SUBSTANTIAL CHANGES TO CRITICAL COMPONENTS.

TECHNICAL AND OPERATIONAL NOTE ON CHANGE MANAGEMENT OF GAMBLING TECHNICAL SYSTEMS AND APPROVAL OF THE SUBSTANTIAL CHANGES TO CRITICAL COMPONENTS. TECHNICAL AND OPERATIONAL NOTE ON CHANGE MANAGEMENT OF GAMBLING TECHNICAL SYSTEMS AND APPROVAL OF THE SUBSTANTIAL CHANGES TO CRITICAL COMPONENTS. 1. Document objective This note presents a help guide for

More information

(Non-legislative acts) DECISIONS

(Non-legislative acts) DECISIONS 4.12.2010 Official Journal of the European Union L 319/1 II (Non-legislative acts) DECISIONS COMMISSION DECISION of 9 November 2010 on modules for the procedures for assessment of conformity, suitability

More information

Office for Nuclear Regulation

Office for Nuclear Regulation Office for Nuclear Regulation Redgrave Court Merton Road Bootle Merseyside L20 7HS www.hse.gov.uk/nuclear PROJECT ASSESSMENT REPORT Report Identifier: ONR-Policy-all-PAR-11-001 Revision: 2 Project: Implementation

More information

DESIGN FOR POKA-YOKE ASSEMBLY AN APPROACH TO PREVENT ASSEMBLY ISSUES

DESIGN FOR POKA-YOKE ASSEMBLY AN APPROACH TO PREVENT ASSEMBLY ISSUES INTERNATIONAL DESIGN CONFERENCE - DESIGN 2008 Dubrovnik - Croatia, May 19-22, 2008. DESIGN FOR POKA-YOKE ASSEMBLY AN APPROACH TO PREVENT ASSEMBLY ISSUES G. Estrada, J. Lloveras and C. Riba Keywords: poka-yoke

More information

NZQA unit standard version 2 Page 1 of 5. Demonstrate and apply intermediate knowledge of instrumentation and control system engineering

NZQA unit standard version 2 Page 1 of 5. Demonstrate and apply intermediate knowledge of instrumentation and control system engineering Page 1 of 5 Title Demonstrate and apply intermediate knowledge of instrumentation and control system engineering Level 5 Credits 15 Purpose This unit standard covers intermediate knowledge of the concepts

More information

In late 2011, The International Standards

In late 2011, The International Standards CISPR 32: New International Standard on Electromagnetic Emissions from Multimedia Equipment DAN HOOLIHAN Hoolihan EMC Consulting Lindstrom, Minnesota USA In late 2011, The International Standards Commission's

More information

IECI Chapter Japan Series Vol. 5 No. 2, 2003 ISSN

IECI Chapter Japan Series Vol. 5 No. 2, 2003 ISSN IECI Chapter Japan Series Vol. 5 No. 2, 2003 ISSN 1344-7491 Proceedings of the IECI Japan Workshop 2003 IJW-2003 April 20 th, 2003 Chofu Bunka-Kaikan Tazukuri Tokyo, Japan Organized by Indonesian Society

More information

ILNAS-EN 14136: /2004

ILNAS-EN 14136: /2004 05/2004 National Foreword This European Standard EN 14136:2004 was adopted as Luxembourgish Standard in May 2004. Every interested party, which is member of an organization based in Luxembourg, can participate

More information

Safe and efficient power transmission in wind turbines

Safe and efficient power transmission in wind turbines Totally Integrated Power SIVACON 8PS Safe and efficient power transmission in wind turbines LDM busbar trunking system www.siemens.com/busbar Contents Totally Integrated Power 2 SIVACON 8PS busbar trunking

More information

Application of combined TOPSIS and AHP method for Spectrum Selection in Cognitive Radio by Channel Characteristic Evaluation

Application of combined TOPSIS and AHP method for Spectrum Selection in Cognitive Radio by Channel Characteristic Evaluation International Journal of Electronics and Communication Engineering. ISSN 0974-2166 Volume 10, Number 2 (2017), pp. 71 79 International Research Publication House http://www.irphouse.com Application of

More information

SWEN 256 Software Process & Project Management

SWEN 256 Software Process & Project Management SWEN 256 Software Process & Project Management What is quality? A definition of quality should emphasize three important points: 1. Software requirements are the foundation from which quality is measured.

More information

The experimental evaluation of the EGNOS safety-of-life services for railway signalling

The experimental evaluation of the EGNOS safety-of-life services for railway signalling Computers in Railways XII 735 The experimental evaluation of the EGNOS safety-of-life services for railway signalling A. Filip, L. Bažant & H. Mocek Railway Infrastructure Administration, LIS, Pardubice,

More information

DECISION BASED KNOWLEDGE MANAGEMENT FOR DESIGN PROJECT OF INNOVATIVE PRODUCTS

DECISION BASED KNOWLEDGE MANAGEMENT FOR DESIGN PROJECT OF INNOVATIVE PRODUCTS INTERNATIONAL DESIGN CONFERENCE - DESIGN 2002 Dubrovnik, May 14-17, 2002. DECISION BASED KNOWLEDGE MANAGEMENT FOR DESIGN PROJECT OF INNOVATIVE PRODUCTS B. Longueville, J. Stal Le Cardinal and J.-C. Bocquet

More information

PERFORMANCE MODELLING OF RECONFIGURABLE ASSEMBLY LINE

PERFORMANCE MODELLING OF RECONFIGURABLE ASSEMBLY LINE ISSN 1726-4529 Int. j. simul. model. 5 (2006) 1, 16-24 Original scientific paper PERFORMANCE MODELLING OF RECONFIGURABLE ASSEMBLY LINE Jain, P. K. * ; Fukuda, Y. ** ; Komma, V. R. * & Reddy, K. V. S. *

More information

NUGENIA position paper. Ageing of Low Voltage Cable in Nuclear Environment. 12 February 2015

NUGENIA position paper. Ageing of Low Voltage Cable in Nuclear Environment. 12 February 2015 NUGENIA position paper Ageing of Low Voltage Cable in Nuclear Environment 12 February 2015 NUGENIA is an international non-profit association under Belgian law established in 2011. Dedicated to the research

More information

The secret behind mechatronics

The secret behind mechatronics The secret behind mechatronics Why companies will want to be part of the revolution In the 18th century, steam and mechanization powered the first Industrial Revolution. At the turn of the 20th century,

More information

Kyiv National University of Trade and Economics Faculty of Trade and Marketing INFORMATION PACKAGE

Kyiv National University of Trade and Economics Faculty of Trade and Marketing INFORMATION PACKAGE Kyiv National University of Trade and Economics Faculty of Trade and Marketing INFORMATION PACKAGE European Credit Transfer and Accumulation System (ECTS) Field of knowledge Specialty Specialization Education

More information

An Exploratory Study of Design Processes

An Exploratory Study of Design Processes International Journal of Arts and Commerce Vol. 3 No. 1 January, 2014 An Exploratory Study of Design Processes Lin, Chung-Hung Department of Creative Product Design I-Shou University No.1, Sec. 1, Syuecheng

More information

Keywords: Aircraft Systems Integration, Real-Time Simulation, Hardware-In-The-Loop Testing

Keywords: Aircraft Systems Integration, Real-Time Simulation, Hardware-In-The-Loop Testing 25 TH INTERNATIONAL CONGRESS OF THE AERONAUTICAL SCIENCES REAL-TIME HARDWARE-IN-THE-LOOP SIMULATION OF FLY-BY-WIRE FLIGHT CONTROL SYSTEMS Eugenio Denti*, Gianpietro Di Rito*, Roberto Galatolo* * University

More information

Assuring nuclear safety education in the twenty-first century in Sweden

Assuring nuclear safety education in the twenty-first century in Sweden Int. J. Nuclear Knowledge Management, Vol. 1, No. 4, 2005 345 Assuring nuclear safety education in the twenty-first century in Sweden G. Löwenhielm* Swedish Nuclear Power Inspectorate (SKI), Stockholm,

More information

Fact Sheet IP specificities in research for the benefit of SMEs

Fact Sheet IP specificities in research for the benefit of SMEs European IPR Helpdesk Fact Sheet IP specificities in research for the benefit of SMEs June 2015 1 Introduction... 1 1. Actions for the benefit of SMEs... 2 1.1 Research for SMEs... 2 1.2 Research for SME-Associations...

More information

Criteria for the Application of IEC 61508:2010 Route 2H

Criteria for the Application of IEC 61508:2010 Route 2H Criteria for the Application of IEC 61508:2010 Route 2H Abstract Dr. William M. Goble, CFSE exida Sellersville, PA 18960, USA wgoble@exida.com Dr. Julia V. Bukowski Villanova University Villanova, PA 19085

More information

AGENTS AND AGREEMENT TECHNOLOGIES: THE NEXT GENERATION OF DISTRIBUTED SYSTEMS

AGENTS AND AGREEMENT TECHNOLOGIES: THE NEXT GENERATION OF DISTRIBUTED SYSTEMS AGENTS AND AGREEMENT TECHNOLOGIES: THE NEXT GENERATION OF DISTRIBUTED SYSTEMS Vicent J. Botti Navarro Grupo de Tecnología Informática- Inteligencia Artificial Departamento de Sistemas Informáticos y Computación

More information

INTERNATIONAL STANDARD

INTERNATIONAL STANDARD INTERNATIONAL STANDARD IEC 61935-1 Edition 3.0 2009-07 Specification for the testing of balanced and coaxial information technology cabling Part 1: Installed balanced cabling as specified in ISO/IEC 11801

More information

in the New Zealand Curriculum

in the New Zealand Curriculum Technology in the New Zealand Curriculum We ve revised the Technology learning area to strengthen the positioning of digital technologies in the New Zealand Curriculum. The goal of this change is to ensure

More information

THE MANAGEMENT OF INFORMATIONS AND CAD IN THE CONCEPTION AND DEVELOPMENT PHASES OF A PRODUCT

THE MANAGEMENT OF INFORMATIONS AND CAD IN THE CONCEPTION AND DEVELOPMENT PHASES OF A PRODUCT 5 th INTERNATIONAL MULTIDISCIPLINARY CONFERENCE THE MANAGEMENT OF INFORMATIONS AND CAD IN THE CONCEPTION AND DEVELOPMENT PHASES OF A PRODUCT Ispas Constantin, Ghionea Ionuţ, University POLITEHNICA of Bucharest,

More information

UNIVERSITY OF REGINA FACULTY OF ENGINEERING. TIME TABLE: Once every two weeks (tentatively), every other Friday from pm

UNIVERSITY OF REGINA FACULTY OF ENGINEERING. TIME TABLE: Once every two weeks (tentatively), every other Friday from pm 1 UNIVERSITY OF REGINA FACULTY OF ENGINEERING COURSE NO: ENIN 880AL - 030 - Fall 2002 COURSE TITLE: Introduction to Intelligent Robotics CREDIT HOURS: 3 INSTRUCTOR: Dr. Rene V. Mayorga ED 427; Tel: 585-4726,

More information

Contents Introduction...2 Revision Information...3 Terms and definitions...4 Overview...5 Part A. Layout and Topology of Wireless Devices...

Contents Introduction...2 Revision Information...3 Terms and definitions...4 Overview...5 Part A. Layout and Topology of Wireless Devices... Technical Information TI 01W01A51-12EN Guidelines for Layout and Installation of Field Wireless Devices Contents Introduction...2 Revision Information...3 Terms and definitions...4 Overview...5 Part A.

More information

A Divide-and-Conquer Approach to Evolvable Hardware

A Divide-and-Conquer Approach to Evolvable Hardware A Divide-and-Conquer Approach to Evolvable Hardware Jim Torresen Department of Informatics, University of Oslo, PO Box 1080 Blindern N-0316 Oslo, Norway E-mail: jimtoer@idi.ntnu.no Abstract. Evolvable

More information

Annex III - 3. Memorandum of Understanding on the development of the Pan-European Transport Corridor VII (The Danube) (DRAFT)

Annex III - 3. Memorandum of Understanding on the development of the Pan-European Transport Corridor VII (The Danube) (DRAFT) Annex III - 3 Memorandum of Understanding on the development of the Pan-European Transport Corridor VII (The Danube) (DRAFT) Desiring to promote international transport of goods and passengers through

More information

ROSATOM Knowledge Management System

ROSATOM Knowledge Management System State Atomic Energy Corporation Rosatom ROSATOM Knowledge Management System Alexey Dub Director General ZAO SCIENCE AND INNOVATIONS Vienna, IAEA May 2014 ROSATOM at Glance Nuclear Power Complex Applied

More information

Energiforsk/ENSRIC Project

Energiforsk/ENSRIC Project FPGAs in Safety Related I&C Applications in Nordic NPPs Energiforsk/ENSRIC Project Sofia Guerra and Sam George 3 October 2016 PT/429/309/44 Exmouth House 3 11 Pine Street London EC1R 0JH T +44 20 7832

More information

This document is downloaded from the Digital Open Access Repository of VTT. P.O. box 1000 FI VTT Finland VTT

This document is downloaded from the Digital Open Access Repository of VTT.  P.O. box 1000 FI VTT Finland VTT This document is downloaded from the Digital Open Access Repository of VTT Title Development of best practice guidelines on failure modes taxonomy for reliability assessment of digital I&C systems for

More information

Co-evolution of agent-oriented conceptual models and CASO agent programs

Co-evolution of agent-oriented conceptual models and CASO agent programs University of Wollongong Research Online Faculty of Informatics - Papers (Archive) Faculty of Engineering and Information Sciences 2006 Co-evolution of agent-oriented conceptual models and CASO agent programs

More information

Voltage Sags Evaluating Methods, Power Quality and Voltage Sags Assessment regarding Voltage Dip Immunity of Equipment

Voltage Sags Evaluating Methods, Power Quality and Voltage Sags Assessment regarding Voltage Dip Immunity of Equipment s Evaluating Methods, Power Quality and s Assessment regarding Voltage Dip Immunity of Equipment ANTON BELÁŇ, MARTIN LIŠKA, BORIS CINTULA, ŽANETA ELESCHOVÁ Institute of Power and Applied Electrical Engineering

More information

QUANTITATIVE ASSESSMENT OF INSTITUTIONAL INVENTION CYCLE

QUANTITATIVE ASSESSMENT OF INSTITUTIONAL INVENTION CYCLE QUANTITATIVE ASSESSMENT OF INSTITUTIONAL INVENTION CYCLE Maxim Vlasov Svetlana Panikarova Abstract In the present paper, the authors empirically identify institutional cycles of inventions in industrial

More information

An expert system for bottling plant design M. Novak & A. Jezernik Faculty of Technical Sciences, Mechanical Engineering Department, Maribor, Slovenia

An expert system for bottling plant design M. Novak & A. Jezernik Faculty of Technical Sciences, Mechanical Engineering Department, Maribor, Slovenia An expert system for bottling plant design M. Novak & A. Jezernik Faculty of Technical Sciences, Mechanical Engineering Department, Maribor, Slovenia Abstract A prototype of an expert system (ES) for designing

More information

Addendum to Description of Services for Building and Planning, Digital Design. The Association of of Consulting Engineers

Addendum to Description of Services for Building and Planning, Digital Design. The Association of of Consulting Engineers Addendum to Description of Services for Building and Planning, 2012 8.4 Digital Design 2016 The Association of of Consulting Engineers FRI and DANSKE ARK Addendum to Description of Services for Building

More information

OPTIMIZATION ON FOOTING LAYOUT DESI RESIDENTIAL HOUSE WITH PILES FOUNDA. Author(s) BUNTARA.S. GAN; NGUYEN DINH KIEN

OPTIMIZATION ON FOOTING LAYOUT DESI RESIDENTIAL HOUSE WITH PILES FOUNDA. Author(s) BUNTARA.S. GAN; NGUYEN DINH KIEN Title OPTIMIZATION ON FOOTING LAYOUT DESI RESIDENTIAL HOUSE WITH PILES FOUNDA Author(s) BUNTARA.S. GAN; NGUYEN DINH KIEN Citation Issue Date 2013-09-11 DOI Doc URLhttp://hdl.handle.net/2115/54229 Right

More information

Rosatom Approach to IPR Management in Collaborative Projects on Innovations

Rosatom Approach to IPR Management in Collaborative Projects on Innovations State Atomic Energy Corporation Rosatom Rosatom Approach to IPR Management in Collaborative Projects on Innovations Natalia Belenkaya Project Leader, Innovation Management ROSATOM Vienna, IAEA November

More information

Intimate Communications Hub Interface Specification Report to Secretary of State

Intimate Communications Hub Interface Specification Report to Secretary of State Intimate Communications Hub Interface Specification Report to Secretary of State DCC V1.0 28/02/14 Page 1 of 14 Executive Summary 1. DCC is required in accordance with the terms of its Licence to produce,

More information

INTERNATIONAL ATOMIC ENERGY AGENCY 58TH GENERAL CONFERENCE (22 26 September 2014)

INTERNATIONAL ATOMIC ENERGY AGENCY 58TH GENERAL CONFERENCE (22 26 September 2014) TURKEY INTERNATIONAL ATOMIC ENERGY AGENCY 58TH GENERAL CONFERENCE (22 26 September 2014) Allow me at the outset to congratulate you on your assumption of the Presidency of the 58th Session of the IAEA

More information

DNVGL-CP-0338 Edition October 2015

DNVGL-CP-0338 Edition October 2015 CLASS PROGRAMME DNVGL-CP-0338 Edition October 2015 The electronic pdf version of this document, available free of charge from http://www.dnvgl.com, is the officially binding version. FOREWORD DNV GL class

More information

Joint Convention on the Safety of Spent Fuel Management and on the Safety of Radioactive Waste Management

Joint Convention on the Safety of Spent Fuel Management and on the Safety of Radioactive Waste Management JC/RM3/02/Rev2 Joint Convention on the Safety of Spent Fuel Management and on the Safety of Radioactive Waste Management Third Review Meeting of the Contracting Parties 11 to 20 May 2009, Vienna, Austria

More information

Mr. President, Mr. President, Distinguished delegates,

Mr. President, Mr. President, Distinguished delegates, STATEMENT by H.E. Mr. NGUYEN THIEP Ambassador, Chairperson of the Board of Governors Head of the Delegation of Viet Nam to the Fifty-Eighth Regular Session of the IAEA General Conference (Vienna, Austria,

More information

NEPIO s Role in Incorporating 3S into the Nuclear Power Programme

NEPIO s Role in Incorporating 3S into the Nuclear Power Programme NEPIO s Role in Incorporating 3S into the Nuclear Power Programme Jean-Maurice Crete SGCP/CTR International Atomic Energy Agency Introduction Role and Objectives of the NEPIO Examples of 3S Coordination

More information

Reducing Uncertainty About Common-Mode Failures

Reducing Uncertainty About Common-Mode Failures Reducing Uncertainty About Common-Mode Failures Jeffrey Voas, Anup Ghosh, Frank Charron {jmvoas,aghosh,fhchar}@rstcorp.com Reliable Software Technologies 21515 Ridgetop Circle #250 Sterling, VA 20166 http://www.rstcorp.com

More information

A/AC.105/C.1/2006/NPS/CRP.7 16 February 2006

A/AC.105/C.1/2006/NPS/CRP.7 16 February 2006 FOR PARTICIPANTS ONLY A/AC.105/C.1/2006/NPS/CRP.7 16 February 2006 Original: English COMMITTEE ON THE PEACEFUL USES OF OUTER SPACE Scientific and Technical Subcommittee Forty-third session Vienna, 20 February

More information

A Case for Regulatory Framework

A Case for Regulatory Framework 01 June 2011 Nuclear Process Regulatory Licensing Adv Boyce Mkhize, NNR CEO NIASA CTICC Localization Conference : A Case for Regulatory Framework To ensure high levels of safety and institutionalisation

More information