WorldWideScience

Sample records for safety system fails

  1. Aviation Fuel System Reliability and Fail-Safety Analysis. Promising Alternative Ways for Improving the Fuel System Reliability

    Directory of Open Access Journals (Sweden)

    I. S. Shumilov

    2017-01-01

    Full Text Available The paper deals with design requirements for an aviation fuel system (AFS, AFS basic design requirements, reliability, and design precautions to avoid AFS failure. Compares the reliability and fail-safety of AFS and aircraft hydraulic system (AHS, considers the promising alternative ways to raise reliability of fuel systems, as well as elaborates recommendations to improve reliability of the pipeline system components and pipeline systems, in general, based on the selection of design solutions.It is extremely advisable to design the AFS and AHS in accordance with Aviation Regulations АП25 and Accident Prevention Guidelines, ICAO (International Civil Aviation Association, which will reduce risk of emergency situations, and in some cases even avoid heavy disasters.ATS and AHS designs should be based on the uniform principles to ensure the highest reliability and safety. However, currently, this principle is not enough kept, and AFS looses in reliability and fail-safety as compared with AHS. When there are the examined failures (single and their combinations the guidelines to ensure the AFS efficiency should be the same as those of norm-adopted in the Regulations АП25 for AHS. This will significantly increase reliability and fail-safety of the fuel systems and aircraft flights, in general, despite a slight increase in AFS mass.The proposed improvements through the use of components redundancy of the fuel system will greatly raise reliability of the fuel system of a passenger aircraft, which will, without serious consequences for the flight, withstand up to 2 failures, its reliability and fail-safety design will be similar to those of the AHS, however, above improvement measures will lead to a slightly increasing total mass of the fuel system.It is advisable to set a second pump on the engine in parallel with the first one. It will run in case the first one fails for some reasons. The second pump, like the first pump, can be driven from the

  2. Fail-safe logic elements for use with reactor safety systems

    International Nuclear Information System (INIS)

    Bobis, J.P.; McDowell, W.P.

    1976-01-01

    A complete fail-safe trip circuit is described which utilizes fail-safe logic elements. The logic elements used are analog multipliers and active bandpass filter networks. These elements perform Boolean operations on a set of AC signals from the output of a reactor safety-channel trip comparator

  3. A dynamic fail-safe approach to the design of computer-based safety systems

    International Nuclear Information System (INIS)

    Smith, I.C.; Miller, M.

    1994-01-01

    For over 30 years AEA Technology has carried out research and development in the field of nuclear instrumentation and protection systems. Throughout the course of this extensive period of research and development the dominant theme has been the achievement of fully fail-safe designs. These are defined as designs in which the failure of any single component will result in the unit output reverting to a demand for trip action status. At an early stage it was recognized that the use of dynamic rather than static logic could ease the difficulties inherent in achieving a fail-safe design. The first dynamic logic systems coupled logic elements magnetically. The paper outlines the evolution from these early concepts of a dynamic fail-safe approach to the design of computer-based safety systems. Details are given of collaboration between AEA Technology and Duke Power Co. to mount an ISAT TM demonstration at Duke's Oconee Nuclear Power Station

  4. A fail-safe design for X-ray safety shutters

    International Nuclear Information System (INIS)

    Cramer, W.E.; Port, E.A.

    1982-01-01

    The purpose of any safety shutter device is to help minimize radiation exposure to personnel. Many such devices for analytical X-ray work may fail in a mode with great potential for injury. The authors present a design that may be used to modify any existing mechanical or electro-mechanical system that utilizes a gate which blocks an aperture to control exposure. The system is of 'fail-safe' design, as defined in the National Bureau of Standards Handbook 111 (American National Standards Institute, 1972); One in which all reasonable anticipated failures of indicator or safety components will cause the equipment to respond in a mode ensuring that personnel are safe from exposure to radiation. The system has visible indicators that make the user aware that a particular failure has occurred; in addition, X-ray generation ceases. (Auth.)

  5. Integrated Chassis Control System with Fail Safety Using Optimum Yaw Moment Distribution

    International Nuclear Information System (INIS)

    Yim, Seongjin

    2014-01-01

    This paper presents an integrated chassis control system with fail safety using optimum yaw moment distribution for a vehicle with steer-by-wire and brake-by-wire devices. The proposed system has two-level structure: upper- and lower-level controllers. In the upper-level controller, the control yaw moment is computed with sliding mode control theory. In the lower-level controller, the control yaw moment is distributed into the tire forces of active front steering(AFS) and electronic stability control(ESC) with the weighted pseudo-inverse based control allocation(WPCA) method. By setting the variable weights in WPCA, it is possible to take the sensor/actuator failure into account. In this framework, it is necessary to optimize the variables weights in order to enhance the yaw moment distribution. For this purpose, simulation-based tuning is proposed. To show the effectiveness of the proposed method, simulations are conducted on a vehicle simulation package, CarSim

  6. Integrated Chassis Control System with Fail Safety Using Optimum Yaw Moment Distribution

    Energy Technology Data Exchange (ETDEWEB)

    Yim, Seongjin [Seoul Nat' l Univ. of Sci. and Tech., Seoul (Korea, Republic of)

    2014-03-15

    This paper presents an integrated chassis control system with fail safety using optimum yaw moment distribution for a vehicle with steer-by-wire and brake-by-wire devices. The proposed system has two-level structure: upper- and lower-level controllers. In the upper-level controller, the control yaw moment is computed with sliding mode control theory. In the lower-level controller, the control yaw moment is distributed into the tire forces of active front steering(AFS) and electronic stability control(ESC) with the weighted pseudo-inverse based control allocation(WPCA) method. By setting the variable weights in WPCA, it is possible to take the sensor/actuator failure into account. In this framework, it is necessary to optimize the variables weights in order to enhance the yaw moment distribution. For this purpose, simulation-based tuning is proposed. To show the effectiveness of the proposed method, simulations are conducted on a vehicle simulation package, CarSim.

  7. Fail-safety of the EBR-II steam generator system

    International Nuclear Information System (INIS)

    Chopra, P.S.; Stone, C.C.; Hutter, E.; Barney, W.K.; Staker, R.G.

    1976-01-01

    Fail-safe analyses of the EBR-II steam-generator system show that a postulated non-instantaneous leak of water or steam into sodium, through a duplex tube or a tubesheet, at credible leak rates will not structurally damage the evaporators and superheaters. However, contamination of the system and possible shell wastage by sodium-water reaction products may render the system inoperable for a period exceeding six months. This period would be shortened to three months if the system were modified by adding a remotely operated water dump system, a steam vent system, a secondary sodium superheater relief line, and a tubesheet leak-detection system

  8. Architectural design and reliability analysis of a fail-operational brake-by-wire system from ISO 26262 perspectives

    International Nuclear Information System (INIS)

    Sinha, Purnendu

    2011-01-01

    Next generation drive-by-wire automotive systems enabling autonomous driving will build on the fail-operational capabilities of electronics, control and software (ECS) architectural solutions. Developing such architectural designs that would meet dependability requirements and satisfy other system constraints is a challenging task and will possibly lead to a paradigm shift in automotive ECS architecture design and development activities. This aspect is becoming quite relevant while designing battery-driven electric vehicles with integrated in-wheel drive-train and chassis subsystems. In such highly integrated dependable systems, many of the primary features and functions are attributed to the highest safety critical ratings. Brake-by-wire is one such system that interfaces with active safety features built into an automobile, and which in turn is expected to provide fail-operational capabilities. In this paper, building up on the basic concepts of fail-silent and fail-operational systems design we propose a system-architecture for a brake-by-wire system with fail-operational capabilities. The design choices are supported with proper rationale and design trade-offs. Safety and reliability analysis of the proposed system architecture is performed as per the ISO 26262 standard for functional safety of electrical/electronic systems in road vehicles.

  9. A Methodological Framework for Software Safety in Safety Critical Computer Systems

    OpenAIRE

    P. V. Srinivas Acharyulu; P. Seetharamaiah

    2012-01-01

    Software safety must deal with the principles of safety management, safety engineering and software engineering for developing safety-critical computer systems, with the target of making the system safe, risk-free and fail-safe in addition to provide a clarified differentaition for assessing and evaluating the risk, with the principles of software risk management. Problem statement: Prevailing software quality models, standards were not subsisting in adequately addressing the software safety ...

  10. Safety logic systems of PFBR

    International Nuclear Information System (INIS)

    Sambasivan, S. Ilango

    2004-01-01

    Full text : PFBR is provided with two independent, fast acting and diverse shutdown systems to detect any abnormalities and to initiate safety action. Each system consists of sensors, signal processing systems, logics, drive mechanisms and absorber rods. The absorber rods of the first system are Control and Safety Rods (CSR) and that of the second are called as Diverse Safety Rods (DSR). There are nine CSR and three DSR. While CSR are used for startup, control of reactor power, controlled shutdown and SCRAM, the DSR are used only for SCRAM. The respective drive mechanisms are called as CSRDM and DSRDM. Each of these two systems is capable of executing the shutdown satisfactorily with single failure criteria. Two independent safety logic systems based on diverse principles have been designed for the two shut down systems. The analog outputs of the sensors of Core Monitoring Systems comprising of reactor flux monitoring, core temperature monitoring, failed fuel detection and core flow monitoring systems are processed and converted into binary signals depending on their instantaneous values. Safety logic systems receive the binary signals from these core-monitoring systems and process them logically to protect the reactor against postulated initiating events. Neutronic and power to flow (P/Q) signals form the inputs to safety logic system-I and temperature signals are inputs to the safety logic system II. Failed fuel detection signals are processed by both the shut down systems. The two logic systems to actuate the safety rods are also based on two diverse designs and implemented with solid-state devices to meet all the requirements of safety systems. Safety logic system I that caters to neutronic and P/Q signals is designed around combinational logic and has an on-line test facility to detect struck at faults. The second logic system is based on dynamic logic and hence is inherently safe. This paper gives an overview of the two logic systems that have been

  11. Programmable electronic safety systems

    International Nuclear Information System (INIS)

    Parry, R.R.

    1993-01-01

    Traditionally safety systems intended for protecting personnel from electrical and radiation hazards at particle accelerator laboratories have made extensive use of electromechanical relays. These systems have the advantage of high reliability and allow the designer to easily implement fail-safe circuits. Relay based systems are also typically simple to design, implement, and test. As systems, such as those presently under development at the Superconducting Super Collider Laboratory (SSCL), increase in size, and the number of monitored points escalates, relay based systems become cumbersome and inadequate. The move toward Programmable Electronic Safety Systems is becoming more widespread and accepted. In developing these systems there are numerous precautions the designer must be concerned with. Designing fail-safe electronic systems with predictable failure states is difficult at best. Redundancy and self-testing are prime examples of features that should be implemented to circumvent and/or detect failures. Programmable systems also require software which is yet another point of failure and a matter of great concern. Therefore the designer must be concerned with both hardware and software failures and build in the means to assure safe operation or shutdown during failures. This paper describes features that should be considered in developing safety systems and describes a system recently installed at the Accelerator Systems String Test (ASST) facility of the SSCL

  12. In-core sipping method for the identification of failed fuel assemblies

    International Nuclear Information System (INIS)

    Wu Zhongwang; Zhang Yajun

    2000-01-01

    The failed fuel assembly identification system is an important safety system which ensures safe operations of reactor and immediate treatment of failed fuel rod cladding. The system uses an internationally recognized method to identify failed fuel assemblies in a reactor with fuel element cases. The in-core sipping method is customary used to identify failed fuel assemblies during refueling or after fuel rod cladding failure accidents. The test is usually performed after reactor shutdown by taking samples from each fuel element case while the cases are still in their original core positions. The sample activity is then measured to identify failed fuel assemblies. A failed fuel assembly identification system was designed for the NHR-200 based on the properties of the NHR-200 and national requirements. the design provides an internationally recognized level of safety to ensure the safety of NHR-200

  13. Safety of huge systems

    International Nuclear Information System (INIS)

    Kondo, Jiro.

    1995-01-01

    Recently accompanying the development of engineering technology, huge systems tend to be constructed. The disaster countermeasures of huge cities become large problems as the concentration of population into cities is conspicuous. To make the expected value of loss small, the knowledge of reliability engineering is applied. In reliability engineering, even if a part of structures fails, the safety as a whole system must be ensured, therefore, the design having margin is carried out. The degree of margin is called redundancy. However, such design concept makes the structure of a system complex, and as the structure is complex, the possibility of causing human errors becomes high. At the time of huge system design, the concept of fail-safe is effective, but simple design must be kept in mind. The accident in Mihama No. 2 plant of Kansai Electric Power Co. and the accident in Chernobyl nuclear power station, and the accident of Boeing B737 airliner and the fatigue breakdown are described. The importance of safety culture was emphasized as the method of preventing human errors. Man-system interface and management system are discussed. (K.I.)

  14. Quantitative assessment of probability of failing safely for the safety instrumented system using reliability block diagram method

    International Nuclear Information System (INIS)

    Jin, Jianghong; Pang, Lei; Zhao, Shoutang; Hu, Bin

    2015-01-01

    Highlights: • Models of PFS for SIS were established by using the reliability block diagram. • The more accurate calculation of PFS for SIS can be acquired by using SL. • Degraded operation of complex SIS does not affect the availability of SIS. • The safe undetected failure is the largest contribution to the PFS of SIS. - Abstract: The spurious trip of safety instrumented system (SIS) brings great economic losses to production. How to ensure the safety instrumented system is reliable and available has been put on the schedule. But the existing models on spurious trip rate (STR) or probability of failing safely (PFS) are too simplified and not accurate, in-depth studies of availability to obtain more accurate PFS for SIS are required. Based on the analysis of factors that influence the PFS for the SIS, using reliability block diagram method (RBD), the quantitative study of PFS for the SIS is carried out, and gives some application examples. The results show that, the common cause failure will increase the PFS; degraded operation does not affect the availability of the SIS; if the equipment was tested and repaired one by one, the unavailability of the SIS can be ignored; the corresponding occurrence time of independent safe undetected failure should be the system lifecycle (SL) rather than the proof test interval and the independent safe undetected failure is the largest contribution to the PFS for the SIS

  15. Simulating fail-stop in asynchronous distributed systems

    Science.gov (United States)

    Sabel, Laura; Marzullo, Keith

    1994-01-01

    The fail-stop failure model appears frequently in the distributed systems literature. However, in an asynchronous distributed system, the fail-stop model cannot be implemented. In particular, it is impossible to reliably detect crash failures in an asynchronous system. In this paper, we show that it is possible to specify and implement a failure model that is indistinguishable from the fail-stop model from the point of view of any process within an asynchronous system. We give necessary conditions for a failure model to be indistinguishable from the fail-stop model, and derive lower bounds on the amount of process replication needed to implement such a failure model. We present a simple one-round protocol for implementing one such failure model, which we call simulated fail-stop.

  16. 30 CFR 77.803 - Fail safe ground check circuits on high-voltage resistance grounded systems.

    Science.gov (United States)

    2010-07-01

    ... circuits on high-voltage resistance grounded systems. On and after September 30, 1971, all high-voltage... 30 Mineral Resources 1 2010-07-01 2010-07-01 false Fail safe ground check circuits on high-voltage resistance grounded systems. 77.803 Section 77.803 Mineral Resources MINE SAFETY AND HEALTH ADMINISTRATION...

  17. Programmable Electronic Safety Systems

    International Nuclear Information System (INIS)

    Parry, R.

    1993-05-01

    Traditionally safety systems intended for protecting personnel from electrical and radiation hazards at particle accelerator laboratories have made extensive use of electromechanical relays. These systems have the advantage of high reliability and allow the designer to easily implement failsafe circuits. Relay based systems are also typically simple to design, implement, and test. As systems, such as those presently under development at the Superconducting Super Collider Laboratory (SSCL), increase in size, and the number of monitored points escalates, relay based systems become cumbersome and inadequate. The move toward Programmable Electronic Safety Systems is becoming more widespread and accepted. In developing these systems there are numerous precautions the designer must be concerned with. Designing fail-safe electronic systems with predictable failure states is difficult at best. Redundancy and self-testing are prime examples of features that should be implemented to circumvent and/or detect failures. Programmable systems also require software which is yet another point of failure and a matter of great concern. Therefore the designer must be concerned with both hardware and software failures and build in the means to assure safe operation or shutdown during failures. This paper describes features that should be considered in developing safety systems and describes a system recently installed at the Accelerator Systems String Test (ASST) facility of the SSCL

  18. Risk-based reconfiguration of safety monitoring system using dynamic Bayesian network

    International Nuclear Information System (INIS)

    Kohda, Takehisa; Cui Weimin

    2007-01-01

    To prevent an abnormal event from leading to an accident, the role of its safety monitoring system is very important. The safety monitoring system detects symptoms of an abnormal event to mitigate its effect at its early stage. As the operation time passes by, the sensor reliability decreases, which implies that the decision criteria of the safety monitoring system should be modified depending on the sensor reliability as well as the system reliability. This paper presents a framework for the decision criteria (or diagnosis logic) of the safety monitoring system. The logic can be dynamically modified based on sensor output data monitored at regular intervals to minimize the expected loss caused by two types of safety monitoring system failure events: failed-dangerous (FD) and failed-safe (FS). The former corresponds to no response under an abnormal system condition, while the latter implies a spurious activation under a normal system condition. Dynamic Bayesian network theory can be applied to modeling the entire system behavior composed of the system and its safety monitoring system. Using the estimated state probabilities, the optimal decision criterion is given to obtain the optimal diagnosis logic. An illustrative example of a three-sensor system shows the merits and characteristics of the proposed method, where the reasonable interpretation of sensor data can be obtained

  19. A rapid-exchange monorail stent system for salvage of failing femoropopliteal bypass grafts.

    Science.gov (United States)

    Jahnke, Thomas; Brossmann, Joachim; Walluscheck, Knut; Heller, Martin; Müller-Hülsbeck, Stefan

    2003-08-01

    To analyze the safety and effectiveness of a new monorail stent system for the treatment of failing femoropopliteal bypass grafts. Acute distal occlusions or stenoses of femoropopliteal bypass grafts were treated with balloon-expandable stents (13 or 18-mm diameter) pre-mounted on a monorail balloon catheter system. The delivery system was assessed subjectively for (1). compatibility with the sheath, (2). lesion crossing potential, (3). radiopacity, (4). flexibility of the catheter, (5). adequacy of stent expansion, and (5). balloon refolding. In 8 failing bypass grafts with distal lesions, the delivery system successfully deployed the stent at the desired location. Sheath compatibility, catheter flexibility, lesion crossing, and stent expansion were rated "excellent" by all examiners for the 18-mm device. Radiopacity of the mounted stent was graded "good" before and during positioning, but only "sufficient" following expansion. For this type of lesion, the investigators rated the overall performance of the device superior to conventional "over-the-wire" systems. The monorail balloon-expandable stent delivery system provides rapid introduction of the device over the guidewire, and its low profile facilitates the use of small sheaths to minimize access-site complications.

  20. The LHC personnel safety system

    International Nuclear Information System (INIS)

    Ninin, P.; Valentini, F.; Ladzinski, T.

    2011-01-01

    Large particle physics installations such as the CERN Large Hadron Collider require specific Personnel Safety Systems (PSS) to protect the personnel against the radiological and industrial hazards. In order to fulfill the French regulation in matter of nuclear installations, the principles of IEC 61508 and IEC 61513 standard are used as a methodology framework to evaluate the criticality of the installation, to design and to implement the PSS.The LHC PSS deals with the implementation of all physical barriers, access controls and interlock devices around the 27 km of underground tunnel, service zones and experimental caverns of the LHC. The system shall guarantee the absence of personnel in the LHC controlled areas during the machine operations and, on the other hand, ensure the automatic accelerator shutdown in case of any safety condition violation, such as an intrusion during beam circulation. The LHC PSS has been conceived as two separate and independent systems: the LHC Access Control System (LACS) and the LHC Access Safety System (LASS). The LACS, using off the shelf technologies, realizes all physical barriers and regulates all accesses to the underground areas by identifying users and checking their authorizations.The LASS has been designed according to the principles of the IEC 61508 and 61513 standards, starting from a risk analysis conducted on the LHC facility equipped with a standard access control system. It consists in a set of safety functions realized by a dedicated fail-safe and redundant hardware guaranteed to be of SIL3 class. The integration of various technologies combining electronics, sensors, video and operational procedures adopted to establish an efficient personnel safety system for the CERN LHC accelerator is presented in this paper. (authors)

  1. FAILED FUEL DISPOSITION STUDY

    International Nuclear Information System (INIS)

    THIELGES, J.R.

    2004-01-01

    In May 2004 alpha contamination was found on the lid of the pre-filter housing in the Sodium Removal Ion Exchange System during routine filter change. Subsequent investigation determined that the alpha contamination likely came from a fuel pin(s) contained in an Ident-69 (ID-69) type pin storage container serial number 9 (ID-69-9) that was washed in the Sodium Removal System (SRS) in January 2004. Because all evidence indicated that the wash water interacted with the fuel, this ID49 is designated as containing a failed fuel pin with gross cladding defect and was set aside in the Interim Examination and Maintenance (IEM) Cell until it could be determined how to proceed for long term dry storage of the fuel pin container. This ID49 contained fuel pins from the driver fuel assembly (DFA) 16392, which was identified as a Delayed Neutron Monitor (DNM) leaker assembly. However, this DFA was disassembled and the fuel pin that was thought to be the failed pin was encapsulated and was not located in this ID49 container. This failed fuel disposition study discusses two alternatives that could be used to address long term storage for the contents of ID-69-9. The first alternative evaluated utilizes the current method of identifying and storing DNM leaker fuel pin(s) in tubes and thus, verifying that the alpha contamination found in the SRS came from a failed pin in this pin container. This approach will require unloading selected fuel pins from the ID-69, visually examining and possibly weighing suspect fuel pins to identify the failed pin(s), inserting the failed pin(s) in storage tubes, and reloading the fuel pins into ID49 containers. Safety analysis must be performed to revise the 200 Area Interim Storage Area (ISA) Final Safety Analysis Report (FSAR) (Reference 1) for this fuel configuration. The second alternative considered is to store the failed fuel as-is in the ID-69. This was evaluated to determine if this approach would comply with storage requirements. This

  2. FAILED FUEL DISPOSITION STUDY

    Energy Technology Data Exchange (ETDEWEB)

    THIELGES, J.R.

    2004-12-20

    In May 2004 alpha contamination was found on the lid of the pre-filter housing in the Sodium Removal Ion Exchange System during routine filter change. Subsequent investigation determined that the alpha contamination likely came from a fuel pin(s) contained in an Ident-69 (ID-69) type pin storage container serial number 9 (ID-69-9) that was washed in the Sodium Removal System (SRS) in January 2004. Because all evidence indicated that the wash water interacted with the fuel, this ID49 is designated as containing a failed fuel pin with gross cladding defect and was set aside in the Interim Examination and Maintenance (IEM) Cell until it could be determined how to proceed for long term dry storage of the fuel pin container. This ID49 contained fuel pins from the driver fuel assembly (DFA) 16392, which was identified as a Delayed Neutron Monitor (DNM) leaker assembly. However, this DFA was disassembled and the fuel pin that was thought to be the failed pin was encapsulated and was not located in this ID49 container. This failed fuel disposition study discusses two alternatives that could be used to address long term storage for the contents of ID-69-9. The first alternative evaluated utilizes the current method of identifying and storing DNM leaker fuel pin(s) in tubes and thus, verifying that the alpha contamination found in the SRS came from a failed pin in this pin container. This approach will require unloading selected fuel pins from the ID-69, visually examining and possibly weighing suspect fuel pins to identify the failed pin(s), inserting the failed pin(s) in storage tubes, and reloading the fuel pins into ID49 containers. Safety analysis must be performed to revise the 200 Area Interim Storage Area (ISA) Final Safety Analysis Report (FSAR) (Reference 1) for this fuel configuration. The second alternative considered is to store the failed fuel as-is in the ID-69. This was evaluated to determine if this approach would comply with storage requirements. This

  3. Quantitative reliability assessment for safety critical system software

    International Nuclear Information System (INIS)

    Chung, Dae Won; Kwon, Soon Man

    2005-01-01

    An essential issue in the replacement of the old analogue I and C to computer-based digital systems in nuclear power plants is the quantitative software reliability assessment. Software reliability models have been successfully applied to many industrial applications, but have the unfortunate drawback of requiring data from which one can formulate a model. Software which is developed for safety critical applications is frequently unable to produce such data for at least two reasons. First, the software is frequently one-of-a-kind, and second, it rarely fails. Safety critical software is normally expected to pass every unit test producing precious little failure data. The basic premise of the rare events approach is that well-tested software does not fail under normal routine and input signals, which means that failures must be triggered by unusual input data and computer states. The failure data found under the reasonable testing cases and testing time for these conditions should be considered for the quantitative reliability assessment. We will present the quantitative reliability assessment methodology of safety critical software for rare failure cases in this paper

  4. Spallation Neutron Source Accelerator Facility Target Safety and Non-safety Control Systems

    International Nuclear Information System (INIS)

    Battle, Ronald E.; DeVan, B.; Munro, John K. Jr.

    2006-01-01

    The Spallation Neutron Source (SNS) is a proton accelerator facility that generates neutrons for scientific researchers by spallation of neutrons from a mercury target. The SNS became operational on April 28, 2006, with first beam on target at approximately 200 W. The SNS accelerator, target, and conventional facilities controls are integrated by standardized hardware and software throughout the facility and were designed and fabricated to SNS conventions to ensure compatibility of systems with Experimental Physics Integrated Control System (EPICS). ControlLogix Programmable Logic Controllers (PLCs) interface to instruments and actuators, and EPICS performs the high-level integration of the PLCs such that all operator control can be accomplished from the Central Control room using EPICS graphical screens that pass process variables to and from the PLCs. Three active safety systems were designed to industry standards ISA S84.01 and IEEE 603 to meet the desired reliability for these safety systems. The safety systems protect facility workers and the environment from mercury vapor, mercury radiation, and proton beam radiation. The facility operators operated many of the systems prior to beam on target and developed the operating procedures. The safety and non-safety control systems were tested extensively prior to beam on target. This testing was crucial to identify wiring and software errors and failed components, the result of which was few problems during operation with beam on target. The SNS has continued beam on target since April to increase beam power, check out the scientific instruments, and continue testing the operation of facility subsystems

  5. Software Quality Assurance for Nuclear Safety Systems

    International Nuclear Information System (INIS)

    Sparkman, D R; Lagdon, R

    2004-01-01

    The US Department of Energy has undertaken an initiative to improve the quality of software used to design and operate their nuclear facilities across the United States. One aspect of this initiative is to revise or create new directives and guides associated with quality practices for the safety software in its nuclear facilities. Safety software includes the safety structures, systems, and components software and firmware, support software and design and analysis software used to ensure the safety of the facility. DOE nuclear facilities are unique when compared to commercial nuclear or other industrial activities in terms of the types and quantities of hazards that must be controlled to protect workers, public and the environment. Because of these differences, DOE must develop an approach to software quality assurance that ensures appropriate risk mitigation by developing a framework of requirements that accomplishes the following goals: (sm b ullet) Ensures the software processes developed to address nuclear safety in design, operation, construction and maintenance of its facilities are safe (sm b ullet) Considers the larger system that uses the software and its impacts (sm b ullet) Ensures that the software failures do not create unsafe conditions Software designers for nuclear systems and processes must reduce risks in software applications by incorporating processes that recognize, detect, and mitigate software failure in safety related systems. It must also ensure that fail safe modes and component testing are incorporated into software design. For nuclear facilities, the consideration of risk is not necessarily sufficient to ensure safety. Systematic evaluation, independent verification and system safety analysis must be considered for software design, implementation, and operation. The software industry primarily uses risk analysis to determine the appropriate level of rigor applied to software practices. This risk-based approach distinguishes safety

  6. Concept of safety subsystem for RF system for the VINCY Cyclotron; Koncept sigurnosnog podsistema radiofrekventnog sistema ciklotrona VINCY

    Energy Technology Data Exchange (ETDEWEB)

    Spasojevic, S; Djuric, D [Institute of Nuclear Sciences VINCA, Belgrade (Yugoslavia)

    1996-07-01

    The concept of the safety subsystem of the RF system of cyclotron VINCY is described. By applying the principle of separation of the control and safety functions and the fail-safe concept, an autonomous and reliable safety subsystem has been designed. A combination of the traditional relay technology, often applied in safety systems, and a modern, industrial PC based, acquisition system resulted into a solution meeting all design requirements. (author)

  7. Development of failed fuel detection system for PWR (III)

    International Nuclear Information System (INIS)

    Hwang, Churl Kew; Kang, Hee Dong; Jeong, Seung Ho; Cho, Byung Sub; Yoon, Byeong Joo; Yoon, Jae Seong

    1987-12-01

    Ultrasonic transducers satisfying the conditions for failed fuel rod detection for failed fuel rod detection have been designed and built. And performance tests for them have been carried out. Ultrasonic signal processing units, a manipulator guiding the ultrasonic probe through the fuel assembly lanes and its control units have been constructed. The performance of the system has been verified experimentally to be successful in failed fuel rod detection. (Author)

  8. Reliability testing of failed fuel location system

    International Nuclear Information System (INIS)

    Vieru, G.

    1996-01-01

    This paper presents the experimental reliability tests performed in order to prove the reliability parameters for Failed Fuel Location System (FFLS), equipment used to detect in which channel of a particular heat transport loop a fuel failure is located, and to find in which channel what particular bundle pair is failed. To do so, D20 samples from each reactor channel are sequentially monitored to detect a comparatively high level of delayed neutron activity. 15 refs, 8 figs, 2 tabs

  9. Systems with randomly failing repairable components

    DEFF Research Database (Denmark)

    Der Kiureghian, Armen; Ditlevsen, Ove Dalager; Song, Junho

    2005-01-01

    Closed-form expressions are derived for the steady-state availability, mean rate of failure, mean duration of downtime and reliability of a general system with randomly and independently failing repairable components. Component failures are assumed to be homogeneous Poisson events in time and rep...

  10. Fail-safe computer-based plant protection systems

    International Nuclear Information System (INIS)

    Keats, A.B.

    1983-01-01

    A fail-safe mode of operation for computers used in nuclear reactor protection systems was first evolved in the UK for application to a sodium cooled fast reactor. The fail-safe properties of both the hardware and the software were achieved by permanently connecting test signals to some of the multiplexed inputs. This results in an unambiguous data pattern, each time the inputs are sequentially scanned by the multiplexer. The ''test inputs'' simulate transient excursions beyond defined safe limits. The alternating response of the trip algorithms to the ''out-of-limits'' test signals and the normal plant measurements is recognised by hardwired pattern recognition logic external to the computer system. For more general application to plant protection systems, a ''Test Signal Generator'' (TSG) is used to compute and generate test signals derived from prevailing operational conditions. The TSG, from its knowledge of the sensitivity of the trip algorithm to each of the input variables, generates a ''test disturbance'' which is superimposed upon each variable in turn, to simulate a transient excursion beyond the safe limits. The ''tripped'' status yielded by the trip algorithm when using data from a ''disturbed'' input forms part of a pattern determined by the order in which the disturbances are applied to the multiplexer inputs. The data pattern formed by the interleaved test disturbances is again recognised by logic external to the protection system's computers. This fail-safe mode of operation of computer-based protection systems provides a powerful defence against common-mode failure. It also reduces the importance of software verification in the licensing procedure. (author)

  11. Thermal analysis of the failed equipment storage vault system

    International Nuclear Information System (INIS)

    Jerrell, J.; Lee, S.Y.; Shadday, A.

    1995-07-01

    A storage facility for failed glass melters is required for radioactive operation of the Defense Waste Processing Facility (DWPF). It is currently proposed that the failed melters be stored in the Failed Equipment Storage Vaults (FESV's) in S area. The FESV's are underground reinforced concrete structures constructed in pairs, with adjacent vaults sharing a common wall. A failed melter is to be placed in a steel Melter Storage Box (MSB), sealed, and lowered into the vault. A concrete lid is then placed over the top of the FESV. Two melters will be placed within the FESV/MSB system, separated by the common wall. There is no forced ventilation within the vault so that the melter is passively cooled. Temperature profiles in the Failed Equipment Storage Vault Structures have been generated using the FLOW3D software to model heat conduction and convection within the FESV/MSB system. Due to complexities in modeling radiation with FLOW3D, P/THERMAL software has been used to model radiation using the conduction/convection temperature results from FLOW3D. The final conjugate model includes heat transfer by conduction, convection, and radiation to predict steady-state temperatures. Also, the FLOW3D software has been validated as required by the technical task request

  12. Quantifying system safety: A comparison of the SBOAT & Safety Barrier Manager tools

    OpenAIRE

    Hansen, Zaza Nadja Lee; Duijm, Nijs Jan; Markert, Frank; Herbert, Luke Thomas

    2015-01-01

    This paper presents two software tools for analyzing safety risks, SBOAT (Stochastic BPMN Optimisation and Analysis Tool) and SBM (SafetyBarrierManagerr). SBOAT employs principles from stochastic model checking to allow for the quantitative verification of workflows. SBM supports the creation of valid safety-barrier diagrams and allows the quantitative analysis of the probability of all possible end states of the barrier diagram, i.e. the outcomes if one or several of the barriers fail to per...

  13. Margins Associated with Loss of Assured Safety for Systems with Multiple Time-Dependent Failure Modes.

    Energy Technology Data Exchange (ETDEWEB)

    Helton, Jon C. [Arizona State Univ., Tempe, AZ (United States); Brooks, Dusty Marie [Sandia National Lab. (SNL-NM), Albuquerque, NM (United States); Sallaberry, Cedric Jean-Marie. [Engineering Mechanics Corp. of Columbus, OH (United States)

    2018-02-01

    Representations for margins associated with loss of assured safety (LOAS) for weak link (WL)/strong link (SL) systems involving multiple time-dependent failure modes are developed. The following topics are described: (i) defining properties for WLs and SLs, (ii) background on cumulative distribution functions (CDFs) for link failure time, link property value at link failure, and time at which LOAS occurs, (iii) CDFs for failure time margins defined by (time at which SL system fails) – (time at which WL system fails), (iv) CDFs for SL system property values at LOAS, (v) CDFs for WL/SL property value margins defined by (property value at which SL system fails) – (property value at which WL system fails), and (vi) CDFs for SL property value margins defined by (property value of failing SL at time of SL system failure) – (property value of this SL at time of WL system failure). Included in this presentation is a demonstration of a verification strategy based on defining and approximating the indicated margin results with (i) procedures based on formal integral representations and associated quadrature approximations and (ii) procedures based on algorithms for sampling-based approximations.

  14. Dams designed to fail

    Energy Technology Data Exchange (ETDEWEB)

    Penman, A. [Geotechnical Engineering Consultants, Harpenden (United Kingdom)

    2004-09-01

    New developments in geotechnical engineering have led to methods for designing and constructing safe embankment dams. Failed dams can be categorized as those designed to fail, and those that have failed unexpectedly. This presentation outlined 3 dam failures: the 61 m high Malpasset Dam in France in 1959 which killed 421; the 71 m high Baldwin Hills Dam in the United States in 1963 which killed 5; and, the Vajont Dam in Italy in 1963 which killed 2,600 people. Following these incidents, the International Commission for Large Dams (ICOLD) reviewed regulations on reservoir safety. The 3 dams were found to have inadequate spillways and their failures were due to faults in their design. Fuse plug spillways, which address this problem, are designed to fail if an existing spillway proves inadequate. They allow additional discharge to prevent overtopping of the embankment dam. This solution can only be used if there is an adjacent valley to take the additional discharge. Examples of fuse gates were presented along with their effect on dam safety. A research program is currently underway in Norway in which high embankment dams are being studied for overtopping failure and failure due to internal erosion. Internal erosion has been the main reason why dams have failed unexpectedly. To prevent failures, designers suggested the use of a clay blanket placed under the upstream shoulder. However, for dams with soft clay cores, these underblankets could provide a route for a slip surface and that could lead to failure of the upstream shoulder. It was concluded that a safe arrangement for embankment dams includes the use of tipping gates or overturning gates which always fail at a required flood water level. Many have been installed in old and new dams around the world. 14 refs., 19 figs.

  15. Safety Evaluation of Full Digital Plant Protection System of Shin-Kori 3 and 4 in Korea

    International Nuclear Information System (INIS)

    Koh, J. S.; Kim, D. I.; Jeong, C. H.; Park, H. S.; Ji, S. H.; Kang, Y. D.; Park, G. Y.

    2009-01-01

    Keeping pace with the emerging trend of digital computer technologies, KHNP has utilized full digital plant protection system into the design of I and C systems at SKN 3 and 4. This paper presents safety review activities and results related to digital plant protection systems during the licensing of construction permit for the Shin-Kori 3 and 4(SKN 3 and 4) in Korea. The major licensing issues regarding the digital systems were software quality and cyber security during planning stage, system integrity with fail-safe design, EMI equipment qualification of digital systems, FPGA qualification and communication independence between safety and non-safety System. This paper addresses our approach to evaluate full digital protection systems with revised safety review guidelines and the resulting discussion to resolve the licensing issues

  16. Towards the Development of a Methodology for the Cyber Security Analysis of Safety Related Nuclear Digital I and C Systems

    International Nuclear Information System (INIS)

    Khand, Parvaiz Ahmed; Seong, Poong Hyun

    2007-01-01

    In nuclear power plants the redundant safety related systems are designed to take automatic action to prevent and mitigate accident conditions if the operators and the non-safety systems fail to maintain the plant within normal operating conditions. In case of an event, the failure of these systems has catastrophic consequences. The tendency in the industry over the past 10 years has been to use of commercial of the shelf (COTS) technologies in these systems. COTS software was written with attention to function and performance rather than security. COTS hardware usually designed to fail safe, but security vulnerabilities could be exploited by an attacker to disable the fail safe mechanisms. Moreover, the use of open protocols and operating systems in these technologies make the plants to become vulnerable to a host of cyber attacks. An effective security analysis process is required during all life cycle phases of these systems in order to ensure the security from cyber attacks. We are developing a methodology for the cyber security analysis of safety related nuclear digital I and C Systems. This methodology will cover all phases of development, operation and maintenance processes of software life cycle. In this paper, we will present a security analysis process for the concept stage of software development life cycle

  17. Are we failing to communicate? Internet-based patient education materials and radiation safety

    International Nuclear Information System (INIS)

    Hansberry, David R.; Ramchand, Tekchand; Patel, Shyam; Kraus, Carl; Jung, Jin; Agarwal, Nitin; Gonzales, Sharon F.; Baker, Stephen R.

    2014-01-01

    Introduction: Patients frequently turn to the Internet when seeking answers to healthcare related inquiries including questions about the effects of radiation when undergoing radiologic studies. We investigate the readability of online patient education materials concerning radiation safety from multiple Internet resources. Methods: Patient education material regarding radiation safety was downloaded from 8 different websites encompassing: (1) the Centers for Disease Control and Prevention, (2) the Environmental Protection Agency, (3) the European Society of Radiology, (4) the Food and Drug Administration, (5) the Mayo Clinic, (6) MedlinePlus, (7) the Nuclear Regulatory Commission, and (8) the Society of Pediatric Radiology. From these 8 resources, a total of 45 articles were analyzed for their level of readability using 10 different readability scales. Results: The 45 articles had a level of readability ranging from 9.4 to the 17.2 grade level. Only 3/45 (6.7%) were written below the 10th grade level. No statistical difference was seen between the readability level of the 8 different websites. Conclusions: All 45 articles from all 8 websites failed to meet the recommendations set forth by the National Institutes of Health and American Medical Association that patient education resources be written between the 3rd and 7th grade level. Rewriting the patient education resources on radiation safety from each of these 8 websites would help many consumers of healthcare information adequately comprehend such material

  18. Are we failing to communicate? Internet-based patient education materials and radiation safety

    Energy Technology Data Exchange (ETDEWEB)

    Hansberry, David R., E-mail: hansbedr@njms.rutgers.edu; Ramchand, Tekchand, E-mail: ramchate@njms.rutgers.edu; Patel, Shyam, E-mail: patel288@njms.rutgers.edu; Kraus, Carl, E-mail: krauscf@njms.rutgers.edu; Jung, Jin, E-mail: jungjk@njms.rutgers.edu; Agarwal, Nitin, E-mail: nitin.agarwal@rutgers.edu; Gonzales, Sharon F., E-mail: gonzalsh@njms.rutgers.edu; Baker, Stephen R., E-mail: bakersr@njms.rutgers.edu

    2014-09-15

    Introduction: Patients frequently turn to the Internet when seeking answers to healthcare related inquiries including questions about the effects of radiation when undergoing radiologic studies. We investigate the readability of online patient education materials concerning radiation safety from multiple Internet resources. Methods: Patient education material regarding radiation safety was downloaded from 8 different websites encompassing: (1) the Centers for Disease Control and Prevention, (2) the Environmental Protection Agency, (3) the European Society of Radiology, (4) the Food and Drug Administration, (5) the Mayo Clinic, (6) MedlinePlus, (7) the Nuclear Regulatory Commission, and (8) the Society of Pediatric Radiology. From these 8 resources, a total of 45 articles were analyzed for their level of readability using 10 different readability scales. Results: The 45 articles had a level of readability ranging from 9.4 to the 17.2 grade level. Only 3/45 (6.7%) were written below the 10th grade level. No statistical difference was seen between the readability level of the 8 different websites. Conclusions: All 45 articles from all 8 websites failed to meet the recommendations set forth by the National Institutes of Health and American Medical Association that patient education resources be written between the 3rd and 7th grade level. Rewriting the patient education resources on radiation safety from each of these 8 websites would help many consumers of healthcare information adequately comprehend such material.

  19. Supplementary safety system 1/4 scale testing

    Energy Technology Data Exchange (ETDEWEB)

    Garrett, R.L.; Paik, I.K.

    1993-09-01

    During the course of updating the K-Reactor Safety Analysis Report Chapter 15 in 1990, it was identified that the current Supplementary Safety System (SSS) may not be adequate in protecting the reactor during the process water pump coastdown initiated by a loss of AC power when the safety rods are assumed to fail. A SSS modification project was initiated to add an additional ink injection pathway near the pump suction. In addition, the Department of Energy raised a question on the thermal buoyancy effects on moderator flow pattern and ink dispersion in the moderator space. The development and documentation of a two-dimensional code called MODFLOW was undertaken to describe the problem. This report discusses the results of the moderator flow and ink (Gadolinium Poison Solution - GPS) dispersion tests designed to provide qualified data for validation and benchmarking of the MODFLOW computer code with the secondary objectives being the development of concentration profiles and video footage of simulated GPS dispersion under steady-state and transient flow conditions.

  20. Design study and comparative evaluation of JSFR failed fuel detection system

    Energy Technology Data Exchange (ETDEWEB)

    Aizawa, K.; Chikazawa, Y.; Ishikawa, N. [Japan Atomic Energy Agency JAEA, 4002 Narita, Oarai, Higashi-ibaraki-gun, Ibaraki 311-1393 (Japan); Kubo, S. [Japan Atomic Power Company JAPC (Japan); Okazaki, H.; Mito, M. [Mitsubishi FBR Systems, Inc. MFBR (Japan); Tozawa, K. [Fuji Electric Co., Ltd. (Japan); Hayashi, M. [MitsubishiElectric Corporation (Japan)

    2012-07-01

    A conceptual design study of an advanced sodium-cooled fast reactor JSFR has progressed in the 'Fast Reactor Cycle Technology Development (FaCT) 'project in Japan. JSFR has two failed fuel detection systems in the core. One is a failed fuel detection (FFD) system which continuously monitors a fission product from failed fuel subassembly. The other is a failed fuel detection and location (FFDL) system which locates when it receives signals from FFD. The FFD system consists of a FFD-DN which detects delayed neutron (DN) in sodium and a FFD-CG which detects fission products in the cover gas of the reactor vessel. In this study, requirements to the FFD-DN and the FFD-DN design to meet the requirements were investigated for the commercial and demonstration JSFR. In the commercial JSFR, a sampling type FFD which collects sodium from the reactor vessel by sampling lines for DN detectors was adopted. The performances have been investigated and confirmed by a fluid analysis in the reactor upper plenum. In the demonstration JSFR, the performance of DN detectors installed on the primary cold-leg piping has been confirmed. For the FFDL systems, experiences in the previous fast reactors and the R and D of FFDL system for JSFR were investigated. This study focuses on the Selector-Valve and the Tagging-Gas FFDL systems. Operation experiences of the Selector-valve FFDL system were accumulated in PFR and Phenix. Tagging-gas system experiences were accumulated in EBR-II and FFTF. The feasibility of both FFDL systems for JSFR was evaluated. (authors)

  1. Development of failed element monitoring system for PWR

    International Nuclear Information System (INIS)

    Liu Yupu; Liu Haojie

    2005-01-01

    Aiming at the existent problems of failed element monitoring system in the PWR, the detector, the spiral tube, the neutron-moderator and the shielding of neutron bas improved on in this task. These improvements decrease the backgrounds effectively, raise the work stability of the detectors and resolve the failed element error action problem which can not be resolved for the long time, and the detecting sensitivity is raise ten times. The γ-ray detector is arranged spiral with outside, so the γ-rays with shorter half-life can be detected. The structure of gross gamma detection station has improved, so the solid angle is expanded, the transmissivity of γ-rays and β-rays are increased, and the ratio of signal to background is raised. The measurement instrument has been intellectualized. This system is above criticism for the users in operation. (authors)

  2. Are we failing to communicate? Internet-based patient education materials and radiation safety.

    Science.gov (United States)

    Hansberry, David R; Ramchand, Tekchand; Patel, Shyam; Kraus, Carl; Jung, Jin; Agarwal, Nitin; Gonzales, Sharon F; Baker, Stephen R

    2014-09-01

    Patients frequently turn to the Internet when seeking answers to healthcare related inquiries including questions about the effects of radiation when undergoing radiologic studies. We investigate the readability of online patient education materials concerning radiation safety from multiple Internet resources. Patient education material regarding radiation safety was downloaded from 8 different websites encompassing: (1) the Centers for Disease Control and Prevention, (2) the Environmental Protection Agency, (3) the European Society of Radiology, (4) the Food and Drug Administration, (5) the Mayo Clinic, (6) MedlinePlus, (7) the Nuclear Regulatory Commission, and (8) the Society of Pediatric Radiology. From these 8 resources, a total of 45 articles were analyzed for their level of readability using 10 different readability scales. The 45 articles had a level of readability ranging from 9.4 to the 17.2 grade level. Only 3/45 (6.7%) were written below the 10th grade level. No statistical difference was seen between the readability level of the 8 different websites. All 45 articles from all 8 websites failed to meet the recommendations set forth by the National Institutes of Health and American Medical Association that patient education resources be written between the 3rd and 7th grade level. Rewriting the patient education resources on radiation safety from each of these 8 websites would help many consumers of healthcare information adequately comprehend such material. Copyright © 2014. Published by Elsevier Ireland Ltd.

  3. "Too big to fail" or "Too non-traditional to fail"?: The determinants of banks' systemic importance

    OpenAIRE

    Moore, Kyle; Zhou, Chen

    2013-01-01

    This paper empirically analyzes the determinants of banks' systemic importance. In constructing a measure on the systemic importance of financial institutions we find that size is a leading determinant. This confirms the usual "Too big to fail'' argument. Nevertheless, banks with size above a sufficiently high level have equal systemic importance. In addition to size, we find that the extent to which banks engage in non-traditional banking activities is also positively related to ...

  4. Aging and service wear of spring-loaded pressure relief valves used in safety-related systems at nuclear power plants

    Energy Technology Data Exchange (ETDEWEB)

    Staunton, R.H.; Cox, D.F. [Oak Ridge National Lab., TN (United States)

    1995-03-01

    Spring-loaded pressure relief valves (PRVS) are used in some safety-related applications at nuclear power plants. In general, they are used in systems where, during accidents, pressures may rise to levels where pressure safety relief is required for protection of personnel, system piping, and components. This report documents a study of PRV aging and considers the severity and causes of service wear and how it is discovered and corrected in various systems, valve sizes, etc. Provided in this report are results of the examination of the recorded failures and identification of trends and relationships/correlations in the failures when all failure-related parameters are considered. Components that comprise a typical PRV, how those components fail, when they fail, and the current testing frequencies and methods are also presented in detail.

  5. Aging and service wear of spring-loaded pressure relief valves used in safety-related systems at nuclear power plants

    International Nuclear Information System (INIS)

    Staunton, R.H.; Cox, D.F.

    1995-03-01

    Spring-loaded pressure relief valves (PRVS) are used in some safety-related applications at nuclear power plants. In general, they are used in systems where, during accidents, pressures may rise to levels where pressure safety relief is required for protection of personnel, system piping, and components. This report documents a study of PRV aging and considers the severity and causes of service wear and how it is discovered and corrected in various systems, valve sizes, etc. Provided in this report are results of the examination of the recorded failures and identification of trends and relationships/correlations in the failures when all failure-related parameters are considered. Components that comprise a typical PRV, how those components fail, when they fail, and the current testing frequencies and methods are also presented in detail

  6. Reliability analysis of repairable safety systems of a reprocessing plant allowing for tolerable system downtimes

    International Nuclear Information System (INIS)

    Schaefer, H.

    1987-01-01

    GRS has been engaged in safety analysises of the German Reprocessing Plant for several years. The development and verification of appropriate reliability analysis methods, the generation of data as well as the search for an adequate structural presentation of the results to form a basis of recommendations for technical or administrative measures or contributions to risk oriented evaluations have been or are in the process of being established. In contrast to NPP-studies, the reliability assessment of safety systems of a reprocessing plant is applied to repairable and often relatively small systems allowing for tolerable system downtimes. A sketch of the diverse cooling systems of a vessel containing a selfheating solution is given. The interruption of the cooling function for about one day might be tolerable before boiling will be reached. This interval is suitable for transfer of the solution to a spare vessel or for repairing the failed components, thus restoring the cooling function

  7. System safety education focused on flight safety

    Science.gov (United States)

    Holt, E.

    1971-01-01

    The measures necessary for achieving higher levels of system safety are analyzed with an eye toward maintaining the combat capability of the Air Force. Several education courses were provided for personnel involved in safety management. Data include: (1) Flight Safety Officer Course, (2) Advanced Safety Program Management, (3) Fundamentals of System Safety, and (4) Quantitative Methods of Safety Analysis.

  8. Safety and Efficacy of Transcatheter Aortic Valve Replacement in the Treatment of Pure Aortic Regurgitation in Native Valves and Failing Surgical Bioprostheses

    DEFF Research Database (Denmark)

    Sawaya, Fadi J; Deutsch, Marcus-André; Seiffert, Moritz

    2017-01-01

    %, respectively). Independent predictors of 30-day mortality were body mass index 8%, major vascular or access complication, and moderate to severe AR. In the failing SHV group, device success, early safety, and clinical efficacy were 71%, 90%, and 77%, respectively...

  9. Development of failed fuel detection and location system in sodium-cooled large reactor. Sampling method of failed fuels under the slit

    International Nuclear Information System (INIS)

    Aizawa, Kousuke; Fujita, Kaoru; Kamide, Hideki; Kasahara, Naoto

    2010-01-01

    A conceptual design study of Japan Sodium-cooled Fast Reactor (JSFR) is in progress as an issue of the 'Fast Reactor Cycle Technology Development (FaCT)' project in Japan. JSFR adopts a Selector-Valve mechanism for the failed fuel detection and location (FFDL) system. The Selector-Valve FFDL system identifies failed fuel subassemblies by sampling sodium from each fuel subassembly outlet and detecting fission product. One of the JSFR design features is employing an upper internal structure (UIS) with a radial slit, in which an arm of fuel handling machine can move and access the fuel assemblies under the UIS. Thus, JSFR cannot place sampling nozzles right above the fuel subassemblies located under the slit. In this study, the sampling method for indentifying under-slit failed fuel subassemblies has been demonstrated by water experiments. (author)

  10. DECOFF Probabilities of Failed Operations

    DEFF Research Database (Denmark)

    Gintautas, Tomas

    2015-01-01

    A statistical procedure of estimation of Probabilities of Failed Operations is described and exemplified using ECMWF weather forecasts and SIMO output from Rotor Lift test case models. Also safety factor influence is investigated. DECOFF statistical method is benchmarked against standard Alpha-factor...

  11. Generic safety evaluation report regarding integrity of BWR scram system piping

    International Nuclear Information System (INIS)

    1981-08-01

    Safety concerns associated with postulated pipe breaks in the boiling water reactor (BWR) scram system were identified during the staff's continuing investigation of the Browns Ferry Unit 3 control rod partial insertion failure on June 28, 1980. This report includes an evaluation of the licensing basis for the BWR scram discharge volume (SDV) piping and an assessment of the potential for the SDV piping to fail while in service. A discussion of the means available for mitigation an unlikely SDV system failure is provided. Generic recommendations are made to improve mitigation capability and ensure that system integrity is maintained in service

  12. Study of fieldbus technology confiability when applied in a Sterilization plant control and safety systems

    International Nuclear Information System (INIS)

    Karma, D.; Sampa, M.H.O.; Rela, P.R.

    2001-01-01

    Several sterilization processes have been used in these years for treatment of countless products. Some processes use high temperatures, thermal shocks and chemical agents. With the discovery of the ionizing radiation and its posterior technological developments turned possible the application of that process, in 1960, also in the sterilization, denominated radiation sterilization. This process became also applied in another areas of health and industrial as food conservation, gemstones enhancement and others. The radiation sterilization requests an effective control and it needs a high level of safety. The commercial use of the computers applied in industrial automation provides and the domain of new technologies in this field provides news applications then new designs now is possible. The Fieldbus technology, a new digital communication protocol, like a Local Area Network, can be an alternative in the cobalt-60 irradiation plant. This paper show preliminary study about confiability in systems using Fieldbus technology. This technology was simulated in sterilization plant control and safety systems and the fail probability was quantified using Fail Tree Analysis Method. Fieldbus technology can be used in sterilization plants because the confiability in this systems is like PLCs and relays systems, was the conclusion

  13. Statistical Requirements For Pass-Fail Testing Of Contraband Detection Systems

    International Nuclear Information System (INIS)

    Gilliam, David M.

    2011-01-01

    Contraband detection systems for homeland security applications are typically tested for probability of detection (PD) and probability of false alarm (PFA) using pass-fail testing protocols. Test protocols usually require specified values for PD and PFA to be demonstrated at a specified level of statistical confidence CL. Based on a recent more theoretical treatment of this subject [1], this summary reviews the definition of CL and provides formulas and spreadsheet functions for constructing tables of general test requirements and for determining the minimum number of tests required. The formulas and tables in this article may be generally applied to many other applications of pass-fail testing, in addition to testing of contraband detection systems.

  14. Software Safety Risk in Legacy Safety-Critical Computer Systems

    Science.gov (United States)

    Hill, Janice L.; Baggs, Rhoda

    2007-01-01

    Safety Standards contain technical and process-oriented safety requirements. Technical requirements are those such as "must work" and "must not work" functions in the system. Process-Oriented requirements are software engineering and safety management process requirements. Address the system perspective and some cover just software in the system > NASA-STD-8719.13B Software Safety Standard is the current standard of interest. NASA programs/projects will have their own set of safety requirements derived from the standard. Safety Cases: a) Documented demonstration that a system complies with the specified safety requirements. b) Evidence is gathered on the integrity of the system and put forward as an argued case. [Gardener (ed.)] c) Problems occur when trying to meet safety standards, and thus make retrospective safety cases, in legacy safety-critical computer systems.

  15. On the Safety of Machine Learning: Cyber-Physical Systems, Decision Sciences, and Data Products.

    Science.gov (United States)

    Varshney, Kush R; Alemzadeh, Homa

    2017-09-01

    Machine learning algorithms increasingly influence our decisions and interact with us in all parts of our daily lives. Therefore, just as we consider the safety of power plants, highways, and a variety of other engineered socio-technical systems, we must also take into account the safety of systems involving machine learning. Heretofore, the definition of safety has not been formalized in a machine learning context. In this article, we do so by defining machine learning safety in terms of risk, epistemic uncertainty, and the harm incurred by unwanted outcomes. We then use this definition to examine safety in all sorts of applications in cyber-physical systems, decision sciences, and data products. We find that the foundational principle of modern statistical machine learning, empirical risk minimization, is not always a sufficient objective. We discuss how four different categories of strategies for achieving safety in engineering, including inherently safe design, safety reserves, safe fail, and procedural safeguards can be mapped to a machine learning context. We then discuss example techniques that can be adopted in each category, such as considering interpretability and causality of predictive models, objective functions beyond expected prediction accuracy, human involvement for labeling difficult or rare examples, and user experience design of software and open data.

  16. Technical feasibility and reliability of passive safety systems of AC600

    International Nuclear Information System (INIS)

    Niu, W.; Zeng, X.

    1996-01-01

    The first step conceptual design of the 600 MWe advanced PWR (AC-600) has been finished by the Nuclear Power Institute of China. Experiments on the passive system of AC-600 are being carried out, and are expected to be completed next year. The main research emphases of AC-600 conceptual design include the advanced core, the passive safety system and simplification. The design objective of AC-600 is that the safety, reliability, maintainability, operation cost and construction period are all improved upon compared to those of PWR plant. One of important means to achieve the objective is using a passive system, which has the following functions whenever its operation is required: providing the reactor core with enough coolant when others fail to make up the lost coolant; reactor residual heat removal; cooling and reducing pressure in the containment and preventing radioactive substances from being released into the environment after occurrence of accident (e.g. LOCA). The system should meet the single failure criterion, and keep operating when a single active component or passive component breaks down during the first 72 hour period after occurrence of accident, or in the long period following the 72 hour period. The passive safety system of AC-600 is composed of the primary safety injection system, the secondary emergency core residual heat removal system and the containment cooling system. The design of the system follows some relevant rules and criteria used by current PWR plant. The system has the ability to bear single failure, two complete separate subsystems are considered, each designed for 100% working capacity. Normal operation is separate from safety operation and avoids cross coupling and interference between systems, improves the reliability of components, and makes it easy to maintain, inspect and test the system. The paper discusses the technical feasibility and reliability of the passive safety system of AC-600, and some issues and test plans are also

  17. Technical feasibility and reliability of passive safety systems of AC600

    Energy Technology Data Exchange (ETDEWEB)

    Niu, W; Zeng, X [Nuclear Power Inst. of China, Chendu (China)

    1996-12-01

    The first step conceptual design of the 600 MWe advanced PWR (AC-600) has been finished. Experiments on the passive system of AC-600 are being carried out, and are expected to be completed next year. The main research emphases of AC-600 conceptual design include the advanced core, the passive safety system and simplification. The design objective of AC-600 is that the safety, reliability, maintainability, operation cost and construction period are all improved upon compared to those of PWR plant. One of important means to achieve the objective is using a passive system, which has the following functions whenever its operation is required: providing the reactor core with enough coolant when others fail to make up the lost coolant; reactor residual heat removal; cooling and reducing pressure in the containment and preventing radioactive substances from being released into the environment after occurrence of accident (e.g. LOCA). The system should meet the single failure criterion, and keep operating when a single active component or passive component breaks down during the first 72 hour period after occurrence of accident, or in the long period following the 72 hour period. The passive safety system of AC-600 is composed of the primary safety injection system, the secondary emergency core residual heat removal system and the containment cooling system. The design of the system follows some relevant rules and criteria used by current PWR plant. The system has the ability to bear single failure, two complete separate subsystems are considered, each designed for 100% working capacity. Normal operation is separate from safety operation and avoids cross coupling and interference between systems, improves the reliability of components, and makes it easy to maintain, inspect and test the system. The paper discusses the technical feasibility and reliability of the passive safety system of AC-600, and some issues and test plans are also involved. (author). 3 figs, 1 tab.

  18. NASA System Safety Handbook. Volume 2: System Safety Concepts, Guidelines, and Implementation Examples

    Science.gov (United States)

    Dezfuli, Homayoon; Benjamin, Allan; Everett, Christopher; Feather, Martin; Rutledge, Peter; Sen, Dev; Youngblood, Robert

    2015-01-01

    This is the second of two volumes that collectively comprise the NASA System Safety Handbook. Volume 1 (NASASP-210-580) was prepared for the purpose of presenting the overall framework for System Safety and for providing the general concepts needed to implement the framework. Volume 2 provides guidance for implementing these concepts as an integral part of systems engineering and risk management. This guidance addresses the following functional areas: 1.The development of objectives that collectively define adequate safety for a system, and the safety requirements derived from these objectives that are levied on the system. 2.The conduct of system safety activities, performed to meet the safety requirements, with specific emphasis on the conduct of integrated safety analysis (ISA) as a fundamental means by which systems engineering and risk management decisions are risk-informed. 3.The development of a risk-informed safety case (RISC) at major milestone reviews to argue that the systems safety objectives are satisfied (and therefore that the system is adequately safe). 4.The evaluation of the RISC (including supporting evidence) using a defined set of evaluation criteria, to assess the veracity of the claims made therein in order to support risk acceptance decisions.

  19. Safety significance of ATR passive safety response attributes

    International Nuclear Information System (INIS)

    Atkinson, S.A.

    1990-01-01

    The Advanced Test Reactor (ATR) at the Idaho National Engineering Laboratory was designed with some passive safety response attributes which contribute to the safety of the facility. The three passive safety attributes being evaluated in the paper are: 1) In-core and in-vessel natural convection cooling, 2) a passive heat sink capability of the ATR primary coolant system (PCS) for the transfer of decay power from the uninsulated piping to the confinement, and 3) gravity feed of emergency coolant makeup. The safety significance of the ATR passive safety response attributes is that the reactor can passively respond to most transients, given a reactor scram, to provide adequate decay power removal and a significant time for operator action should the normal active heat removal systems and their backup systems both fail. The ATR Interim Level 1 Probabilistic Risk Assessment (PRA) models and results were used to evaluate the significance to ATR fuel damage frequency (or probability) of the above three passive response attributes. The results of the evaluation indicate that the first attribute is a major safety characteristic of the ATR. The second attribute has a noticeable but only minor safety significance. The third attribute has no significant influence on the ATR firewater injection system (emergency coolant system)

  20. Evaluating Safety Culture Under the Socio-Technical Complex Systems Perspective

    International Nuclear Information System (INIS)

    Lemos, F. L. de

    2016-01-01

    procedures for equipment operation are ignored. However, when it comes to more subtle interactions between system components, it becomes harder to detect potentially hazardous situations that are hidden, and can lead the system to hazardous states. For example, leaders can take decisions that are in conflict with decisions taken by other colleagues at a very different department, and without knowing, be contributing to future unintended consequences to the system. Such a situation may not be easily detected by direct observation. This explains why having a good safety culture seems not to be enough to assure the safety of the system. According to STAMP principals, safety is a problem of flaws in the control of the interactions between components of the system, and not only a problem of failures of components of the system. Remember that safety culture defines a property of part of the system, which could be considered as a component of the system. We can find examples of companies that, even having well evaluated safety culture, or organizational culture, fail to keep their high safety standards. In this work we propose a methodology that integrates safety culture in the control structure of the system. It is based on STAMP: Systems Theoretic Accident Models and Processes, and the Three Lenses: Strategic, Political and Cultural Approaches. It can help evaluate either the existing safety culture of a Nuclear Power Plant or the implementation of new safety culture projects. STAMP is based on the assumption that accidents are a result of flawed control over the interactions between components of a system. Where, control structure is a model of the system in terms of control loops. To understand how the control structure of a system can be corrupted, and therefore, leading the system to hazardous conditions, the methodology of the Three Lenses is applied. By following this approach it becomes possible to keep all the safety culture traits but, instead of focus on safety culture

  1. Fail-safe system for activity cooled supersonic and hypersonic aircraft. [using liquid hydrogen fuel

    Science.gov (United States)

    Jones, R. A.; Braswell, D. O.; Richie, C. B.

    1975-01-01

    A fail-safe-system concept was studied as an alternative to a redundant active cooling system for supersonic and hypersonic aircraft which use the heat sink of liquid-hydrogen fuel for cooling the aircraft structure. This concept consists of an abort maneuver by the aircraft and a passive thermal protection system (TPS) for the aircraft skin. The abort manuever provides a low-heat-load descent from normal cruise speed to a lower speed at which cooling is unnecessary, and the passive TPS allows the aircraft skin to absorb the abort heat load without exceeding critical skin temperature. On the basis of results obtained, it appears that this fail-safe-system concept warrants further consideration, inasmuch as a fail-safe system could possibly replace a redundant active cooling system with no increase in weight and would offer other potential advantages.

  2. Reactor safety systems

    International Nuclear Information System (INIS)

    Kafka, P.

    1975-01-01

    The spectrum of possible accidents may become characterized by the 'maximum credible accident', which will/will not happen. Similary, the performance of safety systems in a multitude of situations is sometimes simplified to 'the emergency system will/will not work' or even 'reactors are/ are not safe'. In assessing safety, one must avoid this fallacy of reducing a complicated situation to the simple black-and-white picture of yes/no. Similarly, there is a natural tendency continually to improve the safety of a system to assure that it is 'safe enough'. Any system can be made safer and there is usually some additional cost. It is important to balance the increased safety against the increased costs. (orig.) [de

  3. Reactor system safety assurance

    International Nuclear Information System (INIS)

    Mattson, R.J.

    1984-01-01

    The philosophy of reactor safety is that design should follow established and conservative engineering practices, there should be safety margins in all modes of plant operation, special systems should be provided for accidents, and safety systems should have redundant components. This philosophy provides ''defense in depth.'' Additionally, the safety of nuclear power plants relies on ''safety systems'' to assure acceptable response to design basis events. Operating experience has shown the need to study plant response to more frequent upset conditions and to account for the influence of operators and non-safety systems on overall performance. Defense in depth is being supplemented by risk and reliability assessment

  4. Considerations on Fail Safe Design for Design Basis Accident (DBA) vs. Design Extension Condition (DEC): Lesson Learnt from the Fukushima Accident

    International Nuclear Information System (INIS)

    Ha, Jun Su; Kim, Sungyeop

    2014-01-01

    The fail safety design is referred to as an inherently safe design concept where the failure of an SSC (System, Structure or Component) leads directly to a safe condition. Usually the fail safe design has been devised based on the design basis accident (DBAs), because the nuclear safety has been assured by securing the capability to safely cope with DBAs. Currently regards have been paid to the DEC (Design Extension Condition) as an extended design consideration. Hence additional attention should be paid to the concept of the fail safe design in order to consider the DEC, accordingly. In this study, a case chosen from the Fukushima accident is studied to discuss the issue associated with the fail safe design in terms of DBA and DEC standpoints. For the fail safe design to be based both on the DBA and the DEC, a Mode Changeable Fail Safe Design (MCFSD) is proposed in this study. Additional discussions on what is needed for the MCFSD to be applied in the nuclear safety are addressed as well. One of the lessons learnt from the Fukushima accident should include considerations on the fail-safe design in a changing regulatory framework. Currently the design extension condition (DEC) including severe accidents should be considered during designing and licensing NPPs. Hence concepts on the fail safe design need to be changed to be based on not only the DBA but also the DEC. In this study, a case on a fail-safe design chosen from the Fukushima accident is studied to discuss the issue associated with the fail safe design in terms of DBA and DEC conditions. For the fail safe design to be based both on the DBA and the DEC, a Mode Changeable Fail Safe Design (MCFSD) is proposed in this study. Additional discussions on what is needed for the MCFSD to be applied in the nuclear safety are addressed as well

  5. Time-independent and time-dependent contributions to the unavailability of standby safety system components

    International Nuclear Information System (INIS)

    Lofgren, E.V.; Uryasev, S.; Samanta, P.

    1997-01-01

    The unavailability of standby safety system components due to failures in nuclear power plants is considered to involve a time-independent and a time-dependent part. The former relates to the component's unavailability from demand stresses due to usage, and the latter represents the component's unavailability due to standby-time stresses related to the environment. In this paper, data from the nuclear plant reliability data system (NPRDS) were used to partition the component's unavailability into the contributions from standby-time stress (i.e., due to environmental factors) and demand stress (i.e., due to usage). Analyses are presented of motor-operated valves (MOVs), motor-driven pumps (MDPs), and turbine-driven pumps (TDPs). MOVs fail predominantly (approx. 78 %) from environmental factors (standby-time stress failures). MDPs fail slightly more frequently from demand stresses (approx. 63 %) than standby-time stresses, while TDPs fail predominantly from standby-time stresses (approx. 78 %). Such partitions of component unavailability have many uses in risk-informed and performance-based regulation relating to modifications to Technical Specification, in-service testing, precise determination of dominant accident sequences, and implementation of maintenance rules

  6. Safety system status monitoring

    International Nuclear Information System (INIS)

    Lewis, J.R.; Morgenstern, M.H.; Rideout, T.H.; Cowley, P.J.

    1984-03-01

    The Pacific Northwest Laboratory has studied the safety aspects of monitoring the preoperational status of safety systems in nuclear power plants. The goals of the study were to assess for the NRC the effectiveness of current monitoring systems and procedures, to develop near-term guidelines for reducing human errors associated with monitoring safety system status, and to recommend a regulatory position on this issue. A review of safety system status monitoring practices indicated that current systems and procedures do not adequately aid control room operators in monitoring safety system status. This is true even of some systems and procedures installed to meet existing regulatory guidelines (Regulatory Guide 1.47). In consequence, this report suggests acceptance criteria for meeting the functional requirements of an adequate system for monitoring safety system status. Also suggested are near-term guidelines that could reduce the likelihood of human errors in specific, high-priority status monitoring tasks. It is recommended that (1) Regulatory Guide 1.47 be revised to address these acceptance criteria, and (2) the revised Regulatory Guide 1.47 be applied to all plants, including those built since the issuance of the original Regulatory Guide

  7. Safety system status monitoring

    Energy Technology Data Exchange (ETDEWEB)

    Lewis, J.R.; Morgenstern, M.H.; Rideout, T.H.; Cowley, P.J.

    1984-03-01

    The Pacific Northwest Laboratory has studied the safety aspects of monitoring the preoperational status of safety systems in nuclear power plants. The goals of the study were to assess for the NRC the effectiveness of current monitoring systems and procedures, to develop near-term guidelines for reducing human errors associated with monitoring safety system status, and to recommend a regulatory position on this issue. A review of safety system status monitoring practices indicated that current systems and procedures do not adequately aid control room operators in monitoring safety system status. This is true even of some systems and procedures installed to meet existing regulatory guidelines (Regulatory Guide 1.47). In consequence, this report suggests acceptance criteria for meeting the functional requirements of an adequate system for monitoring safety system status. Also suggested are near-term guidelines that could reduce the likelihood of human errors in specific, high-priority status monitoring tasks. It is recommended that (1) Regulatory Guide 1.47 be revised to address these acceptance criteria, and (2) the revised Regulatory Guide 1.47 be applied to all plants, including those built since the issuance of the original Regulatory Guide.

  8. 30 CFR 75.803 - Fail safe ground check circuits on high-voltage resistance grounded systems.

    Science.gov (United States)

    2010-07-01

    ... High-Voltage Distribution § 75.803 Fail safe ground check circuits on high-voltage resistance grounded systems. [Statutory Provisions] On and after September 30, 1970, high-voltage, resistance grounded systems... 30 Mineral Resources 1 2010-07-01 2010-07-01 false Fail safe ground check circuits on high-voltage...

  9. Traceability of Software Safety Requirements in Legacy Safety Critical Systems

    Science.gov (United States)

    Hill, Janice L.

    2007-01-01

    How can traceability of software safety requirements be created for legacy safety critical systems? Requirements in safety standards are imposed most times during contract negotiations. On the other hand, there are instances where safety standards are levied on legacy safety critical systems, some of which may be considered for reuse for new applications. Safety standards often specify that software development documentation include process-oriented and technical safety requirements, and also require that system and software safety analyses are performed supporting technical safety requirements implementation. So what can be done if the requisite documents for establishing and maintaining safety requirements traceability are not available?

  10. Examination of a failed fifth wheel coupling

    CSIR Research Space (South Africa)

    Fernandes, PJL

    1998-03-01

    Full Text Available Examination of a fifth wheel coupling which had failed in service showed that it had been modified and that the operating handle had been moved from its original design position. This modification completely eliminated the safety device designed...

  11. Safety design guide for safety related systems for CANDU 9

    International Nuclear Information System (INIS)

    Lee, Duk Su; Chang, Woo Hyun; Lee, Nam Young; A. C. D. Wright

    1996-03-01

    In general, two types of safety related systems and structures exist in the nuclear plant; The one is a systems and structures which perform safety functions during the normal operation of the plant, and the other is a systems and structures which perform safety functions to mitigate events caused by failure of the normally operating systems or by naturally occurring phenomena. In this safety design guide, these systems are identified in detail, and the major events for which the safety functions are required and the major safety requirements are identified in the list. As the probabilistic safety assessments are completed during the course of the project, additions or deletions to the list may be justified. 3 tabs. (Author) .new

  12. Safety design guide for safety related systems for CANDU 9

    Energy Technology Data Exchange (ETDEWEB)

    Lee, Duk Su; Chang, Woo Hyun; Lee, Nam Young [Korea Atomic Energy Research Institute, Daeduk (Korea, Republic of); Wright, A.C.D. [Atomic Energy of Canada Ltd., Toronto (Canada)

    1996-03-01

    In general, two types of safety related systems and structures exist in the nuclear plant; The one is a systems and structures which perform safety functions during the normal operation of the plant, and the other is a systems and structures which perform safety functions to mitigate events caused by failure of the normally operating systems or by naturally occurring phenomena. In this safety design guide, these systems are identified in detail, and the major events for which the safety functions are required and the major safety requirements are identified in the list. As the probabilistic safety assessments are completed during the course of the project, additions or deletions to the list may be justified. 3 tabs. (Author) .new.

  13. Why did ISO 9001:2008 system fail to deliver?

    Science.gov (United States)

    Langford, Melvyn

    2014-02-01

    This article is based on an actual investigation undertaken, and summarises the subsequent report's findings and observations. It has been anonymised for obvious reasons. In May 2013 an analysis was undertaken by a multidisciplinary team that compared an NHS Trust estates department's managerial systems against the NHS national recommendations. The conclusions stated that: 'There was a systemic failure across a large number of topics generating intolerable/substantial risks to the organisation, its staff, and patients; this despite the department's managerial systems being accredited to the International Standard ISO 9001:2008'. The natural question raised when presented with this demonstrable and auditable evidence was: 'Why did the ISO 9001:2008 system fail?'

  14. Safety system function trends

    International Nuclear Information System (INIS)

    Johnson, C.

    1989-01-01

    This paper describes research to develop risk-based indicators of plant safety performance. One measure of the safety-performance of operating nuclear power plants is the unavailability of important safety systems. Brookhaven National Laboratory and Science Applications International Corporation are evaluating ways to aggregate train-level or component-level data to provide such an indicator. This type of indicator would respond to changes in plant safety margins faster than the currently used indicator of safety system unavailability (i.e., safety system failures reported in licensee event reports). Trends in the proposed indicator would be one indication of trends in plant safety performance and maintenance effectiveness. This paper summarizes the basis for such an indicator, identifies technical issues to be resolved, and illustrates the potential usefullness of such indicators by means of computer simulations and case studies

  15. Concept of system safety on operating nuclear power plant

    International Nuclear Information System (INIS)

    Miyano, Hiroshi; Yamaguchi, Akira; Demachi, Kazuyuki; Takata, Takashi; Arai, Shigeki; Sugiyama, Naoki

    2015-01-01

    The total system design on Nuclear Plant ensures 'Nuclear safety' with making practically achievable efforts to prevent and mitigate nuclear and radiological accidents. The performance based system design with 'Defence in depth (D-I-D)' has been laid out as the key means in 'preventing accidents', 'controlling escalation to serious consequences', and 'preventing harmful consequences to the public'. D-I-D is extended to the management of severe accidents, and is an approach intended to provide protection against the development of a wide variety of events by means of redundant, diverse and independent protective barriers. It is crucial to maintain plant integrity with mass quantity of radioactive material present in reactor core, against potential consequences (risk) on people and the environment caused by external hazards, particularly, earthquake and tsunami. The fundamental approach on D-I-D is to address uncertainties by means of successive measures, so that if one measure fails, other, or subsequent measure will be available to ensure safety. Risk analysis should be conducted to validate and enhance reliability of the defence barriers against consequences on people and the environment. (author)

  16. IAEA Safety Standards on Management Systems and Safety Culture

    International Nuclear Information System (INIS)

    Persson, Kerstin Dahlgren

    2007-01-01

    The IAEA has developed a new set of Safety Standard for applying an integrated Management System for facilities and activities. The objective of the new Safety Standards is to define requirements and provide guidance for establishing, implementing, assessing and continually improving a Management System that integrates safety, health, environmental, security, quality and economic related elements to ensure that safety is properly taken into account in all the activities of an organization. With an integrated approach to management system it is also necessary to include the aspect of culture, where the organizational culture and safety culture is seen as crucial elements of the successful implementation of this management system and the attainment of all the goals and particularly the safety goals of the organization. The IAEA has developed a set of service aimed at assisting it's Member States in establishing. Implementing, assessing and continually improving an integrated management system. (author)

  17. Development of the safety analysis system - SAIS - application to the Kola nuclear power plant

    International Nuclear Information System (INIS)

    Balfanz, H.P.; Fuhrmann, C.; Neumann, L.; Rumpf, J.; Kubintsev, B.; Marakulin, I.; Shevelev, V.; Terekhov, I.

    1995-01-01

    The project was started in July 1991 and finished by the end of 1993. It was aimed at adapting SAIS to WWER-440/W213 plant design and operational procedures, demonstrating the possibilities of SAIS for safety evaluation and examining the system by plant personnel and a PSA team. The project covered -the use of data form as well as fault and event tree methods of SAIS, - a probabilistic assessment of the high pressure injection system in case of a small break loss-of-coolant accident, - a quantification of human error probabilities for operator actions to cool down the primary circuit in case of a small break loss-of-coolant accident when the high pressure injection system has failed and - a comparison of Russian and German operational procedures and safety documents used in the probabilistic analyses of the SAIS-Kola project. As a main result SAIS was found to be an appropriate tool to give assistance to the plant personnel on safety evaluation of the plant within the frame of reconstruction measures and on the establishment of a qualified reliability data collection system at Kola NPP. (orig./HP) [de

  18. Safety of mechanical devices. Safety of automation systems

    International Nuclear Information System (INIS)

    Pahl, G.; Schweizer, G.; Kapp, K.

    1985-01-01

    The paper deals with the classic procedures of safety engineering in the sectors mechanical engineering, electrical and energy engineering, construction and transport, medicine technology and process technology. Particular stress is laid on the safety of automation systems, control technology, protection of mechanical devices, reactor safety, mechanical constructions, transport systems, railway signalling devices, road traffic and protection at work in chemical plans. (DG) [de

  19. Patient safety is not elective: a debate at the NPSF Patient Safety Congress.

    Science.gov (United States)

    McTiernan, Patricia; Wachter, Robert M; Meyer, Gregg S; Gandhi, Tejal K

    2015-02-01

    The opening keynote session of the 16th Annual National Patient Safety Foundation Patient Safety Congress, held 14-16 May 2014, featured a debate addressing the merits and challenges of accountability with respect to key issues in patient safety. The specific resolution debated was: Certain safety practices should be inviolable, and transgressions should result in penalties, potentially including fines, suspensions, and firing. The themes discussed in the debate are issues that healthcare professionals and leaders commonly struggle with in their day-to-day work. How do we draw a line between systems problems and personal failings? When should clinicians and staff be penalised for failing to follow a known safety protocol? The majority of those who listened to the live debate agreed that it is time to begin holding health professionals accountable when they wilfully or repeatedly violate policies or protocols put in place by their institutions to protect the safety of patients. This article summarises the debate as well as the questions and discussion generated by each side. A video of the original debate can be found at http://bit.ly/Npsf_debate. Published by the BMJ Publishing Group Limited. For permission to use (where not already granted under a licence) please go to http://group.bmj.com/group/rights-licensing/permissions.

  20. Evaluating safety management system implementation

    International Nuclear Information System (INIS)

    Preuss, M.

    2009-01-01

    Canada is committed to not only maintaining, but also improving upon our record of having one of the safest aviation systems in the world. The development, implementation and maintenance of safety management systems is a significant step towards improving safety performance. Canada is considered a world leader in this area and we are fully engaged in implementation. By integrating risk management systems and business practices, the aviation industry stands to gain better safety performance with less regulatory intervention. These are important steps towards improving safety and enhancing the public's confidence in the safety of Canada's aviation system. (author)

  1. Motorcycle That See: Multifocal Stereo Vision Sensor for Advanced Safety Systems in Tilting Vehicles

    Directory of Open Access Journals (Sweden)

    Gustavo Gil

    2018-01-01

    Full Text Available Advanced driver assistance systems, ADAS, have shown the possibility to anticipate crash accidents and effectively assist road users in critical traffic situations. This is not the case for motorcyclists, in fact ADAS for motorcycles are still barely developed. Our aim was to study a camera-based sensor for the application of preventive safety in tilting vehicles. We identified two road conflict situations for which automotive remote sensors installed in a tilting vehicle are likely to fail in the identification of critical obstacles. Accordingly, we set two experiments conducted in real traffic conditions to test our stereo vision sensor. Our promising results support the application of this type of sensors for advanced motorcycle safety applications.

  2. Motorcycles that See: Multifocal Stereo Vision Sensor for Advanced Safety Systems in Tilting Vehicles

    Science.gov (United States)

    2018-01-01

    Advanced driver assistance systems, ADAS, have shown the possibility to anticipate crash accidents and effectively assist road users in critical traffic situations. This is not the case for motorcyclists, in fact ADAS for motorcycles are still barely developed. Our aim was to study a camera-based sensor for the application of preventive safety in tilting vehicles. We identified two road conflict situations for which automotive remote sensors installed in a tilting vehicle are likely to fail in the identification of critical obstacles. Accordingly, we set two experiments conducted in real traffic conditions to test our stereo vision sensor. Our promising results support the application of this type of sensors for advanced motorcycle safety applications. PMID:29351267

  3. Motorcycle That See: Multifocal Stereo Vision Sensor for Advanced Safety Systems in Tilting Vehicles.

    Science.gov (United States)

    Gil, Gustavo; Savino, Giovanni; Piantini, Simone; Pierini, Marco

    2018-01-19

    Advanced driver assistance systems, ADAS, have shown the possibility to anticipate crash accidents and effectively assist road users in critical traffic situations. This is not the case for motorcyclists, in fact ADAS for motorcycles are still barely developed. Our aim was to study a camera-based sensor for the application of preventive safety in tilting vehicles. We identified two road conflict situations for which automotive remote sensors installed in a tilting vehicle are likely to fail in the identification of critical obstacles. Accordingly, we set two experiments conducted in real traffic conditions to test our stereo vision sensor. Our promising results support the application of this type of sensors for advanced motorcycle safety applications.

  4. System Design and the Safety Basis

    International Nuclear Information System (INIS)

    Ellingson, Darrel

    2008-01-01

    The objective of this paper is to present the Bechtel Jacobs Company, LLC (BJC) Lessons Learned for system design as it relates to safety basis documentation. BJC has had to reconcile incomplete or outdated system description information with current facility safety basis for a number of situations in recent months. This paper has relevance in multiple topical areas including documented safety analysis, decontamination and decommissioning (D and D), safety basis (SB) implementation, safety and design integration, potential inadequacy of the safety analysis (PISA), technical safety requirements (TSR), and unreviewed safety questions. BJC learned that nuclear safety compliance relies on adequate and well documented system design information. A number of PIS As and TSR violations occurred due to inadequate or erroneous system design information. As a corrective action, BJC assessed the occurrences caused by systems design-safety basis interface problems. Safety systems reviewed included the Molten Salt Reactor Experiment (MSRE) Fluorination System, K-1065 fire alarm system, and the K-25 Radiation Criticality Accident Alarm System. The conclusion was that an inadequate knowledge of system design could result in continuous non-compliance issues relating to nuclear safety. This was especially true with older facilities that lacked current as-built drawings coupled with the loss of 'historical knowledge' as personnel retired or moved on in their careers. Walkdown of systems and the updating of drawings are imperative for nuclear safety compliance. System design integration with safety basis has relevance in the Department of Energy (DOE) complex. This paper presents the BJC Lessons Learned in this area. It will be of benefit to DOE contractors that manage and operate an aging population of nuclear facilities

  5. Safety related terms for advanced nuclear plants

    International Nuclear Information System (INIS)

    1995-12-01

    The terms considered in this document are in widespread current use without a universal consensus as to their meaning. Other safety related terms are already defined in national or international codes and standards as well as in IAEA's Nuclear Safety Standards Series. Most of the terms in those codes and standards have been defined and used for regulatory purposes, generally for application to present reactor designs. There is no intention to duplicate the description of such regulatory terms here, but only to clarify the terms used for advanced nuclear plants. The following terms are described in this paper: Inherent safety characteristics, passive component, active component, passive systems, active system, fail-safe, grace period, foolproof, fault-/error-tolerant, simplified safety system, transparent safety

  6. Safety related terms for advanced nuclear plants

    International Nuclear Information System (INIS)

    1991-09-01

    The terms considered in this document are in widespread current use without a universal consensus as to their meaning. Other safety related terms are already defined in national or international codes and standards as well as in IAEA's Nuclear Safety Standards Series. Most of the terms in those codes and standards have been defined and used for regulatory purposes, generally for application to present reactor designs. There is no intention to duplicate the description of such regulatory terms here, but only to clarify the terms used for advanced nuclear plants. The following terms are described in this paper: Inherent safety characteristics, passive component, active component, passive systems, active system, fail-safe, grace period, foolproof, fault-/error-tolerant, simplified safety system, transparent safety

  7. Safety Information System Guide

    International Nuclear Information System (INIS)

    Bullock, M.G.

    1977-03-01

    This Guide provides guidelines for the design and evaluation of a working safety information system. For the relatively few safety professionals who have already adopted computer-based programs, this Guide may aid them in the evaluation of their present system. To those who intend to develop an information system, it will, hopefully, inspire new thinking and encourage steps towards systems safety management. For the line manager who is working where the action is, this Guide may provide insight on the importance of accident facts as a tool for moving ideas up the communication ladder where they will be heard and acted upon; where what he has to say will influence beneficial changes among those who plan and control his operations. In the design of a safety information system, it is suggested that the safety manager make friends with a computer expert or someone on the management team who has some feeling for, and understanding of, the art of information storage and retrieval as a new and better means for communication

  8. Architecture Level Safety Analyses for Safety-Critical Systems

    Directory of Open Access Journals (Sweden)

    K. S. Kushal

    2017-01-01

    Full Text Available The dependency of complex embedded Safety-Critical Systems across Avionics and Aerospace domains on their underlying software and hardware components has gradually increased with progression in time. Such application domain systems are developed based on a complex integrated architecture, which is modular in nature. Engineering practices assured with system safety standards to manage the failure, faulty, and unsafe operational conditions are very much necessary. System safety analyses involve the analysis of complex software architecture of the system, a major aspect in leading to fatal consequences in the behaviour of Safety-Critical Systems, and provide high reliability and dependability factors during their development. In this paper, we propose an architecture fault modeling and the safety analyses approach that will aid in identifying and eliminating the design flaws. The formal foundations of SAE Architecture Analysis & Design Language (AADL augmented with the Error Model Annex (EMV are discussed. The fault propagation, failure behaviour, and the composite behaviour of the design flaws/failures are considered for architecture safety analysis. The illustration of the proposed approach is validated by implementing the Speed Control Unit of Power-Boat Autopilot (PBA system. The Error Model Annex (EMV is guided with the pattern of consideration and inclusion of probable failure scenarios and propagation of fault conditions in the Speed Control Unit of Power-Boat Autopilot (PBA. This helps in validating the system architecture with the detection of the error event in the model and its impact in the operational environment. This also provides an insight of the certification impact that these exceptional conditions pose at various criticality levels and design assurance levels and its implications in verifying and validating the designs.

  9. Safety significance of ATR [Advanced Test Reactor] passive safety response attributes

    International Nuclear Information System (INIS)

    Atkinson, S.A.

    1989-01-01

    The Advanced Test Reactor (ATR) at the Idaho National Engineering Laboratory was designed with some passive safety response attributes which contribute to the safety posture of the facility. The three passive safety attributes being evaluated in the paper are: (1) In-core and in-vessel natural convection cooling, (2) a passive heat sink capability of the ATR primary coolant system (PCS) for the transfer of decay power from the uninsulated piping to the confinement, and (3) gravity feed of emergency coolant makeup. The safety significance of the ATR passive safety response attributes is that the reactor can passively respond for most transients, given a reactor scram, to provide adequate decay power removal and a significant time for operator action should the normal active heat removal systems and their backup systems both fail. The ATR Interim Level 1 Probabilistic Risk Assessment (PRA) model ands results were used to evaluate the significance to ATR fuel damage frequency (or probability) of the above three passive response attributes. The results of the evaluation indicate that the first attribute is a major safety characteristic of the ATR. The second attribute has a noticeable but only minor safety significance. The third attribute has no significant influence on the ATR Level 1 PRA because of the diversity and redundancy of the ATR firewater injection system (emergency coolant system). 8 refs., 4 figs., 1 tab

  10. FOOD SAFETY CONTROL SYSTEM IN CHINA

    Institute of Scientific and Technical Information of China (English)

    Liu Wei-jun; Wei Yi-min; Han Jun; Luo Dan; Pan Jia-rong

    2007-01-01

    Most countries have expended much effort to develop food safety control systems to ensure safe food supplies within their borders. China, as one of the world's largest food producers and consumers,pays a lot of attention to food safety issues. In recent years, China has taken actions and implemented a series of plans in respect to food safety. Food safety control systems including regulatory, supervisory,and science and technology systems, have begun to be established in China. Using, as a base, an analysis of the current Chinese food safety control system as measured against international standards, this paper discusses the need for China to standardize its food safety control system. We then suggest some policies and measures to improve the Chinese food safety control system.

  11. NASA System Safety Handbook. Volume 1; System Safety Framework and Concepts for Implementation

    Science.gov (United States)

    Dezfuli, Homayoon; Benjamin, Allan; Everett, Christopher; Smith, Curtis; Stamatelatos, Michael; Youngblood, Robert

    2011-01-01

    System safety assessment is defined in NPR 8715.3C, NASA General Safety Program Requirements as a disciplined, systematic approach to the analysis of risks resulting from hazards that can affect humans, the environment, and mission assets. Achievement of the highest practicable degree of system safety is one of NASA's highest priorities. Traditionally, system safety assessment at NASA and elsewhere has focused on the application of a set of safety analysis tools to identify safety risks and formulate effective controls.1 Familiar tools used for this purpose include various forms of hazard analyses, failure modes and effects analyses, and probabilistic safety assessment (commonly also referred to as probabilistic risk assessment (PRA)). In the past, it has been assumed that to show that a system is safe, it is sufficient to provide assurance that the process for identifying the hazards has been as comprehensive as possible and that each identified hazard has one or more associated controls. The NASA Aerospace Safety Advisory Panel (ASAP) has made several statements in its annual reports supporting a more holistic approach. In 2006, it recommended that "... a comprehensive risk assessment, communication and acceptance process be implemented to ensure that overall launch risk is considered in an integrated and consistent manner." In 2009, it advocated for "... a process for using a risk-informed design approach to produce a design that is optimally and sufficiently safe." As a rationale for the latter advocacy, it stated that "... the ASAP applauds switching to a performance-based approach because it emphasizes early risk identification to guide designs, thus enabling creative design approaches that might be more efficient, safer, or both." For purposes of this preface, it is worth mentioning three areas where the handbook emphasizes a more holistic type of thinking. First, the handbook takes the position that it is important to not just focus on risk on an individual

  12. Failing Failed States

    DEFF Research Database (Denmark)

    Holm, Hans-Henrik

    2002-01-01

    coverage. A Danish survey of newsrooms shows that the national world-view and prevalent news criteria prevent consistent coverage. It is argued that politicians are the ones who determine national agendas: it is from political initiatives, rather than media coverage, that failing states and humanitarian......When states are failing, when basic state functions are no longer carried out, and when people have no security, humanitarian crises erupt. In confronting this problem, the stronger states have followed an ad hoc policy of intervention and aid. In some cases, humanitarian disasters have resulted...... from inaction. Often, the media are blamed. Politicians complain about the media when they interfere (the CNN effect), and when they do not. This article looks at how the media do cover failing states. Sierra Leone and Congo are used as examples. The analysis shows that there is little independent...

  13. 40 CFR 141.561 - What happens if my system's turbidity monitoring equipment fails?

    Science.gov (United States)

    2010-07-01

    ... 40 Protection of Environment 22 2010-07-01 2010-07-01 false What happens if my system's turbidity... Disinfection-Systems Serving Fewer Than 10,000 People Individual Filter Turbidity Requirements § 141.561 What happens if my system's turbidity monitoring equipment fails? If there is a failure in the continuous...

  14. Safety assessment for the ultimate heat sink (UHS) system with non-injection concept in nuclear power plants (NPPs)

    International Nuclear Information System (INIS)

    Kim, Yun Il; Woo, Tae Ho

    2017-01-01

    Following the Fukushima accident, it is proposed to find a better safety system, which has a pool-type cooling system without coolant injections. Since the conventional piping-based injection systems have failed in treating the three major severe accidents, the artificial pool could be constructed to cover the failed reactor core systems in which the pool-like structure is constructed. Regarding this study, there were some previous studies about the ultimate heat sink (UHS). In this study, the system dynamics (SD) modeling is performed in the case of Fukushima Unit 1 accident. The basic events are obtained by the Boolean values as 0 and 1. The quantifications are obtained by the SD algorithm incorporated with the Vensim software. In the simulations work, there is a plateau region between the 25th and 45th years in the interested period. The nonlinear algorithm is applied for the UHS analysis which was not installed for the commercial use yet. (author)

  15. Instrumentation and control systems important to safety in nuclear power plants. Safety guide

    International Nuclear Information System (INIS)

    2005-01-01

    This Safety Guide was prepared under the IAEA programme for establishing safety standards for nuclear power plants. It supplements Safety Standards Series No. NS-R-1: Safety of Nuclear Power Plants: Design (the Requirements for Design), which establishes the design requirements for ensuring the safety of nuclear power plants. This Safety Guide describes how the requirements should be met for instrumentation and control (I and C) systems important to safety. This publication is a revision and combination of two previous Safety Guides: Safety Series Nos 50-SG-D3 and 50-SG-D8, which are superseded by this new Safety Guide. The revision takes account of developments in I and C systems important to safety since the earlier Safety Guides were published in 1980 and 1984, respectively. The objective of this Safety Guide is to provide guidance on the design of I and C systems important to safety in nuclear power plants, including all I and C components, from the sensors allocated to the mechanical systems to the actuated equipment, operator interfaces and auxiliary equipment. This Safety Guide deals mainly with design requirements for those I and C systems that are important to safety. It expands on paragraphs of Ref in the area of I and C systems important to safety. This publication is intended for use primarily by designers of nuclear power plants and also by owners and/or operators and regulators of nuclear power plants. This Safety Guide provides general guidance on I and C systems important to safety which is broadly applicable to many nuclear power plants. More detailed requirements and limitations for safe operation specific to a particular plant type should be established as part of the design process. The present guidance is focused on the design principles for systems important to safety that warrant particular attention, and should be applied to both the design of new I and C systems and the modernization of existing systems. Guidance is provided on how design

  16. MAPLE research reactor safety uncertainty assessment methodology

    International Nuclear Information System (INIS)

    Sills, H.E.; Duffey, R.B.; Andres, T.H.

    1999-01-01

    The MAPLE (multipurpose Applied Physics Lattice Experiment) reactor is a low pressure, low temperature, open-tank-in pool type research reactor that operates at a power level of 5 to 35 MW. MAPLE is designed for ease of operation, maintenance, and to meet today's most demanding requirements for safety and licensing. The emphasis is on the use of passive safety systems and environmentally qualified components. Key safety features include two independent and diverse shutdown systems, two parallel and independent cooling loops, fail safe operation, and a building design that incorporates the concepts of primary containment supported by secondary confinement

  17. How could intelligent safety transport systems enhance safety ?

    NARCIS (Netherlands)

    Wiethoff, M. Heijer, T. & Bekiaris, E.

    2017-01-01

    In Europe, many deaths and injured each years are the cost of today's road traffic. Therefore, it is wise to look for possible solutions for enhancing traffic safety. Some Advanced Driver Assistance Systems (ADAS) are expected to increase safety, but they may also evoke new safety hazards. Only

  18. Safety Review related to Commercial Grade Digital Equipment in Safety System

    International Nuclear Information System (INIS)

    Yu, Yeongjin; Park, Hyunshin; Yu, Yeongjin; Lee, Jaeheung

    2013-01-01

    The upgrades or replacement of I and C systems on safety system typically involve digital equipment developed in accordance with non-nuclear standards. However, the use of commercial grade digital equipment could include the vulnerability for software common-mode failure, electromagnetic interference and unanticipated problems. Although guidelines and standards for dedication methods of commercial grade digital equipment are provided, there are some difficulties to apply the methods to commercial grade digital equipment for safety system. This paper focuses on regulatory guidelines and relevant documents for commercial grade digital equipment and presents safety review experiences related to commercial grade digital equipment in safety system. This paper focuses on KINS regulatory guides and relevant documents for dedication of commercial grade digital equipment and presents safety review experiences related to commercial grade digital equipment in safety system. Dedication including critical characteristics is required to use the commercial grade digital equipment on safety system in accordance with KEPIC ENB 6370 and EPRI TR-106439. The dedication process should be controlled in a configuration management process. Appropriate methods, criteria and evaluation result should be provided to verify acceptability of the commercial digital equipment used for safety function

  19. [Clinical governance and patient safety culture in clinical laboratories in the Spanish National Health System].

    Science.gov (United States)

    Giménez-Marín, Á; Rivas-Ruiz, F

    To conduct a situational analysis of patient safety culture in public laboratories in the Spanish National Health System and to determine the clinical governance variables that most strongly influence patient safety. A descriptive cross-sectional study was carried out, in which a Survey of Patient Safety in Clinical Laboratories was addressed to workers in 26 participating laboratories. In this survey, which consisted of 45 items grouped into 6 areas, scores were assigned on a scale from 0 to 100 (where 0 is the lowest perception of patient safety). Laboratory managers were asked specific questions about quality management systems and technology. The mean scores for the 26 participating hospitals were evaluated, and the following results observed: in 4of the 6areas, the mean score was higher than 70 points. In the third area (equipment and resources) and the fourth area (working conditions), the scores were lower than 60 points. Every hospital had a digital medical record system. This 100% level of provision was followed by that of an electronic request management system, which was implemented in 82.6% of the hospitals. The results obtained show that the culture of security is homogeneous and of high quality in health service laboratories, probably due to the steady improvement observed. However, in terms of clinical governance, there is still some way to go, as shown by the presence of weaknesses in crucial dimensions of safety culture, together with variable levels of implementation of fail-safe technologies and quality management systems. Copyright © 2017 SECA. Publicado por Elsevier España, S.L.U. All rights reserved.

  20. Safety parameter display system: an operator support system for enhancement of safety in Indian PHWRs

    International Nuclear Information System (INIS)

    Subramaniam, K.; Biswas, T.

    1994-01-01

    Ensuring operational safety in nuclear power plants is important as operator errors are observed to contribute significantly to the occurrence of accidents. Computerized operator support systems, which process and structure information, can help operators during both normal and transient conditions, and thereby enhance safety and aid effective response to emergency conditions. An important operator aid being developed and described in this paper, is the safety parameter display system (SPDS). The SPDS is an event-independent, symptom-based operator aid for safety monitoring. Knowledge-based systems can provide operators with an improved quality of information. An information processing model of a knowledge based operator support system (KBOSS) developed for emergency conditions using an expert system shell is also presented. The paper concludes with a discussion of the design issues involved in the use of a knowledge based systems for real time safety monitoring and fault diagnosis. (author). 8 refs., 4 figs., 1 tab

  1. Comprehensive Lifecycle for Assuring System Safety

    Science.gov (United States)

    Knight, John C.; Rowanhill, Jonathan C.

    2017-01-01

    CLASS is a novel approach to the enhancement of system safety in which the system safety case becomes the focus of safety engineering throughout the system lifecycle. CLASS also expands the role of the safety case across all phases of the system's lifetime, from concept formation to decommissioning. As CLASS has been developed, the concept has been generalized to a more comprehensive notion of assurance becoming the driving goal, where safety is an important special case. This report summarizes major aspects of CLASS and contains a bibliography of papers that provide additional details.

  2. Safety-related control air systems

    International Nuclear Information System (INIS)

    Anon.

    1977-01-01

    This Standard applies to those portions of the control air system that furnish air required to support, control, or operate systems or portions of systems that are safety related in nuclear power plants. This Standard relates only to the air supply system(s) for safety-related air operated devices and does not apply to the safety-related air operated device or to air operated actuators for such devices. The objectives of this Standard are to provide (1) minimum system design requirements for equipment, piping, instruments, controls, and wiring that constitute the air supply system; and (2) the system and component testing and maintenance requirements

  3. Systems Thinking and Leadership: How Nephrologists Can Transform Dialysis Safety to Prevent Infections.

    Science.gov (United States)

    Wong, Leslie P

    2018-04-06

    Infections are the second leading cause of death for patients with ESKD. Despite multiple efforts, nephrologists have been unable to prevent infections in dialysis facilities. The American Society of Nephrology and the Centers for Disease Control and Prevention have partnered to create Nephrologists Transforming Dialysis Safety to promote nephrologist leadership and engagement in efforts to "Target Zero" preventable dialysis infections. Because traditional approaches to infection control and prevention in dialysis facilities have had limited success, Nephrologists Transforming Dialysis Safety is reconceptualizing the problem in the context of the complexity of health care systems and organizational behavior. By identifying different parts of a problem and attempting to understand how these parts interact and produce a result, systems thinking has effectively tackled difficult problems in dynamic settings. The dialysis facility is composed of different physical and human elements that are interconnected and affect not only behavior but also, the existence of a culture of safety that promotes infection prevention. Because dialysis infections result from a complex system of interactions between caregivers, patients, dialysis organizations, and the environment, attempts to address infections by focusing on one element in isolation often fail. Creating a sense of urgency and commitment to eradicating dialysis infections requires leadership and motivational skills. These skills are not taught in the standard nephrology or medical director curriculum. Effective leadership by medical directors and engagement in infection prevention by nephrologists are required to create a culture of safety. It is imperative that nephrologists commit to leadership training and embrace their potential as change agents to prevent infections in dialysis facilities. This paper explores the systemic factors contributing to the ongoing dialysis infection crisis in the United States and the role

  4. Synthesis Report on the understanding of failed LMFBR fuel element performance

    International Nuclear Information System (INIS)

    Plitz, H.; Bagley, K.; Harbourne, B.

    1990-07-01

    In the coarse of LMFBR operation fuel element failures cannot entirely be avoided as experienced during the operation of PFR, PHENIX and KNK II, where 44 failed fuel elements have been registered between 1978 and 1989. In earlier irradiations, post irradiation examinations showed mixed oxide pin diameter increases up to pin pitch distance, urging to stress reactor safety questions on the potential of fuel pin failure propagation within pin bundles. The chemical interaction of sodium with mixed oxide fuel is regarded to be the key for the understanding of failed fuel behavior. Valuable results on the failed fuel pin behavior during operation were obtained from the SILOE sodium loop test. Based on the bulk of experience with the detection of fuel pin failures, with the continued operation and with the handling of failed pins respectively elements, one can state: 1. All fuel pin failures have been detected securely in time and have been located. 2. Small defects are developing slowly. 3. Even large defects at end-of-life pins resulted in limited fuel loss. 4. Clad failures behave benign in main aspects. 5. The chemical interaction of sodium with mixed oxide is an important factor in the behavior of failed fuel pins, especially at high burnup. 6. Despite different pin designs and different operation conditions, on the basis of 44 failed elements in PFR, PHENIX and KNK II no pin-to-pin propagation was observed and fuel release was rather low, often not detectable. 7. In no case hazard conditions affecting reactor safety have been experienced

  5. Study of system safety evaluation on LTO of national project. NISA safety research project on system safety of nuclear power plants

    International Nuclear Information System (INIS)

    Takizawa, Masayuki; Sekimura, Naoto; Miyano, Hiroshi; Aoyama, Katsunobu

    2012-01-01

    Japanese safety regulatory body, that is, Nuclear and Industrial Safety Agency (NISA) started a 5-year national safety research project as 'the first stage' from 2006 FY to 2010 FY whose objective is 'Improve the technical information basis in order to utilize knowledge as well as information related to ageing management and maintenance of NPPs. Fukushima disaster happened in March 2011, and the priority of research needs for ageing management dramatically changed in Japan. The second-stage national project started in October 2011 with the concept of 'system safety' of NNPs where not only ageing management on degradation phenomena of important components but also safety management on total plant systems are paid attention to. The second-stage project is so called 'Japanese Ageing Management Program for System Safety (JAMPSS)'. (author)

  6. Preliminary safety evaluation for CSR1000 with passive safety system

    International Nuclear Information System (INIS)

    Wu, Pan; Gou, Junli; Shan, Jianqiang; Zhang, Bo; Li, Xiang

    2014-01-01

    Highlights: • The basic information of a Chinese SCWR concept CSR1000 is introduced. • An innovative passive safety system is proposed for CSR1000. • 6 Transients and 3 accidents are analysed with system code SCTRAN. • The passive safety systems greatly mitigate the consequences of these incidents. • The inherent safety of CSR1000 is enhanced. - Abstract: This paper describes the preliminary safety analysis of the Chinese Supercritical water cooled Reactor (CSR1000), which is proposed by Nuclear Power Institute of China (NPIC). The two-pass core design applied to CSR1000 decreases the fuel cladding temperature and flattens the power distribution of the core at normal operation condition. Each fuel assembly is made up of four sub-assemblies with downward-flow water rods, which is favorable to the core cooling during abnormal conditions due to the large water inventory of the water rods. Additionally, a passive safety system is proposed for CSR1000 to increase the safety reliability at abnormal conditions. In this paper, accidents of “pump seizure”, “loss of coolant flow accidents (LOFA)”, “core depressurization”, as well as some typical transients are analysed with code SCTRAN, which is a one-dimensional safety analysis code for SCWRs. The results indicate that the maximum cladding surface temperatures (MCST), which is the most important safety criterion, of the both passes in the mentioned incidents are all below the safety criterion by a large margin. The sensitivity analyses of the delay time of RCPs trip in “loss of offsite power” and the delay time of RMT actuation in “loss of coolant flowrate” were also included in this paper. The analyses have shown that the core design of CSR1000 is feasible and the proposed passive safety system is capable of mitigating the consequences of the selected abnormalities

  7. Survey and evaluation of inherent safety characteristics and passive safety systems for use in probabilistic safety analyses

    International Nuclear Information System (INIS)

    Wetzel, N.; Scharfe, A.

    1998-01-01

    The present report examines the possibilities and limits of a probabilistic safety analysis to evaluate passive safety systems and inherent safety characteristics. The inherent safety characteristics are based on physical principles, that together with the safety system lead to no damage. A probabilistic evaluation of the inherent safety characteristic is not made. An inventory of passive safety systems of accomplished nuclear power plant types in the Federal Republic of Germany was drawn up. The evaluation of the passive safety system in the analysis of the accomplished nuclear power plant types was examined. The analysis showed that the passive manner of working was always assumed to be successful. A probabilistic evaluation was not performed. The unavailability of the passive safety system was determined by the failure of active components which are necessary in order to activate the passive safety system. To evaluate the passive safety features in new concepts of nuclear power plants the AP600 from Westinghouse, the SBWR from General Electric and the SWR 600 from Siemens, were selected. Under these three reactor concepts, the SWR 600 is specially attractive because the safety features need no energy sources and instrumentation in this concept. First approaches for the assessment of the reliability of passively operating systems are summarized. Generally it can be established that the core melt frequency for the passive concepts AP600 and SBWR is advantageous in comparison to the probabilistic objectives from the European Pressurized Water Reactor (EPR). Under the passive concepts is the SWR 600 particularly interesting. In this concept the passive systems need no energy sources and instrumentation, and has active operational systems and active safety equipment. Siemens argues that with this concept the frequency of a core melt will be two orders of magnitude lower than for the conventional reactors. (orig.) [de

  8. Does the concept of safety culture help or hinder systems thinking in safety?

    Science.gov (United States)

    Reiman, Teemu; Rollenhagen, Carl

    2014-07-01

    The concept of safety culture has become established in safety management applications in all major safety-critical domains. The idea that safety culture somehow represents a "systemic view" on safety is seldom explicitly spoken out, but nevertheless seem to linger behind many safety culture discourses. However, in this paper we argue that the "new" contribution to safety management from safety culture never really became integrated with classical engineering principles and concepts. This integration would have been necessary for the development of a more genuine systems-oriented view on safety; e.g. a conception of safety in which human, technological, organisational and cultural factors are understood as mutually interacting elements. Without of this integration, researchers and the users of the various tools and methods associated with safety culture have sometimes fostered a belief that "safety culture" in fact represents such a systemic view about safety. This belief is, however, not backed up by theoretical or empirical evidence. It is true that safety culture, at least in some sense, represents a holistic term-a totality of factors that include human, organisational and technological aspects. However, the departure for such safety culture models is still human and organisational factors rather than technology (or safety) itself. The aim of this paper is to critically review the various uses of the concept of safety culture as representing a systemic view on safety. The article will take a look at the concepts of culture and safety culture based on previous studies, and outlines in more detail the theoretical challenges in safety culture as a systems concept. The paper also presents recommendations on how to make safety culture more systemic. Copyright © 2013 Elsevier Ltd. All rights reserved.

  9. The aviation safety reporting system

    Science.gov (United States)

    Reynard, W. D.

    1984-01-01

    The aviation safety reporting system, an accident reporting system, is presented. The system identifies deficiencies and discrepancies and the data it provides are used for long term identification of problems. Data for planning and policy making are provided. The system offers training in safety education to pilots. Data and information are drawn from the available data bases.

  10. NASA Aviation Safety Reporting System (ASRS)

    Science.gov (United States)

    Connell, Linda J.

    2017-01-01

    The NASA Aviation Safety Reporting System (ASRS) collects, analyzes, and distributes de-identified safety information provided through confidentially submitted reports from frontline aviation personnel. Since its inception in 1976, the ASRS has collected over 1.4 million reports and has never breached the identity of the people sharing their information about events or safety issues. From this volume of data, the ASRS has released over 6,000 aviation safety alerts concerning potential hazards and safety concerns. The ASRS processes these reports, evaluates the information, and provides selected de-identified report information through the online ASRS Database at http:asrs.arc.nasa.gov. The NASA ASRS is also a founding member of the International Confidential Aviation Safety Systems (ICASS) group which is a collection of other national aviation reporting systems throughout the world. The ASRS model has also been replicated for application to improving safety in railroad, medical, fire fighting, and other domains. This presentation will discuss confidential, voluntary, and non-punitive reporting systems and their advantages in providing information for safety improvements.

  11. Software for computer based systems important to safety in nuclear power plants. Safety guide

    International Nuclear Information System (INIS)

    2004-01-01

    Computer based systems are of increasing importance to safety in nuclear power plants as their use in both new and older plants is rapidly increasing. They are used both in safety related applications, such as some functions of the process control and monitoring systems, as well as in safety critical applications, such as reactor protection or actuation of safety features. The dependability of computer based systems important to safety is therefore of prime interest and should be ensured. With current technology, it is possible in principle to develop computer based instrumentation and control systems for systems important to safety that have the potential for improving the level of safety and reliability with sufficient dependability. However, their dependability can be predicted and demonstrated only if a systematic, fully documented and reviewable engineering process is followed. Although a number of national and international standards dealing with quality assurance for computer based systems important to safety have been or are being prepared, internationally agreed criteria for demonstrating the safety of such systems are not generally available. It is recognized that there may be other ways of providing the necessary safety demonstration than those recommended here. The basic requirements for the design of safety systems for nuclear power plants are provided in the Requirements for Design issued in the IAEA Safety Standards Series.The IAEA has issued a Technical Report to assist Member States in ensuring that computer based systems important to safety in nuclear power plants are safe and properly licensed. The report provides information on current software engineering practices and, together with relevant standards, forms a technical basis for this Safety Guide. The objective of this Safety Guide is to provide guidance on the collection of evidence and preparation of documentation to be used in the safety demonstration for the software for computer based

  12. Software for computer based systems important to safety in nuclear power plants. Safety guide

    International Nuclear Information System (INIS)

    2005-01-01

    Computer based systems are of increasing importance to safety in nuclear power plants as their use in both new and older plants is rapidly increasing. They are used both in safety related applications, such as some functions of the process control and monitoring systems, as well as in safety critical applications, such as reactor protection or actuation of safety features. The dependability of computer based systems important to safety is therefore of prime interest and should be ensured. With current technology, it is possible in principle to develop computer based instrumentation and control systems for systems important to safety that have the potential for improving the level of safety and reliability with sufficient dependability. However, their dependability can be predicted and demonstrated only if a systematic, fully documented and reviewable engineering process is followed. Although a number of national and international standards dealing with quality assurance for computer based systems important to safety have been or are being prepared, internationally agreed criteria for demonstrating the safety of such systems are not generally available. It is recognized that there may be other ways of providing the necessary safety demonstration than those recommended here. The basic requirements for the design of safety systems for nuclear power plants are provided in the Requirements for Design issued in the IAEA Safety Standards Series.The IAEA has issued a Technical Report to assist Member States in ensuring that computer based systems important to safety in nuclear power plants are safe and properly licensed. The report provides information on current software engineering practices and, together with relevant standards, forms a technical basis for this Safety Guide. The objective of this Safety Guide is to provide guidance on the collection of evidence and preparation of documentation to be used in the safety demonstration for the software for computer based

  13. Software for computer based systems important to safety in nuclear power plants. Safety guide

    International Nuclear Information System (INIS)

    2000-01-01

    Computer based systems are of increasing importance to safety in nuclear power plants as their use in both new and older plants is rapidly increasing. They are used both in safety related applications, such as some functions of the process control and monitoring systems, as well as in safety critical applications, such as reactor protection or actuation of safety features. The dependability of computer based systems important to safety is therefore of prime interest and should be ensured. With current technology, it is possible in principle to develop computer based instrumentation and control systems for systems important to safety that have the potential for improving the level of safety and reliability with sufficient dependability. However, their dependability can be predicted and demonstrated only if a systematic, fully documented and reviewable engineering process is followed. Although a number of national and international standards dealing with quality assurance for computer based systems important to safety have been or are being prepared, internationally agreed criteria for demonstrating the safety of such systems are not generally available. It is recognized that there may be other ways of providing the necessary safety demonstration than those recommended here. The basic requirements for the design of safety systems for nuclear power plants are provided in the Requirements for Design issued in the IAEA Safety Standards Series.The IAEA has issued a Technical Report to assist Member States in ensuring that computer based systems important to safety in nuclear power plants are safe and properly licensed. The report provides information on current software engineering practices and, together with relevant standards, forms a technical basis for this Safety Guide. The objective of this Safety Guide is to provide guidance on the collection of evidence and preparation of documentation to be used in the safety demonstration for the software for computer based

  14. Jefferson Lab IEC 61508/61511 Safety PLC Based Safety System

    International Nuclear Information System (INIS)

    Mahoney, Kelly; Robertson, Henry

    2009-01-01

    This paper describes the design of the new 12 GeV Upgrade Personnel Safety System (PSS) at the Thomas Jefferson National Accelerator Facility (TJNAF). The new PSS design is based on the implementation of systems designed to meet international standards IEC61508 and IEC 61511 for programmable safety systems. In order to meet the IEC standards, TJNAF engineers evaluated several SIL 3 Safety PLCs before deciding on an optimal architecture. In addition to hardware considerations, software quality standards and practices must also be considered. Finally, we will discuss R and D that may lead to both high safety reliability and high machine availability that may be applicable to future accelerators such as the ILC.

  15. Intermediate probabilistic safety assessment approach for safety critical digital systems

    International Nuclear Information System (INIS)

    Taeyong, Sung; Hyun Gook, Kang

    2001-01-01

    Even though the conventional probabilistic safety assessment methods are immature for applying to microprocessor-based digital systems, practical needs force to apply it. In the Korea, UCN 5 and 6 units are being constructed and Korean Next Generation Reactor is being designed using the digital instrumentation and control equipment for the safety related functions. Korean regulatory body requires probabilistic safety assessment. This paper analyzes the difficulties on the assessment of digital systems and suggests an intermediate framework for evaluating their safety using fault tree models. The framework deals with several important characteristics of digital systems including software modules and fault-tolerant features. We expect that the analysis result will provide valuable design feedback. (authors)

  16. Technical self reliance of digital safety systems

    Energy Technology Data Exchange (ETDEWEB)

    Kwon, Kee Choon; Lee, Dong Young [Korea Atomic Energy Research Institute, Daejeon (Korea, Republic of); Kim, Kook Hun [Doosan Heavy Industries and Construction, Changwon (Korea, Republic of); Choi, Seung Gap [POSCON, Pohang (Korea, Republic of)

    2009-04-15

    This paper summarizes the development results of the Korea Nuclear Instrumentation and Control System (KNICS) project sponsored by the Korean government. In this project, Man Machine Interface System (MMIS) architecture, two digital platforms, and several control systems are developed. One platform is a programmable Logic Controller (PLC) for a safety system and another platform is a Distributed Control System (DCS) for a non safety system. With the POSAFE Q PLC, a Reactor Protection System (RPS) and an Engineered Safety Feature Component Control System (ESF CCS) are developed. A Power Control System (PCS) is developed based on the DCS. The safety grade platform and the digital safety systems obtained approval for the Topical Report from the Korean regulatory body in February of 2009. Also a Korean utility and a vendor company determined KNICS results to apply them to the planned Nuclear Power Plant (NPP) in March 2009. This paper introduces the technical self reliance experiences of the safety grade platform and the digital safety systems developed in the KNICS R and D project.

  17. Integrating system safety into the basic systems engineering process

    Science.gov (United States)

    Griswold, J. W.

    1971-01-01

    The basic elements of a systems engineering process are given along with a detailed description of what the safety system requires from the systems engineering process. Also discussed is the safety that the system provides to other subfunctions of systems engineering.

  18. Safety considerations and countermeasures against fire and explosion at an HTGR-hydrogen production system. Proposal of safety design concept

    International Nuclear Information System (INIS)

    Nishihara, T.; Hada, K.; Shibata, T.; Shiozawa, S.

    1996-01-01

    Establishment of safety design concept and countermeasures against fire and explosion accidents is among key safety-related issues in an HTGR-hydrogen production system. We propose the different safety design concepts depending upon the origin of fire and explosion which may happen in the HTGR-hydrogen production plant. Against fire and explosion originated outside the reactor building (R/B), namely in the area of hydrogen production plant, the safety design concept is primarily to take a safe distance for preventing the damage on safety-related items or a proof wall if necessary. Because the hydrogen production plant is designed in the same safety level as a conventional chemical plant. The safe distance is proposed to limit an incident overpressure to 10 kPa so as not to suffer any damage on the items and to limit a wall-averaged temperature of concrete structures of the R/B to 175degC according to the current regulation. On the other hand, against a potential possibility of explosion originated inside the R/B, the safety design concept is to minimize the possibility of explosion low enough to assume no occurrence inside the R/B. That is, the measure is to exclude a simultaneous failure of a secondary helium piping and an endothermic chemical reactor. Furthermore, in severe accident condition in which the explosion may be postulated a priori, an incidental overpressure of explosion inside the reactor containment vessel (C/V) should be limited so as not to fail the C/V through restricting the amount of combustible gas ingress into the C/V by means of a combination of C/V isolation valve installed in the helium piping and emergency shut off valve in the process feed gas line. (author)

  19. Considerations on nuclear reactor passive safety systems

    International Nuclear Information System (INIS)

    2016-01-01

    After having indicated some passive safety systems present in electronuclear reactors (control bars, safety injection system accumulators, reactor cooling after stoppage, hydrogen recombination systems), this report recalls the main characteristics of passive safety systems, and discusses the main issues associated with the assessment of new passive systems (notably to face a sustained loss of electric supply systems or of cold water source) and research axis to be developed in this respect. More precisely, the report comments the classification of safety passive systems as it is proposed by the IAEA, outlines and comments specific aspects of these systems regarding their operation and performance. The next part discusses the safety approach, the control of performance of safety passive systems, issues related to their reliability, and the expected contribution of R and D (for example: understanding of physical phenomena which have an influence of these systems, capacities of simulation of these phenomena, needs of experimentations to validate simulation codes)

  20. Surface Movement Incidents Reported to the NASA Aviation Safety Reporting System

    Science.gov (United States)

    Connell, Linda J.; Hubener, Simone

    1997-01-01

    Increasing numbers of aircraft are operating on the surface of airports throughout the world. Airport operations are forecast to grow by more that 50%, by the year 2005. Airport surface movement traffic would therefore be expected to become increasingly congested. Safety of these surface operations will become a focus as airport capacity planning efforts proceed toward the future. Several past events highlight the prevailing risks experienced while moving aircraft during ground operations on runways, taxiways, and other areas at terminal, gates, and ramps. The 1994 St. Louis accident between a taxiing Cessna crossing an active runway and colliding with a landing MD-80 emphasizes the importance of a fail-safe system for airport operations. The following study explores reports of incidents occurring on an airport surface that did not escalate to an accident event. The Aviation Safety Reporting System has collected data on surface movement incidents since 1976. This study sampled the reporting data from June, 1993 through June, 1994. The coding of the data was accomplished in several categories. The categories include location of airport, phase of ground operation, weather /lighting conditions, ground conflicts, flight crew characteristics, human factor considerations, and airport environment. These comparisons and distributions of variables contributing to surface movement incidents can be invaluable to future airport planning, accident prevention efforts, and system-wide improvements.

  1. System safety engineering analysis handbook

    Science.gov (United States)

    Ijams, T. E.

    1972-01-01

    The basic requirements and guidelines for the preparation of System Safety Engineering Analysis are presented. The philosophy of System Safety and the various analytic methods available to the engineering profession are discussed. A text-book description of each of the methods is included.

  2. A fail-safe microprocessor-based protection system utilising low-level multiplexed sensor signals

    International Nuclear Information System (INIS)

    Orme, S.; Evans, N.J.; Wey, B.O.

    1985-01-01

    The paper describes a fail-safe reactor protection system, called the individual sub-assembly temperature monitoring system (ISAT). It is being developed for the commercial demonstration fast reactor. The system incorporates recent advances in solid-state electronics and in particular microprocessors to implement time-shared data acquisition techniques to obtain and process data from around 1400 fast response thermocouples whilst meeting the required levels for reliability and availability. (author)

  3. Safety performance monitoring of autonomous marine systems

    International Nuclear Information System (INIS)

    Thieme, Christoph A.; Utne, Ingrid B.

    2017-01-01

    The marine environment is vast, harsh, and challenging. Unanticipated faults and events might lead to loss of vessels, transported goods, collected scientific data, and business reputation. Hence, systems have to be in place that monitor the safety performance of operation and indicate if it drifts into an intolerable safety level. This article proposes a process for developing safety indicators for the operation of autonomous marine systems (AMS). The condition of safety barriers and resilience engineering form the basis for the development of safety indicators, synthesizing and further adjusting the dual assurance and the resilience based early warning indicator (REWI) approaches. The article locates the process for developing safety indicators in the system life cycle emphasizing a timely implementation of the safety indicators. The resulting safety indicators reflect safety in AMS operation and can assist in planning of operations, in daily operational decision-making, and identification of improvements. Operation of an autonomous underwater vehicle (AUV) exemplifies the process for developing safety indicators and their implementation. The case study shows that the proposed process leads to a comprehensive set of safety indicators. It is expected that application of the resulting safety indicators consequently will contribute to safer operation of current and future AMS. - Highlights: • Process for developing safety indicators for autonomous marine systems. • Safety indicators based on safety barriers and resilience thinking. • Location of the development process in the system lifecycle. • Case study on AUV demonstrating applicability of the process.

  4. 78 FR 29392 - Embedded Digital Devices in Safety-Related Systems, Systems Important to Safety, and Items Relied...

    Science.gov (United States)

    2013-05-20

    ... NUCLEAR REGULATORY COMMISSION [NRC-2013-0098] Embedded Digital Devices in Safety-Related Systems, Systems Important to Safety, and Items Relied on for Safety AGENCY: Nuclear Regulatory Commission. ACTION... (NRC) is issuing for public comment Draft Regulatory Issue Summary (RIS) 2013-XX, ``Embedded Digital...

  5. The Evolution of System Safety at NASA

    Science.gov (United States)

    Dezfuli, Homayoon; Everett, Chris; Groen, Frank

    2014-01-01

    The NASA system safety framework is in the process of change, motivated by the desire to promote an objectives-driven approach to system safety that explicitly focuses system safety efforts on system-level safety performance, and serves to unify, in a purposeful manner, safety-related activities that otherwise might be done in a way that results in gaps, redundancies, or unnecessary work. An objectives-driven approach to system safety affords more flexibility to determine, on a system-specific basis, the means by which adequate safety is achieved and verified. Such flexibility and efficiency is becoming increasingly important in the face of evolving engineering modalities and acquisition models, where, for example, NASA will increasingly rely on commercial providers for transportation services to low-earth orbit. A key element of this objectives-driven approach is the use of the risk-informed safety case (RISC): a structured argument, supported by a body of evidence, that provides a compelling, comprehensible and valid case that a system is or will be adequately safe for a given application in a given environment. The RISC addresses each of the objectives defined for the system, providing a rational basis for making informed risk acceptance decisions at relevant decision points in the system life cycle.

  6. 77 FR 70409 - System Safety Program

    Science.gov (United States)

    2012-11-26

    ...-0060, Notice No. 2] 2130-AC31 System Safety Program AGENCY: Federal Railroad Administration (FRA... rulemaking (NPRM) published on September 7, 2012, FRA proposed regulations to require commuter and intercity passenger railroads to develop and implement a system safety program (SSP) to improve the safety of their...

  7. Modelling safety of multistate systems with ageing components

    Energy Technology Data Exchange (ETDEWEB)

    Kołowrocki, Krzysztof; Soszyńska-Budny, Joanna [Gdynia Maritime University, Department of Mathematics ul. Morska 81-87, Gdynia 81-225 Poland (Poland)

    2016-06-08

    An innovative approach to safety analysis of multistate ageing systems is presented. Basic notions of the ageing multistate systems safety analysis are introduced. The system components and the system multistate safety functions are defined. The mean values and variances of the multistate systems lifetimes in the safety state subsets and the mean values of their lifetimes in the particular safety states are defined. The multi-state system risk function and the moment of exceeding by the system the critical safety state are introduced. Applications of the proposed multistate system safety models to the evaluation and prediction of the safty characteristics of the consecutive “m out of n: F” is presented as well.

  8. Modelling safety of multistate systems with ageing components

    International Nuclear Information System (INIS)

    Kołowrocki, Krzysztof; Soszyńska-Budny, Joanna

    2016-01-01

    An innovative approach to safety analysis of multistate ageing systems is presented. Basic notions of the ageing multistate systems safety analysis are introduced. The system components and the system multistate safety functions are defined. The mean values and variances of the multistate systems lifetimes in the safety state subsets and the mean values of their lifetimes in the particular safety states are defined. The multi-state system risk function and the moment of exceeding by the system the critical safety state are introduced. Applications of the proposed multistate system safety models to the evaluation and prediction of the safty characteristics of the consecutive “m out of n: F” is presented as well.

  9. The effect of organisational culture on patient safety.

    Science.gov (United States)

    Kaufman, Gerri; McCaughan, Dorothy

    This article explores the links between organisational culture and patient safety. The key elements associated with a safety culture, most notably effective leadership, good teamwork, a culture of learning and fairness, and fostering patient-centred care, are discussed. The broader aspects of a systems approach to promoting quality and safety, with specific reference to clinical governance, human factors, and ergonomics principles and methods, are also briefly explored, particularly in light of the report of the public inquiry into care failings at Mid Staffordshire NHS Foundation Trust.

  10. System safety education focused on industrial engineering

    Science.gov (United States)

    Johnston, W. L.; Morris, R. S.

    1971-01-01

    An educational program, designed to train students with the specific skills needed to become safety specialists, is described. The discussion concentrates on application, selection, and utilization of various system safety analytical approaches. Emphasis is also placed on the management of a system safety program, its relationship with other disciplines, and new developments and applications of system safety techniques.

  11. Radiation safety systems at the NSLS

    International Nuclear Information System (INIS)

    Dickinson, T.

    1987-04-01

    This report describes design principles that were used to establish the radiation safety systems at the National Synchrotron Light Source. The author described existing safety systems and the history of partial system failures. 1 fig

  12. Role of systems safety in maintaining affordable safety in the 1980's

    International Nuclear Information System (INIS)

    Hollister, H.; Trauth, C.A. Jr.

    1979-01-01

    Historically, the Department of Energy and its predecessors have used and supported the development of systems safety programs, practices, and principles, finding them by and large adequate, effective, and managerially efficient. Today, attempts are bing made to resolve increasingly complex environmental, safety, and health problems by turning to increasingly complex and detailed regulation as the primary governmental answer. It is increasingly doubtful that such an approach will provide management of these issues and problems that is either effective or efficient. Challenge is issued to those in systems safety to develop and apply systems safety principles and practices more broadly to total operational systems and not just to hardware and to environmental and health protection and not just to safety, so that the total universe of environmental, safety, and health can be managed effectively and efficiently with encouragement of innovation and creativity, using a relatively brief and concise, but adequate, regulatory base

  13. Systems Safety and Engineering Division

    Data.gov (United States)

    Federal Laboratory Consortium — Volpe's Systems Safety and Engineering Division conducts engineering, research, and analysis to improve transportation safety, capacity, and resiliency. We provide...

  14. Design for safety: theoretical framework of the safety aspect of BIM system to determine the safety index

    Directory of Open Access Journals (Sweden)

    Ai Lin Evelyn Teo

    2016-12-01

    Full Text Available Despite the safety improvement drive that has been implemented in the construction industry in Singapore for many years, the industry continues to report the highest number of workplace fatalities, compared to other industries. The purpose of this paper is to discuss the theoretical framework of the safety aspect of a proposed BIM System to determine a Safety Index. An online questionnaire survey was conducted to ascertain the current workplace safety and health situation in the construction industry and explore how BIM can be used to improve safety performance in the industry. A safety hazard library was developed based on the main contributors to fatal accidents in the construction industry, determined from the formal records and existing literature, and a series of discussions with representatives from the Workplace Safety and Health Institute (WSH Institute in Singapore. The results from the survey suggested that the majority of the firms have implemented the necessary policies, programmes and procedures on Workplace Safety and Health (WSH practices. However, BIM is still not widely applied or explored beyond the mandatory requirement that building plans should be submitted to the authorities for approval in BIM format. This paper presents a discussion of the safety aspect of the Intelligent Productivity and Safety System (IPASS developed in the study. IPASS is an intelligent system incorporating the buildable design concept, theory on the detection, prevention and control of hazards, and the Construction Safety Audit Scoring System (ConSASS. The system is based on the premise that safety should be considered at the design stage, and BIM can be an effective tool to facilitate the efforts to enhance safety performance. IPASS allows users to analyse and monitor key aspects of the safety performance of the project before the project starts and as the project progresses.

  15. Improved safety of the system 80+TM standard plants design through increased diversity and redundancy of safety systems

    International Nuclear Information System (INIS)

    Matzie, Regis A.; Carpentino, Frederick L.; Robertson, James E.

    1996-01-01

    Safely systems in the System 80+ TM Standard Plant are designed with more redundancy, diversity and simplicity than earlier nuclear power plant designs. These gains were accomplished by an evolutionary process that preserved the desirable and proven features in currently operating nuclear plants, while improving reliability and defense-in-depth. The System 80+ safety systems are the primary contributors to a core damage frequency that is more than 100 times lower than 1980's vintage U. S. designs, including the predecessor System 80 R standard nuclear steam supply system (NSSS) design. The System 80+ design includes significant improvements to the safety injection system, emergency feedwater system, shutdown cooling system, containment spray system, reactor coolant gas vent system, and to their vital support systems. These improvements enhance performance for traditional design basis events and significantly reduce the probability of a severe accident. The System 80+ design also incorporates safety systems to mitigate a severe accident. The added systems include the rapid depressurization system, the in-containment refueling water storage tank, the cavity flooding system. These systems fully address the U. S. Nuclear Regulatory Commission's (US NRC) severe accident policy. The System 80+ safety systems are integrated with the System 80+ Nuclear Island (NI) design. The NI general arrangement provides quadrant separation of the safety systems for protection from fire and flooding, and large equipment pull spaces and lay down areas for maintenance. This paper will describe the System 80+ safety systems advanced design features, the improved accident prevention and mitigation capabilities, and startup, operating and maintenance benefits

  16. Product Engineering Class in the Software Safety Risk Taxonomy for Building Safety-Critical Systems

    Science.gov (United States)

    Hill, Janice; Victor, Daniel

    2008-01-01

    When software safety requirements are imposed on legacy safety-critical systems, retrospective safety cases need to be formulated as part of recertifying the systems for further use and risks must be documented and managed to give confidence for reusing the systems. The SEJ Software Development Risk Taxonomy [4] focuses on general software development issues. It does not, however, cover all the safety risks. The Software Safety Risk Taxonomy [8] was developed which provides a construct for eliciting and categorizing software safety risks in a straightforward manner. In this paper, we present extended work on the taxonomy for safety that incorporates the additional issues inherent in the development and maintenance of safety-critical systems with software. An instrument called a Software Safety Risk Taxonomy Based Questionnaire (TBQ) is generated containing questions addressing each safety attribute in the Software Safety Risk Taxonomy. Software safety risks are surfaced using the new TBQ and then analyzed. In this paper we give the definitions for the specialized Product Engineering Class within the Software Safety Risk Taxonomy. At the end of the paper, we present the tool known as the 'Legacy Systems Risk Database Tool' that is used to collect and analyze the data required to show traceability to a particular safety standard

  17. System containing a safety disk

    International Nuclear Information System (INIS)

    Schupp, W.

    1975-01-01

    The safety element is not overdimensioned at pressures between 2 and 150 atmospheric excess pressure. Therefore the flat bursting disc is mounted within a supporting and stopping holding and the rated breaking point is covered by a supporting body. Its outer diameter sufficiently overlaps the recesses on both sides of the rated breaking point. It absorbs the total load given by the operating pressure. Only a release mechanism with slide wedge, eccentric disc, magnet, and rocker arm releases the supporting body, e.g. if the blow-down pressure is reached, so that the operating pressure may work on the bursting disc. An insulated copper wire layed in the breaking region within the bursting disc in case of shearing off signalizes the instant of failing of the breaking point because of current interruption. (DG) [de

  18. Software system safety

    Science.gov (United States)

    Uber, James G.

    1988-01-01

    Software itself is not hazardous, but since software and hardware share common interfaces there is an opportunity for software to create hazards. Further, these software systems are complex, and proven methods for the design, analysis, and measurement of software safety are not yet available. Some past software failures, future NASA software trends, software engineering methods, and tools and techniques for various software safety analyses are reviewed. Recommendations to NASA are made based on this review.

  19. Probabilistic safety criteria at the safety function/system level

    International Nuclear Information System (INIS)

    1989-09-01

    A Technical Committee Meeting was held in Vienna, Austria, from 26-30 January 1987. The objectives of the meeting were: to review the national developments of PSC at the level of safety functions/systems including future trends; to analyse basic principles, assumptions, and objectives; to compare numerical values and the rationale for choosing them; to compile the experience with use of such PSC; to analyse the role of uncertainties in particular regarding procedures for showing compliance. The general objective of establishing PSC at the level of safety functions/systems is to provide a pragmatic tool to evaluate plant safety which is placing emphasis on the prevention principle. Such criteria could thus lead to a better understanding of the importance to safety of the various functions which have to be performed to ensure the safety of the plant, and the engineering means of performing these functions. They would reflect the state-of-the-art in modern PSAs and could contribute to a balance in system design. This report, prepared by the participants of the meeting, reviews the current status and future trends in the field and should assist Member States in developing their national approaches. The draft of this document was also submitted to INSAG to be considered in its work to prepare a document on safety principles for nuclear power plants. Five papers presented at the meeting are also included in this publication. A separate abstract was prepared for each of these papers. Refs, figs and tabs

  20. Reactor Safety Assessment System

    International Nuclear Information System (INIS)

    Sebo, D.E.; Bray, M.A.; King, M.A.

    1987-01-01

    The Reactor Safety Assessment System (RSAS) is an expert system under development for the United States Nuclear Regulatory Commission (USNRC). RSAS is designed for use at the USNRC Operations Center in the event of a serious incident at a licensed nuclear power plant. RSAS is a situation assessment expert system which uses plant parametric data to generate conclusions for use by the NRC Reactor Safety Team. RSAS uses multiple rule bases and plant specific setpoint files to be applicable to all licensed nuclear power plants in the United States. RSAS currently covers several generic reactor categories and multiple plants within each category

  1. Reactor safety assessment system

    International Nuclear Information System (INIS)

    Sebo, D.E.; Bray, M.A.; King, M.A.

    1987-01-01

    The Reactor Safety Assessment System (RSAS) is an expert system under development for the United States Nuclear Regulatory Commission (USNRC). RSA is designed for use at the USNRC Operations Center in the event of a serious incident at a licensed nuclear power plant. RSAS is a situation assessment expert system which uses plant parametric data to generate conclusions for use by the NRC Reactor Safety Team. RSAS uses multiple rule bases and plant specific setpoint files to be applicable to all licensed nuclear power plants in the United States. RSAS currently covers several generic reactor categories and multiple plants within each category

  2. Safety systems and safety analysis of the Qinshan phase III CANDU nuclear power plant

    International Nuclear Information System (INIS)

    Cai Jianping; Shen Sen; Barkman, N.

    1999-01-01

    The author introduces the Canadian nuclear reactor safety philosophy and the Qinshan Phase III CANDU NPP safety systems and safety analysis, which are designed and performed according to this philosophy. The concept of 'defence-in-depth' is a key element of the Canadian nuclear reactor safety philosophy. The design concepts of redundancy, diversity, separation, equipment qualification, quality assurance, and use of appropriate design codes and standards are adopted in the design. Four special safety systems as well as a set of reliable safety support systems are incorporated in the design of Qinshan phase III CANDU for accident mitigation. The assessment results for safety systems performance show that the fundamental safety criteria for public dose, and integrity of fuel, channels and the reactor building, are satisfied

  3. Food safety performance indicators to benchmark food safety output of food safety management systems.

    Science.gov (United States)

    Jacxsens, L; Uyttendaele, M; Devlieghere, F; Rovira, J; Gomez, S Oses; Luning, P A

    2010-07-31

    There is a need to measure the food safety performance in the agri-food chain without performing actual microbiological analysis. A food safety performance diagnosis, based on seven indicators and corresponding assessment grids have been developed and validated in nine European food businesses. Validation was conducted on the basis of an extensive microbiological assessment scheme (MAS). The assumption behind the food safety performance diagnosis is that food businesses which evaluate the performance of their food safety management system in a more structured way and according to very strict and specific criteria will have a better insight in their actual microbiological food safety performance, because food safety problems will be more systematically detected. The diagnosis can be a useful tool to have a first indication about the microbiological performance of a food safety management system present in a food business. Moreover, the diagnosis can be used in quantitative studies to get insight in the effect of interventions on sector or governmental level. Copyright 2010 Elsevier B.V. All rights reserved.

  4. Safety and interlock system for Tristan

    International Nuclear Information System (INIS)

    Takeda, S.; Kudo, K.; Katoh, T.; Akiyama, A.

    1987-01-01

    This report describes alarm and interlock system of TRISTAN, concentrating on personnel safety. The basis of TRISTAN machine-control system (TMS) is an N-to-N computer network and KEK NODAL which offers high software productivity. TMC achieves high flexibility of operation both for normal operation and for the fast commissioning. However, to assure the safety of personnel and the TRISTAN machine operation, the safety system has to continue functioning during TMC failure as well. A distributed safety and interlock system (DSIS) is used for diversification of risks in TRISTAN system. DSIS is functionally subdivided along local system lines and has a hierarchical structure of 12 programmable sequence controllers (PSCs). Optical fiber links connect the PSCs at subsystem level and a PSC at the supervisory level of TRISTAN central control room (TCCR). The subsystem PSCs provide the interlock functions between their local devices. The local PSCs interact with the central system through a limited number of summarized signals. The central PSC provides the interlock functions between the subsystems and interacts with an operator's panel. Personnel safety is based on a system of electrical interlock keys, emergency push-buttons around the tunnel, at the entrance gates or in the control room

  5. Safety-critical Java for embedded systems

    DEFF Research Database (Denmark)

    Schoeberl, Martin; Dalsgaard, Andreas Engelbredt; Hansen, René Rydhof

    2016-01-01

    This paper presents the motivation for and outcomes of an engineering research project on certifiable Javafor embedded systems. The project supports the upcoming standard for safety-critical Java, which defines asubset of Java and libraries aiming for development of high criticality systems....... The outcome of this projectinclude prototype safety-critical Java implementations, a time-predictable Java processor, analysis tools formemory safety, and example applications to explore the usability of safety-critical Java for this applicationarea. The text summarizes developments and key contributions...

  6. Vehicle Battery Safety Roadmap Guidance

    Energy Technology Data Exchange (ETDEWEB)

    Doughty, D. H.

    2012-10-01

    The safety of electrified vehicles with high capacity energy storage devices creates challenges that must be met to assure commercial acceptance of EVs and HEVs. High performance vehicular traction energy storage systems must be intrinsically tolerant of abusive conditions: overcharge, short circuit, crush, fire exposure, overdischarge, and mechanical shock and vibration. Fail-safe responses to these conditions must be designed into the system, at the materials and the system level, through selection of materials and safety devices that will further reduce the probability of single cell failure and preclude propagation of failure to adjacent cells. One of the most important objectives of DOE's Office of Vehicle Technologies is to support the development of lithium ion batteries that are safe and abuse tolerant in electric drive vehicles. This Roadmap analyzes battery safety and failure modes of state-of-the-art cells and batteries and makes recommendations on future investments that would further DOE's mission.

  7. A study of software safety analysis system for safety-critical software

    International Nuclear Information System (INIS)

    Chang, H. S.; Shin, H. K.; Chang, Y. W.; Jung, J. C.; Kim, J. H.; Han, H. H.; Son, H. S.

    2004-01-01

    The core factors and requirements for the safety-critical software traced and the methodology adopted in each stage of software life cycle are presented. In concept phase, Failure Modes and Effects Analysis (FMEA) for the system has been performed. The feasibility evaluation of selected safety parameter was performed and Preliminary Hazards Analysis list was prepared using HAZOP(Hazard and Operability) technique. And the check list for management control has been produced via walk-through technique. Based on the evaluation of the check list, activities to be performed in requirement phase have been determined. In the design phase, hazard analysis has been performed to check the safety capability of the system with regard to safety software algorithm using Fault Tree Analysis (FTA). In the test phase, the test items based on FMEA have been checked for fitness guided by an accident scenario. The pressurizer low pressure trip algorithm has been selected to apply FTA method to software safety analysis as a sample. By applying CASE tool, the requirements traceability of safety critical system has been enhanced during all of software life cycle phases

  8. Safety assessment for Generation IV nuclear systems

    International Nuclear Information System (INIS)

    Leahy, T.J.

    2012-01-01

    The Generation IV International Forum (GIF) Risk and Safety Working Group (RSWG) was created to develop an effective approach for the safety of Generation IV advanced nuclear energy systems. Recent RSWG work has focused on the definition of an integrated safety assessment methodology (ISAM) for evaluating the safety of Generation IV systems. ISAM is an integrated 'tool-kit' consisting of 5 analytical techniques that are available and matched to appropriate stages of Generation IV system concept development: 1) qualitative safety features review - QSR, 2) phenomena identification and ranking table - PIRT, 3) objective provision tree - OPT, 4) deterministic and phenomenological analyses - DPA, and 5) probabilistic safety analysis - PSA. The integrated methodology is intended to yield safety-related insights that help actively drive the evolving design throughout the technology development cycle, potentially resulting in enhanced safety, reduced costs, and shortened development time

  9. Pass/fail patterns of candidates who failed COMLEX-USA level 2-PE because of misrepresentation of clinical findings on postencounter notes.

    Science.gov (United States)

    Langenau, Erik E; Sandella, Jeanne M

    2011-07-01

    In 2007, The National Board of Osteopathic Medical Examiners (NBOME) instituted a policy to address the accuracy and integrity of postencounter written documentation recorded during the Comprehensive Osteopathic Medical Licensing Examination Level 2-Performance Evaluation (COMLEX-USA Level 2-PE). This policy was instituted not only to protect the integrity of the examination, but also to highlight that overdocumentation of clinical findings not obtained during patient encounters may jeopardize patient safety. To investigate overall and domain pass/fail patterns of candidates who misrepresented clinical findings with regard to past and subsequent performance on COMLEX-USA Level 2-PE. Specifically, to investigate what percentage of candidates failed because of misrepresentation on first attempts and how they performed on subsequent administrations, as well as the previous performance patterns of candidates who failed because of misrepresentation on examination retakes. Historical records from NBOME's COMLEX-USA Level 2-PE database (testing cycles 2007-2008, 2008-2009, and 2009-2010) were used to analyze overall and domain pass/fail patterns of candidates who failed at least once because of misrepresentation of clinical findings. Of the 24 candidates who failed because of misrepresentation of postencounter (SOAP) notes, 20 candidates (83%) were first-time examinees. Four candidates (17%) were repeating the examination, 2 of whom were making a third attempt to pass. Among these 20 candidates who failed because of misrepresentation of clinical findings on their first attempt, 19 passed on their next attempt. At the time of study analysis, all but 2 candidates eventually passed the examination in subsequent attempts. Among candidates found to have misrepresented clinical findings on postencounter written documentation on COMLEX-USA Level 2-PE, no pattern existed between their past or subsequent performance with regard to overall or domain pass/fail results. The vast

  10. OBTAINING FOOD SAFETY BY APPLYING HACCP SYSTEM

    Directory of Open Access Journals (Sweden)

    ION CRIVEANU

    2012-01-01

    Full Text Available In order to increase the confidence of the trading partners and consumers in the products which are sold on the market, enterprises producing food are required to implement the food safety system HACCP,a particularly useful system because the manufacturer is not able to fully control finished products . SR EN ISO 22000:2005 establishes requirements for a food safety management system where an organization in the food chain needs to proove its ability to control food safety hazards in order to ensure that food is safe at the time of human consumption. This paper presents the main steps which ensure food safety using the HACCP system, and SR EN ISO 20000:2005 requirements for food safety.

  11. Industrial Personal Computer based Display for Nuclear Safety System

    International Nuclear Information System (INIS)

    Kim, Ji Hyeon; Kim, Aram; Jo, Jung Hee; Kim, Ki Beom; Cheon, Sung Hyun; Cho, Joo Hyun; Sohn, Se Do; Baek, Seung Min

    2014-01-01

    The safety display of nuclear system has been classified as important to safety (SIL:Safety Integrity Level 3). These days the regulatory agencies are imposing more strict safety requirements for digital safety display system. To satisfy these requirements, it is necessary to develop a safety-critical (SIL 4) grade safety display system. This paper proposes industrial personal computer based safety display system with safety grade operating system and safety grade display methods. The description consists of three parts, the background, the safety requirements and the proposed safety display system design. The hardware platform is designed using commercially available off-the-shelf processor board with back plane bus. The operating system is customized for nuclear safety display application. The display unit is designed adopting two improvement features, i.e., one is to provide two separate processors for main computer and display device using serial communication, and the other is to use Digital Visual Interface between main computer and display device. In this case the main computer uses minimized graphic functions for safety display. The display design is at the conceptual phase, and there are several open areas to be concreted for a solid system. The main purpose of this paper is to describe and suggest a methodology to develop a safety-critical display system and the descriptions are focused on the safety requirement point of view

  12. Industrial Personal Computer based Display for Nuclear Safety System

    Energy Technology Data Exchange (ETDEWEB)

    Kim, Ji Hyeon; Kim, Aram; Jo, Jung Hee; Kim, Ki Beom; Cheon, Sung Hyun; Cho, Joo Hyun; Sohn, Se Do; Baek, Seung Min [KEPCO, Youngin (Korea, Republic of)

    2014-08-15

    The safety display of nuclear system has been classified as important to safety (SIL:Safety Integrity Level 3). These days the regulatory agencies are imposing more strict safety requirements for digital safety display system. To satisfy these requirements, it is necessary to develop a safety-critical (SIL 4) grade safety display system. This paper proposes industrial personal computer based safety display system with safety grade operating system and safety grade display methods. The description consists of three parts, the background, the safety requirements and the proposed safety display system design. The hardware platform is designed using commercially available off-the-shelf processor board with back plane bus. The operating system is customized for nuclear safety display application. The display unit is designed adopting two improvement features, i.e., one is to provide two separate processors for main computer and display device using serial communication, and the other is to use Digital Visual Interface between main computer and display device. In this case the main computer uses minimized graphic functions for safety display. The display design is at the conceptual phase, and there are several open areas to be concreted for a solid system. The main purpose of this paper is to describe and suggest a methodology to develop a safety-critical display system and the descriptions are focused on the safety requirement point of view.

  13. Cost benefit analysis of reactor safety systems

    International Nuclear Information System (INIS)

    Maurer, H.A.

    1984-01-01

    Cost/benefit analysis of reactor safety systems is a possibility appropriate to deal with reactor safety. The Commission of the European Communities supported a study on the cost-benefit or cost effectiveness of safety systems installed in modern PWR nuclear power plants. The following systems and their cooperation in emergency cases were in particular investigated in this study: the containment system (double containment), the leakage exhaust and control system, the annulus release exhaust system and the containment spray system. The benefit of a safety system is defined according to its contribution to the reduction of the radiological consequences for the environment after a LOCA. The analysis is so far performed in two different steps: the emergency core cooling system is considered to function properly, failure of the emergency core cooling system is assumed (with the possible consequence of core melt-down) and the results may demonstrate the evidence that striving for cost-effectiveness can produce a safer end result than the philosophy of safety at any cost. (orig.)

  14. Safer Systems: A NextGen Aviation Safety Strategic Goal

    Science.gov (United States)

    Darr, Stephen T.; Ricks, Wendell R.; Lemos, Katherine A.

    2008-01-01

    The Joint Planning and Development Office (JPDO), is charged by Congress with developing the concepts and plans for the Next Generation Air Transportation System (NextGen). The National Aviation Safety Strategic Plan (NASSP), developed by the Safety Working Group of the JPDO, focuses on establishing the goals, objectives, and strategies needed to realize the safety objectives of the NextGen Integrated Plan. The three goal areas of the NASSP are Safer Practices, Safer Systems, and Safer Worldwide. Safer Practices emphasizes an integrated, systematic approach to safety risk management through implementation of formalized Safety Management Systems (SMS) that incorporate safety data analysis processes, and the enhancement of methods for ensuring safety is an inherent characteristic of NextGen. Safer Systems emphasizes implementation of safety-enhancing technologies, which will improve safety for human-centered interfaces and enhance the safety of airborne and ground-based systems. Safer Worldwide encourages coordinating the adoption of the safer practices and safer systems technologies, policies and procedures worldwide, such that the maximum level of safety is achieved across air transportation system boundaries. This paper introduces the NASSP and its development, and focuses on the Safer Systems elements of the NASSP, which incorporates three objectives for NextGen systems: 1) provide risk reducing system interfaces, 2) provide safety enhancements for airborne systems, and 3) provide safety enhancements for ground-based systems. The goal of this paper is to expose avionics and air traffic management system developers to NASSP objectives and Safer Systems strategies.

  15. Analysis of cold leg LOCA with failed HPSI by means of integrated safety assessment methodology

    International Nuclear Information System (INIS)

    Gonzalez-Cadelo, J.; Queral, C.; Montero-Mayorga, J.

    2014-01-01

    Highlights: • Results of ISA for considered sequences endorse EOPs guidance in an original way. • ISA allows to obtain accurate available times for accident management actions. • RCP-trip adequacy and available time for beginning depressurization are evaluated. • ISA minimizes the necessity of expert judgment to perform safety assessment. - Abstract: The integrated safety assessment (ISA) methodology, developed by the Spanish Nuclear Safety Council (CSN), has been applied to a thermal–hydraulic analysis of cold leg LOCA sequences with unavailable High Pressure Injection System in a Westinghouse 3-loop PWR. This analysis has been performed with TRACE 5.0 patch 1 code. ISA methodology allows obtaining the Damage Domain (the region of space of parameters where a safety limit is exceeded) as a function of uncertain parameters (break area) and operator actuation times, and provides to the analyst useful information about the impact of these uncertain parameters in safety concerns. In this work two main issues have been analyzed: the effect of reactor coolant pump trip and the available time for beginning of secondary-side depressurization. The main conclusions are that present Emergency Operating Procedures (EOPs) are adequate for managing this kind of sequences and the ISA methodology is able to take into account time delays and parameter uncertainties

  16. Development of digital safety system logic and control

    International Nuclear Information System (INIS)

    Nishikawa, H.; Sakamoto, H.

    1995-01-01

    Advanced-BWR (ABWR) uses total digital control and instrumentation (C and I) system. In particular, ABWR adopts a newly developed safety system using advanced digital technology. In the presentation the digital safety system design, manufacturing and factory validation test method are shortly overviewed. The digital safety system consists of micro-processor based digital controllers, data and information transmission by optical fibers and human-machine interface using color flat displays. This new developed safety system meet the nuclear safety requirements such as high reliability, independence of divisions, operability and maintainability. (2 refs., 4 figs., 1 tab.)

  17. Fail-safe design criteria for computer-based reactor protection systems

    International Nuclear Information System (INIS)

    Keats, A.B.

    1980-01-01

    The increasing quantity and complexity of the instrumentation required in nuclear power plants provides a strong incentive for using on-line computers as the basis of the control and protection systems. On-line computers using multiplexed sampled data are already well established but their application to nuclear reactor protection systems requires special measures to satisfy the very high reliability which is demanded in the interests of safety and availability. Some existing codes of practice relating to segregation of replicated subsysttems continue to be applicable and lead to division of the computer functions into two distinct parts. The first computer, referred to as the Trip Algorithm Computer may also control the multiplexer. Voting on each group of status inputs yielded by the trip algorithm computers is performed by the Vote Algorithm Computer. The conceptual disparities between hardwired reactor-protection systems and those employing computers also rise to a need for some new criteria. An important objective of these criteria, minimising the need for a failure-mode-and-effect-analysis of the computer software, but is achieved almost entirely by 'hardware' properties of the system: the systematic use of hardwired test inputs which cause excursions of the trip algorithms into the tripped state in a uniquely ordered but easily recognisable sequence, and the use of hardwired 'pattern recognition logic' which generates a dynamic 'healthy' stimulus for the shutdown actuators only in response to the unique sequence generated by the hardwired input signal pattern. The adoption of the proposed design criteria ensure not only failure-to-safety in the hardware but the elimination, or at least minimisation, of the dependence on the correct functioning of the computer software for the safety system. (auth)

  18. Safety features of subcritical fluid fueled systems

    International Nuclear Information System (INIS)

    Bell, C.R.

    1995-01-01

    Accelerator-driven transmutation technology has been under study at Los Alamos for several years for application to nuclear waste treatment, tritium production, energy generation, and recently, to the disposition of excess weapons plutonium. Studies and evaluations performed to date at Los Alamos have led to a current focus on a fluid-fuel, fission system operating in a neutron source-supported subcritical mode, using molten salt reactor technology and accelerator-driven proton-neutron spallation. In this paper, the safety features and characteristics of such systems are explored from the perspective of the fundamental nuclear safety objectives that any reactor-type system should address. This exploration is qualitative in nature and uses current vintage solid-fueled reactors as a baseline for comparison. Based on the safety perspectives presented, such systems should be capable of meeting the fundamental nuclear safety objectives. In addition, they should be able to provide the safety robustness desired for advanced reactors. However, the manner in which safety objectives and robustness are achieved is very different from that associated with conventional reactors. Also, there are a number of safety design and operational challenges that will have to be addressed for the safety potential of such systems to be credible

  19. Safety features of subcritical fluid fueled systems

    International Nuclear Information System (INIS)

    Bell, C.R.

    1994-01-01

    Accelerator-driven transmutation technology has been under study at Los Alamos for several years for application to nuclear waste treatment, tritium production, energy generation, and recently, to the disposition of excess weapons plutonium. Studies and evaluations performed to date at Los Alamos have led to a current focus on a fluid-fuel, fission system operating in a neutron source-supported subcritical mode, using molten salt reactor technology and accelerator-driven proton-neutron spallation. In this paper, the safety features and characteristics of such systems are explored from the perspective of the fundamental nuclear safety objectives that any reactor-type system should address. This exploration is qualitative in nature and uses current vintage solid-fueled reactors as a baseline for comparison. Based on the safety perspectives presented, such systems should be capable of meeting the fundamental nuclear safety objectives. In addition, they should be able to provide the safety robustness desired for advanced reactors. However, the manner in which safety objectives and robustness are achieved in very different from that associated with conventional reactors. Also, there are a number of safety design and operational challenges that will have to be addressed for the safety potential of such systems to be credible

  20. Safety features of subcritical fluid fueled systems

    Energy Technology Data Exchange (ETDEWEB)

    Bell, C.R. [Los Alamos National Laboratory, NM (United States)

    1995-10-01

    Accelerator-driven transmutation technology has been under study at Los Alamos for several years for application to nuclear waste treatment, tritium production, energy generation, and recently, to the disposition of excess weapons plutonium. Studies and evaluations performed to date at Los Alamos have led to a current focus on a fluid-fuel, fission system operating in a neutron source-supported subcritical mode, using molten salt reactor technology and accelerator-driven proton-neutron spallation. In this paper, the safety features and characteristics of such systems are explored from the perspective of the fundamental nuclear safety objectives that any reactor-type system should address. This exploration is qualitative in nature and uses current vintage solid-fueled reactors as a baseline for comparison. Based on the safety perspectives presented, such systems should be capable of meeting the fundamental nuclear safety objectives. In addition, they should be able to provide the safety robustness desired for advanced reactors. However, the manner in which safety objectives and robustness are achieved is very different from that associated with conventional reactors. Also, there are a number of safety design and operational challenges that will have to be addressed for the safety potential of such systems to be credible.

  1. 77 FR 11120 - Patient Safety Organizations: Voluntary Relinquishment From UAB Health System Patient Safety...

    Science.gov (United States)

    2012-02-24

    ... Organizations: Voluntary Relinquishment From UAB Health System Patient Safety Organization AGENCY: Agency for... notification of voluntary relinquishment from the UAB Health System Patient Safety Organization of its status as a Patient Safety Organization (PSO). The Patient Safety and Quality Improvement Act of 2005...

  2. Using field feedback to estimate failure rates of safety-related systems

    International Nuclear Information System (INIS)

    Brissaud, Florent

    2017-01-01

    The IEC 61508 and IEC 61511 functional safety standards encourage the use of field feedback to estimate the failure rates of safety-related systems, which is preferred than generic data. In some cases (if “Route 2_H” is adopted for the 'hardware safety integrity constraints”), this is even a requirement. This paper presents how to estimate the failure rates from field feedback with confidence intervals, depending if the failures are detected on-line (called 'detected failures', e.g. by automatic diagnostic tests) or only revealed by proof tests (called 'undetected failures'). Examples show that for the same duration and number of failures observed, the estimated failure rates are basically higher for “undetected failures” because, in this case, the duration observed includes intervals of time where it is unknown that the elements have failed. This points out the need of using a proper approach for failure rates estimation, especially for failures that are not detected on-line. Then, this paper proposes an approach to use the estimated failure rates, with their uncertainties, for PFDavg and PFH assessment with upper confidence bounds, in accordance with IEC 61508 and IEC 61511 requirements. Examples finally show that the highest SIL that can be claimed for a safety function can be limited by the 90% upper confidence bound of PFDavg or PFH. The requirements of the IEC 61508 and IEC 61511 relating to the data collection and analysis should therefore be properly considered for the study of all safety-related systems. - Highlights: • This paper deals with requirements of the IEC 61508 and IEC 61511 for using field feedback to estimate failure rates of safety-related systems. • This paper presents how to estimate the failure rates from field feedback with confidence intervals for failures that are detected on-line. • This paper presents how to estimate the failure rates from field feedback with confidence intervals for failures that are only revealed by

  3. Detection device for the failed position in fuels

    International Nuclear Information System (INIS)

    Tokunaga, Kensuke; Nomura, Teiji; Hiruta, Koji

    1985-01-01

    Purpose: To detect the failed position of a fuel assembly with ease and safety. Constitution: A fuel assembly is tightly closed in a sipper tube equipped with a gas supply tube and a gas exhaust tube at the upper portion and a purified water injection tube and a draining tube at the lower end. Then, water in the sipper tube is drained to the lower portion of the fuel assembly by the pressure of gases while opening the gas supply tube and the draining tube, and closing the exhaust tube and the injection tube. Then, after closing the gas supply tube and the draining tube while opening theexhaust tube and the injection tube, purified water is injected into the sipper tube from the injection tube to an optional height till the fuel assembly is immersed. Then, after leaving for a predetermined of time, water is sampled and the radioactive material density therein is measured. By changing the injection level of the purified water, since the radioactive material density changes at the failed position, the failed position can be detected with ease. (Sekiya, K.)

  4. Safety Justification and Safety Case for Safety-critical Software in Digital Reactor Protection System

    International Nuclear Information System (INIS)

    Kwon, Kee-Choon; Lee, Jang-Soo; Jee, Eunkyoung

    2016-01-01

    Nuclear safety-critical software is under strict regulatory requirements and these regulatory requirements are essential for ensuring the safety of nuclear power plants. The verification & validation (V and V) and hazard analysis of the safety-critical software are required to follow regulatory requirements through the entire software life cycle. In order to obtain a license from the regulatory body through the development and validation of safety-critical software, it is essential to meet the standards which are required by the regulatory body throughout the software development process. Generally, large amounts of documents, which demonstrate safety justification including standard compliance, V and V, hazard analysis, and vulnerability assessment activities, are submitted to the regulatory body during the licensing process. It is not easy to accurately read and evaluate the whole documentation for the development activities, implementation technology, and validation activities. The safety case methodology has been kwon a promising approach to evaluate the level and depth of the development and validation results. A safety case is a structured argument, supported by a body of evidence that provides a compelling, comprehensible, and valid case that a system is safe for a given application in a given operating environment. It is suggested to evaluate the level and depth of the results of development and validation by applying safety case methodology to achieve software safety demonstration. A lot of documents provided as evidence are connected to claim that corresponds to the topic for safety demonstration. We demonstrated a case study in which more systematic safety demonstration for the target system software is performed via safety case construction than simply listing the documents

  5. Safety Justification and Safety Case for Safety-critical Software in Digital Reactor Protection System

    Energy Technology Data Exchange (ETDEWEB)

    Kwon, Kee-Choon; Lee, Jang-Soo [Korea Atomic Energy Research Institute, Daejeon (Korea, Republic of); Jee, Eunkyoung [KAIST, Daejeon (Korea, Republic of)

    2016-10-15

    Nuclear safety-critical software is under strict regulatory requirements and these regulatory requirements are essential for ensuring the safety of nuclear power plants. The verification & validation (V and V) and hazard analysis of the safety-critical software are required to follow regulatory requirements through the entire software life cycle. In order to obtain a license from the regulatory body through the development and validation of safety-critical software, it is essential to meet the standards which are required by the regulatory body throughout the software development process. Generally, large amounts of documents, which demonstrate safety justification including standard compliance, V and V, hazard analysis, and vulnerability assessment activities, are submitted to the regulatory body during the licensing process. It is not easy to accurately read and evaluate the whole documentation for the development activities, implementation technology, and validation activities. The safety case methodology has been kwon a promising approach to evaluate the level and depth of the development and validation results. A safety case is a structured argument, supported by a body of evidence that provides a compelling, comprehensible, and valid case that a system is safe for a given application in a given operating environment. It is suggested to evaluate the level and depth of the results of development and validation by applying safety case methodology to achieve software safety demonstration. A lot of documents provided as evidence are connected to claim that corresponds to the topic for safety demonstration. We demonstrated a case study in which more systematic safety demonstration for the target system software is performed via safety case construction than simply listing the documents.

  6. INTEGRATED SAFETY MANAGEMENT SYSTEM IN AIR TRAFFIC SERVICES

    Directory of Open Access Journals (Sweden)

    Volodymyr Kharchenko

    2014-06-01

    Full Text Available The article deals with the analysis of the researches conducted in the field of safety management systems.Safety management system framework, methods and tools for safety analysis in Air Traffic Control have been reviewed.Principles of development of Integrated safety management system in Air Traffic Services have been proposed.

  7. Analysis and design on airport safety information management system

    Directory of Open Access Journals (Sweden)

    Yan Lin

    2017-01-01

    Full Text Available Airport safety information management system is the foundation of implementing safety operation, risk control, safety performance monitor, and safety management decision for the airport. The paper puts forward the architecture of airport safety information management system based on B/S model, focuses on safety information processing flow, designs the functional modules and proposes the supporting conditions for system operation. The system construction is helpful to perfecting the long effect mechanism driven by safety information, continually increasing airport safety management level and control proficiency.

  8. Fail-safe first wall for preclusion of little leakage

    International Nuclear Information System (INIS)

    Shibui, Masanao; Nakahira, Masataka; Tada, Eisuke; Takatsu, Hideyuki

    1994-05-01

    Leakages although excluded by design measures would occur most probably in highly stressed areas, weldments and locations without possibility to classify the state by in-service inspection. In a water-cooled first wall, allowable leak rate of water is generally very small, and therefore, locating of the leak portion under highly activated environment will be very difficult and be time-consuming. The double-wall concept is promising for the ITER first wall, because it can be made fail-safe by the application of the leak-before-break and the multiple load path concepts, and because it has a potential capability to solve the little leak problem. When the fail safe strength is well defined, subcritical crack growth in the damaged wall can be permitted. This will enable to detect stable leakage of coolant without deteriorating plasma operation. The paper deals with the little leak problem and presents method for evaluating small leak rate of a liquid coolant from crack-like defects. The fail-safe first wall with the double-wall concept is also proposed for preclusion of little leakage and its fail-safety is discussed. (author)

  9. System theory and safety models in Swedish, UK, Dutch and Australian road safety strategies.

    Science.gov (United States)

    Hughes, B P; Anund, A; Falkmer, T

    2015-01-01

    Road safety strategies represent interventions on a complex social technical system level. An understanding of a theoretical basis and description is required for strategies to be structured and developed. Road safety strategies are described as systems, but have not been related to the theory, principles and basis by which systems have been developed and analysed. Recently, road safety strategies, which have been employed for many years in different countries, have moved to a 'vision zero', or 'safe system' style. The aim of this study was to analyse the successful Swedish, United Kingdom and Dutch road safety strategies against the older, and newer, Australian road safety strategies, with respect to their foundations in system theory and safety models. Analysis of the strategies against these foundations could indicate potential improvements. The content of four modern cases of road safety strategy was compared against each other, reviewed against scientific systems theory and reviewed against types of safety model. The strategies contained substantial similarities, but were different in terms of fundamental constructs and principles, with limited theoretical basis. The results indicate that the modern strategies do not include essential aspects of systems theory that describe relationships and interdependencies between key components. The description of these strategies as systems is therefore not well founded and deserves further development. Copyright © 2014 Elsevier Ltd. All rights reserved.

  10. Study on 'Safety qualification of process computers used in safety systems of nuclear power plants'

    International Nuclear Information System (INIS)

    Bertsche, K.; Hoermann, E.

    1991-01-01

    The study aims at developing safety standards for hardware and software of computer systems which are increasingly used also for important safety systems in nuclear power plants. The survey of the present state-of-the-art of safety requirements and specifications for safety-relevant systems and, additionally, for process computer systems has been compiled from national and foreign rules. In the Federal Republic of Germany the KTA safety guides and the BMI/BMU safety criteria have to be observed. For the design of future computer-aided systems in nuclear power plants it will be necessary to apply the guidelines in [DIN-880] and [DKE-714] together with [DIN-192]. With the aid of a risk graph the various functions of a system, or of a subsystem, can be evaluated with regard to their significance for safety engineering. (orig./HP) [de

  11. Design an optimum safety policy for personnel safety management - A system dynamic approach

    International Nuclear Information System (INIS)

    Balaji, P.

    2014-01-01

    Personnel safety management (PSM) ensures that employee's work conditions are healthy and safe by various proactive and reactive approaches. Nowadays it is a complex phenomenon because of increasing dynamic nature of organisations which results in an increase of accidents. An important part of accident prevention is to understand the existing system properly and make safety strategies for that system. System dynamics modelling appears to be an appropriate methodology to explore and make strategy for PSM. Many system dynamics models of industrial systems have been built entirely for specific host firms. This thesis illustrates an alternative approach. The generic system dynamics model of Personnel safety management was developed and tested in a host firm. The model was undergone various structural, behavioural and policy tests. The utility and effectiveness of model was further explored through modelling a safety scenario. In order to create effective safety policy under resource constraint, DOE (Design of experiment) was used. DOE uses classic designs, namely, fractional factorials and central composite designs. It used to make second order regression equation which serve as an objective function. That function was optimized under budget constraint and optimum value used for safety policy which shown greatest improvement in overall PSM. The outcome of this research indicates that personnel safety management model has the capability for acting as instruction tool to improve understanding of safety management and also as an aid to policy making

  12. Design an optimum safety policy for personnel safety management - A system dynamic approach

    Energy Technology Data Exchange (ETDEWEB)

    Balaji, P. [The Glocal University, Mirzapur Pole, Delhi- Yamuntori Highway, Saharanpur 2470001 (India)

    2014-10-06

    Personnel safety management (PSM) ensures that employee's work conditions are healthy and safe by various proactive and reactive approaches. Nowadays it is a complex phenomenon because of increasing dynamic nature of organisations which results in an increase of accidents. An important part of accident prevention is to understand the existing system properly and make safety strategies for that system. System dynamics modelling appears to be an appropriate methodology to explore and make strategy for PSM. Many system dynamics models of industrial systems have been built entirely for specific host firms. This thesis illustrates an alternative approach. The generic system dynamics model of Personnel safety management was developed and tested in a host firm. The model was undergone various structural, behavioural and policy tests. The utility and effectiveness of model was further explored through modelling a safety scenario. In order to create effective safety policy under resource constraint, DOE (Design of experiment) was used. DOE uses classic designs, namely, fractional factorials and central composite designs. It used to make second order regression equation which serve as an objective function. That function was optimized under budget constraint and optimum value used for safety policy which shown greatest improvement in overall PSM. The outcome of this research indicates that personnel safety management model has the capability for acting as instruction tool to improve understanding of safety management and also as an aid to policy making.

  13. Design an optimum safety policy for personnel safety management - A system dynamic approach

    Science.gov (United States)

    Balaji, P.

    2014-10-01

    Personnel safety management (PSM) ensures that employee's work conditions are healthy and safe by various proactive and reactive approaches. Nowadays it is a complex phenomenon because of increasing dynamic nature of organisations which results in an increase of accidents. An important part of accident prevention is to understand the existing system properly and make safety strategies for that system. System dynamics modelling appears to be an appropriate methodology to explore and make strategy for PSM. Many system dynamics models of industrial systems have been built entirely for specific host firms. This thesis illustrates an alternative approach. The generic system dynamics model of Personnel safety management was developed and tested in a host firm. The model was undergone various structural, behavioural and policy tests. The utility and effectiveness of model was further explored through modelling a safety scenario. In order to create effective safety policy under resource constraint, DOE (Design of experiment) was used. DOE uses classic designs, namely, fractional factorials and central composite designs. It used to make second order regression equation which serve as an objective function. That function was optimized under budget constraint and optimum value used for safety policy which shown greatest improvement in overall PSM. The outcome of this research indicates that personnel safety management model has the capability for acting as instruction tool to improve understanding of safety management and also as an aid to policy making.

  14. Meeting the maglev system's safety requirements

    Energy Technology Data Exchange (ETDEWEB)

    Pierick, K

    1983-12-01

    The author shows how the safety requirements of the maglev track system derive from the general legal conditions for the safety of tracked transport. It is described how their compliance beyond the so-called ''development-accompanying'' and ''acceptance-preparatory'' safety work can be assured for the Transrapid test layout (TVE) now building in Emsland and also for later application as public transport system in Germany within the meaning of the General Railway Act.

  15. Strategy to safety grade systems replacements

    International Nuclear Information System (INIS)

    Stimler, M.; Sullivan, K.E.; Trebincevic, I.

    1993-01-01

    The introduction of digital instrumentation and control systems in nuclear power plants is characterized by the need to satisfy the requirements of safety, reliability and man-machine ergonomics. Today digital instrumentation and control systems meet these requirements and the trend in Europe is towards full digital based nuclear power plant control systems. This paper describes Siemens (KWU) experience in nuclear power plants and development in trends within Europe. Topics which are the subject of major concern to NPP operators addressed in this paper are: human performance factors - man-machine interface; operating philosophy; safety, availability and reliability. Other aspects addressed are: Siemens open-quotes defense in depthclose quotes concept, description of Siemens digital I ampersand C systems, safety requirements and systems, I ampersand C qualification, control room ergonomics, information systems and retrofitting experience

  16. Safety Needs Mediate Stressful Events Induced Mental Disorders

    Science.gov (United States)

    Gu, Simeng; Lei, Yu; Lu, Shanshan

    2016-01-01

    Safety first,” we say these words almost every day, but we all take this for granted for what Maslow proposed in his famous theory of Hierarchy of Needs: safety needs come second to physiological needs. Here we propose that safety needs come before physiological needs. Safety needs are personal security, financial security, and health and well-being, which are more fundamental than physiological needs. Safety worrying is the major reason for mental disorders, such as anxiety, phobia, depression, and PTSD. The neural basis for safety is amygdala, LC/NE system, and corticotrophin-releasing hormone system, which can be regarded as a “safety circuitry,” whose major behavior function is “fight or flight” and “fear and anger” emotions. This is similar to the Appraisal theory for emotions: fear is due to the primary appraisal, which is related to safety of individual, while anger is due to secondary appraisal, which is related to coping with the unsafe situations. If coping is good, the individual will be happy; if coping failed, the individual will be sad or depressed. PMID:27738527

  17. Safety Needs Mediate Stressful Events Induced Mental Disorders.

    Science.gov (United States)

    Zheng, Zheng; Gu, Simeng; Lei, Yu; Lu, Shanshan; Wang, Wei; Li, Yang; Wang, Fushun

    2016-01-01

    "Safety first," we say these words almost every day, but we all take this for granted for what Maslow proposed in his famous theory of Hierarchy of Needs : safety needs come second to physiological needs. Here we propose that safety needs come before physiological needs. Safety needs are personal security, financial security, and health and well-being, which are more fundamental than physiological needs. Safety worrying is the major reason for mental disorders, such as anxiety, phobia, depression, and PTSD. The neural basis for safety is amygdala, LC/NE system, and corticotrophin-releasing hormone system, which can be regarded as a "safety circuitry," whose major behavior function is "fight or flight" and "fear and anger" emotions. This is similar to the Appraisal theory for emotions: fear is due to the primary appraisal, which is related to safety of individual, while anger is due to secondary appraisal, which is related to coping with the unsafe situations. If coping is good, the individual will be happy; if coping failed, the individual will be sad or depressed.

  18. Safety Needs Mediate Stressful Events Induced Mental Disorders

    Directory of Open Access Journals (Sweden)

    Zheng Zheng

    2016-01-01

    Full Text Available “Safety first,” we say these words almost every day, but we all take this for granted for what Maslow proposed in his famous theory of Hierarchy of Needs: safety needs come second to physiological needs. Here we propose that safety needs come before physiological needs. Safety needs are personal security, financial security, and health and well-being, which are more fundamental than physiological needs. Safety worrying is the major reason for mental disorders, such as anxiety, phobia, depression, and PTSD. The neural basis for safety is amygdala, LC/NE system, and corticotrophin-releasing hormone system, which can be regarded as a “safety circuitry,” whose major behavior function is “fight or flight” and “fear and anger” emotions. This is similar to the Appraisal theory for emotions: fear is due to the primary appraisal, which is related to safety of individual, while anger is due to secondary appraisal, which is related to coping with the unsafe situations. If coping is good, the individual will be happy; if coping failed, the individual will be sad or depressed.

  19. System safety education focused on system management

    Science.gov (United States)

    Grose, V. L.

    1971-01-01

    System safety is defined and characteristics of the system are outlined. Some of the principle characteristics include role of humans in hazard analysis, clear language for input and output, system interdependence, self containment, and parallel analysis of elements.

  20. Safety Management System in Croatia Control Ltd.

    OpenAIRE

    Pavlin, Stanislav; Sorić, Vedran; Bilać, Dragan; Dimnik, Igor; Galić, Daniel

    2009-01-01

    International Civil Aviation Organization and other international aviation organizations regulate the safety in civil aviation. In the recent years the International Civil Aviation Organization has introduced the concept of the safety management system through several documents among which the most important is the 2006 Safety Management Manual. It treats the safety management system in all the segments of civil aviation, from carriers, aerodromes and air traffic control to design, constructi...

  1. Comparing performance level estimation of safety functions in three distributed structures

    International Nuclear Information System (INIS)

    Hietikko, Marita; Malm, Timo; Saha, Heikki

    2015-01-01

    The capability of a machine control system to perform a safety function is expressed using performance levels (PL). This paper presents the results of a study where PL estimation was carried out for a safety function implemented using three different distributed control system structures. Challenges relating to the process of estimating PLs for safety related distributed machine control functions are highlighted. One of these examines the use of different cabling schemes in the implementation of a safety function and its effect on the PL evaluation. The safety function used as a generic example in PL calculations relates to a mobile work machine. It is a safety stop function where different technologies (electrical, hydraulic and pneumatic) can be utilized. It was detected that by replacing analogue cables with digital communication the system structure becomes simpler with less number of failing components, which can better the PL of the safety function. - Highlights: • Integration in distributed systems enables systems with less components. • It offers high reliability and diagnostic properties. • Analogue signals create uncertainty in signal reliability and difficult diagnostics

  2. 76 FR 42686 - DOE Response to Recommendation 2011-1 of the Defense Nuclear Facilities Safety Board, Safety...

    Science.gov (United States)

    2011-07-19

    ... examples of a failed safety culture.'' The Department disagrees with this categorization and believes the... Safety Board, Safety Culture at the Waste Treatment and Immobilization Plant AGENCY: Department of Energy... Recommendation 2011-1, concerning Safety Culture at the Waste Treatment and Immobilization Plant, to the...

  3. Safety Evaluation Approach with Security Controls for Safety I and C Systems on Nuclear Power Plants

    International Nuclear Information System (INIS)

    Kim, D. H.; Jeong, S. Y.; Kim, Y. M.; Park, H. S.; Lee, M. S.; Kim, T. H.

    2016-01-01

    This paper addresses concepts of safety and security and relations between them for assessing effects of security features in safety systems. Also, evaluation approach for avoiding confliction with safety requirements and cyber security features which may be adopted in safety-related digital I and C system will be described. In this paper, safety-security life cycle model based confliction avoidance method was proposed to evaluate the effects when the cyber security control features are implemented in the safety I and C system. Also, safety effect evaluation results using the proposed evaluation method were described. In case of technical security controls, many of them are expected to conflict with safety requirements, otherwise operational and managerial controls are not relatively. Safety measures and cyber security measures for nuclear power plants should be implemented not to conflict with one another. Where safety function and security features are both required within the systems, and also where security features are implemented within safety systems, they should be justified

  4. Safety Evaluation Approach with Security Controls for Safety I and C Systems on Nuclear Power Plants

    Energy Technology Data Exchange (ETDEWEB)

    Kim, D. H.; Jeong, S. Y.; Kim, Y. M.; Park, H. S. [KINS, Daejeon (Korea, Republic of); Lee, M. S.; Kim, T. H. [Formal Works Inc., Seoul (Korea, Republic of)

    2016-05-15

    This paper addresses concepts of safety and security and relations between them for assessing effects of security features in safety systems. Also, evaluation approach for avoiding confliction with safety requirements and cyber security features which may be adopted in safety-related digital I and C system will be described. In this paper, safety-security life cycle model based confliction avoidance method was proposed to evaluate the effects when the cyber security control features are implemented in the safety I and C system. Also, safety effect evaluation results using the proposed evaluation method were described. In case of technical security controls, many of them are expected to conflict with safety requirements, otherwise operational and managerial controls are not relatively. Safety measures and cyber security measures for nuclear power plants should be implemented not to conflict with one another. Where safety function and security features are both required within the systems, and also where security features are implemented within safety systems, they should be justified.

  5. Safety-related control air systems - approved 1977

    International Nuclear Information System (INIS)

    Anon.

    1978-01-01

    This standard applies to those portions of the control air system that furnish air required to support, control, or operate systems or portions of systems that are safety related in nuclear power plants. This standard relates only to the air supply system(s) for safety-related air operated devices and does not apply to the safety-related air operated device or to air operated actuators for such devices. The objectives of this standard are to provide (1) minimum system design requirements for equipment, piping, instruments, controls, and wiring that constitute the air supply system; and (2) the system and component testing and maintenance requirements

  6. Ultrasonics aids the identification of failed fuel rods

    International Nuclear Information System (INIS)

    Anon.

    1985-01-01

    Over a number of years Brown Boveri Reaktor of West Germany has developed and commercialized an ultrasonic failed fuel rod detection system. Sipping has up to now been the standard technique for failed fuel detection, but sipping can only indicate whether or not an assembly contains defective rods; the BBR system can tell which rod is defective. (author)

  7. Qualification of FPGA-Based Safety-Related PRM System

    International Nuclear Information System (INIS)

    Miyazaki, Tadashi; Oda, Naotaka; Goto, Yasushi; Hayashi, Toshifumi

    2011-01-01

    Toshiba has developed Non-rewritable (NRW) Field Programmable Gate Array (FPGA)-based safety-related Instrumentation and Control (I and C) system. Considering application to safety-related systems, nonvolatile and non-rewritable FPGA which is impossible to be changed after once manufactured has been adopted in Toshiba FPGA-based system. FPGA is a device which consists only of basic logic circuits, and FPGA performs defined processing which is configured by connecting the basic logic circuit inside the FPGA. FPGA-based system solves issues existing both in the conventional systems operated by analog circuits (analog-based system) and the systems operated by central processing unit (CPU-based system). The advantages of applying FPGA are to keep the long-life supply of products, improving testability (verification), and to reduce the drift which may occur in analog-based system. The system which Toshiba developed this time is Power Range Neutron Monitor (PRM). Toshiba is planning to expand application of FPGA-based technology by adopting this development process to the other safety-related systems such as RPS from now on. Toshiba developed a special design process for NRW-FPGA-based safety-related I and C systems. The design process resolves issues for many years regarding testability of the digital system for nuclear safety application. Thus, Toshiba NRW-FPGA-based safety-related I and C systems has much advantage to be a would standard of the digital systems for nuclear safety application. (author)

  8. Safety climate and culture: Integrating psychological and systems perspectives.

    Science.gov (United States)

    Casey, Tristan; Griffin, Mark A; Flatau Harrison, Huw; Neal, Andrew

    2017-07-01

    Safety climate research has reached a mature stage of development, with a number of meta-analyses demonstrating the link between safety climate and safety outcomes. More recently, there has been interest from systems theorists in integrating the concept of safety culture and to a lesser extent, safety climate into systems-based models of organizational safety. Such models represent a theoretical and practical development of the safety climate concept by positioning climate as part of a dynamic work system in which perceptions of safety act to constrain and shape employee behavior. We propose safety climate and safety culture constitute part of the enabling capitals through which organizations build safety capability. We discuss how organizations can deploy different configurations of enabling capital to exert control over work systems and maintain safe and productive performance. We outline 4 key strategies through which organizations to reconcile the system control problems of promotion versus prevention, and stability versus flexibility. (PsycINFO Database Record (c) 2017 APA, all rights reserved).

  9. Safety assessment of high consequence robotics system

    International Nuclear Information System (INIS)

    Robinson, D.G.; Atcitty, C.B.

    1996-01-01

    This paper outlines the use of a failure modes and effects analysis for the safety assessment of a robotic system being developed at Sandia National Laboratories. The robotic system, the weigh and leak check system, is to replace a manual process for weight and leakage of nuclear materials at the DOE Pantex facility. Failure modes and effects analyses were completed for the robotics process to ensure that safety goals for the systems have been met. Due to the flexible nature of the robot configuration, traditional failure modes and effects analysis (FMEA) were not applicable. In addition, the primary focus of safety assessments of robotics systems has been the protection of personnel in the immediate area. In this application, the safety analysis must account for the sensitivities of the payload as well as traditional issues. A unique variation on the classical FMEA was developed that permits an organized and quite effective tool to be used to assure that safety was adequately considered during the development of the robotic system. The fundamental aspects of the approach are outlined in the paper

  10. A formal safety analysis for PLC software-based safety critical system using Z

    International Nuclear Information System (INIS)

    Koh, Jung Soo

    1997-02-01

    This paper describes a formal safety analysis technique which is demonstrated by performing empirical formal safety analysis with the case study of beamline hutch door Interlock system that is developed by using PLC (Programmable Logic Controller) systems at the Pohang Accelerator Laboratory. In order to perform formal safety analysis, we have built the Z formal specifications representation from user requirement written in ambiguous natural language and target PLC ladder logic, respectively. We have also studied the effective method to express typical PLC timer component by using specific Z formal notation which is supported by temporal history. We present a formal proof technique specifying and verifying that the hazardous states are not introduced into ladder logic in the PLC-based safety critical system. And also, we have found that some errors or mismatches in user requirement and final implemented PLC ladder logic while analyzing the process of the consistency and completeness of Z translated formal specifications. In the case of relatively small systems like Beamline hutch door interlock system, a formal safety analysis including explicit proof is highly recommended so that the safety of PLC-based critical system may be enhanced and guaranteed. It also provides a helpful benefits enough to comprehend user requirement expressed by ambiguous natural language

  11. Simulation Of The Secondary Cooling System Failed For One Line Mode Of RSG-GAS

    International Nuclear Information System (INIS)

    Dibyo, Sukmanto; Susyadi; Sembiring, Tagor M; Isnaeni, Darwis

    2003-01-01

    Recently, an assessment of 15 MW power reactor RSG-GAS operated using one line cooling mode is under carried out, in which is in the same manner as BA TAN policy. At the power above mentioned, requirement for the research as well as isotop production has been fulfilled. To obtain the transient condition of 1 line-cooling mode, the simulation using RELAP5.MOD3.2 code was carried out. The simulation parameters interesting known are the inlet of primary coolant temperature after failed the secondary cooling system. At the first, reactor is operated at 15 MW steady state condition using 1 line-cooling mode. Primary coolant flow rate of 430 kg/s and secondary of 550 kg/s respectively. After that the decreasing is occurred due to stop of secondary cooling pump. Therefore the primary cooling inlet temperature to the core increase cause scram reactor by inserted control rod. During the transient occur, the characteristic of primary cooling temperature pattern change were obtained. The simulation result shows that the temperature increase (ΔT) temperature to the reactor is 5,1 o C at the second of 85.5. Here is lower than ΔT for the two cooling mode of 10 o C. That temperature characteristic still tolerable against acceptable safety margin to the flow instability

  12. Quantitative safety assessment of air traffic control systems through system control capacity

    Science.gov (United States)

    Guo, Jingjing

    Quantitative Safety Assessments (QSA) are essential to safety benefit verification and regulations of developmental changes in safety critical systems like the Air Traffic Control (ATC) systems. Effectiveness of the assessments is particularly desirable today in the safe implementations of revolutionary ATC overhauls like NextGen and SESAR. QSA of ATC systems are however challenged by system complexity and lack of accident data. Extending from the idea "safety is a control problem" in the literature, this research proposes to assess system safety from the control perspective, through quantifying a system's "control capacity". A system's safety performance correlates to this "control capacity" in the control of "safety critical processes". To examine this idea in QSA of the ATC systems, a Control-capacity Based Safety Assessment Framework (CBSAF) is developed which includes two control capacity metrics and a procedural method. The two metrics are Probabilistic System Control-capacity (PSC) and Temporal System Control-capacity (TSC); each addresses an aspect of a system's control capacity. And the procedural method consists three general stages: I) identification of safety critical processes, II) development of system control models and III) evaluation of system control capacity. The CBSAF was tested in two case studies. The first one assesses an en-route collision avoidance scenario and compares three hypothetical configurations. The CBSAF was able to capture the uncoordinated behavior between two means of control, as was observed in a historic midair collision accident. The second case study compares CBSAF with an existing risk based QSA method in assessing the safety benefits of introducing a runway incursion alert system. Similar conclusions are reached between the two methods, while the CBSAF has the advantage of simplicity and provides a new control-based perspective and interpretation to the assessments. The case studies are intended to investigate the

  13. Successful placement of the Essure device after a failed procedure using the Adiana system for hysteroscopic sterilisation

    Science.gov (United States)

    Schuurman, Teska; Veersema, Sebastiaan

    2011-01-01

    This case report describes a successful hysteroscopic sterilisation using the Essure Permanent Birth Control device (Conceptus Inc., Mountain View, California, United States) after a failed procedure of the Adiana Permanent Contraception system (Hologic, Inc., Bedford, Maryland, United States). The delivery catheter of the Adiana system was able to be inserted into the left fallopian tube without difficulty and per manufacturer specifications. However, the position detection array was unable to sense four-quadrant tissue contact. The same issue occurred at the contralateral tube. Using the Essure system, the coils were able to be placed in both ostia easily and adequately. In patients in whom the Adiana system fails to occlude the fallopian tubes due to procedural, anatomic or device-related factors, the Essure procedure may be an efficient alternative. PMID:22689274

  14. Upgrading safety systems of industrial irradiation facilities

    International Nuclear Information System (INIS)

    Gomes, R.S.; Gomes, J.D.R.L.; Costa, E.L.C.; Costa, M.L.L.; Thomé, Z.D.

    2017-01-01

    The first industrial irradiation facility in operation in Brazil was designed in the 70s. Nowadays, twelve commercial and research facilities are in operation and two already decommissioned. Minor modifications and upgrades, as sensors replacement, have been introduced in these facilities, in order to reduce the technological gap in the control and safety systems. The safety systems are designed in agreement with the codes and standards at the time. Since then, new standards, codes and recommendations, as well as lessons learned from accidents, have been issued by various international committees or regulatory bodies. The rapid advance of the industry makes the safety equipment used in the original construction become obsolete. The decreasing demand for these older products means that they are no longer produced, which can make it impossible or costly to obtain spare parts and the expansion of legacy systems to include new features. This work aims to evaluate existing safety systems at Brazilian irradiation facilities, mainly the oldest facilities, taking into account the recommended IAEA's design requirements. Irrespective of the fact that during its operational period no event with victims have been recorded in Brazilian facilities, and that the regulatory inspections do not present any serious deviations regarding the safety procedures, it is necessary an assessment of safety system with the purpose of bringing their systems to 'the state of the art', avoiding their rapid obsolescence. This study has also taken into account the knowledge, concepts and solutions developed to upgrading safety system in irradiation facilities throughout the world. (author)

  15. Upgrading safety systems of industrial irradiation facilities

    Energy Technology Data Exchange (ETDEWEB)

    Gomes, R.S.; Gomes, J.D.R.L.; Costa, E.L.C.; Costa, M.L.L., E-mail: rogeriog@cnen.gov.br, E-mail: jlopes@cnen.gov.br, E-mail: evaldo@cnen.gov.br, E-mail: mara@cnen.gov.br [Comissão Nacional de Energia Nuclear (CNEN), Rio de Janeiro, RJ (Brazil). Diretoria de Radioproteção e Segurança Nuclear; Thomé, Z.D., E-mail: zielithome@gmail.com [Instituto Militar de Engenharia (IME), Rio de Janeiro, RJ (Brazil). Seção de Engenharia Nuclear

    2017-07-01

    The first industrial irradiation facility in operation in Brazil was designed in the 70s. Nowadays, twelve commercial and research facilities are in operation and two already decommissioned. Minor modifications and upgrades, as sensors replacement, have been introduced in these facilities, in order to reduce the technological gap in the control and safety systems. The safety systems are designed in agreement with the codes and standards at the time. Since then, new standards, codes and recommendations, as well as lessons learned from accidents, have been issued by various international committees or regulatory bodies. The rapid advance of the industry makes the safety equipment used in the original construction become obsolete. The decreasing demand for these older products means that they are no longer produced, which can make it impossible or costly to obtain spare parts and the expansion of legacy systems to include new features. This work aims to evaluate existing safety systems at Brazilian irradiation facilities, mainly the oldest facilities, taking into account the recommended IAEA's design requirements. Irrespective of the fact that during its operational period no event with victims have been recorded in Brazilian facilities, and that the regulatory inspections do not present any serious deviations regarding the safety procedures, it is necessary an assessment of safety system with the purpose of bringing their systems to 'the state of the art', avoiding their rapid obsolescence. This study has also taken into account the knowledge, concepts and solutions developed to upgrading safety system in irradiation facilities throughout the world. (author)

  16. Water hydraulic manipulator for fail safe and fault tolerant remote handling operations at ITER

    International Nuclear Information System (INIS)

    Nieminen, Peetu; Esque, Salvador; Muhammad, Ali; Mattila, Jouni; Vaeyrynen, Jukka; Siuko, Mikko; Vilenius, Matti

    2009-01-01

    Department of Intelligent Hydraulics and Automation (IHA) of Tampere University of Technology has been involved in the European Fusion program since 1994 within the ITER reactor maintenance activities. In this paper we discuss the design and development of a six degrees of freedom water hydraulic manipulator with a force feedback for teleoperation tasks. The manipulator is planned to be delivered to Divertor Test Platform 2 (DTP2) during year 2008. The paper also discusses the possibility to improve the fail safe and redundant operation of the manipulator. During the design of the water hydraulic manipulator, special provisions have been made in order to meet the safety requirements such as servo valve block for redundant operation and safety vane brakes for fail safe operation.

  17. Safety status system for operating room devices.

    Science.gov (United States)

    Guédon, Annetje C P; Wauben, Linda S G L; Overvelde, Marlies; Blok, Joleen H; van der Elst, Maarten; Dankelman, Jenny; van den Dobbelsteen, John J

    2014-01-01

    Since the increase of the number of technological aids in the operating room (OR), equipment-related incidents have come to be a common kind of adverse events. This underlines the importance of adequate equipment management to improve the safety in the OR. A system was developed to monitor the safety status (periodic maintenance and registered malfunctions) of OR devices and to facilitate the notification of malfunctions. The objective was to assess whether the system is suitable for use in an busy OR setting and to analyse its effect on the notification of malfunctions. The system checks automatically the safety status of OR devices through constant communication with the technical facility management system, informs the OR staff real-time and facilitates notification of malfunctions. The system was tested for a pilot period of six months in four ORs of a Dutch teaching hospital and 17 users were interviewed on the usability of the system. The users provided positive feedback on the usability. For 86.6% of total time, the localisation of OR devices was accurate. 62 malfunctions of OR devices were reported, an increase of 12 notifications compared to the previous year. The safety status system was suitable for an OR complex, both from a usability and technical point of view, and an increase of reported malfunctions was observed. The system eases monitoring the safety status of equipment and is a promising tool to improve the safety related to OR devices.

  18. Plant air systems safety study: Portsmouth Gaseous Diffusion Plant

    International Nuclear Information System (INIS)

    1982-05-01

    The Portsmouth Gaseous Diffusion Plant Air System facilities and operations are reviewed for potential safety problems not covered by standard industrial safety procedures. Information is presented under the following section headings: facility and process description (general); air plant equipment; air distribution system; safety systems; accident analysis; plant air system safety overview; and conclusion

  19. A philosophy for space nuclear systems safety

    International Nuclear Information System (INIS)

    Marshall, A.C.

    1992-01-01

    The unique requirements and contraints of space nuclear systems require careful consideration in the development of a safety policy. The Nuclear Safety Policy Working Group (NSPWG) for the Space Exploration Initiative has proposed a hierarchical approach with safety policy at the top of the hierarchy. This policy allows safety requirements to be tailored to specific applications while still providing reassurance to regulators and the general public that the necessary measures have been taken to assure safe application of space nuclear systems. The safety policy used by the NSPWG is recommended for all space nuclear programs and missions

  20. Identification of structures, systems, and components important to safety at the potential repository at Yucca Mountain

    International Nuclear Information System (INIS)

    Hartman, D.J.; Miller, D.D.; Klamerus, L.J.

    1991-10-01

    This study recommends which structures, systems, and components of the potential repository at Yucca Mountain are important to safety. The assessment was completed in April 1990 and uses the reference repository configuration in the Site Characterization Plan Conceptual Design Report and follows the methodology required at that time by DOE Procedure AP6.10-Q. Failures of repository items during the preclosure period are evaluated to determine the potential offsite radiation doses and associated probabilities. Items are important to safety if, in the event they fail to perform their intended function, an accident could result which causes a dose commitment greater than 0.5 rem to the whole body or any organ of an individual in an unrestricted area. This study recommends that these repository items include the structures that house spent fuel and high-level waste, the associated filtered ventilation exhaust systems, certain waste- handling equipment, the waste containers, the waste treatment building structure, the underground waste transporters, and other items listed in this report. This work was completed April 1990. 27 refs., 7 figs., 9 tabs

  1. Reactivity control in HTR power plants with respect to passive safety system. Summary

    Energy Technology Data Exchange (ETDEWEB)

    Barnert, H; Kugeler, K [Forschungszentrum Juelich GmbH (Germany). Inst. fuer Sicherheitsforschung und Reaktortechnik

    1996-12-01

    The R and D and Demonstration of the High Temperature Reactor (HTR) is described in overview. The HTR-MODULE power plant, as the most advanced concept, is taken for the description of the reactivity control in general. The idea of the ``modularization of the core`` of the HTR has been developed as the answer on the experiences of the core melt accident at Three Miles Island. The HTR module has two shutdown systems: The ``6 rods``-system for hot shutdown at the ``18 small absorber pebbles units`` - system for cold shutdown. With respect to the definition of ``Passive Systems`` of IAEA-TECDOC-626 the total reactivity control system of the HTR-MODULE is a passive system of category D, because it is an emergency reactor shutdown system based on gravity driven rods, and devices, activated by fail-safe trip logic. But reactivity control of the HTR does not only consist of these engineered safety system but does have a self-acting stabilization by the negative temperature coefficient of the reactivity, being rather effective in reactivity control. Examples from computer calculations are presented, and, in addition, experimental results from the ``Stuck Rod Experiment`` at the AVR reactor in Juelich. On the basis of this the proposal is made that ``self-acting stabilization as a quality of the function`` should be discussed as a new category in addition to the active and passive engineered safety systems, structures and components of IAEA-TECDOC-626. The requirements for a future ``catastrophe-free`` nuclear technology are presented. In the appendix the 7th amendment of the atomic energy act of the Federal Republic of Germany, effective 28 July 94, is given. (author).

  2. The safety interlocking system at the NAC

    International Nuclear Information System (INIS)

    Visser, K.; Mostert, H.

    1984-01-01

    The central safety interlocking system (CSIS) controls the higher level of interlocking between the various cyclotron subsystems. It ensures the safe operation of the entire cyclotron facility as regards personnel safety and proper instrument operation. The system consists of a micro-processor with a ROM-based safety interlocking program, relay output modules providing ''safety OK'' instructions to all interlocked apparatus, alarm input modules connected to transducers providing binary alarm status signals and an interface to the central control computer. All solid state electronic components of the system are situated in a low level radiation area and are interfaced to cyclotron equipment by means of 24 V relays

  3. Safety Verification for Probabilistic Hybrid Systems

    DEFF Research Database (Denmark)

    Zhang, Lijun; She, Zhikun; Ratschan, Stefan

    2010-01-01

    The interplay of random phenomena and continuous real-time control deserves increased attention for instance in wireless sensing and control applications. Safety verification for such systems thus needs to consider probabilistic variations of systems with hybrid dynamics. In safety verification o...... on a number of case studies, tackled using a prototypical implementation....

  4. A management system integrating radiation protection and safety supporting safety culture in the hospital

    International Nuclear Information System (INIS)

    Almen, A.; Lundh, C.

    2015-01-01

    Quality assurance has been identified as an important part of radiation protection and safety for a considerable time period. A rational expansion and improvement of quality assurance is to integrate radiation protection and safety in a management system. The aim of this study was to explore factors influencing the implementing strategy when introducing a management system including radiation protection and safety in hospitals and to outline benefits of such a system. The main experience from developing a management system is that it is possible to create a vast number of common policies and routines for the whole hospital, resulting in a cost-efficient system. One of the key benefits is the involvement of management at all levels, including the hospital director. Furthermore, a transparent system will involve staff throughout the organisation as well. A management system supports a common view on what should be done, who should do it and how the activities are reviewed. An integrated management system for radiation protection and safety includes key elements supporting a safety culture. (authors)

  5. Regulatory Oversight of Safety Culture in Finland: A Systemic Approach to Safety

    International Nuclear Information System (INIS)

    Oedewald, P.; Väisäsvaara, J.

    2016-01-01

    In Finland the Radiation and Nuclear Safety Authority STUK specifies detailed regulatory requirements for good safety culture. Both the requirements and the practical safety culture oversight activities reflect a systemic approach to safety: the interconnections between the technical, human and organizational factors receive special attention. The conference paper aims to show how the oversight of safety culture can be integrated into everyday oversight activities. The paper also emphasises that the scope of the safety culture oversight is not specific safety culture activities of the licencees, but rather the overall functioning of the licence holder or the new build project organization from safety point of view. The regulatory approach towards human and organizational factors and safety culture has evolved throughout the years of nuclear energy production in Finland. Especially the recent new build projects have highlighted the need to systematically pay attention to the non-technical aspects of safety as it has become obvious how the HOF issues can affect the design processes and quality of construction work. Current regulatory guides include a set of safety culture related requirements. The requirements are binding to the licence holders and they set both generic and specific demands on the licencee to understand, monitor and to develop safety culture of their own organization but also that of their supplier network. The requirements set for the licence holders has facilitated the need to develop the regulator’s safety culture oversight practices towards a proactive and systemic approach.

  6. Design aspects of safety critical instrumentation of nuclear installations

    Energy Technology Data Exchange (ETDEWEB)

    Swaminathan, P. [Electronics Group, Indira Gandhi Centre for Atomic Research, Kalpakkam 603 102, Tamil Nadu (India)]. E-mail: swamy@igcar.ernet.in

    2005-07-01

    Safety critical instrumentation systems ensure safe shutdown/configuration of the nuclear installation when process status exceeds the safety threshold limits. Design requirements for safety critical instrumentation such as functional and electrical independence, fail-safe design, and architecture to ensure the specified unsafe failure rate and safe failure rate, human machine interface (HMI), etc., are explained with examples. Different fault tolerant architectures like 1/2, 2/2, 2/3 hot stand-by are compared for safety critical instrumentation. For embedded systems, software quality assurance is detailed both during design phase and O and M phase. Different software development models such as waterfall model and spiral model are explained with examples. The error distribution in embedded system is detailed. The usage of formal method is outlined to reduce the specification error. The guidelines for coding of application software are outlined. The interface problems of safety critical instrumentation with sensors, actuators, other computer systems, etc., are detailed with examples. Testability and maintainability shall be taken into account during design phase. Online diagnostics for safety critical instrumentation is detailed with examples. Salient details of design guides from Atomic Energy Regulatory Board, International Atomic Energy Agency and standards from IEEE, BIS are given towards the design of safety critical instrumentation systems. (author)

  7. Design aspects of safety critical instrumentation of nuclear installations

    International Nuclear Information System (INIS)

    Swaminathan, P.

    2005-01-01

    Safety critical instrumentation systems ensure safe shutdown/configuration of the nuclear installation when process status exceeds the safety threshold limits. Design requirements for safety critical instrumentation such as functional and electrical independence, fail-safe design, and architecture to ensure the specified unsafe failure rate and safe failure rate, human machine interface (HMI), etc., are explained with examples. Different fault tolerant architectures like 1/2, 2/2, 2/3 hot stand-by are compared for safety critical instrumentation. For embedded systems, software quality assurance is detailed both during design phase and O and M phase. Different software development models such as waterfall model and spiral model are explained with examples. The error distribution in embedded system is detailed. The usage of formal method is outlined to reduce the specification error. The guidelines for coding of application software are outlined. The interface problems of safety critical instrumentation with sensors, actuators, other computer systems, etc., are detailed with examples. Testability and maintainability shall be taken into account during design phase. Online diagnostics for safety critical instrumentation is detailed with examples. Salient details of design guides from Atomic Energy Regulatory Board, International Atomic Energy Agency and standards from IEEE, BIS are given towards the design of safety critical instrumentation systems. (author)

  8. CERN safety system monitoring - SSM

    International Nuclear Information System (INIS)

    Hakulinen, T.; Ninin, P.; Valentini, F.; Gonzalez, J.; Salatko-Petryszcze, C.

    2012-01-01

    CERN SSM (Safety System Monitoring) is a system for monitoring state-of-health of the various access and safety systems of the CERN site and accelerator infrastructure. The emphasis of SSM is on the needs of maintenance and system operation with the aim of providing an independent and reliable verification path of the basic operational parameters of each system. Included are all network-connected devices, such as PLCs (local purpose control unit), servers, panel displays, operator posts, etc. The basic monitoring engine of SSM is a freely available system-monitoring framework Zabbix, on top of which a simplified traffic-light-type web-interface has been built. The web-interface of SSM is designed to be ultra-light to facilitate access from hand-held devices over slow connections. The underlying Zabbix system offers history and notification mechanisms typical of advanced monitoring systems. (authors)

  9. The ATLAS Detector Safety System

    CERN Multimedia

    Helfried Burckhart; Kathy Pommes; Heidi Sandaker

    The ATLAS Detector Safety System (DSS) has the mandate to put the detector in a safe state in case an abnormal situation arises which could be potentially dangerous for the detector. It covers the CERN alarm severity levels 1 and 2, which address serious risks for the equipment. The highest level 3, which also includes danger for persons, is the responsibility of the CERN-wide system CSAM, which always triggers an intervention by the CERN fire brigade. DSS works independently from and hence complements the Detector Control System, which is the tool to operate the experiment. The DSS is organized in a Front- End (FE), which fulfills autonomously the safety functions and a Back-End (BE) for interaction and configuration. The overall layout is shown in the picture below. ATLAS DSS configuration The FE implementation is based on a redundant Programmable Logical Crate (PLC) system which is used also in industry for such safety applications. Each of the two PLCs alone, one located underground and one at the s...

  10. Acceptance of failed SNF [spent nuclear fuel] assemblies by the Federal Waste Management System

    International Nuclear Information System (INIS)

    1990-03-01

    This report is one of a series of eight prepared by E. R. Johnson Associates, Inc. (JAI) under ORNL's contract with DOE's OCRWM Systems Integration Program and in support of the Annual Capacity Report (ACR) Issue Resolution Process. The report topics relate specifically to the list of high priority technical waste acceptance issues developed jointly by DOE and a utility-working group. JAI performed various analyses and studies on each topic to serve as starting points for further discussion and analysis leading eventually to finalizing the process by which DOE will accept spent fuel and waste into its waste management system. The eight reports are concerned with the conditions under which spent fuel and high level waste will be accepted in the following categories: failed fuel; consolidated fuel and associated structural parts; non-fuel-assembly hardware; fuel in metal storage casks; fuel in multi-element sealed canisters; inspection and testing requirements for wastes; canister criteria; spent fuel selection for delivery; and defense and commercial high-level waste packages. This document discusses acceptance of failed spent fuel assemblies by the Federal Waste Management System. 18 refs., 7 figs., 25 tabs

  11. Systems engineered health and safety criteria for safety analysis reports

    International Nuclear Information System (INIS)

    Beitel, G.A.; Morcos, N.

    1993-01-01

    The world of safety analysis is filled with ambiguous words: codes and standards, consequences and risks, hazard and accident, and health and safety. These words have been subject to disparate interpretations by safety analysis report (SAR) writers, readers, and users. open-quotes Principal health and safety criteriaclose quotes has been one of the most frequently misused phrases; rarely is it used consistently or effectively. This paper offers an easily understood definition for open-quotes principal health and safety criteriaclose quotes and uses systems engineering to convert an otherwise mysterious topic into the primary means of producing an integrated SAR. This paper is based on SARs being written for environmental restoration and waste management activities for the U.S. Department of Energy (DOE). Requirements for these SARs are prescribed in DOE Order 5480-23, open-quotes Nuclear Safety Analysis Reports.close quotes

  12. LOFT integral test system final safety analysis report

    International Nuclear Information System (INIS)

    1974-03-01

    Safety analyses are presented for the following LOFT Reactor systems: engineering safety features; support buildings and facilities; instrumentation and controls; electrical systems; and auxiliary systems. (JWR)

  13. Analyzing Software Requirements Errors in Safety-Critical, Embedded Systems

    Science.gov (United States)

    Lutz, Robyn R.

    1993-01-01

    This paper analyzes the root causes of safety-related software errors in safety-critical, embedded systems. The results show that software errors identified as potentially hazardous to the system tend to be produced by different error mechanisms than non- safety-related software errors. Safety-related software errors are shown to arise most commonly from (1) discrepancies between the documented requirements specifications and the requirements needed for correct functioning of the system and (2) misunderstandings of the software's interface with the rest of the system. The paper uses these results to identify methods by which requirements errors can be prevented. The goal is to reduce safety-related software errors and to enhance the safety of complex, embedded systems.

  14. Using system dynamics simulation for assessment of hydropower system safety

    Science.gov (United States)

    King, L. M.; Simonovic, S. P.; Hartford, D. N. D.

    2017-08-01

    Hydropower infrastructure systems are complex, high consequence structures which must be operated safely to avoid catastrophic impacts to human life, the environment, and the economy. Dam safety practitioners must have an in-depth understanding of how these systems function under various operating conditions in order to ensure the appropriate measures are taken to reduce system vulnerability. Simulation of system operating conditions allows modelers to investigate system performance from the beginning of an undesirable event to full system recovery. System dynamics simulation facilitates the modeling of dynamic interactions among complex arrangements of system components, providing outputs of system performance that can be used to quantify safety. This paper presents the framework for a modeling approach that can be used to simulate a range of potential operating conditions for a hydropower infrastructure system. Details of the generic hydropower infrastructure system simulation model are provided. A case study is used to evaluate system outcomes in response to a particular earthquake scenario, with two system safety performance measures shown. Results indicate that the simulation model is able to estimate potential measures of system safety which relate to flow conveyance and flow retention. A comparison of operational and upgrade strategies is shown to demonstrate the utility of the model for comparing various operational response strategies, capital upgrade alternatives, and maintenance regimes. Results show that seismic upgrades to the spillway gates provide the largest improvement in system performance for the system and scenario of interest.

  15. Analysis of Aviation Safety Reporting System Incident Data Associated with the Technical Challenges of the System-Wide Safety and Assurance Technologies Project

    Science.gov (United States)

    Withrow, Colleen A.; Reveley, Mary S.

    2015-01-01

    The Aviation Safety Program (AvSP) System-Wide Safety and Assurance Technologies (SSAT) Project asked the AvSP Systems and Portfolio Analysis Team to identify SSAT-related trends. SSAT had four technical challenges: advance safety assurance to enable deployment of NextGen systems; automated discovery of precursors to aviation safety incidents; increasing safety of human-automation interaction by incorporating human performance, and prognostic algorithm design for safety assurance. This report reviews incident data from the NASA Aviation Safety Reporting System (ASRS) for system-component-failure- or-malfunction- (SCFM-) related and human-factor-related incidents for commercial or cargo air carriers (Part 121), commuter airlines (Part 135), and general aviation (Part 91). The data was analyzed by Federal Aviation Regulations (FAR) part, phase of flight, SCFM category, human factor category, and a variety of anomalies and results. There were 38 894 SCFM-related incidents and 83 478 human-factorrelated incidents analyzed between January 1993 and April 2011.

  16. Soft systems methodology as a systemic approach to nuclear safety management

    International Nuclear Information System (INIS)

    Vieira Neto, Antonio S.; Guilhen, Sabine N.; Rubin, Gerson A.; Caldeira Filho, Jose S.; Camargo, Iara M.C.

    2017-01-01

    Safety approach currently adopted by nuclear installations is built almost exclusively upon analytical methodologies based, mainly, on the belief that the properties of a system, such as its safety, are given by its constituent parts. This approach, however, does not properly address the complex dynamic interactions between technical, human and organizational factors occurring within and outside the organization. After the accident at Fukushima Daiichi nuclear power plant in March 2011, experts of the International Atomic Energy Agency (IAEA) recommended a systemic approach as a complementary perspective to nuclear safety. The aim of this paper is to present an overview of the systems thinking approach and its potential use for structuring socio technical problems involved in the safety of nuclear installations, highlighting the methodologies related to the soft systems thinking, in particular the Soft Systems Methodology (SSM). The implementation of a systemic approach may thus result in a more holistic picture of the system by the complex dynamic interactions between technical, human and organizational factors. (author)

  17. Soft systems methodology as a systemic approach to nuclear safety management

    Energy Technology Data Exchange (ETDEWEB)

    Vieira Neto, Antonio S.; Guilhen, Sabine N.; Rubin, Gerson A.; Caldeira Filho, Jose S.; Camargo, Iara M.C., E-mail: asvneto@ipen.br, E-mail: snguilhen@ipen.br, E-mail: garubin@ipen.br, E-mail: jscaldeira@ipen.br, E-mail: icamargo@ipen.br [Instituto de Pesquisas Energeticas e Nucleares (IPEN/CNE-SP), Sao Paulo, SP (Brazil)

    2017-07-01

    Safety approach currently adopted by nuclear installations is built almost exclusively upon analytical methodologies based, mainly, on the belief that the properties of a system, such as its safety, are given by its constituent parts. This approach, however, does not properly address the complex dynamic interactions between technical, human and organizational factors occurring within and outside the organization. After the accident at Fukushima Daiichi nuclear power plant in March 2011, experts of the International Atomic Energy Agency (IAEA) recommended a systemic approach as a complementary perspective to nuclear safety. The aim of this paper is to present an overview of the systems thinking approach and its potential use for structuring socio technical problems involved in the safety of nuclear installations, highlighting the methodologies related to the soft systems thinking, in particular the Soft Systems Methodology (SSM). The implementation of a systemic approach may thus result in a more holistic picture of the system by the complex dynamic interactions between technical, human and organizational factors. (author)

  18. Safety analysis and evaluation methodology for fusion systems

    International Nuclear Information System (INIS)

    Fujii-e, Y.; Kozawa, Y.; Namba, C.

    1987-03-01

    Fusion systems which are under development as future energy systems have reached a stage that the break even is expected to be realized in the near future. It is desirable to demonstrate that fusion systems are well acceptable to the societal environment. There are three crucial viewpoints to measure the acceptability, that is, technological feasibility, economy and safety. These three points have close interrelation. The safety problem is more important since three large scale tokamaks, JET, TFTR and JT-60, start experiment, and tritium will be introduced into some of them as the fusion fuel. It is desirable to establish a methodology to resolve the safety-related issues in harmony with the technological evolution. The promising fusion system toward reactors is not yet settled. This study has the objective to develop and adequate methodology which promotes the safety design of general fusion systems and to present a basis for proposing the R and D themes and establishing the data base. A framework of the methodology, the understanding and modeling of fusion systems, the principle of ensuring safety, the safety analysis based on the function and the application of the methodology are discussed. As the result of this study, the methodology for the safety analysis and evaluation of fusion systems was developed. New idea and approach were presented in the course of the methodology development. (Kako, I.)

  19. Understanding Nuclear Safety Culture: A Systemic Approach

    International Nuclear Information System (INIS)

    Afghan, A.N.

    2016-01-01

    The Fukushima accident was a systemic failure (Report by Director General IAEA on the Fukushima Daiichi Accident). Systemic failure is a failure at system level unlike the currently understood notion which regards it as the failure of component and equipment. Systemic failures are due to the interdependence, complexity and unpredictability within systems and that is why these systems are called complex adaptive systems (CAS), in which “attractors” play an important role. If we want to understand the systemic failures we need to understand CAS and the role of these attractors. The intent of this paper is to identify some typical attractors (including stakeholders) and their role within complex adaptive system. Attractors can be stakeholders, individuals, processes, rules and regulations, SOPs etc., towards which other agents and individuals are attracted. This paper will try to identify attractors in nuclear safety culture and influence of their assumptions on safety culture behavior by taking examples from nuclear industry in Pakistan. For example, if the nuclear regulator is an attractor within nuclear safety culture CAS then how basic assumptions of nuclear plant operators and shift in-charges about “regulator” affect their own safety behavior?

  20. On line testing of shutdown system

    International Nuclear Information System (INIS)

    Ramnath, S.; Swaminathan, P.; Sreenivasan, P.

    1997-01-01

    For ensuring high reliability and availability, safety related Instrumentation channels are triplicated. Solid state electronics can fail in safe or unsafe mode. Hence, it is necessary to supervise the safety related Instrumentation channels from sensor to final shutdown system. Microprocessor/ Microcontroller/ ASIC based online supervision systems are detailed in this paper. (author)

  1. Safety standards of IAEA for management systems

    International Nuclear Information System (INIS)

    Vincze, P.

    2005-01-01

    IAEA has developed a new series of safety standards which are assigned for constitution of the conditions and which give the instruction for setting up the management systems that integrate the aims of safety, health, life environment and quality. The new standard shall replace IAEA 50-C-Q - Requirements for security of the quality for safety in nuclear power plants and other nuclear facilities as well as 14 related safety instructions mentioned in the Safety series No. 50-C/SG-Q (1996). When developing of this complex, integrated set of requirements for management systems, the IAEA requirements 50-C-Q (1996) were taken into consideration as well as the publications developed within the International organisation for standardization (ISO) ISO 9001:2000 and ISO14001: 1996. The experience of European Union member states during the development, implementation and improvement of the management systems were also taken into consideration

  2. Model-based safety architecture framework for complex systems

    NARCIS (Netherlands)

    Schuitemaker, Katja; Rajabali Nejad, Mohammadreza; Braakhuis, J.G.; Podofillini, Luca; Sudret, Bruno; Stojadinovic, Bozidar; Zio, Enrico; Kröger, Wolfgang

    2015-01-01

    The shift to transparency and rising need of the general public for safety, together with the increasing complexity and interdisciplinarity of modern safety-critical Systems of Systems (SoS) have resulted in a Model-Based Safety Architecture Framework (MBSAF) for capturing and sharing architectural

  3. A formal safety analysis for PLC software-based safety critical system using Z

    International Nuclear Information System (INIS)

    Koh, Jung Soo; Seong, Poong Hyun

    1997-01-01

    This paper describes a formal safety analysis technique which is demonstrated by performing empirical formal safety analysis with the case study of beamline hutch door Interlock system that is developed by using PLC (Programmable Logic Controller) systems at the Pohang Accelerator Laboratory. In order to perform formed safety analysis, we have built the Z formal specifications representation from user requirement written in ambiguous natural language and target PLC ladder logic, respectively. We have also studied the effective method to express typical PLC timer component by using specific Z formal notation which is supported by temporal history. We present a formal proof technique specifying and verifying that the hazardous states are not introduced into ladder logic in the PLC-based safety critical system

  4. Operation safety of complex industrial systems

    International Nuclear Information System (INIS)

    Zwingelstein, G.

    1999-01-01

    Zero fault or zero risk is an unreachable goal in industrial activities like nuclear activities. However, methods and techniques exist to reduce the risks to the lowest possible and acceptable level. The operation safety consists in the recognition, evaluation, prediction, measurement and mastery of technological and human faults. This paper analyses each of these points successively: 1 - evolution of operation safety; 2 - definitions and basic concepts: failure, missions and functions of a system and of its components, basic concepts and operation safety; 3 - forecasting analysis of operation safety: reliability data, data-banks, precautions for the use of experience feedback data; realization of an operation safety study: management of operation safety, quality assurance, critical review and audit of operation safety studies; 6 - conclusions. (J.S.)

  5. ADASIR system: a Cuban learning experience from accidents and promotion of radiation safety culture

    International Nuclear Information System (INIS)

    Ferro Fernandez, Ruben; Ilizastigui Perez, Fidel; Fuente Puch, Andres de la

    2010-01-01

    The Cuban Regulatory Authority is carrying out a National Program for fostering and development of Safety Culture taking into account the wide recognition of the Human factors contribution to radiological events. The program includes the introduction of new regulatory practices and initiatives in order to increase the safety culture in Cuban facilities. The most recent of those initiatives is the System for Radiological Event Analysis, Dissemination and Learning, called ADASIR (Initials of the System's name in Spanish). The main purpose of this system is to provide a better understanding and knowledge of any radiological event reported both in the country and abroad reducing, this way, the possibility of a new occurrence of a similar event in our facilities. A team of regulatory and external experts make together a detailed review of all available information about the event and identify possible root causes, failed barriers and other important data of national interest. The results of such review are documented and sent to any Cuban facility or organization with potential for similar occurrence according to the equipment and practices they have. The document includes an specific checklist which could be used by the facilities to make a self-assessment and evaluate theirs strength and weakness in regards to a similar event. This paper presents the main characteristics and results of this new experience of Cuban Regulatory Authority. (author)

  6. Effect of joint mechanism on vehicle redirectional capability of water-filled road safety barrier systems.

    Science.gov (United States)

    Thiyahuddin, M I; Thambiratnam, D P; Gu, Y T

    2014-10-01

    Portable water-filled barriers (PWFBs) are roadside appurtenances that prevent vehicles from penetrating into temporary construction zones on roadways. PWFBs are required to satisfy the strict regulations for vehicle re-direction in tests. However, many of the current PWFBs fail to re-direct the vehicle at high speeds due to the inability of the joints to provide appropriate stiffness. The joint mechanism hence plays a crucial role in the performance of a PWFB system at high speed impacts. This paper investigates the desired features of the joint mechanism in a PWFB system that can re-direct vehicles at high speeds, while limiting the lateral displacement to acceptable limits. A rectangular "wall" representative of a 30m long barrier system was modeled and a novel method of joining adjacent road barriers was introduced through appropriate pin-joint connections. The impact response of the barrier "wall" and the vehicle was obtained and the results show that a rotational stiffness of 3000kNm/rad at the joints seems to provide the desired features of the PWFB system to re-direct impacting vehicles and restrict the lateral deflection. These research findings will be useful to safety engineers and road barrier designers in developing a new generation of PWFBs for increased road safety. Copyright © 2014 Elsevier Ltd. All rights reserved.

  7. The reliability of nuclear power plant safety systems

    International Nuclear Information System (INIS)

    Susnik, J.

    1978-01-01

    A criterion was established concerning the protection that nuclear power plant (NPP) safety systems should afford. An estimate of the necessary or adequate reliability of the total complex of safety systems was derived. The acceptable unreliability of auxiliary safety systems is given, provided the reliability built into the specific NPP safety systems (ECCS, Containment) is to be fully utilized. A criterion for the acceptable unreliability of safety (sub)systems which occur in minimum cut sets having three or more components of the analysed fault tree was proposed. A set of input MTBF or MTTF values which fulfil all the set criteria and attain the appropriate overall reliability was derived. The sensitivity of results to input reliability data values was estimated. Numerical reliability evaluations were evaluated by the programs POTI, KOMBI and particularly URSULA, the last being based on Vesely's kinetic fault tree theory. (author)

  8. Safety management systems and their role in achieving high standards of operational safety

    International Nuclear Information System (INIS)

    Coulston, D.J.; Baylis, C.C.

    2000-01-01

    Achieving high standards of operational safety requires a robust management framework that is visible to all personnel with responsibility for its implementation. The structure of the management framework must ensure that all processes used to manage safety interlink in a logical and coherent manner, that is, they form a management system that leads to continuous improvement in safety performance. This Paper describes BNFL's safety management system (SMS). The SMS has management processes grouped within 5 main elements: 1. Policy, 2. Organisation, 3. Planning and Implementation, 4. Measuring and Reviewing Performance, 5. Audit. These elements reflect the overall process of setting safety objective (from Policy), measuring success and reviewing the performance. Effective implementation of the SMS requires senior managers to demonstrate leadership through their commitment and accountability. However, the SMS as a whole reflects that every employee at every level within BNFL is responsible for safety of operations under their control. The SMS therefore promotes a proactive safety culture and safe operations. The system is formally documented in the Company's Environmental, Health and Safety (EHS) Manual. Within in BNFL Group, the Company structures enables the Manual to provide overall SMS guidance and co-ordination to its range of nuclear businesses. Each business develops the SMS to be appropriate at all levels of its organisation, but ensuring that each level is consistent with the higher level. The Paper concludes with a summary of BNFL's safety performance. (author)

  9. System Safety in an IT Service Organization

    Science.gov (United States)

    Parsons, Mike; Scutt, Simon

    Within Logica UK, over 30 IT service projects are considered safetyrelated. These include operational IT services for airports, railway infrastructure asset management, nationwide radiation monitoring and hospital medical records services. A recent internal audit examined the processes and documents used to manage system safety on these services and made a series of recommendations for improvement. This paper looks at the changes and the challenges to introducing them, especially where the service is provided by multiple units supporting both safety and non-safety related services from multiple locations around the world. The recommendations include improvements to service agreements, improved process definitions, routine safety assessment of changes, enhanced call logging, improved staff competency and training, and increased safety awareness. Progress is reported as of today, together with a road map for implementation of the improvements to the service safety management system. A proposal for service assurance levels (SALs) is discussed as a way forward to cover the wide variety of services and associated safety risks.

  10. Aviation Safety Reporting System: Process and Procedures

    Science.gov (United States)

    Connell, Linda J.

    1997-01-01

    The Aviation Safety Reporting System (ASRS) was established in 1976 under an agreement between the Federal Aviation Administration (FAA) and the National Aeronautics and Space Administration (NASA). This cooperative safety program invites pilots, air traffic controllers, flight attendants, maintenance personnel, and others to voluntarily report to NASA any aviation incident or safety hazard. The FAA provides most of the program funding. NASA administers the program, sets its policies in consultation with the FAA and aviation community, and receives the reports submitted to the program. The FAA offers those who use the ASRS program two important reporting guarantees: confidentiality and limited immunity. Reports sent to ASRS are held in strict confidence. More than 350,000 reports have been submitted since the program's beginning without a single reporter's identity being revealed. ASRS removes all personal names and other potentially identifying information before entering reports into its database. This system is a very successful, proof-of-concept for gathering safety data in order to provide timely information about safety issues. The ASRS information is crucial to aviation safety efforts both nationally and internationally. It can be utilized as the first step in safety by providing the direction and content to informed policies, procedures, and research, especially human factors. The ASRS process and procedures will be presented as one model of safety reporting feedback systems.

  11. Developing and maintaining national food safety control systems ...

    African Journals Online (AJOL)

    The establishment of effective food safety systems is pivotal to ensuring the safety of the national food supply as well as food products for regional and international trade. The development, structure and implementation of modern food safety systems have been driven over the years by a number of developments.

  12. COMPRESS - a computerized reactor safety system

    International Nuclear Information System (INIS)

    Vegh, E.

    1986-01-01

    The computerized reactor safety system, called COMPRESS, provides the following services: scram initiation; safety interlockings; event recording. The paper describes the architecture of the system and deals with reliability problems. A self-testing unit checks permanently the correct operation of the independent decision units. Moreover the decision units are tested by short pulses whether they can initiate a scram. The self-testing is described in detail

  13. Nitrogen-system safety study: Portsmouth Gaseous Diffusion Plant

    International Nuclear Information System (INIS)

    1982-07-01

    The Department of Energy has primary responsibility for the safety of operations at DOE-owned nuclear facilities. The guidelines for the analysis of credible accidents are outlined in DOE Order 5481.1. DOE has requested that existing plant facilities and operations be reviewed for potential safety problems not covered by standard industrial safety procedures. This review is being conducted by investigating individual facilities and documenting the results in Safety Study Reports which will be compiled to form the Existing Plant Final Safety Analysis Report which is scheduled for completion in September, 1984. This Safety Study documents the review of the Plant Nitrogen System facilities and operations and consists of Section 4.0, Facility and Process Description, and Section 5.0, Accident Analysis, of the Final Safety Analysis Report format. The existing nitrogen system consists of a Superior Air Products Company Type D Nitrogen Plant, nitrogen storage facilities, vaporization facilities and a distribution system. The system is designed to generate and distribute nitrogen gas used in the cascade for seal feed, buffer systems, and for servicing equipment when exceptionally low dew points are required. Gaseous nitrogen is also distributed to various process auxiliary buildings. The average usage is approximately 130,000 standard cubic feet per day

  14. Integrated therapy safety management system.

    Science.gov (United States)

    Podtschaske, Beatrice; Fuchs, Daniela; Friesdorf, Wolfgang

    2013-09-01

    The aim is to demonstrate the benefit of the medico-ergonomic approach for the redesign of clinical work systems. Based on the six layer model, a concept for an 'integrated therapy safety management' is drafted. This concept could serve as a basis to improve resilience. The concept is developed through a concept-based approach. The state of the art of safety and complexity research in human factors and ergonomics forms the basis. The findings are synthesized to a concept for 'integrated therapy safety management'. The concept is applied by way of example for the 'medication process' to demonstrate its practical implementation. The 'integrated therapy safety management' is drafted in accordance with the six layer model. This model supports a detailed description of specific work tasks, the corresponding responsibilities and related workflows at different layers by using the concept of 'bridge managers'. 'Bridge managers' anticipate potential errors and monitor the controlled system continuously. If disruptions or disturbances occur, they respond with corrective actions which ensure that no harm results and they initiate preventive measures for future procedures. The concept demonstrates that in a complex work system, the human factor is the key element and final authority to cope with the residual complexity. The expertise of the 'bridge managers' and the recursive hierarchical structure results in highly adaptive clinical work systems and increases their resilience. The medico-ergonomic approach is a highly promising way of coping with two complexities. It offers a systematic framework for comprehensive analyses of clinical work systems and promotes interdisciplinary collaboration. © 2013 The Authors. British Journal of Clinical Pharmacology © 2013 The British Pharmacological Society.

  15. Integrated therapy safety management system

    Science.gov (United States)

    Podtschaske, Beatrice; Fuchs, Daniela; Friesdorf, Wolfgang

    2013-01-01

    Aims The aim is to demonstrate the benefit of the medico-ergonomic approach for the redesign of clinical work systems. Based on the six layer model, a concept for an ‘integrated therapy safety management’ is drafted. This concept could serve as a basis to improve resilience. Methods The concept is developed through a concept-based approach. The state of the art of safety and complexity research in human factors and ergonomics forms the basis. The findings are synthesized to a concept for ‘integrated therapy safety management’. The concept is applied by way of example for the ‘medication process’ to demonstrate its practical implementation. Results The ‘integrated therapy safety management’ is drafted in accordance with the six layer model. This model supports a detailed description of specific work tasks, the corresponding responsibilities and related workflows at different layers by using the concept of ‘bridge managers’. ‘Bridge managers’ anticipate potential errors and monitor the controlled system continuously. If disruptions or disturbances occur, they respond with corrective actions which ensure that no harm results and they initiate preventive measures for future procedures. The concept demonstrates that in a complex work system, the human factor is the key element and final authority to cope with the residual complexity. The expertise of the ‘bridge managers’ and the recursive hierarchical structure results in highly adaptive clinical work systems and increases their resilience. Conclusions The medico-ergonomic approach is a highly promising way of coping with two complexities. It offers a systematic framework for comprehensive analyses of clinical work systems and promotes interdisciplinary collaboration. PMID:24007448

  16. From Safe Systems to Patient Safety

    DEFF Research Database (Denmark)

    Aarts, J.; Nøhr, C.

    2010-01-01

    for the third conference with the theme: The ability to design, implement and evaluate safe, useable and effective systems within complex health care organizations. The theme for this conference was "Designing and Implementing Health IT: from safe systems to patient safety". The contributions have reflected...... and implementation of safe systems and thus contribute to the agenda of patient safety? The contributions demonstrate how the health informatics community has contributed to the performance of significant research and to translating research findings to develop health care delivery and improve patient safety......This volume presents the papers from the fourth International Conference on Information Technology in Health Care: Socio-technical Approaches held in Aalborg, Denmark in June 2010. In 2001 the first conference was held in Rotterdam, The Netherlands with the theme: Sociotechnical' approaches...

  17. Benefits of a systematic approach to maintenance for safety and safety related systems

    International Nuclear Information System (INIS)

    Dam, R.F.; Ayazzudin, S.; Nickerson, J.H.

    2003-01-01

    For safety and safety-related systems, nuclear plants have to balance the requirements of demonstrating the reliability of each system, while maintaining the system and plant availability. With the goal of demonstrating statistical reliability, these systems have extensive testing programs, which often results in system unavailability and this can impact the plant capacity. The inputs to the process are often safety and regulatory related, resulting in programs that provide a high level of scrutiny. In such cases, the value of the application of a Systematic Assessment of Maintenance (SAM) process, such as Reliability Centered Maintenance (RCM), is questioned. The special case of Standby-Safety systems was discussed in a previous paper, where it was demonstrated how SAM techniques provide useful insight into current system performance, the impact of testing on component and system reliability, and how PSA considerations can be integrated into a comprehensive Maintenance, Surveillance, and Inspection (MSI) strategy. Although the system reliability requirements are an important part of the strategy evaluation, SAM techniques provide a systematic assessment within a broader context. Testing is only one part of an overall strategy focused on ensuring that component function is maintained through a combination of monitoring technologies (including testing), predictive techniques, and intrusive maintenance strategies. Each strategy is targeted to known component degradation mechanisms. This thinking can be extended to safety and safety related systems in general. Over the past 6 years, AECL has been working with CANDU utilities in the development and implementation of a comprehensive and integrated Plant Life Management (PLiM) program. As part of developing a comprehensive plant asset management approach, SAM techniques are used to develop a technical basis that not only works towards ensuring reliable operation of plant systems, but also facilitates the optimization and

  18. Declarative Rule-based Safety for Robotic Perception Systems

    DEFF Research Database (Denmark)

    Mogensen, Johann Thor Ingibergsson; Kraft, Dirk; Schultz, Ulrik Pagh

    2017-01-01

    Mobile robots are used across many domains from personal care to agriculture. Working in dynamic open-ended environments puts high constraints on the robot perception system, which is critical for the safety of the system as a whole. To achieve the required safety levels the perception system needs...... to be certified, but no specific standards exist for computer vision systems, and the concept of safe vision systems remains largely unexplored. In this paper we present a novel domain-specific language that allows the programmer to express image quality detection rules for enforcing safety constraints...

  19. Field Programmable Gate Array-based I and C Safety System

    International Nuclear Information System (INIS)

    Kim, Hyun Jeong; Kim, Koh Eun; Kim, Young Geul; Kwon, Jong Soo

    2014-01-01

    Programmable Logic Controller (PLC)-based I and C safety system used in the operating nuclear power plants has the disadvantages of the Common Cause Failure (CCF), high maintenance costs and quick obsolescence, and then it is necessary to develop the other platform to replace the PLC. The Field Programmable Gate Array (FPGA)-based Instrument and Control (I and C) safety system is safer and more economical than Programmable Logic Controller (PLC)-based I and C safety system. Therefore, in the future, FPGA-based I and C safety system will be able to replace the PLC-based I and C safety system in the operating and the new nuclear power plants to get benefited from its safety and economic advantage. FPGA-based I and C safety system shall be implemented and verified by applying the related requirements to perform the safety function

  20. Field Programmable Gate Array-based I and C Safety System

    Energy Technology Data Exchange (ETDEWEB)

    Kim, Hyun Jeong; Kim, Koh Eun; Kim, Young Geul; Kwon, Jong Soo [KEPCO, Daejeon (Korea, Republic of)

    2014-08-15

    Programmable Logic Controller (PLC)-based I and C safety system used in the operating nuclear power plants has the disadvantages of the Common Cause Failure (CCF), high maintenance costs and quick obsolescence, and then it is necessary to develop the other platform to replace the PLC. The Field Programmable Gate Array (FPGA)-based Instrument and Control (I and C) safety system is safer and more economical than Programmable Logic Controller (PLC)-based I and C safety system. Therefore, in the future, FPGA-based I and C safety system will be able to replace the PLC-based I and C safety system in the operating and the new nuclear power plants to get benefited from its safety and economic advantage. FPGA-based I and C safety system shall be implemented and verified by applying the related requirements to perform the safety function.

  1. Operation safety of complex industrial systems. Main concepts

    International Nuclear Information System (INIS)

    Zwingelstein, G.

    2009-01-01

    Operation safety consists in knowing, evaluating, foreseeing, measuring and mastering the technological system and human failures in order to avoid their impacts on health and people's safety, on productivity, and on the environment, and to preserve the Earth's resources. This article recalls the main concepts of operation safety: 1 - evolutions in the domain; 2 - failures, missions and functions of a system and of its components: functional failure, missions and functions, industrial processes, notions of probability; 3 - basic concepts and operation safety: reliability, unreliability, failure density, failure rate, relations between them, availability, maintainability, safety. (J.S.)

  2. Safety assessment of HLW geological disposal system

    International Nuclear Information System (INIS)

    Naito, Morimasa

    2006-01-01

    In accordance with the Japanese nuclear program, the liquid waste with a high level of radioactivity arising from reprocessing is solidified in a stable glass matrix (vitrification) in stainless steel fabrication containers. The vitrified waste is referred to as high-level radioactive waste (HLW), and is characterized by very high initial radioactivity which, even though it decreases with time, presents a potential long-term risk. It is therefore necessary to thoroughly manage HLW from human and his environment. After vitrification, HLW is stored for a period of 30 to 50 years to allow cooling, and finally disposed of in a stable geological environment at depths greater than 300 m below surface. The deep underground environment, in general, is considered to be stable over geological timescales compared with surface environment. By selecting an appropriate disposal site, therefore, it is considered to be feasible to isolate the waste in the repository from man and his environment until such time as radioactivity levels have decayed to insignificance. The concept of geological disposal in Japan is similar to that in other countries, being based on a multibarrier system which combines the natural geological environment with engineered barriers. It should be noted that geological disposal concept is based on a passive safety system that does not require any institutional control for assuring long term environmental safety. To demonstrate feasibility of safe HLW repository concept in Japan, following technical steps are essential. Selection of a geological environment which is sufficiently stable for disposal (site selection). Design and installation of the engineered barrier system in a stable geological environment (engineering measures). Confirmation of the safety of the constructed geological disposal system (safety assessment). For site selection, particular consideration is given to the long-term stability of the geological environment taking into account the fact

  3. 33 CFR 147.847 - Safety Zone; BW PIONEER Floating Production, Storage, and Offloading System Safety Zone.

    Science.gov (United States)

    2010-07-01

    ... Production, Storage, and Offloading System Safety Zone. 147.847 Section 147.847 Navigation and Navigable... ZONES § 147.847 Safety Zone; BW PIONEER Floating Production, Storage, and Offloading System Safety Zone. (a) Description. The BW PIONEER, a Floating Production, Storage and Offloading (FPSO) system, is in...

  4. Safety-related instrumentation and control systems for nuclear power plants

    International Nuclear Information System (INIS)

    1984-01-01

    This Safety Guide deals mainly with design requirements for those I and C systems that are important to safety but are not safety systems. The Guide is intended to expand paragraphs 3.1, 3.2 and 3.3 of the Code of Practice on Design for Safety of Nuclear Power Plants (IAEA Safety Series No.50-C-D) in the area of I and C systems important to safety and refers to them as safety-related I and C systems. It also gives guidance and enumerates requirements for multiplexing and the use of the digital computers employed in this area

  5. Aims of failed fuel detection and substantiation of radiation safety at implementation of new kinds of nuclear fuel and fuel cycles on NPP with WWER

    International Nuclear Information System (INIS)

    Miglo, V.; Luzanova, L.

    2011-01-01

    Limiting of number of leaking fuel rods in a core during reactor operation in the analyses which are carried out for a substantiation of radiating safety for NPP with WWER as well as problems and possibilities of FFD at implementation of new kinds of fuel and fuel cycles are the main topics discussed in this paper. Available experience of designing of the NPP with WWER shows, that for ensuring of implementation of the RS criteria regarding limiting radioactive emissions from the NPP and doses of an irradiation of the population living near to NPP, it is required to regulate more rigidly number of failed fuel rods in comparison with requirements of Rules of nuclear safety NP-082-07. The reason of it is necessity to consider a technical condition of all safety barriers on a path of radioactive FP extension in a complex, first and foremost of uncontrolled leakage of the primary coolant to the NPP premises and efficiency of filters of ventilating systems, and also spike-effect on activity of isotopes of iodine after a power unit shutdown for fuel reloading and openings of a cover of a reactor. Depending on the project of NPP, parameters of fuel loading, a place of placing of the NPP and other factors the limit level of activity of isotopes of iodine in the primary coolant will be reached at various number of leaking fuel rods which can be unequal for various power units and the NPP with WWER, constructed on one design. The quantity of leaking fuel rods at which the design limit on FP-activity in the primary coolant of operating reactor is reached, can be essential below an operational limit on number of failed fuel rods established by Rules of nuclear safety. However the reached quality of fabrication of the WWER fuel rods providing their high reliability (the probability of fuel rod failure in the course of one operation year is not higher than 10 -5 ) as well as due to the levels of the WWER fuel rod depressurization actually attainable in the normal conditions of

  6. Intelligent monitoring-based safety system of massage robot

    Institute of Scientific and Technical Information of China (English)

    胡宁; 李长胜; 王利峰; 胡磊; 徐晓军; 邹雲鹏; 胡玥; 沈晨

    2016-01-01

    As an important attribute of robots, safety is involved in each link of the full life cycle of robots, including the design, manufacturing, operation and maintenance. The present study on robot safety is a systematic project. Traditionally, robot safety is defined as follows: robots should not collide with humans, or robots should not harm humans when they collide. Based on this definition of robot safety, researchers have proposed ex ante and ex post safety standards and safety strategies and used the risk index and risk level as the evaluation indexes for safety methods. A massage robot realizes its massage therapy function through applying a rhythmic force on the massage object. Therefore, the traditional definition of safety, safety strategies, and safety realization methods cannot satisfy the function and safety requirements of massage robots. Based on the descriptions of the environment of massage robots and the tasks of massage robots, the present study analyzes the safety requirements of massage robots; analyzes the potential safety dangers of massage robots using the fault tree tool; proposes an error monitoring-based intelligent safety system for massage robots through monitoring and evaluating potential safety danger states, as well as decision making based on potential safety danger states; and verifies the feasibility of the intelligent safety system through an experiment.

  7. Development and implementation of setpoint tolerances for special safety systems

    International Nuclear Information System (INIS)

    Oliva, A.F.; Balog, G.; Parkinson, D.G.; Archinoff, G.H.

    1991-01-01

    The establishment of tolerances and impairment limits for special safety system setpoints is part of the process whereby the plant operator demonstrates to the regulatory authority that the plant operates safely and within the defined plant licensing envelope. The licensing envelope represents the set of limits and plant operating state and for which acceptably safe plant operation has been demonstrated by the safety analysis. By definition, operation beyond this envelope contributes to overall safety system unavailability. Definition of the licensing envelope is provided in a wide range of documents including the plant operating licence, the safety report, and the plant operating policies and principles documents. As part of the safety analysis, limits are derived for each special safety system initiating parameter such that the relevant safety design objectives are achieved for all design basis events. If initiation on a given parameter occurs at a level beyond its limit, there is a potential reduction in safety system effectiveness relative to the performance credited in the plant safety analysis. These safety system parameter limits, when corrected for random and systematic instrument errors and other errors inherent in the process of periodic testing or calibration, are then used to derive parameter impairment levels and setpoint tolerances. This paper describes the methodology that has evolved at Ontario Hydro for developing and implementing tolerances for special safety system parameters (i.e., the shutdown systems, emergency coolant injection system and containment system). Tolerances for special safety system initiation setpoints are addressed specifically, although many of the considerations discussed here will apply to performance limits for other safety system components. The first part of the paper deals with the approach that has been adopted for defining and establishing setpoint limits and tolerances. The remainder of the paper addresses operational

  8. 30 CFR 77.902-1 - Fail safe ground check circuits; maximum voltage.

    Science.gov (United States)

    2010-07-01

    ... voltage. 77.902-1 Section 77.902-1 Mineral Resources MINE SAFETY AND HEALTH ADMINISTRATION, DEPARTMENT OF... OF UNDERGROUND COAL MINES Low- and Medium-Voltage Alternating Current Circuits § 77.902-1 Fail safe ground check circuits; maximum voltage. The maximum voltage used for ground check circuits under § 77.902...

  9. 30 CFR 77.803-1 - Fail safe ground check circuits; maximum voltage.

    Science.gov (United States)

    2010-07-01

    ... voltage. 77.803-1 Section 77.803-1 Mineral Resources MINE SAFETY AND HEALTH ADMINISTRATION, DEPARTMENT OF... OF UNDERGROUND COAL MINES Surface High-Voltage Distribution § 77.803-1 Fail safe ground check circuits; maximum voltage. The maximum voltage used for ground check circuits under § 77.803 shall not...

  10. Ergonomics in the context of system safety

    International Nuclear Information System (INIS)

    Donnelly, K.E.

    1984-01-01

    In a complex industrial environment, ergonomics must be combined with management science and systems analysis to produce a program which can create effective change and improve safety performance. We give an overview of such an approach, namely System Safety, so that its ergonomic content may be seen

  11. Identifying behaviour patterns of construction safety using system archetypes.

    Science.gov (United States)

    Guo, Brian H W; Yiu, Tak Wing; González, Vicente A

    2015-07-01

    Construction safety management involves complex issues (e.g., different trades, multi-organizational project structure, constantly changing work environment, and transient workforce). Systems thinking is widely considered as an effective approach to understanding and managing the complexity. This paper aims to better understand dynamic complexity of construction safety management by exploring archetypes of construction safety. To achieve this, this paper adopted the ground theory method (GTM) and 22 interviews were conducted with participants in various positions (government safety inspector, client, health and safety manager, safety consultant, safety auditor, and safety researcher). Eight archetypes were emerged from the collected data: (1) safety regulations, (2) incentive programs, (3) procurement and safety, (4) safety management in small businesses (5) production and safety, (6) workers' conflicting goals, (7) blame on workers, and (8) reactive and proactive learning. These archetypes capture the interactions between a wide range of factors within various hierarchical levels and subsystems. As a free-standing tool, they advance the understanding of dynamic complexity of construction safety management and provide systemic insights into dealing with the complexity. They also can facilitate system dynamics modelling of construction safety process. Copyright © 2015 Elsevier Ltd. All rights reserved.

  12. Safety related terms for advanced nuclear plants; Terminos relacionados con la seguridad para centrales nucleares avanzadas

    Energy Technology Data Exchange (ETDEWEB)

    NONE

    1995-12-01

    The terms considered in this document are in widespread current use without a universal consensus as to their meaning. Other safety related terms are already defined in national or international codes and standards as well as in IAEA's Nuclear Safety Standards Series. Most of the terms in those codes and standards have been defined and used for regulatory purposes, generally for application to present reactor designs. There is no intention to duplicate the description of such regulatory terms here, but only to clarify the terms used for advanced nuclear plants. The following terms are described in this paper: Inherent safety characteristics, passive component, active component, passive systems, active system, fail-safe, grace period, foolproof, fault-/error-tolerant, simplified safety system, transparent safety.

  13. Classification of Aeronautics System Health and Safety Documents

    Data.gov (United States)

    National Aeronautics and Space Administration — Most complex aerospace systems have many text reports on safety, maintenance, and associated issues. The Aviation Safety Reporting System (ASRS) spans several...

  14. Survey of electronic safety systems in accelerator applications

    International Nuclear Information System (INIS)

    Mahoney, K.

    1997-01-01

    This paper presents the preliminary results and analysis of a comprehensive survey of the implementation of accelerator safety interlock systems from over 30 international labs. At the present time there is not a self consistent means to evaluate both the experiences and level of protection provided by electronic safety interlock systems. This research is intended to analyze the strength and weaknesses of several different types of interlock system implementation methodologies. Research, medical, and industrial accelerators are compared. Thomas Jefferson National Accelerator Facility (TJNAF) was one of the first large particle accelerators to implement a safety interlock system using programmable logic controllers. Since that time all of the major new U.S. accelerator construction projects plan to use some form of programmable electronics as part of a safety interlock system in some capacity

  15. Development and application of digital safety system in NPPs

    International Nuclear Information System (INIS)

    Kwon, Keechoon; Kim, Changhwoi; Lee, Dongyoung

    2012-01-01

    This paper describes the development of digital safety system in NPPs based on safety- grade programmable logic controller (PLC) platform and its application to real NPP construction. The digital safety system consists of a reactor protection system and an engineered safety feature-component control system. The safety-grade PLC platform was developed so that it meets the requirements of the regulation. The PLC consists of various modules such as a power module, a processor module, communication modules, digital input/output modules, analog input/output modules, a LOCA bus extension module, and a high-speed pulse counter module. The reactor protection system is designed with a redundant 4-channel architecture, and every channel is implemented with the same architecture. A single channel consists of a redundant bi-stable processor, a redundant coincidence processor, an automatic test and interface processor, and a cabinet operator module. The engineered safety feature-component control system is designed with four redundant divisions, and implemented with the PLC platform. The principal components of an individual division are fault tolerant group controllers, loop controllers, a test and interface processor, a cabinet operator module and a control channel gateway. The topical report is submitted to the regulatory body, and got safety evaluation report from the regulatory body. Also, the developed system is tested in the integrated performance validation facility. It is decided that the digital safety system applied to Shin-Uljin unit 1 and 2 after a topical report approval and validation test. Design changes occur in the digital safety system that is applied to an actual nuclear power plant construction, and the PLC has also been upgraded

  16. Development and application of digital safety system in NPPs

    Energy Technology Data Exchange (ETDEWEB)

    Kwon, Keechoon; Kim, Changhwoi; Lee, Dongyoung [Korea Atomic Energy Research Institute, Daejeon (Korea, Republic of)

    2012-03-15

    This paper describes the development of digital safety system in NPPs based on safety- grade programmable logic controller (PLC) platform and its application to real NPP construction. The digital safety system consists of a reactor protection system and an engineered safety feature-component control system. The safety-grade PLC platform was developed so that it meets the requirements of the regulation. The PLC consists of various modules such as a power module, a processor module, communication modules, digital input/output modules, analog input/output modules, a LOCA bus extension module, and a high-speed pulse counter module. The reactor protection system is designed with a redundant 4-channel architecture, and every channel is implemented with the same architecture. A single channel consists of a redundant bi-stable processor, a redundant coincidence processor, an automatic test and interface processor, and a cabinet operator module. The engineered safety feature-component control system is designed with four redundant divisions, and implemented with the PLC platform. The principal components of an individual division are fault tolerant group controllers, loop controllers, a test and interface processor, a cabinet operator module and a control channel gateway. The topical report is submitted to the regulatory body, and got safety evaluation report from the regulatory body. Also, the developed system is tested in the integrated performance validation facility. It is decided that the digital safety system applied to Shin-Uljin unit 1 and 2 after a topical report approval and validation test. Design changes occur in the digital safety system that is applied to an actual nuclear power plant construction, and the PLC has also been upgraded.

  17. RSAS: a Reactor Safety Assessment System

    International Nuclear Information System (INIS)

    Sebo, D.E.; Dixon, B.W.; Bray, M.A.

    1985-01-01

    The Reactor Safety Assessment System (RSAS) is an expert system under development for the United States Nuclear Regulatory Commission (NRC). RSAS is being developed for use at the NRC's Operations Center in the event of a serious incident at a licensed nuclear power plant. The system generates situation assessments for the NRC Reactor Safety Team based on a limited number of plant parameters, known operator actions, and plant status data. The RSAS rule base currently covers one reactor type. The extension of the rule base to other reactor types is also discussed

  18. Safety design requirements for safety systems and components of JSFR

    International Nuclear Information System (INIS)

    Kubo, Shigenobu; Shimakawa, Yoshio; Yamano, Hidemasa; Kotake, Shoji

    2011-01-01

    Safety design requirements for JSFR were summarized taking the development targets of the FaCT project and design feature of JSFR into account. The related safety principle and requirements for Monju, CRBRP, PRISM, SPX, LWRs, IAEA standards, goals of GIF, basic principle of INPRO etc. were also taken into account so that the safety design requirements can be a next-generation global standard. The development targets for safety and reliability are set based on those of FaCT, namely, ensuring safety and reliability equal to future LWR and related fuel cycle facilities. In order to achieve these targets, the defence-in-depth concept is used as the basic safety design principle. General features of the safety design requirements are 1) Achievement of higher reliability, 2) Achievement of higher inspectability and maintainability, 3) Introduction of passive safety features, 4) Reduction of operator action needs, 5) Design consideration against Beyond Design Basis Events, 6) In-Vessel Retention of degraded core materials, 7) Prevention and mitigation against sodium chemical reactions, and 8) Design against external events. The current specific requirements for each system and component are summarized taking the basic design concept of JSFR into account, which is an advanced loop-type large-output power plant with a mixed-oxide-fuelled core. (author)

  19. Reliability analysis of diverse safety logic systems of fast breeder reactor

    International Nuclear Information System (INIS)

    Ravi Kumar, Bh.; Apte, P.R.; Srivani, L.; Ilango Sambasivan, S.; Swaminathan, P.

    2006-01-01

    Safety Logic for Fast Breeder Reactor (FBR) is designed to initiate safety action against Design Basis Events. Based on the outputs of various processing circuits, Safety logic system drives the control rods of the shutdown system. So, Safety Logic system is classified as safety critical system. Therefore, reliability analysis has to be performed. This paper discusses the Reliability analysis of Diverse Safety logic systems of FBRs. For this literature survey on safety critical systems, system reliability approach and standards to be followed like IEC-61508 are discussed in detail. For Programmable Logic device based systems, Hardware Description Languages (HDL) are used. So this paper also discusses the Verification and Validation for HDLs. Finally a case study for the Reliability analysis of Safety logic is discussed. (author)

  20. Experimental research progress on passive safety systems of Chinese advanced PWR

    International Nuclear Information System (INIS)

    Xiao Zejun; Zhuo Wenbin; Zheng Hua; Chen Bingde; Zong Guifang; Jia Dounan

    2003-01-01

    TMI and Chernobyl accidents, having pronounced impact on nuclear industries, triggered the governments as well as interested institutions to devote much attention to the safety of nuclear power plant and public's requirements on nuclear power plant safety were also going to be stricter and stricter. It is obvious that safety level of an ordinary light water reactor is no longer satisfactory to these requirements. Recently, the safety authorities have recommended the implementation of passive system to improve the safety of nuclear reactors. Passive safety system is one of the main differences between Chinese advanced PWR and other conventional PWR. The working principle of passive safety system is to utilize the gravity, natural convection (natural circulation) and stored energy to implement the system's safety function. Reactors with passive safety systems are not only safer, but also more economical. The passive safety system of Chinese advanced PWR is composed of three independent systems, i.e. passive containment cooling system, passive residual heat removal system and passive core makeup tank injection system. This paper is a summary of experimental research progress on passive containment cooling system, passive residual heat removal system and passive core makeup tank injection system

  1. A study on LAN applications in nuclear safety systems

    International Nuclear Information System (INIS)

    Kim, Sung; Lee, Young Ryul; Koo, Jun Mo; Han, Jai Bok

    1995-01-01

    It is a general tendency to digitalize the conventional relay based I and C systems in nuclear power plant. But, the digitalisation of nuclear safety systems has many a difficulty to surmount. The typical one thing of many difficulties is the data communication problem between local controllers and systems. The network architecture built with LAN (Local Area Network) in digital systems of the other industries are general. But in case of nuclear safety systems many considerations in point of safety and license are required to implement it in the field. In this parer, some considerations for applying LAN in nuclear safety systems were reviewed

  2. Research on advanced system safety assessment procedures (4)

    International Nuclear Information System (INIS)

    Suzuki, Kazuhiko; Shimada, Yukiyasu

    2001-03-01

    The past research reports in the area of safety engineering proposed the Computer-aided HAZOP system to be applied to Nuclear Reprocessing Facilities. Automated HAZOP system has great advantage compared with human analysts in terms of accuracy of the results, and time required to conduct HAZOP studies. This report surveys the literature on risk assessment and safety design based on the concept of independent protection layers (IPLs). Furthermore, to improve HAZOP System, tool is proposed to construct the basic model and the internal state model. Such HAZOP system is applied to analyze two kinds of processes, where the ability of the proposed system is verified. In addition, risk assessment support system is proposed to integrate safety design environment and assessment result to be used by other plants as well as to enable the underline plant to use other plants' information. This technique can be implemented using web-based safety information systems. (author)

  3. ABWR (K-6/7) construction experience (computer-based safety system)

    International Nuclear Information System (INIS)

    Yokomura, T.

    1998-01-01

    TEPCO applied a digital safety system to Kashiwazaki-Kariwa Nuclear Power Station Unit Nos. 6 and 7, the world's first ABWR plant. Although this was the first time to apply a digital safety logic system in Japan, we were able to complete construction of K-6/7 very successfully and without any delay. TEPCO took a approach of developing a substantial amount of experience in digital non- safety systems before undertaking the design of the safety protection system. This paper describes the history, techniques and experience behind achieving a highly reliable digital safety system. (author)

  4. SACS2: Dynamic and Formal Safety Analysis Method for Complex Safety Critical System

    International Nuclear Information System (INIS)

    Koh, Kwang Yong; Seong, Poong Hyun

    2009-01-01

    Fault tree analysis (FTA) is one of the most widely used safety analysis technique in the development of safety critical systems. However, over the years, several drawbacks of the conventional FTA have become apparent. One major drawback is that conventional FTA uses only static gates and hence can not capture dynamic behaviors of the complex system precisely. Although several attempts such as dynamic fault tree (DFT), PANDORA, formal fault tree (FFT) and so on, have been made to overcome this problem, they can not still do absolute or actual time modeling because they adapt relative time concept and can capture only sequential behaviors of the system. Second drawback of conventional FTA is its lack of rigorous semantics. Because it is informal in nature, safety analysis results heavily depend on an analyst's ability and are error-prone. Finally reasoning process which is to check whether basic events really cause top events is done manually and hence very labor-intensive and timeconsuming for the complex systems. In this paper, we propose a new safety analysis method for complex safety critical system in qualitative manner. We introduce several temporal gates based on timed computational tree logic (TCTL) which can represent quantitative notion of time. Then, we translate the information of the fault trees into UPPAAL query language and the reasoning process is automatically done by UPPAAL which is the model checker for time critical system

  5. A model of Occupational Safety and Health Management System (OSHMS) for promoting and controlling health and safety in textile industry.

    Science.gov (United States)

    Manimaran, S; Rajalakshmi, R; Bhagyalakshmi, K

    2015-01-01

    The development of Occupational Safety and Health Management System in textile industry will rejuvenate the workers and energize the economy as a whole. In India, especially in Tamil Nadu, approximately 1371 textile business is running with the help of 38,461 workers under Ginning, Spinning, Weaving, Garment and Dyeing sectors. Textile industry of contributes to the growth of Indian economy but it fails to foster education and health as key components of human development and help new democracies. The present work attempts to measure and develop OSHMS which reduce the hazards and risk involved in textile industry. Among all other industries textile industry is affected by enormous hazards and risk because of negligence by management and Government. It is evident that managements are not abiding by law when an accident has occurred. Managements are easily deceiving workers and least bothered about the Quality of Work Life (QWL). A detailed analysis of factors promoting safety and health to the workers has been done by performing confirmatory factor analysis, evaluating Risk Priority Number and the framework of OHMS has been conceptualized using Structural Equation Model. The data have been collected using questionnaire and interview method. The study finds occupation health for worker in Textile industry is affected not only by safety measure but also by technology and management. The work shows that difficulty in identifying the cause and effect of hazards, the influence of management in controlling and promoting OSHMS under various dimensions. One startling fact is existence of very low and insignificance correlation between health factors and outcome.

  6. Analysis of Aviation Safety Reporting System Incident Data Associated With the Technical Challenges of the Vehicle Systems Safety Technology Project

    Science.gov (United States)

    Withrow, Colleen A.; Reveley, Mary S.

    2014-01-01

    This analysis was conducted to support the Vehicle Systems Safety Technology (VSST) Project of the Aviation Safety Program (AVsP) milestone VSST4.2.1.01, "Identification of VSST-Related Trends." In particular, this is a review of incident data from the NASA Aviation Safety Reporting System (ASRS). The following three VSST-related technical challenges (TCs) were the focus of the incidents searched in the ASRS database: (1) Vechicle health assurance, (2) Effective crew-system interactions and decisions in all conditions; and (3) Aircraft loss of control prevention, mitigation, and recovery.

  7. Safety balance: Analysis of safety systems

    International Nuclear Information System (INIS)

    Delage, M.; Giroux, C.

    1990-12-01

    Safety analysis, and particularly analysis of exploitation of NPPs is constantly affected by EDF and by the safety authorities and their methodologies. Periodic safety reports ensure that important issues are not missed on daily basis, that incidents are identified and that relevant actions are undertaken. French safety analysis method consists of three principal steps. First type of safety balance is analyzed at the normal start-up phase for each unit including the final safety report. This enables analysis of behaviour of units ten years after their licensing. Second type is periodic operational safety analysis performed during a few years. Finally, the third step consists of safety analysis of the oldest units with the aim to improve the safety standards. The three steps of safety analysis are described in this presentation in detail with the aim to present the objectives and principles. Examples of most recent exercises are included in order to illustrate the importance of such analyses

  8. Improving safety margin of LWRs by rethinking the emergency core cooling system criteria and safety system capacity

    Energy Technology Data Exchange (ETDEWEB)

    Lee, Youho, E-mail: euo@kaist.ac.kr; Kim, Bokyung, E-mail: bkkim2@kaist.ac.kr; NO, Hee Cheon, E-mail: hcno@kaist.ac.kr

    2016-10-15

    Highlights: • Zircaloy embrittlement criteria can increase to 1370 °C for CP-ECR lower than 13%. • The draft ECCS criteria of U.S. NRC allow less than 5% in power margin. • The Japanese fracture-based criteria allow around 5% in power margin. • Increasing SIT inventory is effective in assuring safety margin for power uprates. - Abstract: This study investigates the engineering compatibility between emergency core cooling system criteria and safety water injection systems, in the pursuit of safety margin increase of light water reactors. This study proposes an acceptable temperature increase to 1370 °C as long as equivalent cladding reacted calculated by the Cathcart–Pawel equation is below 13%, after an extensive literature review. The influence of different ECCS criteria on the safety margin during large break loss of coolant accident is investigated for OPR-1000 by the system code MARS-KS, implemented with the KINS-REM method. The fracture-based emergency core cooling system (ECCS) criteria proposed in this study are shown to enable power margins up to 10%. In the meantime, the draft U.S. NRC’s embrittlement criteria (burnup-sensitive) and Japanese fracture-based criteria are shown to allow less than 5%, and around 5% of power margins, respectively. Increasing safety injection tank (SIT) water inventory is the key, yet convenient, way of assuring safety margin for power increase. More than 20% increase in the SIT water inventory is required to allow 15% power margins, for the U.S. NRC’s burnup-dependent embrittlement criteria. Controlling SIT water inventory would be a useful option that could allow the industrial desire to pursue power margins even under the recent atmosphere of imposing stricter ECCS criteria for the considerable burnup effects.

  9. The year 2000 embedded systems problem to maintain the safety of nuclear installations

    International Nuclear Information System (INIS)

    Ardisasmita, M.S.

    1999-01-01

    The Y2K problem may impact on nuclear installations in a number of ways because embedded systems are used in nuclear routine operation, monitoring and control system. The very simplest embedded systems are capable of performing only a single function or set of functions to meet a single predetermined purpose. In more complex systems the functioning of the embedded system is determined by an application program that enables the embedded system to be used for a particular purpose in a specific application. The simplest devices consist of a single microprocessor which may itself be packaged with other chips in a hybrid system or Application Specific Integrated Circuit (ASIC). Its input comes from a detector or sensor and its output goes to a switch or activator which may start or stop the operation of a positioning motors or, by operating a valve, may control the flow of cooling system to reactor core. Embedded systems in our organization are also be found in Batan security systems. These include systems for the security of buildings and premises, and in the communication systems on which these depend. In the enclosed paper we demonstrate the use of analytic model and reliability analysis. The subject of this reliability test is to detect the components of the embedded system with PLC's that could fail on Y2K problem in nuclear installation and safety system. (author)

  10. Integrated environment, safety, and health management system description

    International Nuclear Information System (INIS)

    Zoghbi, J. G.

    2000-01-01

    The Integrated Environment, Safety, and Health Management System Description that is presented in this document describes the approach and management systems used to address integrated safety management within the Richland Environmental Restoration Project

  11. A Nuclear Safety System based on Industrial Computer

    International Nuclear Information System (INIS)

    Kim, Ji Hyeon; Oh, Do Young; Lee, Nam Hoon; Kim, Chang Ho; Kim, Jae Hack

    2011-01-01

    The Plant Protection System(PPS), a nuclear safety Instrumentation and Control (I and C) system for Nuclear Power Plants(NPPs), generates reactor trip on abnormal reactor condition. The Core Protection Calculator System (CPCS) is a safety system that generates and transmits the channel trip signal to the PPS on an abnormal condition. Currently, these systems are designed on the Programmable Logic Controller(PLC) based system and it is necessary to consider a new system platform to adapt simpler system configuration and improved software development process. The CPCS was the first implementation using a micro computer in a nuclear power plant safety protection system in 1980 which have been deployed in Ulchin units 3,4,5,6 and Younggwang units 3,4,5,6. The CPCS software was developed in the Concurrent Micro5 minicomputer using assembly language and embedded into the Concurrent 3205 computer. Following the micro computer based CPCS, PLC based Common-Q platform has been used for the ShinKori/ShinWolsong units 1,2 PPS and CPCS, and the POSAFE-Q PLC platform is used for the ShinUlchin units 1,2 PPS and CPCS. In developing the next generation safety system platform, several factors (e.g., hardware/software reliability, flexibility, licensibility and industrial support) can be considered. This paper suggests an Industrial Computer(IC) based protection system that can be developed with improved flexibility without losing system reliability. The IC based system has the advantage of a simple system configuration with optimized processor boards because of improved processor performance and unlimited interoperability between the target system and development system that use commercial CASE tools. This paper presents the background to selecting the IC based system with a case study design of the CPCS. Eventually, this kind of platform can be used for nuclear power plant safety systems like the PPS, CPCS, Qualified Indication and Alarm . Pami(QIAS-P), and Engineering Safety

  12. A Nuclear Safety System based on Industrial Computer

    Energy Technology Data Exchange (ETDEWEB)

    Kim, Ji Hyeon; Oh, Do Young; Lee, Nam Hoon; Kim, Chang Ho; Kim, Jae Hack [Korea Electric Power Corporation Engineering and Construction, Daejeon (Korea, Republic of)

    2011-05-15

    The Plant Protection System(PPS), a nuclear safety Instrumentation and Control (I and C) system for Nuclear Power Plants(NPPs), generates reactor trip on abnormal reactor condition. The Core Protection Calculator System (CPCS) is a safety system that generates and transmits the channel trip signal to the PPS on an abnormal condition. Currently, these systems are designed on the Programmable Logic Controller(PLC) based system and it is necessary to consider a new system platform to adapt simpler system configuration and improved software development process. The CPCS was the first implementation using a micro computer in a nuclear power plant safety protection system in 1980 which have been deployed in Ulchin units 3,4,5,6 and Younggwang units 3,4,5,6. The CPCS software was developed in the Concurrent Micro5 minicomputer using assembly language and embedded into the Concurrent 3205 computer. Following the micro computer based CPCS, PLC based Common-Q platform has been used for the ShinKori/ShinWolsong units 1,2 PPS and CPCS, and the POSAFE-Q PLC platform is used for the ShinUlchin units 1,2 PPS and CPCS. In developing the next generation safety system platform, several factors (e.g., hardware/software reliability, flexibility, licensibility and industrial support) can be considered. This paper suggests an Industrial Computer(IC) based protection system that can be developed with improved flexibility without losing system reliability. The IC based system has the advantage of a simple system configuration with optimized processor boards because of improved processor performance and unlimited interoperability between the target system and development system that use commercial CASE tools. This paper presents the background to selecting the IC based system with a case study design of the CPCS. Eventually, this kind of platform can be used for nuclear power plant safety systems like the PPS, CPCS, Qualified Indication and Alarm . Pami(QIAS-P), and Engineering Safety

  13. Reliability analysis of Angra I safety systems

    International Nuclear Information System (INIS)

    Oliveira, L.F.S. de; Soto, J.B.; Maciel, C.C.; Gibelli, S.M.O.; Fleming, P.V.; Arrieta, L.A.

    1980-07-01

    An extensive reliability analysis of some safety systems of Angra I, are presented. The fault tree technique, which has been successfully used in most reliability studies of nuclear safety systems performed to date is employed. Results of a quantitative determination of the unvailability of the accumulator and the containment spray injection systems are presented. These results are also compared to those reported in WASH-1400. (E.G.) [pt

  14. 'H-Bahn' - Dortmund demonstration system. Automatic vehicle protection system

    Energy Technology Data Exchange (ETDEWEB)

    Rosenkranz

    1984-01-01

    The automatic vehicle protection system of the H-Bahn at the Universtiy of Dortmund is responsible for fail-safe operating of the automatic vehicles. Its functions are protection of vehicle operation and protection of passengers boarding and leaving the vehicles. These functions are managed decentrally by two fail-safe operating controllers. Besides the well-known relay-techniques of railway-fail-safe systems, electronics are applied which are based on safe operating URTL-microcontrollers. These are controlled by software stored in EPROMs. A connection link using glass-fibres serves for safe data-exchange between the two fail-safe operating controllers. The experts' favourable reports on 'train protection and safety during passenger processing' were completed in March 84; thus, transportation of passengers could start in April 84.

  15. Design of the reactor coolant system and associated systems in nuclear power plants. Safety guide

    International Nuclear Information System (INIS)

    2008-01-01

    This Safety Guide was prepared under the IAEA programme for establishing safety standards for nuclear power plants. The basic requirements for the design of safety systems for nuclear power plants are established in the Safety Requirements publication, Safety Standards Series No. NS-R-1 on Safety of Nuclear Power Plants: Design, which it supplements. This Safety Guide describes how the requirements for the design of the reactor coolant system (RCS) and associated systems in nuclear power plants should be met. 1.2. This publication is a revision and combination of two previous Safety Guides, Safety Series No. 50-SG-D6 on Ultimate Heat Sink and Directly Associated Heat Transport Systems for Nuclear Power Plants (1981), and Safety Series No. 50-SG-D13 on Reactor Coolant and Associated Systems in Nuclear Power Plants (1986), which are superseded by this new Safety Guide. 1.3. The revision takes account of developments in the design of the RCS and associated systems in nuclear power plants since the earlier Safety Guides were published in 1981 and 1986, respectively. The other objectives of the revision are to ensure consistency with Ref., issued in 2000, and to update the technical content. In addition, an appendix on pressurized heavy water reactors (PHWRs) has been included

  16. Preliminary investigation on reliability assessment of passive safety system

    International Nuclear Information System (INIS)

    Huang Changfan; Kuang Bo

    2012-01-01

    The reliability evaluation of passive safety system plays an important part in probabilistic safety assessment (PSA) of nuclear power plant applying passive safety design, which depends quantitatively on reliabilities of passive safety system. According to the object of reliability assessment of passive safety system, relevant parameters are identified. Then passive system behavior during accident scenarios are studied. A practical example of this method is given for the case of reliability assessment of AP1000 passive heat removal system in loss of normal feedwater accident. Key and design parameters of PRHRS are identified and functional failure criteria are established. Parameter combinations acquired by Latin hyper~ cube sampling (LHS) in possible parametric ranges are input and calculations of uncertainty propagation through RELAP5/MOD3 code are carried out. Based on the calculations, sensitivity assessment on PRHRS functional criteria and reliability evaluation of the system are presented, which might provide further PSA with PRHR system reliability. (authors)

  17. DESIGN PACKAGE 1E SYSTEM SAFETY ANALYSIS

    Energy Technology Data Exchange (ETDEWEB)

    M. Salem

    1995-06-23

    The purpose of this analysis is to systematically identify and evaluate hazards related to the Yucca Mountain Project Exploratory Studies Facility (ESF) Design Package 1E, Surface Facilities, (for a list of design items included in the package 1E system safety analysis see section 3). This process is an integral part of the systems engineering process; whereby safety is considered during planning, design, testing, and construction. A largely qualitative approach was used since a radiological System Safety Analysis is not required. The risk assessment in this analysis characterizes the accident scenarios associated with the Design Package 1E structures/systems/components(S/S/Cs) in terms of relative risk and includes recommendations for mitigating all identified risks. The priority for recommending and implementing mitigation control features is: (1) Incorporate measures to reduce risks and hazards into the structure/system/component design, (2) add safety devices and capabilities to the designs that reduce risk, (3) provide devices that detect and warn personnel of hazardous conditions, and (4) develop procedures and conduct training to increase worker awareness of potential hazards, on methods to reduce exposure to hazards, and on the actions required to avoid accidents or correct hazardous conditions.

  18. A new concept of safety parameter display system

    International Nuclear Information System (INIS)

    Martinez, A.S.; Oliveira, L.F.S. de; Schirru, R.; Thome Filho, Z.D.; Silva, R.A. da.

    1986-07-01

    A general description of Angra-1 Parameter Display System (SSPA), a real time and on-line computerized monitoring system for the parameters related to the power plant safety is presented. This system has the main purpose of diminish the load on the Angra-1 power plant operators at an emergency event by supplying them with the additional tools serving as the basis for a prompt identification of the accident. The SSPA is a kind of safety parameter display system whose concept was introduced after Three Mile Island accident in USA. The SSPA comprises two nuclear applications independently considered. They are included into the Parameters Monitoring Integrated System (SIMP) and the safety critical function system (SFCS). (Author) [pt

  19. Innovation research on the safety supervision system of nuclear and radiation safety in Jiangsu province

    International Nuclear Information System (INIS)

    Zhang Qihong; Lu Jigen; Zhang Ping; Wang Wanping; Dai Xia

    2012-01-01

    As the rapid development of nuclear technology, the safety supervision of nuclear and radiation becomes very important. The safety radiation frame system should be constructed, the safety super- vision ability for nuclear and radiation should be improved. How to implement effectively above mission should be a new subject of Provincial environmental protection department. Through investigating the innovation of nuclear and radiation supervision system, innovation of mechanism, innovation of capacity, innovation of informatization and so on, the provincial nuclear and radiation safety supervision model is proposed, and the safety framework of nuclear and radiation in Jiangsu is elementally established in the paper. (authors)

  20. Development of the Advanced Nuclear Safety Information Management (ANSIM) System

    Energy Technology Data Exchange (ETDEWEB)

    Sohn, Jae Min; Ko, Young Cheol; Song, Tai Gil [Korea Atomic Energy Research Institute, Daejeon (Korea, Republic of)

    2012-05-15

    Korea has become a technically independent nuclear country and has grown into an exporter of nuclear technologies. Thus, nuclear facilities are increasing in significance at KAERI (Korea Atomic Energy Research Institute), and it is time to address the nuclear safety. The importance of nuclear safety cannot be overemphasized. Therefore, a management system is needed urgently to manage the safety of nuclear facilities and to enhance the efficiency of nuclear information. We have established ISP (Information Strategy Planning) for the Integrated Information System of nuclear facility and safety management. The purpose of this paper is to develop a management system for nuclear safety. Therefore, we developed the Advanced Nuclear Safety Information Management system (hereinafter referred to as the 'ANSIM system'). The ANSIM system has been designed and implemented to computerize nuclear safety information for standardization, integration, and sharing in real-time. Figure 1 shows the main home page of the ANSIM system. In this paper, we describe the design requirements, contents, configurations, and utilizations of the ANSIM system

  1. Development of a safety parameter supervision system for Angra-1

    International Nuclear Information System (INIS)

    Silva, R.A. da; Thome Filho, Z.D.; Schirru, R.; Martinez, A.S.; Oliveira, L.F.S. de

    1986-01-01

    The Safety Parameter Supervision System (SSPS) which is a computerized system for monitoring essential parameters in real time, determining the safety status and emergency procedures for returning normal reactor operation, in case of an anomaly occurrence, is presented. The SSPS consists of three sub-systems: Integrated parameter monitoring system which gives to operators an integrated vision of values of a parameter set, able to detect any deviation of normal reactor operation; safety critical function system which evaluates safety status in terms of a safety critical function set appointed in advance, and in case of violation of any critical function, it initiates the adequate emergency procedure to return normal operation; and safety parameter computer system which carries out the arquirement of analogic and digital control signals of nuclear power plant. (M.C.K.) [pt

  2. Programmable controllers replace relays in MFTF-B personnel-safety interlocks

    International Nuclear Information System (INIS)

    Branum, J.D.

    1981-01-01

    This paper describes a new approach for implementing personnel safety interlocks logic using industrial-type programmable controllers. The logic for all personnel safety interlocks except those totally internal to a subsystem is implemented in two non-redundant controllers. A high degree of fail-safe reliability is achieved by augmenting the protective features intrinsic to each controller with those provided by a small amount of external support hardware. The controllers are interfaced to the host computer system via fiber optic data links to enable display of interlock and overall system status on the control room graphic displays. When fully implemented, the controllers will perform the equivalent of over 2000 discreet relay functions

  3. Development of web-based safety review advisory system

    International Nuclear Information System (INIS)

    Kim, M. W.; Lee, H. C.; Park, S. O.; Lee, K. H.; Hur, K. Y.; Lee, S. J.; Choi, S. S.; Kang, C. M.

    2002-01-01

    For the development of an expert system supporting the safety review of nuclear power plants, the application was implemented after gathering necessary theoretical background and practical requirements. The general and the detail functional specifications were established, and they are investigated by KINS (Korea Institute of Nuclear Safety). The Safety Review Advisory System(SRAS), this application on web-server environment was developed according to the above specifications. Reviews can do their safety reviewing regardless of their speciality or reviewing experiences because SRAS is operated by the safety review plans which are converted to standardized format. When the safety reviewing is carried out by using SRAS, the results of safety reviewing are accumulated in the database and may be utilized later usefully, and we can grasp safety reviewing progress. Users of SRAS are categorized into four groups, administrator, project manager, project reviewer and general reviewer. Each user group is delegated appropriate access capability. The function and some screen shots of SRAS are described

  4. Technical features of ABWR safety systems

    International Nuclear Information System (INIS)

    Sugisaki, Toshihiko; Tominaga, Kenji; Horiuchi, Tetsuo

    1986-01-01

    The engineering safety facilities of ABWRs have been disigned so as to have many excellent characteristics such as safety, reliability and economy, reflecting the merit of adopting new technology such as internal pumps and new control rod driving mechanism, and coupled with the safety peculiar to BWRs. In this paper, about ECCS, containment vessels and others which compose the engineering safety facilities of ABWRs, the characteristics related to the safety owing to the adoption of internal pumps and others, and the evaluation of the performance at the time of various accidents are discussed. As the results of safety evaluation, it was clarified that due to the safety peculiar to ABWRs and the characteristics of the safety facilities, the large increases of safety, reliability and economy have been planned in the ABWRs, and for example, core flooding can be maintained even at the time of a hypothetical loss of coolant accident. BWRs have the simple system constitution, good self controllability, large natural circulation ability, simple operation control method and excellent ability of confining heat and radioactivity. BWRs have three safety functions to stop reactors, to remove heat from reactors, and to confine radioactive substances. These functions of ABWRs were evaluated, and very high safety was confirmed. (Kako, I.)

  5. Critical Characteristics of Radiation Detection System Components to be Dedicated for use in Safety Class and Safety Significant System

    International Nuclear Information System (INIS)

    DAVIS, S.J.

    2000-01-01

    This document identifies critical characteristics of components to be dedicated for use in Safety Significant (SS) Systems, Structures, or Components (SSCs). This document identifies the requirements for the components of the common, radiation area, monitor alarm in the WESF pool cell. These are procured as Commercial Grade Items (CGI), with the qualification testing and formal dedication to be performed at the Waste Encapsulation Storage Facility (WESF) for use in safety significant systems. System modifications are to be performed in accordance with the approved design. Components for this change are commercially available and interchangeable with the existing alarm configuration This document focuses on the operational requirements for alarm, declaration of the safety classification, identification of critical characteristics, and interpretation of requirements for procurement. Critical characteristics are identified herein and must be verified, followed by formal dedication, prior to the components being used in safety related applications

  6. Design of an Active Automotive Safety System

    Directory of Open Access Journals (Sweden)

    Y. Wang

    2013-07-01

    Full Text Available With the development of the national economy, the people's standard of living got corresponding improvement, cars has been one of the indispensable traffic tools in many families. An active safety system is proposed, which can real-time detect the vehicle's running status and judge the security status of the vehicle. The system, which takes single-chip microcomputer as the controlling core and combines with millimeter-wave and ultrasonic distance measurement technology, can detect the distance from vehicle to vehicle and judge the security status of the vehicle. The hardware composition of the system and the data acquiring circuit are proposed, the mathematic model for different situation is established, and the controlling algorithm is completed. This system can accurately measure speed and distance between vehicles; the active safety control system can meet the relevant data measurement and transmission requirement; and can meet the functional requirement of the active safety control system

  7. LOCA analysis of SCWR-M with passive safety system

    Energy Technology Data Exchange (ETDEWEB)

    Liu, X.J., E-mail: xiaojingliu@sjtu.edu.cn [School of Nuclear Science and Engineering, Shanghai Jiao Tong University, 800 Dong Chuan Road, Shanghai 200240 (China); Fu, S.W. [Navy University of Engineering, Wuhan, Hubei (China); Xu, Z.H. [Shanghai Nuclear Engineering Research and Design Institute, Shanghai (China); Yang, Y.H. [School of Nuclear Science and Engineering, Shanghai Jiao Tong University, 800 Dong Chuan Road, Shanghai 200240 (China); Cheng, X. [Institute of Fusion and Nuclear Technology, Karlsruhe Institute of Technology (KIT), Kaiserstr. 12, 76131 Karlsruhe (Germany)

    2013-06-15

    Highlights: • Application of the ATHLET-SC code to the trans-critical analysis for SCWR. • Development of a passive safety system for SCWR-M. • Analysis of hot/cold leg LOCA behaviour with different break size. • Introduction of some mitigation measures for SCWR-M -- Abstract: A new SCWR conceptual design (mixed spectrum supercritical water cooled reactor: SCWR-M) is proposed by Shanghai Jiao Tong University (SJTU). R and D activities covering core design, safety system design and code development of SCWR-M are launched at SJTU. Safety system design and analysis is one of the key tasks during the development of SCWR-M. Considering the current advanced reactor design, a new passive safety system for SCWR-M including isolation cooling system (ICS), accumulator injection system (ACC), gravity driven cooling system (GDCS) and automatic depressurization system (ADS) is proposed. Based on the modified and preliminarily assessed system code ATHLET-SC, loss of coolant accident (LOCA) analysis for hot and cold leg is performed in this paper. Three different break sizes are analyzed to clarify the hot and cold LOCA characteristics of the SCWR-M. The influence of the break location and break size on the safety performance of SCWR-M is also concluded. Several measures to induce the core coolant flow and to mitigate core heating up are also discussed. The results achieved so far demonstrate the feasibility of the proposed passive safety system to keep the SCWR-M core at safety condition during loss of coolant accident.

  8. Passive safety systems for integral reactors

    International Nuclear Information System (INIS)

    Kuul, V.S.; Samoilov, O.B.

    1996-01-01

    In this paper, a wide range of passive safety systems intended for use on integral reactors is considered. The operation of these systems relies on natural processes and does not require external power supplies. Using these systems, there is the possibility of preventing serious consequences for all classes of accidents including reactivity, loss-of-coolant and loss of heat sink as well as severe accidents. Enhancement of safety system reliability has been achieved through the use of self-actuating devices, capable of providing passive initiation of protective and isolation systems, which respond immediately to variations in the physical parameters of the fluid in the reactor or in a guard vessel. For beyond design base accidents accompanied by complete loss of heat removal capability, autonomous self-actuated ERHR trains have been proposed. These trains are completely independent of the secondary loops and need no action to isolate them from the steam turbine plant. Passive safety principles have been consistently implemented in AST-500, ATETS-200 and VPBER 600 which are new generation NPPs developed by OKBM. Their main characteristic is enhanced stability over a wide range of internal and external emergency initiators. (author). 10 figs

  9. Passive safety systems for integral reactors

    Energy Technology Data Exchange (ETDEWEB)

    Kuul, V S; Samoilov, O B [OKB Mechanical Engineering (Russian Federation)

    1996-12-01

    In this paper, a wide range of passive safety systems intended for use on integral reactors is considered. The operation of these systems relies on natural processes and does not require external power supplies. Using these systems, there is the possibility of preventing serious consequences for all classes of accidents including reactivity, loss-of-coolant and loss of heat sink as well as severe accidents. Enhancement of safety system reliability has been achieved through the use of self-actuating devices, capable of providing passive initiation of protective and isolation systems, which respond immediately to variations in the physical parameters of the fluid in the reactor or in a guard vessel. For beyond design base accidents accompanied by complete loss of heat removal capability, autonomous self-actuated ERHR trains have been proposed. These trains are completely independent of the secondary loops and need no action to isolate them from the steam turbine plant. Passive safety principles have been consistently implemented in AST-500, ATETS-200 and VPBER 600 which are new generation NPPs developed by OKBM. Their main characteristic is enhanced stability over a wide range of internal and external emergency initiators. (author). 10 figs.

  10. Safety of emerging nuclear energy systems

    International Nuclear Information System (INIS)

    Novikov, V.M.; Slesarev, I.S.

    1989-01-01

    The first stage of world nuclear power development based on light water fission reactors has demonstrated not only rather high rate but at the same time too optimistic attitude to safety problems. Large accidents at Three Mile Island and Chernobyl essentially affects the concept of NP development. As a result the safety and social acceptance of NP became of absolute priority among other problems. That's why emerging nuclear power systems should be first of all estimated from this point of view. In the paper some quantitative criteria of safety derived from estimations of social risk and economic-ecological damage from hypothetical accidents are formulated. On the base of these criteria we define two stages of possible way to meet safety demands: first--development of high safety fission reactors and second--that of asymptotic high safety ENEs. The limits of tolorated expenses for safety are regarded. The basis physical factors determining hazards of NES accidents are considered. This permits to classify the ways of safety demands fulfillment due to physical principals used

  11. Development of Network Protocol for the Integrated Safety System

    Energy Technology Data Exchange (ETDEWEB)

    Park, S. W.; Baek, J. I.; Lee, S. H.; Park, C. S.; Park, K. H.; Shin, J. M. [Hannam Univ., Daejeon (Korea, Republic of)

    2007-06-15

    Communication devices in the safety system of nuclear power plants are distinguished from those developed for commercial purposes in terms of a strict requirement of safety. The concept of safety covers the determinability, the reliability, and the separation/isolation to prevent the undesirable interactions among devices. The safety also requires that these properties be never proof less. Most of the current commercialized communication products rarely have the safety properties. Moreover, they can be neither verified nor validated to satisfy the safety property of implementation process. This research proposes the novel architecture and protocol of a data communication network for the safety system in nuclear power plants.

  12. Development of Network Protocol for the Integrated Safety System

    International Nuclear Information System (INIS)

    Park, S. W.; Baek, J. I.; Lee, S. H.; Park, C. S.; Park, K. H.; Shin, J. M.

    2007-06-01

    Communication devices in the safety system of nuclear power plants are distinguished from those developed for commercial purposes in terms of a strict requirement of safety. The concept of safety covers the determinability, the reliability, and the separation/isolation to prevent the undesirable interactions among devices. The safety also requires that these properties be never proof less. Most of the current commercialized communication products rarely have the safety properties. Moreover, they can be neither verified nor validated to satisfy the safety property of implementation process. This research proposes the novel architecture and protocol of a data communication network for the safety system in nuclear power plants

  13. The passive safety systems of the Swr 1000

    International Nuclear Information System (INIS)

    Neumann, D.

    2001-01-01

    In recent years, a new boiling water reactor (BWR) plant called the SWR 1000 has been developed by Siemens on behalf of Germany's electric utilities. This new plant design concept incorporates the wide range of operating experience gained with German BWRs. The main objective behind developing the SWR 1000 was to design a plant with a rated electric output of approximately 1000 MW which would not only have a lower capital cost and lower power generating costs but would also provide a much higher level of nuclear safety compared to plants currently in operation. This safety-related goal has been met through, for example, the use of passive safety equipment. Passive systems make a significant contribution towards increasing the over-all level of plant safety due to the way in which they operate. They function solely accord-ing to basic laws of nature, such as gravity, and perform their designated functions with-out any need for electric power or other sources of external energy, or signals from instrumentation and control (I and C) equipment. The passive safety systems have been designed such that design basis accidents can be controlled using just these systems alone. However, the design concept of the SWR 1000 is nevertheless still based on the provision of active safety systems in addition to passive systems. (author)

  14. Antisideslip and Antirollover Safety Speed Controller Design for Vehicle on Curved Road

    Directory of Open Access Journals (Sweden)

    Guo Lie

    2014-01-01

    Full Text Available When the drivers cannot be aware of the existing of forthcoming curved roads and fail to regulate their safety speeds accordingly, sideslip or rollover may occur with high probability. The antisideslip and antirollover control of vehicle on curved road in automatic highway systems is studied. The safety speed warning system is set before entering the curved road firstly. The speed adhesion control is adopted to shorten the braking distance while decelerating and to guarantee the safety speed. The velocity controller when decelerating on the straight path and the posture controller when driving on curved road are designed, respectively, utilizing integral backstepping technology. Simulation results demonstrate that this control system is characterized by quick and precise tracking and global stability. Consequently, it is able to avoid the dangerous operating conditions, such as sideslip and rollover, and guarantee the safety and directional stability when driving on curved road.

  15. Survey of systems safety analysis methods and their application to nuclear waste management systems

    International Nuclear Information System (INIS)

    Pelto, P.J.; Winegardner, W.K.; Gallucci, R.H.V.

    1981-11-01

    This report reviews system safety analysis methods and examines their application to nuclear waste management systems. The safety analysis methods examined include expert opinion, maximum credible accident approach, design basis accidents approach, hazard indices, preliminary hazards analysis, failure modes and effects analysis, fault trees, event trees, cause-consequence diagrams, G0 methodology, Markov modeling, and a general category of consequence analysis models. Previous and ongoing studies on the safety of waste management systems are discussed along with their limitations and potential improvements. The major safety methods and waste management safety related studies are surveyed. This survey provides information on what safety methods are available, what waste management safety areas have been analyzed, and what are potential areas for future study

  16. Survey of systems safety analysis methods and their application to nuclear waste management systems

    Energy Technology Data Exchange (ETDEWEB)

    Pelto, P.J.; Winegardner, W.K.; Gallucci, R.H.V.

    1981-11-01

    This report reviews system safety analysis methods and examines their application to nuclear waste management systems. The safety analysis methods examined include expert opinion, maximum credible accident approach, design basis accidents approach, hazard indices, preliminary hazards analysis, failure modes and effects analysis, fault trees, event trees, cause-consequence diagrams, G0 methodology, Markov modeling, and a general category of consequence analysis models. Previous and ongoing studies on the safety of waste management systems are discussed along with their limitations and potential improvements. The major safety methods and waste management safety related studies are surveyed. This survey provides information on what safety methods are available, what waste management safety areas have been analyzed, and what are potential areas for future study.

  17. Overview of Risk Mitigation for Safety-Critical Computer-Based Systems

    Science.gov (United States)

    Torres-Pomales, Wilfredo

    2015-01-01

    This report presents a high-level overview of a general strategy to mitigate the risks from threats to safety-critical computer-based systems. In this context, a safety threat is a process or phenomenon that can cause operational safety hazards in the form of computational system failures. This report is intended to provide insight into the safety-risk mitigation problem and the characteristics of potential solutions. The limitations of the general risk mitigation strategy are discussed and some options to overcome these limitations are provided. This work is part of an ongoing effort to enable well-founded assurance of safety-related properties of complex safety-critical computer-based aircraft systems by developing an effective capability to model and reason about the safety implications of system requirements and design.

  18. Simplified safety and containment systems for the iris reactor

    International Nuclear Information System (INIS)

    Conway, L.E.; Lombardi, C.; Ricotti, M.; Oriani, L.

    2001-01-01

    The IRIS (International Reactor Innovative and Secure) is a 100 - 300 MW modular type pressurized water reactor supported by the U.S. DOE NERI Program. IRIS features a long-life core to provide proliferation resistance and to reduce the volume of spent fuel, as well as reduce maintenance requirements. IRIS utilizes an integral reactor vessel that contains all major primary system components. This integral reactor vessel makes it possible to reduce containment size; making the IRIS more cost competitive. IRIS is being designed to enhance reactor safety, and therefore a key aspect of the IRIS program is the development of the safety and containment systems. These systems are being designed to maximize containment integrity, prevent core uncover following postulated accidents, minimize the probability and consequences of severe accidents, and provide a significant simplification over current safety system designs. The design of the IRIS containment and safety systems has been identified and preliminary analyses have been completed. The IRIS safety concept employs some unique features that minimize the consequences of postulated design basis events. This paper will provide a description of the containment design and safety systems, and will summarize the analysis results. (author)

  19. Autonomous system for launch vehicle range safety

    Science.gov (United States)

    Ferrell, Bob; Haley, Sam

    2001-02-01

    The Autonomous Flight Safety System (AFSS) is a launch vehicle subsystem whose ultimate goal is an autonomous capability to assure range safety (people and valuable resources), flight personnel safety, flight assets safety (recovery of valuable vehicles and cargo), and global coverage with a dramatic simplification of range infrastructure. The AFSS is capable of determining current vehicle position and predicting the impact point with respect to flight restriction zones. Additionally, it is able to discern whether or not the launch vehicle is an immediate threat to public safety, and initiate the appropriate range safety response. These features provide for a dramatic cost reduction in range operations and improved reliability of mission success. .

  20. System code improvements for modelling passive safety systems and their validation

    Energy Technology Data Exchange (ETDEWEB)

    Buchholz, Sebastian; Cron, Daniel von der; Schaffrath, Andreas [Gesellschaft fuer Anlagen- und Reaktorsicherheit (GRS) gGmbH, Garching (Germany)

    2016-11-15

    GRS has been developing the system code ATHLET over many years. Because ATHLET, among other codes, is widely used in nuclear licensing and supervisory procedures, it has to represent the current state of science and technology. New reactor concepts such as Generation III+ and IV reactors and SMR are using passive safety systems intensively. The simulation of passive safety systems with the GRS system code ATHLET is still a big challenge, because of non-defined operation points and self-setting operation conditions. Additionally, the driving forces of passive safety systems are smaller and uncertainties of parameters have a larger impact than for active systems. This paper addresses the code validation and qualification work of ATHLET on the example of slightly inclined horizontal heat exchangers, which are e. g. used as emergency condensers (e. g. in the KERENA and the CAREM) or as heat exchanger in the passive auxiliary feed water systems (PAFS) of the APR+.

  1. Special topics reports for the reference tandem mirror fusion breeder. Volume 2. Reactor safety assessment

    International Nuclear Information System (INIS)

    Maya, I.; Hoot, C.G.; Wong, C.P.C.; Schultz, K.R.; Garner, J.K.; Bradbury, S.J.; Steele, W.G.; Berwald, D.H.

    1984-09-01

    The safety features of the reference fission suppressed fusion breeder reactor are presented. These include redundancy and overcapacity in primary coolant system components to minimize failure probability, an improved valve location logic to provide for failed component isolation, and double-walled coolant piping and steel guard vessel protection to further limit the extent of any leak. In addition to the primary coolant and decay heat removal system, reactor safety systems also include an independent shield cooling system, the module safety/fuel transfer coolant system, an auxiliary first wall cooling system, a psssive dump tank cooling system based on the use of heat pipes, and several lithium fire suppression systems. Safety system specifications are justified based on the results of thermal analysis, event tree construction, consequence calculations, and risk analysis. The result is a reactor design concept with an acceptably low probability of a major radioactivity release. Dose consequences of maximum credible accidents appear to be below 10CFR100 regulatory limits

  2. Aviation Safety Hotline Information System -

    Data.gov (United States)

    Department of Transportation — The Aviation Safety Hotline Information System (ASHIS) collects, stores, and retrieves reports submitted by pilots, mechanics, cabin crew, passengers, or the public...

  3. Total Quality Management and the System Safety Secretary

    Science.gov (United States)

    Elliott, Suzan E.

    1993-01-01

    The system safety secretary is a valuable member of the system safety team. As downsizing occurs to meet economic constraints, the Total Quality Management (TQM) approach is frequently adopted as a formula for success and, in some cases, for survival.

  4. Reactivity requirements and safety systems for heavy water reactors

    International Nuclear Information System (INIS)

    Kati, S.L.; Rustagi, R.S.

    1977-01-01

    The natural uranium fuelled pressurised heavy water reactors are currently being installed in India. In the design of nuclear reactors, adequate attention has to be given to the safety systems. In recent years, several design modifications having bearing on safety, in the reactor processes, protective and containment systems have been made. These have resulted either from new trends in safety and reliability standards or as a result of feed-back from operating reactors of this type. The significant areas of modifications that have been introduced in the design of Indian PHWR's are: sophisticated theoretical modelling of reactor accidents, reactivity control, two independent fast acting systems, full double containment and improved post-accident depressurisation and building clean-up. This paper brings out the evolution of design of safety systems for heavy water reactors. A short review of safety systems which have been used in different heavy water reactors, of varying sizes, has been made. In particular, the safety systems selected for the latest 235 MWe twin reactor unit station in Narora, in Northern India, have been discussed in detail. Research and Development efforts made in this connection are discussed. The experience of design and operation of the systems in Rajasthan and Kalpakkam reactors has also been outlined

  5. Safety implications of control systems

    International Nuclear Information System (INIS)

    Smith, O.L.

    1983-01-01

    The Safety Implications of Control Systems Program has three major activities in support of USI-A47. The first task is a failure mode and effects analysis of all plant systems which may potentially induce control system disturbance that have safety implications. This task has made a preliminary study of overfill events and recommended cases for further analysis on the hybrid simulator. Work continues on overcooling and undercooling. A detailed investigation of electric power network is in progress. LERs are providing guidance on important failure modes that will provide initial conditions for further simulator studies. The simulator taks is generating a detailed model of the control system supported by appropriate neutronics, hydraulics, and thermodynamics submodels of all other principal plant components. The simulator is in the last stages of development. Checkout calculations are in progress to establish model stability, robustness, and qualitative credibility. Verification against benchmark codes and plant data will follow

  6. The micro-processor controlled process radiation monitoring system for reactor safety systems

    International Nuclear Information System (INIS)

    Mizuno, K.; Noguchi, A.; Kumagami, S.; Gotoh, Y.; Kumahara, T.; Arita, S.

    1986-01-01

    Digital computers are soon expected to be applied to various real-time safety and safety-related systems in nuclear power plants. Hitachi is now engaged in the development of a micro-processor controlled process radiation monitoring system, which operates on digital processing methods employed with a log ratemeter. A newly defined methodology of design and test procedures is being applied as a means of software program verification for these safety systems. Recently implemented micro-processor technology will help to achieve an advanced man-machine interface and highly reliable performance. (author)

  7. SBO simulations for Integrated Passive Safety System (IPSS) using MARS

    International Nuclear Information System (INIS)

    Kim, Sang Ho; Jeong, Sung Yeop; Chang, Soon Heung

    2012-01-01

    The current nuclear power plants have lots of active safety systems with some passive safety systems. The safety of current and future nuclear power plants can be enhanced by the application of additional passive safety systems for the ultimate safety. It is helpful to install the passive safety systems on current nuclear power plants without the design change for the licensibility. For solving the problem about the system complexity shown in the Fukushima accidents, the current nuclear power plants are needed to be enhanced by an additional integrated and simplified system. As a previous research, the integrated passive safety system (IPSS) was proposed to solve the safety issues related with the decay heat removal, containment integrity and radiation release. It could be operated by natural phenomena like gravity, natural circulation and pressure difference without AC power. The five main functions of IPSS are: (a) Passive decay heat removal, (b) Passive emergency core cooling, (c) Passive containment cooling, (d) Passive in vessel retention and ex-vessel cooling, and (e) Filtered venting and pressure control. The purpose of this research is to analyze the performances of each function by using MARS code. The simulated accident scenarios were station black out (SBO) and the additional accidents accompanied by SBO

  8. 14 CFR 417.309 - Flight safety system analysis.

    Science.gov (United States)

    2010-01-01

    ... procedural or human errors; (7) Account for any single failure point on another system that could disable a... required and account for any failure mode where a component and its backup could fail at the same time due...

  9. Development of web-based safety review advisory system

    International Nuclear Information System (INIS)

    Kim, M. W.; Hur, K. Y.; Lee, S. J.; Choi, S. J.

    2002-01-01

    For the development of an expert system supporting the safety review of nuclear power plants, the application was implemented after gathering necessary theoretical background and practical requirements. The general and the detail functional specifications were established, and they are investigated by KINS. Safety Review Advisory System (SRAS), this application on web-server environment was developed according to the above specifications. Reviews can do their safety reviewing regardless of their speciality or reviewing experiences because SRAS is operated by the safety review plans which are converted to standardized format. When the safety reviewing is carried out by using SRAS, the results of safety reviewing are accumulated in the database and may be utilized later usefully, and we can grasp safety reviewing progress. Users of SRAS are categorized into four groups, administrator, project manager, project reviewer and general reviewer. Each user group is delegated appropriate access capability. The function and some screen shots of SRAS are described

  10. Towards predictive cardiovascular safety : a systems pharmacology approach

    NARCIS (Netherlands)

    Snelder, Nelleke

    2014-01-01

    Cardiovascular safety issues related to changes in blood pressure, arise frequently in drug development. In the thesis “Towards predictive cardiovascular safety – a systems pharmacology approach”, a system-specific model is described to quantify drug effects on the interrelationship between mean

  11. Safety program considerations for space nuclear reactor systems

    International Nuclear Information System (INIS)

    Cropp, L.O.

    1984-08-01

    This report discusses the necessity for in-depth safety program planning for space nuclear reactor systems. The objectives of the safety program and a proposed task structure is presented for meeting those objectives. A proposed working relationship between the design and independent safety groups is suggested. Examples of safety-related design philosophies are given

  12. Qualification of safety-critical software for digital reactor safety system in nuclear power plants

    International Nuclear Information System (INIS)

    Kwon, Kee-Choon; Park, Gee-Yong; Kim, Jang-Yeol; Lee, Jang-Soo

    2013-01-01

    This paper describes the software qualification activities for the safety-critical software of the digital reactor safety system in nuclear power plants. The main activities of the software qualification processes are the preparation of software planning documentations, verification and validation (V and V) of the software requirements specifications (SRS), software design specifications (SDS) and codes, and the testing of the integrated software and integrated system. Moreover, the software safety analysis and software configuration management are involved in the software qualification processes. The V and V procedure for SRS and SDS contains a technical evaluation, licensing suitability evaluation, inspection and traceability analysis, formal verification, software safety analysis, and an evaluation of the software configuration management. The V and V processes for the code are a traceability analysis, source code inspection, test case and test procedure generation. Testing is the major V and V activity of the software integration and system integration phases. The software safety analysis employs a hazard operability method and software fault tree analysis. The software configuration management in each software life cycle is performed by the use of a nuclear software configuration management tool. Through these activities, we can achieve the functionality, performance, reliability, and safety that are the major V and V objectives of the safety-critical software in nuclear power plants. (author)

  13. The PIANC Safety Factor System for Breakwaters

    DEFF Research Database (Denmark)

    Burcharth, H. F.

    2000-01-01

    The paper presents a summary of the recommendations for implementation of safety in breakwater designs given by the PIANC PTC IT Working Group No 12 on Analysis of Rubble Mound Breakwaters with Vertical and Inclined Concrete Walls. The working groups developed for the most important failure modes...... a system of partial safety factors which facilitate design to any target safety level....

  14. Modular reliability modeling of the TJNAF personnel safety system

    International Nuclear Information System (INIS)

    Cinnamon, J.; Mahoney, K.

    1997-01-01

    A reliability model for the Thomas Jefferson National Accelerator Facility (formerly CEBAF) personnel safety system has been developed. The model, which was implemented using an Excel spreadsheet, allows simulation of all or parts of the system. Modularity os the model's implementation allows rapid open-quotes what if open-quotes case studies to simulate change in safety system parameters such as redundancy, diversity, and failure rates. Particular emphasis is given to the prediction of failure modes which would result in the failure of both of the redundant safety interlock systems. In addition to the calculation of the predicted reliability of the safety system, the model also calculates availability of the same system. Such calculations allow the user to make tradeoff studies between reliability and availability, and to target resources to improving those parts of the system which would most benefit from redesign or upgrade. The model includes calculated, manufacturer's data, and Jefferson Lab field data. This paper describes the model, methods used, and comparison of calculated to actual data for the Jefferson Lab personnel safety system. Examples are given to illustrate the model's utility and ease of use

  15. Innovation in the Safety of nuclear systems: fundamental aspects

    International Nuclear Information System (INIS)

    Herranz, L. E.

    2009-01-01

    Safety commercial nuclear reactors has been an indispensable condition for future enlargement of power generation based on nuclear technology. Its fundamental principle, defence in depth, far from being outdated, is still adopted as a key foundation in the advanced nuclear system (generations III and IV). Nevertheless, the cumulative experience gained in the operation and maintenance of nuclear reactors, the development of methodologies like the probabilistic safety analysis, the use of passive safety systems and, even, the inherent characteristics of some new design (which exclude accident scenarios), allow estimating safety figures of merit even more outstanding that those achieved in the second generation of nuclear reactors. This safety innovation of upcoming nuclear reactors has entailed a huge investigation program (generation III) that will be focused on optimizing and demonstrating the postulated safety of future nuclear systems (Generation IV). (Author)

  16. New Paradigm in Nuclear Safety from Quality Assurance to Safety Management System

    International Nuclear Information System (INIS)

    Lim, Nam-Jin; Park, Chan-Gook; Nam, Ji-Hee; Kim, Kwan-Hyun; Kwon, Hyuk-il; Lee, Young-Gun Lee

    2006-01-01

    The initial concept of Quality Control (QC) controlling the quality of products is now evolving toward the Management System (MS) achieving safety, through Quality Assurance (QA) ensuring the quality of products and Quality Management (QM) managing the quality by a systematic approach. Nuclear safety can be achieved through an integrated MS that ensures the health, environmental, security, quality and economic requirements being considered together with nuclear safety requirements. MS approach is developed through realizing that most of nuclear accidents had occurred not by the malfunction of hardware or equipment, but by the human error. The MS is a set of inter-related or interacting elements (system) that establishes policies and objectives and which enables those objectives to be achieved in an efficient and effective way

  17. Development and applications of a safety assessment system for promoting safety culture in nuclear power plants

    International Nuclear Information System (INIS)

    Takano, Ken-ichi; Hasegawa, Naoko; Hirose, Ayako; Hayase, Ken-ichi

    2004-01-01

    For past five years, CRIEPI has been continuing efforts to develop and make applications of a 'safety assessment system' which enable to measure the safety level of organization. This report describe about frame of the system, assessment results and its reliability, and relation between labor accident rate in the site and total safety index (TSI), which can be obtained by the principal factors analysis. The safety assessment in this report is based on questionnaire survey of employee. The format and concrete questionnaires were developed using existing literatures including organizational assessment tools. The tailored questionnaire format involved 124 questionnaire items. The assessment results could be considered as a well indicator of the safety level of organization, safety management, and safety awareness of employee. (author)

  18. Closure of 324 Facility potential HEPA filter failure unreviewed safety questions

    International Nuclear Information System (INIS)

    Enghusen, M.B.

    1997-01-01

    This document summarizes the activities which occurred to resolve an Unreviewed Safety Question (USQ) for the 324 Facility [Waste Technology Engineering Laboratory] involving Potential HEPA Filter Breach. The facility ventilation system had the capacity to fail the HEPA filters during accident conditions which would totally plug the filters. The ventilation system fans were modified which lowered fan operating parameters and prevented HEPA filter failures which might occur during accident conditions

  19. 49 CFR 659.19 - System safety program plan: contents.

    Science.gov (United States)

    2010-10-01

    ... implementation of the system safety program. (j) A description of the process used by the rail transit agency to... the rail transit agency to manage safety issues. (d) The process used to control changes to the system... hazard management program. (n) A description of the process used for facilities and equipment safety...

  20. Quantitative risk assessment of digitalized safety systems

    Energy Technology Data Exchange (ETDEWEB)

    Shin, Sung Min; Lee, Sang Hun; Kang, Hym Gook [KAIST, Daejeon (Korea, Republic of); Lee, Seung Jun [UNIST, Ulasn (Korea, Republic of)

    2016-05-15

    A report published by the U.S. National Research Council indicates that appropriate methods for assessing reliability are key to establishing the acceptability of digital instrumentation and control (I and C) systems in safety-critical plants such as NPPs. Since the release of this issue, the methodology for the probabilistic safety assessment (PSA) of digital I and C systems has been studied. However, there is still no widely accepted method. Kang and Sung found three critical factors for safety assessment of digital systems: detection coverage of fault-tolerant techniques, software reliability quantification, and network communication risk. In reality the various factors composing digitalized I and C systems are not independent of each other but rather closely connected. Thus, from a macro point of view, a method that can integrate risk factors with different characteristics needs to be considered together with the micro approaches to address the challenges facing each factor.

  1. Nuclear power systems: Their safety

    International Nuclear Information System (INIS)

    Myers, L.C.

    1993-01-01

    Mankind utilizes energy in many forms and from a variety of sources. Canada is one of a growing number of countries which have chosen to embrace nuclear-electric generation as a component of their energy systems. As of August 1992 there were 433 power reactors operating in 35 countries and accounting for more than 15% of the world's production of electricity. In 1992, thirteen countries derived at least 25% of their electricity from nuclear units, with France leading at nearly 70%. In the same year, Canada produced about 16% of its electricity from nuclear units. Some 68 power reactors are under construction in 16 countries, enough to expand present generating capacity by close to 20%. No human endeavour carries the guarantee of perfect safety and the question of whether or not nuclear-electric generation represents an 'acceptable' risk to society has long been vigorously debated. Until the events of late April 1986, nuclear safety had indeed been an issue for discussion, for some concern, but not for alarm. The accident at the Chernobyl reactor in the USSR has irrevocably changed all that. This disaster brought the matter of nuclear safety back into the public mind in a dramatic fashion. This paper discusses the issue of safety in complex energy systems and provides brief accounts of some of the most serious reactor accidents which have occurred to date. (author). 7 refs

  2. John M. Eisenberg Patient Safety Awards. System innovation: Veterans Health Administration National Center for Patient Safety.

    Science.gov (United States)

    Heget, Jeffrey R; Bagian, James P; Lee, Caryl Z; Gosbee, John W

    2002-12-01

    In 1998 the Veterans Health Administration (VHA) created the National Center for Patient Safety (NCPS) to lead the effort to reduce adverse events and close calls systemwide. NCPS's aim is to foster a culture of safety in the Department of Veterans Affairs (VA) by developing and providing patient safety programs and delivering standardized tools, methods, and initiatives to the 163 VA facilities. To create a system-oriented approach to patient safety, NCPS looked for models in fields such as aviation, nuclear power, human factors, and safety engineering. Core concepts included a non-punitive approach to patient safety activities that emphasizes systems-based learning, the active seeking out of close calls, which are viewed as opportunities for learning and investigation, and the use of interdisciplinary teams to investigate close calls and adverse events through a root cause analysis (RCA) process. Participation by VA facilities and networks was voluntary. NCPS has always aimed to develop a program that would be applicable both within the VA and beyond. NCPS's full patient safety program was tested and implemented throughout the VA system from November 1999 to August 2000. Program components included an RCA system for use by caregivers at the front line, a system for the aggregate review of RCA results, information systems software, alerts and advisories, and cognitive acids. Following program implementation, NCPS saw a 900-fold increase in reporting of close calls of high-priority events, reflecting the level of commitment to the program by VHA leaders and staff.

  3. The electron test accelerator safety in design and operation

    International Nuclear Information System (INIS)

    McKeown, J.

    1980-06-01

    The Electron Test Accelerator is being designed as an experiment in accelerator physics and technology. With an electron beam power of up to 200 kW the operation of the accelerator presents a severe radiation hazard as well as rf and electrical hazards. The design of the safety system provides fail-safe protection while permitting flexibility in the mode of operation and minimizing administrative controls. (auth)

  4. Safety parameter display system for Kalinin NPP

    International Nuclear Information System (INIS)

    Andreev, V.I.; Videneev, E.N.; Tissot, J.C.; Joonekindt, D.; Davidenko, N.N.; Shaftan, G.I.; Dounaev, V.G.; Neboyan, V.T.

    1995-01-01

    The paper discusses the safety parameter display system (SPDS), which is being designed for Kalinin NPP. The assessment of the safety status of the plant is done by the continuous monitoring of six critical safety functions and the corresponding status trees. Besides, a number of additional functions are realized within the scope of KlnNPP, aimed at providing the operator and the safety engineer in the main control room with more detailed information in accidental situation as well as during the normal operation. In particular, these functions are: archiving, data logs and alarm handling, safety actions monitoring, mnemonic diagrams indicating the state of main technological equipment and basic plant parameters, reference data, etc. As compared with the traditional scope of functions of this kind of systems, the functionality of KlnNPP SPDS is significantly expanded due to the inclusion in it the operator support function ''computerized procedures''. The basic SPDS implementation platform is ADACS of SEMA GROUP design. The system architecture includes two workstations in the main control room: one is for reactor operator and the other one for safety engineer. Every station has two CRT screens which ensures computerized procedures implementation and provides for extra services for the operator. Also, the information from the SPDS is transmitted to the local crisis center and to the crisis center of the State utility organization concern ''Rosenergoatom''. (author). 3 refs, 6 figs, 1 tab

  5. Safety applications of computer based systems for the process industry

    International Nuclear Information System (INIS)

    Bologna, Sandro; Picciolo, Giovanni; Taylor, Robert

    1997-11-01

    Computer based systems, generally referred to as Programmable Electronic Systems (PESs) are being increasingly used in the process industry, also to perform safety functions. The process industry as they intend in this document includes, but is not limited to, chemicals, oil and gas production, oil refining and power generation. Starting in the early 1970's the wide application possibilities and the related development problems of such systems were recognized. Since then, many guidelines and standards have been developed to direct and regulate the application of computers to perform safety functions (EWICS-TC7, IEC, ISA). Lessons learnt in the last twenty years can be summarised as follows: safety is a cultural issue; safety is a management issue; safety is an engineering issue. In particular, safety systems can only be properly addressed in the overall system context. No single method can be considered sufficient to achieve the safety features required in many safety applications. Good safety engineering approach has to address not only hardware and software problems in isolation but also their interfaces and man-machine interface problems. Finally, the economic and industrial aspects of the safety applications and development of PESs in process plants are evidenced throughout all the Report. Scope of the Report is to contribute to the development of an adequate awareness of these problems and to illustrate technical solutions applied or being developed

  6. The Intelligent Safety System: could it introduce complex computing into CANDU shutdown systems

    International Nuclear Information System (INIS)

    Hall, J.A.; Hinds, H.W.; Pensom, C.F.; Barker, C.J.; Jobse, A.H.

    1984-07-01

    The Intelligent Safety System is a computerized shutdown system being developed at the Chalk River Nuclear Laboratories (CRNL) for future CANDU nuclear reactors. It differs from current CANDU shutdown systems in both the algorithm used and the size and complexity of computers required to implement the concept. This paper provides an overview of the project, with emphasis on the computing aspects. Early in the project several needs leading to an introduction of computing complexity were identified, and a computing system that met these needs was conceived. The current work at CRNL centers on building a laboratory demonstration of the Intelligent Safety System, and evaluating the reliability and testability of the concept. Some fundamental problems must still be addressed for the Intelligent Safety System to be acceptable to a CANDU owner and to the regulatory authorities. These are also discussed along with a description of how the Intelligent Safety System might solve these problems

  7. Safety Characteristics in System Application Software for Human Rated Exploration

    Science.gov (United States)

    Mango, E. J.

    2016-01-01

    NASA and its industry and international partners are embarking on a bold and inspiring development effort to design and build an exploration class space system. The space system is made up of the Orion system, the Space Launch System (SLS) and the Ground Systems Development and Operations (GSDO) system. All are highly coupled together and dependent on each other for the combined safety of the space system. A key area of system safety focus needs to be in the ground and flight application software system (GFAS). In the development, certification and operations of GFAS, there are a series of safety characteristics that define the approach to ensure mission success. This paper will explore and examine the safety characteristics of the GFAS development.

  8. A method of failed fuel detection

    International Nuclear Information System (INIS)

    Uchida, Shunsuke; Utamura, Motoaki; Urata, Megumu.

    1976-01-01

    Object: To keep the coolant fed to a fuel assembly at a level below the temperature of existing coolant to detect a failed fuel with high accuracy without using a heater. Structure: When a coolant in a coolant pool disposed at the upper part of a reactor container is fed by a coolant feed system into a fuel assembly through a cap to fill therewith and exchange while forming a boundary layer between said coolant and the existing coolant, the temperature distribution of the feed coolant is heated by fuel rods so that the upper part is low whereas the lower part is high. Then, the lower coolant is upwardly moved by the agitating action and fission products leaked through a failed opening at the lower part of the fuel assembly and easily extracted by the sampling system. (Yoshino, Y.)

  9. Tuning permissiveness of active safety monitors for autonomous systems

    OpenAIRE

    Masson , Lola; Guiochet , Jérémie; Waeselynck , Hélène; Cabrera , Kalou; Cassel , Sofia; Törngren , Martin

    2018-01-01

    International audience; Robots and autonomous systems have become a part of our everyday life, therefore guaranteeing their safety is crucial.Among the possible ways to do so, monitoring is widely used, but few methods exist to systematically generate safety rules to implement such monitors. Particularly, building safety monitors that do not constrain excessively the system's ability to perform its tasks is necessary as those systems operate with few human interventions.We propose in this pap...

  10. A study on design of the trip computer for ECCS based on dynamic safety system

    International Nuclear Information System (INIS)

    Kim, Seog Nam

    2000-02-01

    The Emergency Core Cooling system in current nuclear power plants typically has a considerable number of complex functions and largely cumbersome operator interfaces. Functions for initiation, switch-over between various phases of operation, interlocks, monitoring, and alarming are usually performed by relay and analog comparator logic which is difficult to maintain and test. To improve problems of an analog based ECC (Emergency Core Cooling) System, the trip computer for ECCS based on Dynamic Safety System is implemented. The Dynamic Safety System (DSS) is a computer based reactor protection system that has fail-safe nature and performs a dynamic self-testing. The most important feature of the DSS is the introduction of test signal that send the system into a tripped state. The test signals are interleaved between the plant signals to produce an output which switches between a tripped and health state. The dynamic operation is a key feature of the failsafe design of the system. In this thesis, a possible implementation of the DSS using PLC is presented for a CANDU reactor. ECC System of the CANDU Reactor is selected as the reference system. The function of the DSS is implemented In PLC with the CONCEPT language. CONCEPT was developed by GROUPE SCHNEIDER as a graphic user interface programming tool for the Quantum PLC. A MMI display for ECCS based on DSS is implemented with LOOKOUT as an object driven programming tool. The Validation test has been performed by S/W Input Simulator as per Validation Test Procedure. The result of the test was checked and displayed on the MMI display. From the test results, it is shown that the DSS based ECC System operates correctly in all conditions

  11. Adoption of digital safety protection system in Japan

    International Nuclear Information System (INIS)

    Ogiso, Z.

    1998-01-01

    The application of micro-processor-based digital controllers has been widely propagated among various industries in recent years. While in the nuclear power plant industry, the application of them has also been expanding gradually starting from non-safety related systems, taking advantage of their reliability and maintainability over the conventional analog devices. Based on the careful study of the feasibility of digital controllers to the safety protection system, the Tokyo Electric Power Company proposed on May 1989 the adoption of digital controllers to the safety protection system in the Application for Permission of Establishment of Kashiwazaki-Kariwa units 6 and 7 (ABWR-1350Mwe each). MITI, Ministry of International Trade and Industry, the Japanese regulatory body for electric power generating facilities, had approved this application after careful review. This paper describes a series of supporting activities leading to the MITI's approval of the digital safety protection system and the MITI's licensing activities. (author)

  12. ACP Facility Safety Surveillance System Installation

    International Nuclear Information System (INIS)

    You, Gil Sung; Kook, D. H.; Choung, W. M.; Ku, J. H.; Cho, I. J.; You, G. S.; Kwon, K. C.; Lee, W. K.; Lee, E. P.

    2006-10-01

    The Advanced spent fuel Conditioning Process is under development for effective management of spent fuel by converting UO 2 into U-metal. For demonstration of this process, α-γ type new hotcell was built in the IMEF basement. All facilities which treat radioactive materials must manage CCTV system which is under control of Health Physics department. Three main points (including hotcell rear door area) have each camera, but operators who are in charge of facility management need to check the safety of the facility immediately through the network in his office. This needs introduce additional network cameras installation and this new surveillance system is expected to update the whole safety control ability with existing system

  13. Safety aspect of digital reactor protection system in Japan

    International Nuclear Information System (INIS)

    Ogiso, Zen-Ichi

    1998-01-01

    It was early in 1980's that the digital controllers were first applied to nuclear power plant in japan. After that, their application area had been expanding gradually, reaching to the overall integrated digital system including the safety system in Kashiwazaki-Kariwa units 6 and 7. The software for computer-based systems has been produced using the graphical language ''POL'' in Japanese nuclear power plants. It is the fundamental principle that the reliability of the software should be assured through the properly managed quality assurance. The POL-based system is fitted to this principle. In applying POL-based systems to safety system, the MITI, Ministry of International Trade and Industry, identified the licensing issues as the regulatory body, while the utilities had developed the digital technology feasible to the safety application. Through the activities, a specific industrial design guide for the software important to safety was established and the adequacy of the technology was certified through the demonstration tests of the integrated system. In the safety examination of the digital reactor protection system of K-6/7, the application of POL were approved. The POL-based systems in nuclear power plants were successful design and production process of the POL-based systems. This paper describes the activities in licensing and maintaining the computer-based systems by the utilities and manufacturers as well as the MITI. (author)

  14. Safety systems and features of boiling and pressurized water reactors

    International Nuclear Information System (INIS)

    Khair, H. O. M.

    2012-06-01

    The safe operation of nuclear power plants (NPP) requires a deep understanding of the functioning of physical processes and systems involved. This study was carried out to present an overview of the features of safety systems of boiling and pressurized water reactors that are available commercially. Brief description of purposes and functions of the various safety systems that are employed in these reactors was discussed and a brief comparison between the safety systems of BWRs and PWRs was made in an effort to emphasize of safety in NPPs.(Author)

  15. Selection and verification of safety parameters in safety parameter display system for nuclear power plants

    International Nuclear Information System (INIS)

    Zhang Yuangfang

    1992-02-01

    The method and results for safety parameter selection and its verification in safety parameter display system of nuclear power plants are introduced. According to safety analysis, the overall safety is divided into six critical safety functions, and a certain amount of safety parameters which can represent the integrity degree of each function and the causes of change are strictly selected. The verification of safety parameter selection is carried out from the view of applying the plant emergency procedures and in the accident man oeuvres on a full scale nuclear power plant simulator

  16. The regulatory system of nuclear safety in Russia

    International Nuclear Information System (INIS)

    Mizoguchi, Shuhei

    2013-01-01

    This article explains what type of mechanism the nuclear system has and how nuclear safety is regulated in Russia. There are two main organizations in this system : ROSATOM and ROSTEKHADZOR. ROSATOM, which was founded in 2007, incorporates all the nuclear industries in Russia, including civil nuclear companies as well as nuclear weapons complex facilities. ROSTEKHNADZOR is the federal body that secures and supervises the safety in using atomic energy. This article also reviews three laws on regulating nuclear safety. (author)

  17. Fail-safe computer-aided operations control system for the transrapid maglev high-speed railway

    Energy Technology Data Exchange (ETDEWEB)

    Burkert, S [Siemens AG, Braunschweig (Germany); Eilers, H [Siemens AG, Braunschweig (Germany); Freitag, V [Siemens AG, Braunschweig (Germany); Knigge, R [Siemens AG, Braunschweig (Germany)

    1996-12-31

    The wide variety of control and safety functions for the Transrapid need to be interlinked in the operations control system. These functions are grouped according to their main focus and located in the subsystems `operations control centre`, `decentralised operations control system` and `on-board operations control system`. The paper describes the operations control system OCS. (HW)

  18. Large Steel Tank Fails and Rockets to Height of 30 meters - Rupture Disc Installed Incorrectly.

    Science.gov (United States)

    Hedlund, Frank H; Selig, Robert S; Kragh, Eva K

    2016-06-01

    At a brewery, the base plate-to-shell weld seam of a 90-m(3) vertical cylindrical steel tank failed catastrophically. The 4 ton tank "took off" like a rocket leaving its contents behind, and landed on a van, crushing it. The top of the tank reached a height of 30 m. The internal overpressure responsible for the failure was an estimated 60 kPa. A rupture disc rated at < 50 kPa provided overpressure protection and thus prevented the tank from being covered by the European Pressure Equipment Directive. This safeguard failed and it was later discovered that the rupture disc had been installed upside down. The organizational root cause of this incident may be a fundamental lack of appreciation of the hazards of large volumes of low-pressure compressed air or gas. A contributing factor may be that the standard piping and instrumentation diagram (P&ID) symbol for a rupture disc may confuse and lead to incorrect installation. Compressed air systems are ubiquitous. The medium is not toxic or flammable. Such systems however, when operated at "slight overpressure" can store a great deal of energy and thus constitute a hazard that ought to be addressed by safety managers.

  19. Vibration analysis of the Golfech 2 safety injection system

    International Nuclear Information System (INIS)

    Morilhat, P.

    1993-01-01

    The main function of the safety injection system in a PWR plant is to ensure cooling of fuel elements in the event of a loss of coolant accident. The multistage centrifugal pump mounted-on this system induces pressure fluctuations, resulting in dynamic loads on piping. In certain plant units, these loads have caused cracking in the nozzles connected to the safety injection system, whereas in others, no damage has been observed. In order to understand the differences in dynamic behavior observed from one site to another, tests were performed on a real safety injection system, that of Golfech-2. They enabled determination of the modal characteristics of the system and identification of the hydro-acoustic source of the low head safety injection pump. They also enabled assessment of the pressure fluctuation levels in the pump suction and discharge areas as well as the vibratory response of the system when operating under partial and nominal flow conditions. Finally, these test results were used to estimate fatigue damage in the safety injection system. The experimental results will later be used to validate the model of the system undertaken with the piping design code CIRCUS and define the boundary conditions to be taken into account. (author). 6 figs., 2 refs

  20. Online failed fuel identification using delayed neutron detector signals in pool type reactors

    International Nuclear Information System (INIS)

    Upadhyay, Chandra Kant; Sivaramakrishna, M.; Nagaraj, C.P.; Madhusoodanan, K.

    2011-01-01

    In todays world, nuclear reactors are at the forefront of modern day innovation and reactor designs are increasingly incorporating cutting edge technology. It is of utmost importance to detect failure or defects in any part of a nuclear reactor for healthy operation of reactor as well as the safety aspects of the environment. Despite careful fabrication and manufacturing of fuel pins, there is a chance of clad failure. After fuel pin clad rupture takes place, it allows fission products to enter in to sodium pool. There are some potential consequences due to this such as Total Instantaneous Blockage (TIB) of coolant and primary component contamination. At present, the failed fuel detection techniques such as cover gas monitoring (alarming the operator), delayed neutron detection (DND-automatic trip) and standalone failed fuel localization module (FFLM) are exercised in various reactors. The first technique is a quantitative measurement of increase in the cover gas activity background whereas DND system causes automatic trip on detecting certain level of activity during clad wet rupture. FFLM is subsequently used to identify the failed fuel subassembly. The later although accurate, but mainly suffers from downtime and reduction in power during identification process. The proposed scheme, reported in this paper, reduces the operation of FFLM by predicting the faulty sector and therefore reducing reactor down time and thermal shocks. The neutron evolution pattern gets modulated because fission products are the delay neutron precursors. When they travel along with coolant to Intermediate heat Exchangers, experienced three effects i.e. delay; decay and dilution which make the neutron pulse frequency vary depending on the location of failed fuel sub assembly. This paper discusses the method that is followed to study the frequency domain properties, so that it is possible to detect exact fuel subassembly failure online, before the reactor automatically trips. (author)

  1. Development of Operational Safety Monitoring System and Emergency Preparedness Advisory System for CANDU Reactors (I)

    International Nuclear Information System (INIS)

    Kim, Ma Woong; Shin, Hyeong Ki; Lee, Sang Kyu; Kim, Hyun Koon; Yoo, Kun Joong; Ryu, Yong Ho; Son, Han Seong; Song, Deok Yong

    2007-01-01

    As increase of operating nuclear power plants, an accident monitoring system is essential to ensure the operational safety of nuclear power plant. Thus, KINS has developed the Computerized Advisory System for a Radiological Emergency (CARE) system to monitor the operating status of nuclear power plant continuously. However, during the accidents or/and incidents some parameters could not be provided from the process computer of nuclear power plant to the CARE system due to limitation of To enhance the CARE system more effective for CANDU reactors, there is a need to provide complement the feature of the CARE in such a way to providing the operating parameters using to using safety analysis tool such as CANDU Integrated Safety Analysis System (CISAS) for CANDU reactors. In this study, to enhance the safety monitoring measurement two computerized systems such as a CANDU Operational Safety Monitoring System (COSMOS) and prototype of CANDU Emergency Preparedness Advisory System (CEPAS) are developed. This study introduces the two integrated safety monitoring system using the R and D products of the national mid- and long-term R and D such as CISAS and ISSAC code

  2. Research on the improvement of nuclear safety -Thermal hydraulic tests for reactor safety system-

    Energy Technology Data Exchange (ETDEWEB)

    Jung, Moon Kee; Park, Choon Kyung; Yang, Sun Kyoo; Chun, Se Yung; Song, Chul Hwa; Jun, Hyung Kil; Jung, Heung Joon; Won, Soon Yun; Cho, Yung Roh; Min, Kyung Hoh; Jung, Jang Hwan; Jang, Suk Kyoo; Kim, Bok Deuk; Kim, Wooi Kyung; Huh, Jin; Kim, Sook Kwan; Moon, Sang Kee; Lee, Sang Il [Korea Atomic Energy Research Institute, Taejon (Korea, Republic of)

    1995-06-01

    The present research aims at the development of the thermal hydraulic verification test technology for the safety system of the conventional and advanced nuclear power plant and the development of the advanced thermal hydraulic measuring techniques. In this research, test facilities simulating the primary coolant system and safety system are being constructed for the design verification tests of the existing and advanced nuclear power plant. 97 figs, 14 tabs, 65 refs. (Author).

  3. System Interface for an Integrated Intelligent Safety System (ISS for Vehicle Applications

    Directory of Open Access Journals (Sweden)

    Mahammad A. Hannan

    2010-01-01

    Full Text Available This paper deals with the interface-relevant activity of a vehicle integrated intelligent safety system (ISS that includes an airbag deployment decision system (ADDS and a tire pressure monitoring system (TPMS. A program is developed in LabWindows/CVI, using C for prototype implementation. The prototype is primarily concerned with the interconnection between hardware objects such as a load cell, web camera, accelerometer, TPM tire module and receiver module, DAQ card, CPU card and a touch screen. Several safety subsystems, including image processing, weight sensing and crash detection systems, are integrated, and their outputs are combined to yield intelligent decisions regarding airbag deployment. The integrated safety system also monitors tire pressure and temperature. Testing and experimentation with this ISS suggests that the system is unique, robust, intelligent, and appropriate for in-vehicle applications.

  4. A Reliability Assessment Method for the VHTR Safety Systems

    International Nuclear Information System (INIS)

    Lee, Hyung Sok; Jae, Moo Sung; Kim, Yong Wan

    2011-01-01

    The Passive safety system by very high temperature reactor which has attracted worldwide attention in the last century is the reliability safety system introduced for the improvement in the safety of the next generation nuclear power plant design. The Passive system functionality does not rely on an external source of energy, but on an intelligent use of the natural phenomena, such as gravity, conduction and radiation, which are always present. Because of these features, it is difficult to evaluate the passive safety on the risk analysis methodology having considered the existing active system failure. Therefore new reliability methodology has to be considered. In this study, the preliminary evaluation and conceptualization are tried, applying the concept of the load and capacity from the reliability physics model, designing the new passive system analysis methodology, and the trial applying to paper plant.

  5. The socio-technical system and nuclear safety

    International Nuclear Information System (INIS)

    Stefanescu, Petre; Mihailescu, Nicolae; Dragusin, Octavian

    1999-01-01

    In the field of nuclear safety there have been defined notions like 'technical factors' and 'human factors'. The technical factors depend on designing and manufacturing of components/equipment, actually depend on the people's work. The study of human factors consists in analyzing and recommending the terms that allow an individual to be a reliable and safety agent. Accordingly, he/she is placed in working conditions corresponding to human abilities, associating the means of three levels: - designing, i.e. the action upon the technical system and upon work organization; - correction, i.e. the action upon the evolution of the technical system and organizing; - formation/training, i.e. action upon operators. The paper presents a characterization of the socio-technical system and on this basis discusses the issue of individual adjustment to the socio-technical system and reciprocally, the issue of the socio-technical system adjustment to the individual. Concepts as: ergonomics, physical medium, man/machine interface and support of the operator, man/machine task sharing, the work organizing are put in relation with the central subject, the nuclear safety

  6. Emerging standards with application to accelerator safety systems

    International Nuclear Information System (INIS)

    Mahoney, K.L.; Robertson, H.P.

    1997-01-01

    This paper addresses international standards which can be applied to the requirements for accelerator personnel safety systems. Particular emphasis is given to standards which specify requirements for safety interlock systems which employ programmable electronic subsystems. The work draws on methodologies currently under development for the medical, process control, and nuclear industries

  7. Recent advances in systems safety and security

    CERN Document Server

    Stamatescu, Grigore

    2016-01-01

    This book represents a timely overview of advances in systems safety and security, based on selected, revised and extended contributions from the 2nd and 3rd editions of the International Workshop on Systems Safety and Security – IWSSS, held in 2014 and 2015, respectively, in Bucharest, Romania. It includes 14 chapters, co-authored by 34 researchers from 7 countries. The book provides an useful reference from both theoretical and applied perspectives in what concerns recent progress in this area of critical interest. Contributions, broadly grouped by core topic, address challenges related to information theoretic methods for assuring systems safety and security, cloud-based solutions, image processing approaches, distributed sensor networks and legal or risk analysis viewpoints. These are mostly accompanied by associated case studies providing additional practical value and underlying the broad relevance and impact of the field.

  8. An Integrated Safety Assessment Methodology for Generation IV Nuclear Systems

    International Nuclear Information System (INIS)

    Leahy, Timothy J.

    2010-01-01

    The Generation IV International Forum (GIF) Risk and Safety Working Group (RSWG) was created to develop an effective approach for the safety of Generation IV advanced nuclear energy systems. Early work of the RSWG focused on defining a safety philosophy founded on lessons learned from current and prior generations of nuclear technologies, and on identifying technology characteristics that may help achieve Generation IV safety goals. More recent RSWG work has focused on the definition of an integrated safety assessment methodology for evaluating the safety of Generation IV systems. The methodology, tentatively called ISAM, is an integrated 'toolkit' consisting of analytical techniques that are available and matched to appropriate stages of Generation IV system concept development. The integrated methodology is intended to yield safety-related insights that help actively drive the evolving design throughout the technology development cycle, potentially resulting in enhanced safety, reduced costs, and shortened development time.

  9. [B-BS and occupational health and safety management systems].

    Science.gov (United States)

    Bacchetta, Adriano Paolo

    2010-01-01

    The objective of a SGSL is the "prevention" agreement as approach of "pro-active" toward the safety at work through the construction of an integrated managerial system in synergic an dynamic way with the business organization, according to continuous improvement principles. Nevertheless the adoption of a SGSL, not could guarantee by itself the obtainment of the full effectiveness than projected and every individual's adhesion to it, must guarantee it's personal involvement in proactive way, so that to succeed to actual really how much hypothesized to systemic level to increase the safety in firm. The objective of a behavioral safety process that comes to be integrated in a SGSL, it has the purpose to succeed in implementing in firm a process of cultural change that raises the workers social group fundamental safety value, producing an ample and full involvement of all in the activities of safety at work development. SGSL = Occupational Health and Safety Management System.

  10. The safety of Ontario's nuclear power reactors. A scientific and technical review. A submission to the Ontario Nuclear Safety Review by Atomic Energy Canada Limited

    International Nuclear Information System (INIS)

    1987-01-01

    This submission comments on the evolution of the Canadian nuclear program, the management of safety, and the reactor design, analysis, operation and research programs that contribute to the safety of the CANDU reactor and provide assurance of safety to the regulatory agency and to the public. The CANDU reactor system has been designed and developed with close cooperation between Atomic Energy of Canada Ltd. (AECL), utilities, manufacturers, and the Atomic Energy Control Board (AECB). The AECB has the responsibility, on behalf of the public, for establishing acceptable standards with respect to public risk and for establishing through independent review that these standards are satisfied. The plant designer has responsibility for defining how those standards will be met. The plant operator has responsibility for operating within the framework of those standards. The Canadian approach to safety design is based on the philosophy of defence in depth. Defence in depth is achieved through a high level of equipment quality, system redundancy and fail-safe design; regulating and process systems designed to maintain all process systems within acceptable operating parameters; and, independent safety systems to shut down the reactor, provide long-term cooling, and contain potential release of radioactivity in the event of an accident. The resulting design meets regulatory requirements not only in Canada but also in other countries. Probabilistic safety and risk evaluations show that the CANDU design offers a level of safety and least as good as other commercially available reactor designs

  11. Functional Safety Specification of Communication Profile PROFIsafe

    Directory of Open Access Journals (Sweden)

    Jan Rofar

    2006-01-01

    Full Text Available Paper maps the trends in area of safety-related communication within PROFIBUS and PROFINET industry networks. There are analyses safety measures and Fail-safe parameters of PROFIsafe profile in version V2 and their localisation in Safety Communication Layer SCL, which guarantees Safety Integrity Level SIL according to standard IEC 61508. The last chapter analyses the reaction in the event of fault during transmission of messages.

  12. Examining the Relationship Between Safety Management System Implementation and Safety Culture in Collegiate Flight Schools

    OpenAIRE

    Robertson, Michael F

    2018-01-01

    Safety management systems (SMS) are becoming the industry standard for safety management throughout the aviation industry. As the Federal Aviation Administration continues to mandate SMS for different segments, the assessment of an organization’s safety culture becomes more important. An SMS can facilitate the development of a strong aviation safety culture. This study describes how safety culture and SMS are integrated. The purpose of this study was to examine the relationship between an ...

  13. Radiation safety management system in a radioactive facility

    International Nuclear Information System (INIS)

    Amador, Zayda H.

    2008-01-01

    Full text: This paper illustrates the Cuban experience in implementing and promoting an effective radiation safety system for the Centre of Isotopes, the biggest radioactive facility of our country. Current management practice demands that an organization inculcate culture of safety in preventing radiation hazard. The aforementioned objectives of radiation protection can only be met when it is implemented and evaluated continuously. Commitment from the workforce to treat safety as a priority and the ability to turn a requirement into a practical language is also important to implement radiation safety policy efficiently. Maintaining and improving safety culture is a continuous process. There is a need to establish a program to measure, review and audit health and safety performance against predetermined standards. All those areas of the radiation protection program are considered (e.g. licensing and training of the staff, occupational exposure, authorization of the practices, control of the radioactive material, radiological occurrences, monitoring equipment, radioactive waste management, public exposure due to airborne effluents, audits and safety costs). A set of indicators designed to monitor key aspects of operational safety performance are used. Their trends over a period of time are analyzed with the modern information technologies, because this can provide an early warning to plant management for searching causes behind the observed changes. In addition to analyze the changes and trends, these indicators are compared against identified targets and goals to evaluate performance strengths and weaknesses. A structured and proper radiation self-auditing system is seen as a basic requirement to meet the current and future needs in sustainability of radiation safety. The integrated safety management system establishment has been identified as a goal and way for the continuous improvement. (author)

  14. A study on optimization of the nuclear safety system

    International Nuclear Information System (INIS)

    Lee, Sang Hoon; Koh, Byung Joon; Kim, Jin Soo; Kim, Byoung Do; Cho, Seong Won; Kwon, Seog Kwon; Choi, Kwang Sik

    1986-12-01

    The number of nuclear facilities (nuclear power plants, research reactors, nuclear fuel facilities) under construction or in operation in Korea continues to increase and this has brought about increased importance and concerns toward nuclear safety in Korea. Also, domestic nuclear related organizations are increasingly carrying out the design/construction of nuclear power plants and the development /supply of nuclear fuels. In order to flexibly respond to these changes and to suggest direction to take, it is necessary to re-examine the current nuclear safety regulation system. This study is carried out in two stages and this report describes the results of the analysis and the assessment of the nuclear licencing system of such foreign countries as sweden and German, as the first of the two. In this regard, this study includes the analysis on the backgrounds on the choice of nuclear licensing system, the analysis on the licensing procedures, the analysis on the safety inspection system and the enforcement laws, the analysis on the structure and function of the regulatory, business and research organizations as well as the analysis on the relationship between the safety research and the regulatory duties. In this study, the German safety inspection system and the enforcement procedures and the Swedish nuclear licensing system are analyzed in detail. By comparing and assessing the finding with the current Korea Nuclear Licensing System, this study points out some reform measures of the Korean system that needs to improved. With the changing situations in mind, this study aims to develop the nuclear safety regulation system optimized for Korean situation by re-examining the current regulation system. (Author)

  15. Advancement on safety management system of nuclear power for safety and non-anxiety of society

    International Nuclear Information System (INIS)

    Yoshikawa, Hidekazu

    2004-01-01

    Advancement on safety management system is investigated to improve safety and non-anxiety of society for nuclear power, from the standpoint of human machine system research. First, the recent progress of R and D works of human machine interface technologies since 1980 s are reviewed and then the necessity of introducing a new approach to promote technical risk communication activity to foster safety culture in nuclear industries. Finally, a new concept of Offsite Operation and Maintenance Support Center (OMSC) is proposed as the core facility to assemble human resources and their expertise in all organizations of nuclear power, for enhancing safety and non-anxiety of society for nuclear power. (author)

  16. Studies on modeling to failed fuel detection system response in LMFBR

    International Nuclear Information System (INIS)

    Miyazawa, T.; Saji, G.; Mitsuzuku, N.; Hikichi, T.; Odo, T.; Rindo, H.

    1981-05-01

    Failed Fuel Detection (FFD) system with Fission Products (FP) detection is considered to be the most promissing method, since FP provides direct information against fuel element failure. For designing FFD system and for evaluating FFD signals, some adequate FFD signal response to fuel failure have been required. But few models are available in nowadays. Thus Power Reactor and Nuclear Fuel Development Corporation (PNC) had developed FFD response model with computer codes, based on several fundamental investigations on FP release and FP behavior, and referred to foreign country experiences on fuel failure. In developing the model, noble gas and halogen FP release and behavior were considered, since FFD system would be composed of both cover gas monitoring and delayed neutron monitoring. The developed model can provide typical fuel failure response and detection limit which depends on various background signals at cover gas monitoring and delayed neutron monitoring. According to the FFD response model, we tried to assume fuel failure response and detection limit at Japan experimental fast reactor ''JOYO''. The detection limit of JOYO FFD system was estimated by measuring the background signals. Followed on the studies, a complete computer code has been now made with some improvement. On the paper, the details of the model, out line of developed computer code, status of JOYO FFD system, and trial assumption of JOYO FFD response and detection limit. (author)

  17. Risk assessment of safety data link and network communication in digital safety feature control system of nuclear power plant

    International Nuclear Information System (INIS)

    Lee, Sang Hun; Son, Kwang Seop; Jung, Wondea; Kang, Hyun Gook

    2017-01-01

    Highlights: • Safety data communication risk assessment framework and quantitative scheme were proposed. • Fault-tree model of ESFAS unavailability due to safety data communication failure was developed. • Safety data link and network risk were assessed based on various ESF-CCS design specifications. • The effect of fault-tolerant algorithm reliability of safety data network on ESFAS unavailability was assessed. - Abstract: As one of the safety-critical systems in nuclear power plants (NPPs), the Engineered Safety Feature-Component Control System (ESF-CCS) employs safety data link and network communication for the transmission of safety component actuation signals from the group controllers to loop controllers to effectively accommodate various safety-critical field controllers. Since data communication failure risk in the ESF-CCS has yet to be fully quantified, the ESF-CCS employing data communication systems have not been applied in NPPs. This study therefore developed a fault tree model to assess the data link and data network failure-induced unavailability of a system function used to generate an automated control signal for accident mitigation equipment. The current aim is to provide risk information regarding data communication failure in a digital safety feature control system in consideration of interconnection between controllers and the fault-tolerant algorithm implemented in the target system. Based on the developed fault tree model, case studies were performed to quantitatively assess the unavailability of ESF-CCS signal generation due to data link and network failure and its risk effect on safety signal generation failure. This study is expected to provide insight into the risk assessment of safety-critical data communication in a digitalized NPP instrumentation and control system.

  18. Progress in the development of methodology for fusion safety systems studies

    International Nuclear Information System (INIS)

    Ho, S.K.; Cambi, G.; Ciattaglia, S.; Fujii-e, Y.; Seki, Y.

    1994-01-01

    The development of fusion safety systems-study methodology, including the aspects of schematic classification of overall fusion safety system, qualitative assessment of fusion system for identification of critical accident scenarios, quantitative analysis of accident consequences and risk for safety design evaluation, and system-level analysis of accident consequences and risk for design optimization, by a consortium of international efforts is presented. The potential application of this methodology into reactor design studies will facilitate the systematic assessment of safety performance of reactor designs and enhance the impacts of safety considerations on the selection of design configurations

  19. Research on Integration of NPP Operational Safety Management Performance Systems

    International Nuclear Information System (INIS)

    Chi, Miao; Shi, Liping

    2014-01-01

    The operational safety management of Nuclear Power Plants demands systematic planning and integrated control. NPPs are following the well-developed safety indicator systems proposed by IAEA Operational Safety Performance Indicator Programme, NRC Reactor Oversight Process or the other institutions. Integration of the systems is proposed to benefiting from the advantages of both systems and avoiding improper application into the real world. The authors analyzed the possibility and necessity for system integration, and propose an indicator system integrating method

  20. Fail-safe ion chamber errant beam detector tailored for personnel protection

    International Nuclear Information System (INIS)

    Plum, M.A.; Browman, A.A.; Brown, D.; Lee, D.M.; McCabe, C.W.

    1989-01-01

    This fail-safe ion chamber system is designed to be part of the personnel safety system (PSS) for the Los Alamos neutron Scattering Center (LANSCE) at the Los Alamos National Laboratory. Its job is to protect the occupants of the experimental areas from large radiation doses caused by errant beam conditions during beam transport from the Proton Storage Ring (PSR) to the LANSCE neutron spallation target. Due to limited shielding between the beam transport line and the experimental area only if the beam losses in the transport line are very low. The worst case beam spill scenario is calculated to result in a personnel exposure of about 0.01 Gys/s (1 rad/s). Although the preferred solution is to increase the bulk shielding between the beam line and the experimental area, the physical dimensions of the site do not permit an adequate amount of shielding to be added. The solution adopted is a layered system of three types of highly reliable detector systems: a current limiter system located in the beam line, a neutron detector system located in the experimental areas, and an ion chamber system located on the walls of the beam line tunnels. The ion chamber system is capable of shutting off the beam in less than 0.5 s, resulting in a worst case personnel exposure of 0.005 Gys (0.5 rad). 4 figs

  1. Safety design integrated in the building delivery system

    DEFF Research Database (Denmark)

    Jørgensen, Kirsten

    2013-01-01

    . The purpose of this article is to demonstrate how safety and health can be integrated in the design phases integrated in the management delivery systems within construction, The method for the research was to go through the building delivery system step by step and create a normative description of what, when......In construction, it is important to view safety and health as an integrated part of the way that “designers” are working. The designers cowers architects, constructors, engineers and others who carry out their consulting services in the design phase of a construction project. The philosophy...... and how to fully integrate safety in each part of the process. The result is a concept and guideline including control forms for how to integrate safety design in the Building Delivery System plus what to do and when. The concept has been tested in an educational context. The practical value...

  2. Pulse coded safety logic for PFBR

    International Nuclear Information System (INIS)

    Anwer, Md. Najam; Satheesh, N.; Nagaraj, C.P.; Krishnakumar, B.

    2002-01-01

    Full text: Reactor safety logic is designed to initiate safety action against design basis events. The reactor is shutdown by de-energizing electromagnets and dropping the absorber rods under gravity. In prototype fast breeder reactor (PFBR), shutdown is affected by two independent shutdown systems, viz., control and safety rod drive mechanism (CSRDM) and diverse safety rod drive mechanism (DSRDM). Two separate safety logics are proposed for CSRDM and DSRDM, i.e. solid state logic with on-line fine impulse test (FIT) for CSRDM and pulse coded safety logic (PCSL) for DSRDM. The PCSL primarily utilizes the fact that the vast majority of faults in the logic circuitry result in static conditions at the output. It is arranged such that the presence of pulses are required to hold the shutdown actuators and any DC logic state, either logic 0 or logic 1 releases them. It is a dynamic, self-testing logic and used in a number of reactors. This paper describes the principle of operation of PCSL, its advantages, the concept of guard line logic (GLL), detection of stuck at 0 and stuck at 1 faults, fail safe and diversity features. The implementation of PCSL using Altera Max+Plus II software for PFBR trip signals and the results of simulation are discussed. This paper also describes a test jig using 80186 based system for testing PCSL for various input parameter's combinations and monitoring the outputs

  3. Research on the Evaluation System for Rural Public Safety Planning

    Institute of Scientific and Technical Information of China (English)

    Ming; SUN; Jianxin; YAN

    2014-01-01

    The indicator evaluation system is introduced to the study of rural public safety planning in this article.By researching the current rural public safety planning and environmental carrying capacity,we select some carrying capacity indicators influencing the rural public safety,such as land,population,ecological environment,water resources,infrastructure,economy and society,to establish the environmental carrying capacity indicator system.We standardize the indicators,use gray correlation analysis method to determine the weight of indicators,and make DEA evaluation of the indicator system,to obtain the evaluation results as the basis for decision making in rural safety planning,and provide scientific and quantified technical support for rural public safety planning.

  4. Cyber Security Threats to Safety-Critical, Space-Based Infrastructures

    Science.gov (United States)

    Johnson, C. W.; Atencia Yepez, A.

    2012-01-01

    Space-based systems play an important role within national critical infrastructures. They are being integrated into advanced air-traffic management applications, rail signalling systems, energy distribution software etc. Unfortunately, the end users of communications, location sensing and timing applications often fail to understand that these infrastructures are vulnerable to a wide range of security threats. The following pages focus on concerns associated with potential cyber-attacks. These are important because future attacks may invalidate many of the safety assumptions that support the provision of critical space-based services. These safety assumptions are based on standard forms of hazard analysis that ignore cyber-security considerations This is a significant limitation when, for instance, security attacks can simultaneously exploit multiple vulnerabilities in a manner that would never occur without a deliberate enemy seeking to damage space based systems and ground infrastructures. We address this concern through the development of a combined safety and security risk assessment methodology. The aim is to identify attack scenarios that justify the allocation of additional design resources so that safety barriers can be strengthened to increase our resilience against security threats.

  5. Verification and validation issues for digitally-based NPP safety systems

    International Nuclear Information System (INIS)

    Ets, A.R.

    1993-01-01

    The trend toward standardization, integration and reduced costs has led to increasing use of digital systems in reactor protection systems. While digital systems provide maintenance and performance advantages, their use also introduces new safety issues, in particular with regard to software. Current practice relies on verification and validation (V and V) to ensure the quality of safety software. However, effective V and V must be done in conjunction with a structured software development process and must consider the context of the safety system application. This paper present some of the issues and concerns that impact on the V and V process. These include documentation of systems requirements, common mode failures, hazards analysis and independence. These issues and concerns arose during evaluations of NPP safety systems for advanced reactor designs and digital I and C retrofits for existing nuclear plants in the United States. The pragmatic lessons from actual systems reviews can provide a basis for further refinement and development of guidelines for applying V and V to NPP safety systems. (author). 14 refs

  6. 33 CFR 96.220 - What makes up a safety management system?

    Science.gov (United States)

    2010-07-01

    ... system? 96.220 Section 96.220 Navigation and Navigable Waters COAST GUARD, DEPARTMENT OF HOMELAND SECURITY VESSEL OPERATING REGULATIONS RULES FOR THE SAFE OPERATION OF VESSELS AND SAFETY MANAGEMENT SYSTEMS Company and Vessel Safety Management Systems § 96.220 What makes up a safety management system? (a) The...

  7. Analysis approach for common cause failure on non-safety digital control system

    Energy Technology Data Exchange (ETDEWEB)

    Kim, Yun Goo; Oh, Eungse [Korea Hydro and Nuclear Power Co. Ltd., Daejeon (Korea, Republic of)

    2014-05-15

    The effects of common cause failure (CCF) on safety digital instrumentation and control (I and C) system had been considered in defense in depth and diversity coping analysis with safety analysis method. For the non-safety system, single failure had been considered for safety analysis. IEEE Std. 603-1991, Clause 5.6.3.1(2), 'Isolation' states that no credible failure on the non-safety side of an isolation device shall prevent any portion of a safety system from meeting its minimum performance requirements during and following any design basis event requiring that safety function. The software CCF is one of the credible failure on the non-safety side. In advanced digital I and C system, same hardware component is used for different control system and the defect in manufacture or common external event can generate CCF. Moreover, the non-safety I and C system uses complex software for its various function and software quality assurance for the development process is less severe than safety software for the cost effective design. Therefore the potential defects in software cannot be ignored and the effect of software CCF on non-safety I and C system is needed to be evaluated. This paper proposes the general process and considerations for the analysis of CCF on non-safety I and C system.

  8. Operation safety of control systems. Principles and methods

    International Nuclear Information System (INIS)

    Aubry, J.F.; Chatelet, E.

    2008-01-01

    This article presents the main operation safety methods that can be implemented to design safe control systems taking into account the behaviour of the different components with each other (binary 'operation/failure' behaviours, non-consistent behaviours and 'hidden' failures, dynamical behaviours and temporal aspects etc). To take into account these different behaviours, advanced qualitative and quantitative methods have to be used which are described in this article: 1 - qualitative methods of analysis: functional analysis, preliminary risk analysis, failure mode and failure effects analyses; 2 - quantitative study of systems operation safety: binary representation models, state space-based methods, event space-based methods; 3 - application to the design of control systems: safe specifications of a control system, qualitative analysis of operation safety, quantitative analysis, example of application; 4 - conclusion. (J.S.)

  9. Percutaneous anterior C1/2 transarticular screw fixation: salvage of failed percutaneous odontoid screw fixation for odontoid fracture

    OpenAIRE

    Wu, Ai-Min; Jin, Hai-Ming; Lin, Zhong-Ke; Chi, Yong-Long; Wang, Xiang-Yang

    2017-01-01

    Background The objective of this study is to investigate the outcomes and safety of using percutaneous anterior C1/2 transarticular screw fixation as a salvage technique for odontoid fracture if percutaneous odontoid screw fixation fails. Methods Fifteen in 108 odontoid fracture patients (planned to be treated by percutaneous anterior odontoid screw fixation) were failed to introduce satisfactory odontoid screw trajectory. To salvage this problem, we chose the percutaneous anterior C1/2 trans...

  10. Plutonium finishing plant safety systems and equipment list

    International Nuclear Information System (INIS)

    Bergquist, G.G.

    1995-01-01

    The Safety Equipment List (SEL) supports Analysis Report (FSAR), WHC-SD-CP-SAR-021 and the Plutonium Finishing Plant Operational Safety Requirements (OSRs), WHC-SD-CP-OSR-010. The SEL is a breakdown and classification of all Safety Class 1, 2, and 3 equipment, components, or system at the Plutonium Finishing Plant complex

  11. Failing States or Failing Models?: Accounting for the Incidence of State Collapse

    OpenAIRE

    Martin Doornbos

    2010-01-01

    In recent years the notion and phenomenon of .failingÿ states - states deemed incapable to fulfil the basic tasks of providing security for their populace -, has been rapidly drawing attention. I will start off with a closer look at the inci- dence of fragile states and state failure, more specifically of state collapse. Connected with this, I will raise the question of differential degrees of propensity to failure and collapse among contemporary state systems, and to point to apparent region...

  12. Development of Non-safety System Architecture and Evaluation of Components/Systems

    International Nuclear Information System (INIS)

    Oh, I. S.; Lee, C. K.; Kim, D. H.; Lee, J. W.; Lee, D. Y.; Park, W. M.; Hwang, I. K.; Hur, S.; Kim, J. T.; Park, J. C.; Lee, J. W.

    2007-10-01

    We describe in this report the works performed for a technical evaluation of the non-safety digital control system of the KNICS, the non-safety process control system of the KNICS, a communication load analysis for the MMIS (including both the non-safety and the safety systems) of the KNICS, the development of MMI and an implementation of the logic for the CVCS, and the works performed to support writing a proposal needed for bidding an I and C system based on the KNICS. The technical evaluation results were aimed to be used by the designers to detect parts needed to be corrected or to be newly inserted, and also by the developers during the development phase. The requirement specifications and the data requirement characteristics have been identified for each subsystem of the determined KNICS structure. For each communication node, the specifications related to the data transfer including the data capacity for interfaces, delay time for the data transfer, and the marginal availability of its performance capabilities have been analyzed to identify the amount of data transfer and hence to verify that both of the designed structures for the safety related communications network and for the digital communications network are appropriate. The results of the supporting work performed for writing the technical specifications related to each subsystem of the KNICS structure, are expected to be useful in writing a proposal for the expected Uljin new units 1 and 2, and in the I and C upgrade for any of the existing nuclear power plants under operation. Also included in this report are the descriptions on a design of the chemical volume control system (CVCS), on the supporting work performed to draw the logic diagrams for CVCS using the tool ISaGRAF, and on the generation of a set of system displays to be used as references

  13. Development of Non-safety System Architecture and Evaluation of Components/Systems

    Energy Technology Data Exchange (ETDEWEB)

    Oh, I. S.; Lee, C. K.; Kim, D. H.; Lee, J. W.; Lee, D. Y.; Park, W. M.; Hwang, I. K.; Hur, S.; Kim, J. T.; Park, J. C.; Lee, J. W

    2007-10-15

    We describe in this report the works performed for a technical evaluation of the non-safety digital control system of the KNICS, the non-safety process control system of the KNICS, a communication load analysis for the MMIS (including both the non-safety and the safety systems) of the KNICS, the development of MMI and an implementation of the logic for the CVCS, and the works performed to support writing a proposal needed for bidding an I and C system based on the KNICS. The technical evaluation results were aimed to be used by the designers to detect parts needed to be corrected or to be newly inserted, and also by the developers during the development phase. The requirement specifications and the data requirement characteristics have been identified for each subsystem of the determined KNICS structure. For each communication node, the specifications related to the data transfer including the data capacity for interfaces, delay time for the data transfer, and the marginal availability of its performance capabilities have been analyzed to identify the amount of data transfer and hence to verify that both of the designed structures for the safety related communications network and for the digital communications network are appropriate. The results of the supporting work performed for writing the technical specifications related to each subsystem of the KNICS structure, are expected to be useful in writing a proposal for the expected Uljin new units 1 and 2, and in the I and C upgrade for any of the existing nuclear power plants under operation. Also included in this report are the descriptions on a design of the chemical volume control system (CVCS), on the supporting work performed to draw the logic diagrams for CVCS using the tool ISaGRAF, and on the generation of a set of system displays to be used as references.

  14. The Management System for Nuclear Installations Safety Guide

    International Nuclear Information System (INIS)

    2009-01-01

    This Safety Guide is applicable throughout the lifetime of a nuclear installation, including any subsequent period of institutional control, until there is no significant residual radiation hazard. For a nuclear installation, the lifetime includes site evaluation, design, construction, commissioning, operation and decommissioning. These stages in the lifetime of a nuclear installation may overlap. This Safety Guide may be applied to nuclear installations in the following ways: (a)To support the development, implementation, assessment and improvement of the management system of those organizations responsible for research, site evaluation, design, construction, commissioning, operation and decommissioning of a nuclear installation; (b)As an aid in the assessment by the regulatory body of the adequacy of the management system of a nuclear installation; (c)To assist an organization in specifying to a supplier, via contractual documentation, any specific element that should be included within the supplier's management system for the supply of products. This Safety Guide follows the structure of the Safety Requirements publication on The Management System for Facilities and Activities, whereby: (a)Section 2 provides recommendations on implementing the management system, including recommendations relating to safety culture, grading and documentation. (b)Section 3 provides recommendations on the responsibilities of senior management for the development and implementation of an effective management system. (c)Section 4 provides recommendations on resource management, including guidance on human resources, infrastructure and the working environment. (d)Section 5 provides recommendations on how the processes of the installation can be specified and developed, including recommendations on some generic processes of the management system. (e)Section 6 provides recommendations on the measurement, assessment and improvement of the management system of a nuclear installation. (f

  15. Examining the Relationship between Safety Management System Implementation and Safety Culture in Collegiate Flight Schools

    Science.gov (United States)

    Robertson, Mike Fuller

    2017-01-01

    Safety Management Systems (SMS) are becoming the industry standard for safety management throughout the aviation industry. As the Federal Aviation Administration (FAA) continues to mandate SMS for different segments, the assessment of an organization's safety culture becomes more important. An SMS can facilitate the development of a strong…

  16. Design of the reactor coolant system and associated systems in nuclear power plants. Safety guide (Spanish Edition)

    International Nuclear Information System (INIS)

    2010-01-01

    This Safety Guide was prepared under the IAEA programme for establishing safety standards for nuclear power plants. The basic requirements for the design of safety systems for nuclear power plants are established in the Safety Requirements publication, Safety Standards Series No. NS-R-1 on Safety of Nuclear Power Plants: Design, which it supplements. This Safety Guide describes how the requirements for the design of the reactor coolant system (RCS) and associated systems in nuclear power plants should be met. This publication is a revision and combination of two previous Safety Guides, Safety Series No. 50-SG-D6 on Ultimate Heat Sink and Directly Associated Heat Transport Systems for Nuclear Power Plants (1982), and Safety Series No. 50-SG-D13 on Reactor Coolant and Associated Systems in Nuclear Power Plants (1987), which are superseded by this new Safety Guide. The revision takes account of developments in the design of the RCS and associated systems in nuclear power plants since the earlier Safety Guides were published in 1982 and 1987, respectively. The other objectives of the revision are to ensure consistency with Ref., issued in 2004, and to update the technical content. In addition, an appendix on pressurized heavy water reactors (PHWRs) has been included.

  17. European Workshop Industrical Computer Science Systems approach to design for safety

    Science.gov (United States)

    Zalewski, Janusz

    1992-01-01

    This paper presents guidelines on designing systems for safety, developed by the Technical Committee 7 on Reliability and Safety of the European Workshop on Industrial Computer Systems. The focus is on complementing the traditional development process by adding the following four steps: (1) overall safety analysis; (2) analysis of the functional specifications; (3) designing for safety; (4) validation of design. Quantitative assessment of safety is possible by means of a modular questionnaire covering various aspects of the major stages of system development.

  18. A study on implementation of dynamic safety system in programmable logic controller for pressurized water reactor

    International Nuclear Information System (INIS)

    Kim, Ung Soo

    1997-02-01

    The dynamic safety system (DSS) is a computer based reactor protection system that has dynamic self-testing feature and fail-safe nature inherently. The inherent dynamic self-testing feature and fail-safe design provide a high level of reliability and low spurious trip rate. We can also reduce the time and human efforts to maintain the system by virtue of those features. Therefore, the application of the DSS to PWR has many advantages. The DSS has been applied only to advanced gas-cooled reactor (AGR) in the UK. In order to apply the DSS for PWR, the DSS has to be modified because there exist many differences between PWR and AGR for which the DSS was tested and installed. These differences are trip algorithms, monitored parameters, trip logics, and other conditions. In this study, the DSS algorithm is modified for PWR first. The modified DSS has several new features : 1) The modified DSS tests and processes time-dependent parameters, while the original DSS does not. 2) It has flexibility for handling several types of voting logic but the original DSS handles the only one type of voting - 2 out of 4 coincidence logic. Then, in this study, the modified DSS is implemented in programmable logic controller (PLC) using the ladder logic. Finally, the modified DSS is tested in two ways in this work : 1) The manual test is performed using direct input through the human computer interface (HCI) system. 2) The scenario based test is performed using input from the FISA-2/WS simulator. From the test results, it is shown that the modified DSS operates correctly in all conditions

  19. Safety regulations concerning instrumentation and control systems for research reactors

    International Nuclear Information System (INIS)

    El-Shanshoury, A.I.

    2009-01-01

    A brief study on the safety and reliability issues related to instrumentation and control systems in nuclear reactor plants is performed. In response, technical and strategic issues are used to accomplish instrumentation and control systems safety. For technical issues there are ; systems aspects of digital I and C technology, software quality assurance, common-mode software, failure potential, safety and reliability assessment methods, and human factors and human machine interfaces. The strategic issues are the case-by-case licensing process and the adequacy of the technical infrastructure. The purpose of this work was to review the reliability of the safety systems related to these technical issues for research reactors

  20. FULCRUM - A dam safety management and alert system

    Energy Technology Data Exchange (ETDEWEB)

    Butt, Cameron; Greenaway, Graham [Knight Piesold Ltd., Vancouver, (Canada)

    2010-07-01

    Efficient management of instrumentation, monitoring and inspection data are the keys to safe performance and dam structure stability. This paper presented a data management system, FULCRUM, developed for dam safety management. FULCRUM is a secure web-based data management system which simplifies the process of data collection, processing and analysis of the information. The system was designed to organize and coordinate dam safety management requirements. Geotechnical instrumentation such as piezometers or inclinometers and operating data can be added to the database. Data from routine surveillance and engineering inspection can also be incorporated into the database. The system provides users with immediate access to historical and recent data. The integration of a GIS system allows for rapid assessment of the project site. Customisable alerting protocols can be set to identify and respond quickly to significant changes in operating conditions and potential impacts on dam safety.

  1. Successful placement of the Essure device after a failed procedure using the Adiana system for hysteroscopic sterilisation

    OpenAIRE

    Schuurman, Teska; Veersema, Sebastiaan

    2011-01-01

    This case report describes a successful hysteroscopic sterilisation using the Essure Permanent Birth Control device (Conceptus Inc., Mountain View, California, United States) after a failed procedure of the Adiana Permanent Contraception system (Hologic, Inc., Bedford, Maryland, United States). The delivery catheter of the Adiana system was able to be inserted into the left fallopian tube without difficulty and per manufacturer specifications. However, the position detection array was unable ...

  2. EC6 safety design improvements

    Energy Technology Data Exchange (ETDEWEB)

    Yu, S.; Lee, A.G.; Soulard, M. [Candu Energy Inc., Mississauga, ON (Canada)

    2014-07-01

    The Enhanced CANDU 6 (EC6) builds on the proven high performance design such as the Qinshan CANDU 6 reactor, and has made improvements to safety, operational performance, and has incorporated extensive operational feedback. Completion of all three phases of the pre-licensing design review by the Canadian Regulator - the Canadian Nuclear Safety Commission has provided a higher level of assurance that the EC6 reference design has taken modern regulatory requirements and expectations into account and further confirmed that there are no fundamental barriers to licensing the EC6 design in Canada. The EC6 design is based on the defence-in-depth principles in INSAG-10 and provides further safety features that address the lessons learned from Fukushima. With these safety features, the EC6 design has strengthened accident prevention as the first priority in the defence-in-depth strategy, as outlined in INSAG-10. As well, the EC6 design has incorporated further mitigation measures to provide additional protection of the public and the environment if the preventive measures fail. The EC6 design has an appropriate combination of inherent, passive safety characteristics, engineered features and administrative safety measures to effectively prevent and mitigate severe accident progressions. A strong contributor to the robustness and redundancy of CANDU design is the two-group separation philosophy. This ensures a high degree of independence between safety systems as well as physical separation and functional independence in how fundamental safety functions are provided. This paper will describe the following safety features based on the application of defence-in-depth and design approach to prevent beyond design basis events progressing to severe accidents and to mitigate the consequences if it occurs: Improved steam generator heat sink via a more reliable emergency heat removal system; Increased time before manual field actions are required via enhanced capacity of

  3. Nuclear-power-safety reporting system: feasibility analysis

    International Nuclear Information System (INIS)

    Finlayson, F.C.; Ims, J.

    1983-04-01

    The US Nuclear Regulatory Commission (NRC) is evaluating the possibility of instituting a data gathering system for identifying and quantifying the factors that contribute to the occurrence of significant safety problems involving humans in nuclear power plants. This report presents the results of a brief (6 months) study of the feasibility of developing a voluntary, nonpunitive Nuclear Power Safety Reporting System (NPSRS). Reports collected by the system would be used to create a data base for documenting, analyzing and assessing the significance of the incidents. Results of The Aerospace Corporation study are presented in two volumes. This document, Volume I, contains a summary of an assessment of the Aviation Safety Reporting System (ASRS). The FAA-sponsored, NASA-managed ASRS was found to be successful, relatively low in cost, generally acceptable to all facets of the aviation community, and the source of much useful data and valuable reports on human factor problems in the nation's airways. Several significant ASRS features were found to be pertinent and applicable for adoption into a NPSRS

  4. SpinlineTM, Benefits of a nuclear specific safety-critical digital I/C platform - 15102

    International Nuclear Information System (INIS)

    Duthou, A.; Mouly, P.; Jegou, H.

    2015-01-01

    Spinline TM is Rolls-Royce modular and digital solution dedicated to developing and/or upgrading safety I/C used in nuclear reactors. From the start, Spinline TM was specifically designed for Nuclear applications. Therefore, its architecture and components satisfy, from design, the most stringent safety standards required by the local Safety authorities, while they can be adapted to various types of reactors. This is a significant advantage over suppliers who tried to adapt industrial systems to the Nuclear constraints and faced unexpected delays and costs to meet Safety authorities requirements. Spinline TM was specifically designed to implement any Class 1E and category A IEC-61226 safety I/C functions. It is qualified according to European and French nuclear standard and more recently by the US NRC, notably thanks to its Fail-safe features, deterministic behavior and Physical and Functional Separation. In 2011 EDF chose Spinline TM as its safety I/C systems technology for the modernization of 20 units of its 1300 MW PWR fleet

  5. Identify too big to fail banks and capital insurance: An equilibrium approach

    OpenAIRE

    Katerina Ivanov

    2017-01-01

    The objective of this paper is develop a rational expectation equilibrium model of capital insurance to identify too big to fail banks. The main results of this model include (1) too big to fail banks can be identified explicitly by a systemic risk measure, loss betas, of all banks in the entire financial sector; (2) the too big to fail feature can be largely justified by a high level of loss beta; (3) the capital insurance proposal benefits market participants and reduces the systemic risk; ...

  6. Evaluating software for safety systems in nuclear power plants

    International Nuclear Information System (INIS)

    Lawrence, J.D.; Persons, W.L.; Preckshot, G.G.; Gallagher, J.

    1994-01-01

    In 1991, LLNL was asked by the NRC to provide technical assistance in various aspects of computer technology that apply to computer-based reactor protection systems. This has involved the review of safety aspects of new reactor designs and the provision of technical advice on the use of computer technology in systems important to reactor safety. The latter includes determining and documenting state-of-the-art subjects that require regulatory involvement by the NRC because of their importance in the development and implementation of digital computer safety systems. These subjects include data communications, formal methods, testing, software hazards analysis, verification and validation, computer security, performance, software complexity and others. One topic software reliability and safety is the subject of this paper

  7. Design requirements of communication architecture of SMART safety system

    International Nuclear Information System (INIS)

    Park, H. Y.; Kim, D. H.; Sin, Y. C.; Lee, J. Y.

    2001-01-01

    To develop the communication network architecture of safety system of SMART, the evaluation elements for reliability and performance factors are extracted from commercial networks and classified the required-level by importance. A predictable determinacy, status and fixed based architecture, separation and isolation from other systems, high reliability, verification and validation are introduced as the essential requirements of safety system communication network. Based on the suggested requirements, optical cable, star topology, synchronous transmission, point-to-point physical link, connection-oriented logical link, MAC (medium access control) with fixed allocation are selected as the design elements. The proposed architecture will be applied as basic communication network architecture of SMART safety system

  8. Managing Safety and Operations: The Effect of Joint Management System Practices on Safety and Operational Outcomes.

    Science.gov (United States)

    Tompa, Emile; Robson, Lynda; Sarnocinska-Hart, Anna; Klassen, Robert; Shevchenko, Anton; Sharma, Sharvani; Hogg-Johnson, Sheilah; Amick, Benjamin C; Johnston, David A; Veltri, Anthony; Pagell, Mark

    2016-03-01

    The aim of this study was to determine whether management system practices directed at both occupational health and safety (OHS) and operations (joint management system [JMS] practices) result in better outcomes in both areas than in alternative practices. Separate regressions were estimated for OHS and operational outcomes using data from a survey along with administrative records on injuries and illnesses. Organizations with JMS practices had better operational and safety outcomes than organizations without these practices. They had similar OHS outcomes as those with operations-weak practices, and in some cases, better outcomes than organizations with safety-weak practices. They had similar operational outcomes as those with safety-weak practices, and better outcomes than those with operations-weak practices. Safety and operations appear complementary in organizations with JMS practices in that there is no penalty for either safety or operational outcomes.

  9. Safety classification of nuclear power plant systems, structures and components

    International Nuclear Information System (INIS)

    1992-01-01

    The Safety Classification principles used for the systems, structures and components of a nuclear power plant are detailed in the guide. For classification, the nuclear power plant is divided into structural and operational units called systems. Every structure and component under control is included into some system. The Safety Classes are 1, 2 and 3 and the Class EYT (non-nuclear). Instructions how to assign each system, structure and component to an appropriate safety class are given in the guide. The guide applies to new nuclear power plants and to the safety classification of systems, structures and components designed for the refitting of old nuclear power plants. The classification principles and procedures applying to the classification document are also given

  10. A hybrid approach to quantify software reliability in nuclear safety systems

    International Nuclear Information System (INIS)

    Arun Babu, P.; Senthil Kumar, C.; Murali, N.

    2012-01-01

    Highlights: ► A novel method to quantify software reliability using software verification and mutation testing in nuclear safety systems. ► Contributing factors that influence software reliability estimate. ► Approach to help regulators verify the reliability of safety critical software system during software licensing process. -- Abstract: Technological advancements have led to the use of computer based systems in safety critical applications. As computer based systems are being introduced in nuclear power plants, effective and efficient methods are needed to ensure dependability and compliance to high reliability requirements of systems important to safety. Even after several years of research, quantification of software reliability remains controversial and unresolved issue. Also, existing approaches have assumptions and limitations, which are not acceptable for safety applications. This paper proposes a theoretical approach combining software verification and mutation testing to quantify the software reliability in nuclear safety systems. The theoretical results obtained suggest that the software reliability depends on three factors: the test adequacy, the amount of software verification carried out and the reusability of verified code in the software. The proposed approach may help regulators in licensing computer based safety systems in nuclear reactors.

  11. Progress report: 1996 Radiation Safety Systems Division

    International Nuclear Information System (INIS)

    Bhagwat, A.M.; Sharma, D.N.; Abani, M.C.; Mehta, S.K.

    1997-01-01

    The activities of Radiation Safety Systems Division include (i) development of specialised monitoring systems and radiation safety information network, (ii) radiation hazards control at the nuclear fuel cycle facilities, the radioisotope programmes at Bhabha Atomic Research Centre (BARC) and for the accelerators programme at BARC and Centre for Advanced Technology (CAT), Indore. The systems on which development and upgradation work was carried out during the year included aerial gamma spectrometer, automated environment monitor using railway network, radioisotope package monitor and air monitors for tritium and alpha active aerosols. Other R and D efforts at the division included assessment of risk for radiation exposures and evaluation of ICRP 60 recommendations in the Indian context, shielding evaluation and dosimetry for the new upcoming accelerator facilities and solid state nuclear track detector techniques for neutron measurements. The expertise of the divisional members was provided for 36 safety committees of BARC and Atomic Energy Regulatory Board (AERB). Twenty three publications were brought out during the year 1996. (author)

  12. Patient safety - the role of human factors and systems engineering.

    Science.gov (United States)

    Carayon, Pascale; Wood, Kenneth E

    2010-01-01

    Patient safety is a global challenge that requires knowledge and skills in multiple areas, including human factors and systems engineering. In this chapter, numerous conceptual approaches and methods for analyzing, preventing and mitigating medical errors are described. Given the complexity of healthcare work systems and processes, we emphasize the need for increasing partnerships between the health sciences and human factors and systems engineering to improve patient safety. Those partnerships will be able to develop and implement the system redesigns that are necessary to improve healthcare work systems and processes for patient safety.

  13. Patient Safety: The Role of Human Factors and Systems Engineering

    Science.gov (United States)

    Carayon, Pascale; Wood, Kenneth E.

    2011-01-01

    Patient safety is a global challenge that requires knowledge and skills in multiple areas, including human factors and systems engineering. In this chapter, numerous conceptual approaches and methods for analyzing, preventing and mitigating medical errors are described. Given the complexity of healthcare work systems and processes, we emphasize the need for increasing partnerships between the health sciences and human factors and systems engineering to improve patient safety. Those partnerships will be able to develop and implement the system redesigns that are necessary to improve healthcare work systems and processes for patient safety. PMID:20543237

  14. Safety assessment of complex engineered and natural systems: radioactive waste disposal

    International Nuclear Information System (INIS)

    McNeish, J.A.; Vallikat, V.; Atkins, J.; Balady, M.A.

    1997-01-01

    Evaluation of deep, geologic disposal of nuclear waste requires the probabilistic safety assessment of a complex system from the coupling of various processes and sub-systems, parameter and model uncertainties, spatial and temporal variabilities, and the multiplicity of designs and scenarios. Both the engineered and natural system are included in the evaluation. Each system has aspects with considerable uncertainty both in important parameters and in overall conceptual models. The study represented herein provides a probabilistic safety assessment of a potential respository system for multiple engineered barrier system (EBS) design and conceptual model configurations (CRWMS M and O, 1996a) and considers the effects of uncertainty on the overall results. The assessment is based on data and process models available at the time of the study and doesnt necessarily represent the current safety evaluation. In fact, the percolation flux through the repository system is now expected to be higher than the estimate used for this study. The potential effects of higher percolation fluxes are currently under study. The safety of the system was assessed for both 10,000 and 1,000,000 years. Use of alternative conceptual models also produced major improvement in safety. For example, use of a more realistic engineered system release model produced improvement of over an order of magnitude in safety. Alternative measurement locations for the safety assessment produced substantial increases in safety, through the results are based on uncertain dilution factors in the transporting groundwater. (Author)

  15. Safety Evaluation of Kartini Reactor Based on Instrumentation System Design

    International Nuclear Information System (INIS)

    Tjipta Suhaemi; Djen Djen Dj; Itjeu K; Johnny S; Setyono

    2003-01-01

    The safety of Kartini reactor has been evaluated based on instrumentation system aspect. The Kartini reactor is designed by BATAN. Design power of the reactor is 250 kW, but it is currently operated at 100 kW. Instrumentation and control system function is to monitor and control the reactor operation. Instrumentation and control system consists of safety system, start-up and automatic power control, and process information system. The linear power channel and logarithmic power channel are used for measuring power. There are 3 types of control rod for controlling the power, i.e. safety rod, shim rod, and regulating rod. The trip and interlock system are used for safety. There are instrumentation equipment used for measuring radiation exposure, flow rate, temperature and conductivity of fluid The system of Kartini reactor has been developed by introducing a process information system, start-up system, and automatic power control. It is concluded that the instrumentation of Kartini reactor has followed the requirement and standard of IAEA. (author)

  16. K West integrated water treatment system subproject safety analysis document

    International Nuclear Information System (INIS)

    SEMMENS, L.S.

    1999-01-01

    This Accident Analysis evaluates unmitigated accident scenarios, and identifies Safety Significant and Safety Class structures, systems, and components for the K West Integrated Water Treatment System

  17. K West integrated water treatment system subproject safety analysis document

    Energy Technology Data Exchange (ETDEWEB)

    SEMMENS, L.S.

    1999-02-24

    This Accident Analysis evaluates unmitigated accident scenarios, and identifies Safety Significant and Safety Class structures, systems, and components for the K West Integrated Water Treatment System.

  18. Software reliability and safety in nuclear reactor protection systems

    Energy Technology Data Exchange (ETDEWEB)

    Lawrence, J.D. [Lawrence Livermore National Lab., CA (United States)

    1993-11-01

    Planning the development, use and regulation of computer systems in nuclear reactor protection systems in such a way as to enhance reliability and safety is a complex issue. This report is one of a series of reports from the Computer Safety and Reliability Group, Lawrence Livermore that investigates different aspects of computer software in reactor National Laboratory, that investigates different aspects of computer software in reactor protection systems. There are two central themes in the report, First, software considerations cannot be fully understood in isolation from computer hardware and application considerations. Second, the process of engineering reliability and safety into a computer system requires activities to be carried out throughout the software life cycle. The report discusses the many activities that can be carried out during the software life cycle to improve the safety and reliability of the resulting product. The viewpoint is primarily that of the assessor, or auditor.

  19. Software reliability and safety in nuclear reactor protection systems

    International Nuclear Information System (INIS)

    Lawrence, J.D.

    1993-11-01

    Planning the development, use and regulation of computer systems in nuclear reactor protection systems in such a way as to enhance reliability and safety is a complex issue. This report is one of a series of reports from the Computer Safety and Reliability Group, Lawrence Livermore that investigates different aspects of computer software in reactor National Laboratory, that investigates different aspects of computer software in reactor protection systems. There are two central themes in the report, First, software considerations cannot be fully understood in isolation from computer hardware and application considerations. Second, the process of engineering reliability and safety into a computer system requires activities to be carried out throughout the software life cycle. The report discusses the many activities that can be carried out during the software life cycle to improve the safety and reliability of the resulting product. The viewpoint is primarily that of the assessor, or auditor

  20. Safety in nuclear power systems

    International Nuclear Information System (INIS)

    Myers, L.C.

    1987-05-01

    This paper discusses the issue of safety in complex energy systems and provides brief accounts of some of the most serious reactor accidents that have occurred to date. Details are also provided of Ontario Hydro's problems with Unit 2 at Pickering

  1. A passive decay heat removal strategy of the integrated passive safety system (IPSS) for SBO combined with LOCA

    International Nuclear Information System (INIS)

    Kim, Sang Ho; Chang, Soon Heung; Choi, Yu Jung; Jeong, Yong Hoon

    2015-01-01

    Highlights: • A new PDHR strategy is proposed to cope with SBO-combined accidents. • The concept of integrated passive safety system (IPSS) is used in this strategy. • This strategy performs the functions of passive safety injection and SG gravity injection. • LOCAs in SBO are classified by the pressures in reactor coolant system for passive functions. • The strategy can be integrated with EOP and SAMG as a complementary strategy for ensuring safety. - Abstract: An integrated passive safety system (IPSS), to be achieved by the use of a large water tank placed at high elevation outside the containment, was proposed to achieve various passive functions. These include decay heat removal, safety injection, containment cooling, in-vessel retention through external reactor vessel cooling, and containment filtered venting. The purpose of the passive decay heat removal (PDHR) strategy using the IPSS is to cope with SBO and SBO-combined accidents under the assumption that existing engineered safety features have failed. In this paper, a PDHR strategy was developed based on the design and accident management strategy of Korean representative PWR, the OPR1000. The functions of a steam generator gravity injection and a passive safety injection system in the IPSS with safety depressurization systems were included in the PDHR strategy. Because the inadvertent opening of pressurizer valves and seal water leakage from RCPs could cause a loss of coolant in an SBO, LOCAs during a SBO were simulated to verify the performance of the strategy. The failure of active safety injection in LOCAs could also be covered by this strategy. Although LOCAs have generally been categorized according to their equivalent break diameters, the RCS pressure is used to classify the LOCAs during SBOs. The criteria values for categorization were determined from the proposed systems, which could maintain a reactor in a safe state by removing the decay heat for the SBO coping time of 8 h. The

  2. A passive decay heat removal strategy of the integrated passive safety system (IPSS) for SBO combined with LOCA

    Energy Technology Data Exchange (ETDEWEB)

    Kim, Sang Ho [Department of Nuclear and Quantum Engineering, Korea Advanced Institute of Science and Technology, 291, Daehak-ro, Yuseong-gu, Daejeon 34141 (Korea, Republic of); Chang, Soon Heung [Handong Global University, 558, Handong-ro, Buk-gu, Pohang Gyeongbuk 37554 (Korea, Republic of); Choi, Yu Jung [Korea Hydro and Nuclear Power Co.—Central Research Institute, 70, 1312-gil, Yuseong-daero, Yuseong-gu, Daejeon 34101 (Korea, Republic of); Jeong, Yong Hoon, E-mail: jeongyh@kaist.ac.kr [Department of Nuclear and Quantum Engineering, Korea Advanced Institute of Science and Technology, 291, Daehak-ro, Yuseong-gu, Daejeon 34141 (Korea, Republic of)

    2015-12-15

    Highlights: • A new PDHR strategy is proposed to cope with SBO-combined accidents. • The concept of integrated passive safety system (IPSS) is used in this strategy. • This strategy performs the functions of passive safety injection and SG gravity injection. • LOCAs in SBO are classified by the pressures in reactor coolant system for passive functions. • The strategy can be integrated with EOP and SAMG as a complementary strategy for ensuring safety. - Abstract: An integrated passive safety system (IPSS), to be achieved by the use of a large water tank placed at high elevation outside the containment, was proposed to achieve various passive functions. These include decay heat removal, safety injection, containment cooling, in-vessel retention through external reactor vessel cooling, and containment filtered venting. The purpose of the passive decay heat removal (PDHR) strategy using the IPSS is to cope with SBO and SBO-combined accidents under the assumption that existing engineered safety features have failed. In this paper, a PDHR strategy was developed based on the design and accident management strategy of Korean representative PWR, the OPR1000. The functions of a steam generator gravity injection and a passive safety injection system in the IPSS with safety depressurization systems were included in the PDHR strategy. Because the inadvertent opening of pressurizer valves and seal water leakage from RCPs could cause a loss of coolant in an SBO, LOCAs during a SBO were simulated to verify the performance of the strategy. The failure of active safety injection in LOCAs could also be covered by this strategy. Although LOCAs have generally been categorized according to their equivalent break diameters, the RCS pressure is used to classify the LOCAs during SBOs. The criteria values for categorization were determined from the proposed systems, which could maintain a reactor in a safe state by removing the decay heat for the SBO coping time of 8 h. The

  3. Assessing nuclear power plant safety and recovery from earthquakes using a system-of-systems approach

    International Nuclear Information System (INIS)

    Ferrario, E.; Zio, E.

    2014-01-01

    We adopt a ‘system-of-systems’ framework of analysis, previously presented by the authors, to include the interdependent infrastructures which support a critical plant in the study of its safety with respect to the occurrence of an earthquake. We extend the framework to consider the recovery of the system of systems in which the plant is embedded. As a test system, we consider the impacts produced on a nuclear power plant (the critical plant) embedded in the connected power and water distribution, and transportation networks which support its operation. The Seismic Probabilistic Risk Assessment of such system of systems is carried out by Hierarchical modeling and Monte Carlo simulation. First, we perform a top-down analysis through a hierarchical model to identify the elements that at each level have most influence in restoring safety, adopting the criticality importance measure as a quantitative indicator. Then, we evaluate by Monte Carlo simulation the probability that the nuclear power plant enters in an unsafe state and the time needed to recover its safety. The results obtained allow the identification of those elements most critical for the safety and recovery of the nuclear power plant; this is relevant for determining improvements of their structural/functional responses and supporting the decision-making process on safety critical-issues. On the test system considered, under the given assumptions, the components of the external and internal water systems (i.e., pumps and pool) turn out to be the most critical for the safety and recovery of the plant. - Highlights: • We adopt a system-of-system framework to analyze the safety of a critical plant exposed to risk from external events, considering also the interdependent infrastructures that support the plant. • We develop a hierarchical modeling framework to represent the system of systems, accounting also for its recovery. • Monte Carlo simulation is used for the quantitative evaluation of the

  4. Reliability Improved Design for a Safety System Channel

    Energy Technology Data Exchange (ETDEWEB)

    Oh, Eung Se; Kim, Yun Goo [KHNP, Daejeon (Korea, Republic of)

    2016-05-15

    Nowadays, these systems are implemented with a same platform type, such as a qualified programmable logic controller (PLC). The platform intensively uses digital communication with fiber-optic links to reduce cabling costs and to achieve effective signal isolation. These communication interface and redundancies within a channel increase the complexness of an overall system design. This paper proposes a simpler channel architecture design to reduce the complexity and to enhance overall channel reliability. Simplified safety channel configuration is proposed and the failure probabilities are compared with baseline safety channel configuration using an estimated generic value. The simplified channel configuration achieves 40 percent failure reduction compare to baseline safety channel configuration. If this configuration can be implemented within a processor module, overall safety channel reliability is increase and costs of fabrication and maintenance will be greatly reduced.

  5. Reliability Improved Design for a Safety System Channel

    International Nuclear Information System (INIS)

    Oh, Eung Se; Kim, Yun Goo

    2016-01-01

    Nowadays, these systems are implemented with a same platform type, such as a qualified programmable logic controller (PLC). The platform intensively uses digital communication with fiber-optic links to reduce cabling costs and to achieve effective signal isolation. These communication interface and redundancies within a channel increase the complexness of an overall system design. This paper proposes a simpler channel architecture design to reduce the complexity and to enhance overall channel reliability. Simplified safety channel configuration is proposed and the failure probabilities are compared with baseline safety channel configuration using an estimated generic value. The simplified channel configuration achieves 40 percent failure reduction compare to baseline safety channel configuration. If this configuration can be implemented within a processor module, overall safety channel reliability is increase and costs of fabrication and maintenance will be greatly reduced

  6. Safety in surgery: is selection the missing link?

    Science.gov (United States)

    Paice, Alistair G; Aggarwal, Rajesh; Darzi, Ara

    2010-09-01

    Health care providers comprise an example of a "high risk organization." Safety failings within these organizations have the potential to cause significant public harm. Significant safety improvements in other high risk organizations such as the aviation industry have led to the concept of a high reliability organization (HRO)--a high risk organization that has enjoyed a prolonged safety record. A strong organizational culture is common to all successful HROs, encompassing powerful systems of selection and training. Aircrew selection processes provide a good example of this and are examined in detail in this article using the Royal Air Force process as an example. If the lessons of successful HROs are to be applied to health care organizations, candidate selection to specialties such as surgery must become more objective and robust. Other HROs can provide valuable lessons in how this may be approached.

  7. Safety implications of electronic driving support systems : an orientation.

    OpenAIRE

    Gundy, C.M. Steyvers, F.J.J.M. & Kaptein, N.A.

    1995-01-01

    This report focuses on traffic safety aspects of driving support systems. The report consists of two parts. First of all, the report discusses a number of topics, relevant for the implementation and evaluation of driving support systems. These topics include: (1) safety research into driving support systems: (2) the importance of research into driver models and the driving task; (3) horizontal integration of driving support systems; (4) vertical integration of driving support systems; (5) tas...

  8. Method for repairing failed fuel

    International Nuclear Information System (INIS)

    Shakudo, Taketomi.

    1986-01-01

    Purpose: To repair fuel elements that became failed during burnup in a reactor or during handling. Method: After the surface in the vicinity of a failed part of a fuel element is cleaned, a socket made of a shape-memory alloy having a ring form or a horseshoe form made by cutting a part of the ring form is inserted into the failed position according to the position of the failed fuel element. The shape memory alloy socket remembers a slightly larger inside diameter in its original phase (high-temperature side) than the outside diameter of the cladding tube and also a slightly larger inside diameter of the socket in the martensite phase (low-temperature side) than the outside diameter of the cladding tube, such that the socket can easily be inserted into the failed position. The socket, inserted into the failed part of the cladding tube, is heated by a heating jig. The socket recovers the original phase, and the shape also tends to recover a smaller diameter than the outside diameter of the cladding tube that has been remembered, and accordingly the failed part of the cladding tube is fastened with a great force and the failed part is fully closed with the socket, thus keeping radioactive materials from going out. (Horiuchi, T.)

  9. Systems Analysis of NASA Aviation Safety Program: Final Report

    Science.gov (United States)

    Jones, Sharon M.; Reveley, Mary S.; Withrow, Colleen A.; Evans, Joni K.; Barr, Lawrence; Leone, Karen

    2013-01-01

    A three-month study (February to April 2010) of the NASA Aviation Safety (AvSafe) program was conducted. This study comprised three components: (1) a statistical analysis of currently available civilian subsonic aircraft data from the National Transportation Safety Board (NTSB), the Federal Aviation Administration (FAA), and the Aviation Safety Information Analysis and Sharing (ASIAS) system to identify any significant or overlooked aviation safety issues; (2) a high-level qualitative identification of future safety risks, with an assessment of the potential impact of the NASA AvSafe research on the National Airspace System (NAS) based on these risks; and (3) a detailed, top-down analysis of the NASA AvSafe program using an established and peer-reviewed systems analysis methodology. The statistical analysis identified the top aviation "tall poles" based on NTSB accident and FAA incident data from 1997 to 2006. A separate examination of medical helicopter accidents in the United States was also conducted. Multiple external sources were used to develop a compilation of ten "tall poles" in future safety issues/risks. The top-down analysis of the AvSafe was conducted by using a modification of the Gibson methodology. Of the 17 challenging safety issues that were identified, 11 were directly addressed by the AvSafe program research portfolio.

  10. Development of the Digital Reactor Safety System

    International Nuclear Information System (INIS)

    Lee, Dong Young; Lee, C. K.; Hwang, I. K.

    2008-04-01

    Objectives of Project - Development of Digital Safety Grade PLC and Licensing - Development of Safety System(RPS) and Licensing - Development of Safety System(ESF-CCS) and Licensing Content and Result of Project - POSAFE-Q PLC : Development of PLC platform for Shin-UCN unit 1 and 2 ·Development Scope : Processor module, Power module, 3 kinds of Communication module, Bus extension module(Master and Slave), 16 kinds of Input and Output module ·PLC application software development tool(pSET) - IDiPS RPS and IDiPS ESF-CCS : Development of PPS for Sin-UCN 1 and 2 ·Development Scope - 4-channels RPS with the KNICS inherent architecture - A part of 1-channels ESF-CCS with the KNICS inherent architecture - Licensing ·optical Report Submitted and Expected to finish the licensing process until Aug. 2008

  11. Nuclear reactor safety system

    International Nuclear Information System (INIS)

    Ball, R.M.; Roberts, R.C.

    1983-01-01

    The invention provides a safety system for a nuclear reactor which uses a parallel combination of computer type look-up tables each of which receives data on a particular parameter (from transducers located in the reactor system) and each of which produces the functional counterpart of that particular parameter. The various functional counterparts are then added together to form a control signal for shutting down the reactor. The functional counterparts are developed by analysis of experimental thermal and hydraulic data, which are used to form expressions that define safe conditions

  12. Nuclear reactor safety systems

    International Nuclear Information System (INIS)

    Ball, R.M.; Roberts, R.C.

    1980-01-01

    A safety system for shutting down a nuclear reactor under overload conditions is described. The system includes a series of parallel-connected computer memory type look-up tables each of which receives data on a particular reactor parameter and in each of which a precalculated functional value for that parameter is stored indicative of the percentage of maximum reactor load that the parameter contributes. The various functional values corresponding to the actual measured parameters are added together to provide a control signal used to shut down the reactor under overload conditions. (U.K.)

  13. Some aspects of operational reliability of the JET central interlock and safety system (CISS) in the period March 1984 to December 1986

    International Nuclear Information System (INIS)

    Montfoort, Joop van.

    1987-01-01

    The Central Interlock and Safety System (CISS) provides basic safety functions for the JET plant. It monitors the status of emergency push buttons, access doors and plant equipment and takes corrective shutdown actions in the case that plant conditions are not compatible with safe operation. CISS consists of a hierarchical network of PLCs (programmable logic controllers) paralleling the CODAS architecture. It has been successfully in operation since June 1983 and has intervened many times and halted operation to protect JET from (further) damage or personnel against danger. The note will analyse genuine CISS failures only, and as will be shown, these failures are all due to malfunctioning of PLC hardware. All CISS failures have failed-safe and resulted in the expected shutdown action. Hence CISS failures have never resulted in a dangerous situation but they have restricted operational availability of JET. (author)

  14. Safety analysis of tritium processing system based on PHA

    International Nuclear Information System (INIS)

    Fu Wanfa; Luo Deli; Tang Tao

    2012-01-01

    Safety analysis on primary confinement of tritium processing system for TBM was carried out with Preliminary Hazard Analysis. Firstly, the basic PHA process was given. Then the function and safe measures with multiple confinements about tritium system were described and analyzed briefly, dividing the two kinds of boundaries of tritium transferring through, that are multiple confinement systems division and fluid loops division. Analysis on tritium releasing is the key of PHA. Besides, PHA table about tritium releasing was put forward, the causes and harmful results being analyzed, and the safety measures were put forward also. On the basis of PHA, several kinds of typical accidents were supposed to be further analyzed. And 8 factors influencing the tritium safety were analyzed, laying the foundation of evaluating quantitatively the safety grade of various nuclear facilities. (authors)

  15. Design provisions for safety

    International Nuclear Information System (INIS)

    Birkhofer, A.

    1983-01-01

    Design provisions for safety of nuclear power plants are based on a well balanced concept: the public is protected against a release of radioactive material by multiple barriers. These barriers are protected according to a 'defence-in-depth' principle. The reactor safety concept is primarily aimed at the prevention of accidents, especially fuel damage. Additionally, measures for consequence limitation are provided in order to prevent a severe release of radioactivity to the environment. However, it is difficult to judge the overall effectiveness of such devices. In a comprehensive safety analysis it has to be shown that the protection systems and safeguards work with sufficient reliability in the event of an accident. For the reliability assessment deterministic criteria (single failure, redundancy, fail-safe, demand for diversity) play an important role. Increasing efforts have been made to assess reliability quantitatively by means of probabilistic methods. It is now usual to perform reliability analyses of essential systems of nuclear power plants in the course of licensing procedures. As an additional level of emergency measures for a further reduction of hazards a reasonable amount of accident information has to be transferred. Operational experience may be considered as an important feedback to the design of plant safety features. Operator training has to include, besides skill in performing of operating procedures, the training of a flexible response to different accident situations. Experience has shown that the design provisions for safety could prevent dangerous release of the radioactive material to the environment after an accident has occurred. For future developments of reactor safety, extensive analyses of operating experience are of great importance. The main goal should be to enhance the reliability of measures for accident prevention, which prevent the core from meltdown or other damages

  16. Software Safety Life cycle and Method of POSAFE-Q System

    International Nuclear Information System (INIS)

    Lee, Jang-Soo; Kwon, Kee-Choon

    2006-01-01

    This paper describes the relationship between the overall safety life cycle and the software safety life cycle during the development of the software based safety systems of Nuclear Power Plants. This includes the design and evaluation activities of components as well as the system. The paper also compares the safety life cycle and planning activities defined in IEC 61508 with those in IEC 60880, IEEE 7-4.3.2, and IEEE 1228. Using the KNICS project as an example, software safety life cycle and safety analysis methods applied to the POSAFE-Q are demonstrated. KNICS software safety life cycle is described by comparing to the software development, testing, and safety analysis process with international standards. The safety assessment of the software for POSAFE-Q is a joint Korean German project. The assessment methods applied in the project and the experiences gained from this project are presented

  17. Design Information from the PSA for Digital Safety-Critical Systems

    International Nuclear Information System (INIS)

    Kang, Hyun Gook; Jang, Seung Cheol

    2005-01-01

    Many safety-critical applications such as nuclear field application usually adopt a similar design strategy for digital safety-critical systems. Their differences from the normal design for the non-safety-critical applications could be summarized as: multiple-redundancy, highly reliable components, strengthened monitoring mechanism, verified software, and automated test procedure. These items are focusing on maintaining the capability to perform the given safety function when it is requested. For the past several decades, probabilistic safety assessment (PSA) techniques are used in the nuclear industry to assess the relative effects of contributing events on plant risk and system reliability. They provide a unifying means of assessing physical faults, recovery processes, contributing effects, human actions, and other events that have a high degree of uncertainty. The applications of PSA provide not only the analysis results of already installed system but also the useful information for the system under design. The information could be derived from the PSA experience of the various safety-critical systems. Thanks to the design flexibility, the digital system is one of the most suitable candidates for risk-informed design (RID). In this article, we will describe the feedbacks for system design and try to develop a procedure for RID. Even though the procedure is not sophisticated enough now, it could be the start point of the further investigation for developing more complete and practical methodology

  18. Calibration of the Failed-Fuel-Element Detection Systems in the Aagesta Reactor

    Energy Technology Data Exchange (ETDEWEB)

    Strindehag, O

    1966-06-15

    Results from a calibration of the systems for detection of fuel element ruptures in the Aagesta reactor are presented. The calibration was carried out by means of foils of zirconium-uranium alloy which were placed in a special fuel assembly. The release of fission products from these foils is due mainly to recoil and can be accurately calculated. Before the foils were used in the reactor their corrosion behaviour in high temperature water was investigated. The results obtained with the precipitator systems for bulk detection and localization are in good agreement with the expected performance. The sensitivity of these systems was found to be high enough for detection and localization of small defects of pin-hole type ({nu} = 10{sup -8}/s ). The general performance of the systems was satisfactory during the calibration tests, although a few adjustments are desirable. A bulk detecting system for monitoring of activities in the moderator, in which the {gamma}-radiation from coolant samples is measured directly after an ion exchanger, showed lower sensitivity than expected from calculations. It seems that the sensitivity of the latter system has to be improved to admit the detection of small defects. In the ion exchanger system, and to some extent in the precipitator systems, the background from A{sup 41} in the coolant limits the sensitivity. The calibration technique utilized seems to be of great advantage when investigating the performance of failed-fuel-element detection systems.

  19. Guidelines for implementation of RCM on safety systems

    International Nuclear Information System (INIS)

    Kim, Tae Woon; Brijendra Singh.

    1996-04-01

    Reliability Centered Maintenance (RCM) methodology was originally developed by the commercial airlines industry in the early 1960s for identifying applicable and effective preventive maintenance tasks and as currently used in nuclear power industry. Effective maintenance of the systems at a nuclear power plant (NPP) is essential for its safe and reliable operation. Reliability Centered Maintenance at NPP is the program to assure that plant systems remain within an original design criteria and are not adversely affected during the plant life time. The aim of this report is to provide the guidelines to implement the RCM approach on NPP safety systems. Safety systems are usually standby and therefore, we need to periodically detect and repair failures that may have occurred since the previous activation or inspection the equipment. The RCM guidelines are intended to help identify the failure modes and related root causes and then decide the maintenance policies to achieve the high level of safety and reliability. The RCM is intended to improve or maintain high levels of system reliability and plant availability. Since the reliability of plant systems will be improved, the plant safety correspondingly will be increased. Another goal of RCM is to optimize the maintenance and surveillance tasks such that the overall level of resources required to accomplish essential tasks is kept to minimum. RCM also strives to eliminate unnecessary corrective maintenance and to select yet most cost-effective approach to maintenance, testing and inspection for system components. 9 refs. (Author) .new

  20. An intelligent safety system concept for future CANDU reactors

    International Nuclear Information System (INIS)

    Hinds, H.W.

    1980-01-01

    A review of the current Regional Over-power Trip (ROPT) system employed on the Bruce NGS-A reactors confirmed the belief that future reactors should have an improved ROPT system. We are developing such an 'intelligent' safety system. It uses more of the available information on reactor status and employs modern computer technology. Fast triplicated safety computers compute maps of fuel channel power, based on readings from prompt-responding flux detectors. The coefficients for this calculation are downloaded periodically from a fourth supervisor computer. These coefficients are based on a detailed 3-D flux shape derived from physics data and other plant information. A demonstration of one of three safety channels of such a system is planned. (auth)

  1. Sustainable sewerage servicing options for peri-urban areas with failing septic systems.

    Science.gov (United States)

    Sharma, A K; Tjandraatmadja, G; Grant, A L; Grant, T; Pamminger, F

    2010-01-01

    The provision of water and wastewater services to peri-urban areas faces very different challenges to providing services to cities. Sustainable solutions for such areas are increasingly being sought, in order to solve the environmental and health risks posed by failing septic systems. These solutions should have the capability to reduce potable water demand, provide fit for purpose reuse options, and minimise impacts on the local and global environment. A methodology for the selection of sustainable sewerage servicing systems and technologies is presented in this paper. This paper describes the outcomes of applying this methodology to a case study in rural community near Melbourne, Australia, and describes the economic and environmental implications of various sewerage servicing options. Applying this methodology has found that it is possible to deliver environmental improvements at a lower community cost, by choosing servicing configurations not historically used by urban water utilities. The selected solution is currently being implemented, with the aim being to generate further transferable learnings for the water industry.

  2. Safety system for child pillion riders of underbone motorcycles in Malaysia.

    Science.gov (United States)

    Sivasankar, S; Karmegam, K; Bahri, M T Shamsul; Naeini, H Sadeghi; Kulanthayan, S

    2014-01-01

    Motorcycles are a common mode of transport for most Malaysians. Underbone motorcycles are one of the most common types of motorcycle used in Malaysia due to their affordable price and ease of use, especially in heavy traffic in the major cities. In Malaysia, it is common to see a young or child pillion rider clinging on to an adult at the front of the motorcycle. One of the main issues facing young pillion riders is that their safety is often not taken into account when they are riding on a motorcycle. This article reviews the legally available systems in child safety for underbone motorcycles in Malaysia while putting forth the need for a safety system for child pillion riders. Various databases were searched for underbone motorcycle safety systems, related legislation, motorcycle accident data, and types of injuries and these were reviewed to put forth the need for a new safety system. In motorcycle-related accidents, children usually sustain lower limb injuries, which could temporarily or permanently inhibit the child's movements. Accident statistics in Malaysia, especially those involving motorcycles, reflect a pressing need for a reduction in the number of accidents. In Malaysia, the legislation does not go beyond the mandatory use of safety helmets for young pillion users. There is a pressing need for another safety system or mechanism(s) for young pillion riders of underbone motorcycles. Enforcement of laws to enforce the usage of passive safety systems such as helmets and protective gear is difficult in underdeveloped and developing countries. The intervention of new technology is inevitable. Therefore, this article highlights the need for a new safety backrest system for child pillion riders to ensure their safety.

  3. Controls and Machine Protection Systems

    CERN Document Server

    Carrone, E.

    2016-01-01

    Machine protection, as part of accelerator control systems, can be managed with a 'functional safety' approach, which takes into account product life cycle, processes, quality, industrial standards and cybersafety. This paper will discuss strategies to manage such complexity and the related risks, with particular attention to fail-safe design and safety integrity levels, software and hardware standards, testing, and verification philosophy. It will also discuss an implementation of a machine protection system at the SLAC National Accelerator Laboratory's Linac Coherent Light Source (LCLS).

  4. Safety implications of electronic driving support systems : an orientation.

    NARCIS (Netherlands)

    Gundy, C.M. Steyvers, F.J.J.M. & Kaptein, N.A.

    1995-01-01

    This report focuses on traffic safety aspects of driving support systems. The report consists of two parts. First of all, the report discusses a number of topics, relevant for the implementation and evaluation of driving support systems. These topics include: (1) safety research into driving support

  5. New Automated System Available for Reporting Safety Concerns | Poster

    Science.gov (United States)

    A new system has been developed for reporting safety issues in the workplace. The Environment, Health, and Safety’s (EHS’) Safety Inspection and Issue Management System (SIIMS) is an online resource where any employee can report a problem or issue, said Siobhan Tierney, program manager at EHS.

  6. Diversity requirements for safety critical software-based automation systems

    International Nuclear Information System (INIS)

    Korhonen, J.; Pulkkinen, U.; Haapanen, P.

    1998-03-01

    System vendors nowadays propose software-based systems even for the most critical safety functions in nuclear power plants. Due to the nature and mechanisms of influence of software faults new methods are needed for the safety and reliability evaluation of these systems. In the research project 'Programmable automation systems in nuclear power plants (OHA)' various safety assessment methods and tools for software based systems are developed and evaluated. This report first discusses the (common cause) failure mechanisms in software-based systems, then defines fault-tolerant system architectures to avoid common cause failures, then studies the various alternatives to apply diversity and their influence on system reliability. Finally, a method for the assessment of diversity is described. Other recently published reports in OHA-report series handles the statistical reliability assessment of software based (STUK-YTO-TR 119), usage models in reliability assessment of software-based systems (STUK-YTO-TR 128) and handling of programmable automation in plant PSA-studies (STUK-YTO-TR 129)

  7. Electronic clinical safety reporting system: a benefits evaluation.

    Science.gov (United States)

    Elliott, Pamela; Martin, Desmond; Neville, Doreen

    2014-06-11

    Eastern Health, a large health care organization in Newfoundland and Labrador (NL), started a staged implementation of an electronic occurrence reporting system (used interchangeably with "clinical safety reporting system") in 2008, completing Phase One in 2009. The electronic clinical safety reporting system (CSRS) was designed to replace a paper-based system. The CSRS involves reporting on occurrences such as falls, safety/security issues, medication errors, treatment and procedural mishaps, medical equipment malfunctions, and close calls. The electronic system was purchased from a vendor in the United Kingdom that had implemented the system in the United Kingdom and other places, such as British Columbia. The main objective of the new system was to improve the reporting process with the goal of improving clinical safety. The project was funded jointly by Eastern Health and Canada Health Infoway. The objectives of the evaluation were to: (1) assess the CSRS on achieving its stated objectives (particularly, the benefits realized and lessons learned), and (2) identify contributions, if any, that can be made to the emerging field of electronic clinical safety reporting. The evaluation involved mixed methods, including extensive stakeholder participation, pre/post comparative study design, and triangulation of data where possible. The data were collected from several sources, such as project documentation, occurrence reporting records, stakeholder workshops, surveys, focus groups, and key informant interviews. The findings provided evidence that frontline staff and managers support the CSRS, identifying both benefits and areas for improvement. Many benefits were realized, such as increases in the number of occurrences reported, in occurrences reported within 48 hours, in occurrences reported by staff other than registered nurses, in close calls reported, and improved timelines for notification. There was also user satisfaction with the tool regarding ease of use

  8. Strong-back safety latch

    International Nuclear Information System (INIS)

    DeSantis, G.N.

    1995-01-01

    The calculation decides the integrity of the safety latch that will hold the strong-back to the pump during lifting. The safety latch will be welded to the strong-back and will latch to a 1.5-in. dia cantilever rod welded to the pump baseplate. The static and dynamic analysis shows that the safety latch will hold the strong-back to the pump if the friction clamps fail and the pump become free from the strong-back. Thus, the safety latch will meet the requirements of the Lifting and Rigging Manual for under the hook lifting for static loading; it can withstand shock loads from the strong-back falling 0.25 inch

  9. Organizational and methodological aspects for contemporary health and safety management system

    Directory of Open Access Journals (Sweden)

    Sugak Evgeny

    2017-01-01

    Full Text Available Industrial injuries and work-related disorders considerable lowering we are facing in developed countries may be due to switching to a new health and safety management system entitled “Occupational Safety and Health Management System”. The Russian Federation has prepared certain regulatory documents prescribing some suggestions regarding implementing the contemporary system for industrial injuries prevention based upon the methods for professional risks management. However, despite the efforts made by the Russian Government, reformation of the health and safety management system at various companies is being performed rather slowly that may be as well owing to poor competence of managers and specialists regarding contemporary labor safety model content, methodical and organizational novations in the sphere of occupational safety and health management.. The article refers to a number of principal issues distinguishing the new health and safety management system from conventional approach.

  10. Workshop on development and view on digital safety system of KNICS

    Energy Technology Data Exchange (ETDEWEB)

    NONE

    2006-05-15

    The contents of this workshop are vision of KNICS, introduction of development of safety system of KNICS, development situation of safety class of PLC, view of software for safety-critical system in PLC, RTOS development by shaping, quality assurance and attestation of PLC, development situation of nuclear reactor system and development situation of ESF-CCS.

  11. Workshop on development and view on digital safety system of KNICS

    International Nuclear Information System (INIS)

    2006-05-01

    The contents of this workshop are vision of KNICS, introduction of development of safety system of KNICS, development situation of safety class of PLC, view of software for safety-critical system in PLC, RTOS development by shaping, quality assurance and attestation of PLC, development situation of nuclear reactor system and development situation of ESF-CCS

  12. Safety Metrics for Human-Computer Controlled Systems

    Science.gov (United States)

    Leveson, Nancy G; Hatanaka, Iwao

    2000-01-01

    The rapid growth of computer technology and innovation has played a significant role in the rise of computer automation of human tasks in modem production systems across all industries. Although the rationale for automation has been to eliminate "human error" or to relieve humans from manual repetitive tasks, various computer-related hazards and accidents have emerged as a direct result of increased system complexity attributed to computer automation. The risk assessment techniques utilized for electromechanical systems are not suitable for today's software-intensive systems or complex human-computer controlled systems.This thesis will propose a new systemic model-based framework for analyzing risk in safety-critical systems where both computers and humans are controlling safety-critical functions. A new systems accident model will be developed based upon modem systems theory and human cognitive processes to better characterize system accidents, the role of human operators, and the influence of software in its direct control of significant system functions Better risk assessments will then be achievable through the application of this new framework to complex human-computer controlled systems.

  13. Preclosure radiological safety analysis for the exploratory shaft facilities

    International Nuclear Information System (INIS)

    Ma, C.W.; Miller, D.D.; Jardine, L.J.

    1992-06-01

    This study assesses which structures, systems, and components of the exploratory shaft facility (ESF) are important to safety when the ESF is converted to become part of the operating waste repository. The assessment follows the methodology required by DOE Procedure AP-6.10Q. Failures of the converted ESF during the preclosure period have been evaluated, along with other underground accidents, to determine the potential offsite radiation doses and associated probabilities. The assessment indicates that failures of the ESF will not result in radiation doses greater than 0.5 rem at the nearest unrestricted area boundary. Furthermore, credible accidents in other underground facilities will not result in radiation doses larger than 0.5 rem, even if any structure, system, or component of the converted ESF fails at the same time. Therefore, no structure, system, or component of the converted ESF is important to safety

  14. Nuclear Reactor RA Safety Report, Vol. 8, Auxiliary system

    International Nuclear Information System (INIS)

    1986-11-01

    This volume describes RA reactor auxiliary systems, as follows: special ventilation system, special drainage system, hot cells, systems for internal transport. Ventilation system is considered as part of the reactor safety and protection system. Its role is eliminate possible radioactive particles dispersion in the environment. Special drainage system includes pipes and reservoirs with the safety role, meaning absorption or storage of possible radioactive waste water from the reactor building. Hot cells existing in the RA reactor building are designed for production of sealed radioactive sources, including packaging and transport [sr

  15. A new radiation safety control system for Ganil

    International Nuclear Information System (INIS)

    Saint Jores, P. De; Luong, T.T.; Martina, L.; Vega, G.

    1991-01-01

    A second generation radiation safety control system has been installed to upgrade the initial system which was not flexible enough to support new ion beams and new experimental conditions required by the accelerator operation. The main reasons which necessitated the improvement of the safety control system are presented. The new system which controls the Ganil accelerator from the first quarter of 1990 is described. It uses a star structured architecture, VME standard processors and front-end modules activated by pDOS operating system and high level language (C and Fortran) tasks, associated with enhanced resolution color displays for real time synoptics. (R.P.) 4 refs., 4 figs

  16. Safety critical systems handbook a straightforward guide to functional safety : IEC 61508 (2010 edition) and related standards

    CERN Document Server

    Smith, David J

    2010-01-01

    Electrical, electronic and programmable electronic systems increasingly carry out safety functions to guard workers and the public against injury or death and the environment against pollution. The international functional safety standard IEC 61508 was revised in 2010, and this is the first comprehensive guide available to the revised standard. As functional safety is applicable to many industries, this book will have a wide readership beyond the chemical and process sector, including oil and gas, power generation, nuclear, aircraft, and automotive industries, plus project, instrumentation, design, and control engineers. * The only comprehensive guide to IEC 61508, updated to cover the 2010 amendments, that will ensure engineers are compliant with the latest process safety systems design and operation standards* Helps readers understand the process required to apply safety critical systems standards* Real-world approach helps users to interpret the standard, with case studies and best practice design examples...

  17. Proceedings of the Digital Systems Reliability and Nuclear Safety Workshop

    Energy Technology Data Exchange (ETDEWEB)

    Wallace, D. R.; Cuthill, B. B.; Ippolito, L. M. [National Inst. of Standards and Technology, Gaithersburg, MD (United States); Beltracchi, L. [Nuclear Regulatory Commission, Washington, DC (United States) ed.

    1994-03-01

    The United States Nuclear Regulatory Commission (NRC), in cooperation with the National Institute of Standards and Technology conducted the.Digital Systems Reliability and Nuclear Safety Workshop on September 13--14, 1993, in Rockville, Maryland. The workshop provided a forum for the exchange of information among experts within the nuclear industry, experts from other industries, regulators and academia. The information presented at this workshop provided in-depth exposure of the NRC staff and the nuclear industry to digital systems design safety issues and also provided feedback to the NRC from outside experts regarding identified safety issues, proposed regulatory positions, and intended research associated with the use of digital systems in nuclear power plants. Technical presentations provided insights on areas where current software engineering practices may be inadequate for safety-critical systems, on potential solutions for development issues, and on methods for reducing risk in safety-critical systems. This report contains an analysis of results of the workshop, the papers presented panel presentations, and summaries of, discussions at this workshop. The individual papers have been cataloged separately.

  18. Patient Safety Learning Systems: A Systematic Review and Qualitative Synthesis.

    Science.gov (United States)

    2017-01-01

    A patient safety learning system (sometimes called a critical incident reporting system) refers to structured reporting, collation, and analysis of critical incidents. To inform a provincial working group's recommendations for an Ontario Patient Safety Event Learning System, a systematic review was undertaken to determine design features that would optimize its adoption into the health care system and would inform implementation strategies. The objective of this review was to address two research questions: (a) what are the barriers to and facilitators of successful adoption of a patient safety learning system reported by health professionals and (b) what design components maximize successful adoption and implementation? To answer the first question, we used a published systematic review. To answer the second question, we used scoping study methodology. Common barriers reported in the literature by health care professionals included fear of blame, legal penalties, the perception that incident reporting does not improve patient safety, lack of organizational support, inadequate feedback, lack of knowledge about incident reporting systems, and lack of understanding about what constitutes an error. Common facilitators included a non-accusatory environment, the perception that incident reporting improves safety, clarification of the route of reporting and of how the system uses reports, enhanced feedback, role models (such as managers) using and promoting reporting, legislated protection of those who report, ability to report anonymously, education and training opportunities, and clear guidelines on what to report. Components of a patient safety learning system that increased successful adoption and implementation were emphasis on a blame-free culture that encourages reporting and learning, clear guidelines on how and what to report, making sure the system is user-friendly, organizational development support for data analysis to generate meaningful learning outcomes

  19. Balance Sheet Network Analysis of Too-Connected-to-Fail Risk in Global and Domestic Banking Systems

    OpenAIRE

    Jorge A Chan-Lau

    2010-01-01

    The 2008/9 financial crisis highlighted the importance of evaluating vulnerabilities owing to interconnectedness, or Too-Connected-to-Fail risk, among financial institutions for country monitoring, financial surveillance, investment analysis and risk management purposes. This paper illustrates the use of balance sheet-based network analysis to evaluate interconnectedness risk, under extreme adverse scenarios, in banking systems in mature and emerging market countries, and between individual b...

  20. Developing patient safety in dentistry.

    Science.gov (United States)

    Pemberton, M N

    2014-10-01

    Patient safety has always been important and is a source of public concern. Recent high profile scandals and subsequent reports, such as the Francis report into the failings at Mid Staffordshire, have raised those concerns even higher. Mortality and significant morbidity associated with the practice of medicine has led to many strategies to help improve patient safety, however, with its lack of associated mortality and lower associated morbidity, dentistry has been slower at systematically considering how patient safety can be improved. Recently, several organisations, researchers and clinicians have discussed the need for a patient safety culture in dentistry. Strategies are available to help improve patient safety in healthcare and deserve further consideration in dentistry.

  1. ISAT promises fail-safe computer-based reactor protection

    International Nuclear Information System (INIS)

    Anon.

    1989-01-01

    AEA Technology's ISAT system is a multiplexed microprocessor-based reactor protection system which has very extensive self-monitoring capabilities and is inherently fail safe. It provides a way of addressing software reliability problems that have tended to hamper widespread introduction of computer-based reactor protection. (author)

  2. Use of digital computing devices in systems important to safety

    International Nuclear Information System (INIS)

    1986-01-01

    The incorporation of digital computing devices in systems important to safety now is progressing fast in several countries, including Canada, France, Federal Republic of Germany, Japan, USA. There are now reactors with microprocessors in some trip systems. The major functions of those systems are: reactor trip initiation, display, monitoring, testing, re-calibration of detectors. The benefits of moving to a fully computerized shut-down system should be improved reliability, greater flexibility, better man-machine interface, improved testing, higher reactor output and lower overall cost. With the introduction of computer devices in systems important to safety, plant availability and safety are improved because disturbances are treated before they lead to safety action, in this way helping the operator to avoid errors. The Meeting presentations were divided into sessions devoted to the following topics: Needs for the use of digital devices (DCD) in safety important systems (SIS) (5 papers); Problems raised by the integration SIS in the NPP control (7 papers); Description and presentation of DCD of SIS (6 papers); Results of experiences in engineering, manufacture, qualification operation of DCD hardware and software (5 papers). A separate abstract was prepared for each of these papers

  3. Rift systems in the southern North Atlantic: why did some fail and others not?

    Science.gov (United States)

    Nirrengarten, M.; Manatschal, G.; Tugend, J.; Kusznir, N. J.; Sauter, D.

    2017-12-01

    Orphan, Rockall, Porcupine, Parentis and Pyrenean Basins are failed rift systems surrounding the southern North Atlantic Ocean. The failure or succeessing of a rift system is intimately linked to the question of what controls lithospheric breakup and what keeps oceanic spreading alive. Extension rates and the thermal structure are usually the main parameters invoked. However, between the rifts that succeeded and those that failed, the relative control and relative importance of these parameters is not clear. Cessation of driving forces, strain hardening or competition between concurrent rifts are hypotheses often used to explain rift failure. In this work, we aim to analyze the influence of far field forces on the abandon of rift systems in the southern North Atlantic domain using plate kinematic modeling. A new reconstruction approach that integrates the spatio-temporal evolution of rifted basins has been developed. The plate modeling is based on the definition, mapping and restoration of rift domains using 3D gravity inversions methods that provide crustal thickness maps. The kinematic description of each rift system enables us to discuss the local rift evolution relative to the far field kinematic framework. The resulting model shows a strong segmentation of the different rift systems during extreme crustal thinning that are crosscut by V-shape propagators linked to the exhumation of mantle and emplacement of first oceanic crust. The northward propagating lithospheric breakup of the southern North Atlantic may be partly triggered and channeled by extreme lithospheric thinning. However, at Aptian-Albian time, the northward propagating lithospheric breakup diverts and is partitioned along a transtensional system resulting in the abandon of the Orphan and Rockall basins. The change in the propagation direction may be related to a local strain weakening along existing/inherited transfer zones and/or, alternatively, to a more global plate reorganization. The

  4. Licensing process for safety-critical software-based systems

    Energy Technology Data Exchange (ETDEWEB)

    Haapanen, P. [VTT Automation, Espoo (Finland); Korhonen, J. [VTT Electronics, Espoo (Finland); Pulkkinen, U. [VTT Automation, Espoo (Finland)

    2000-12-01

    System vendors nowadays propose software-based technology even for the most critical safety functions in nuclear power plants. Due to the nature of software faults and the way they cause system failures new methods are needed for the safety and reliability evaluation of these systems. In the research project 'Programmable automation systems in nuclear power plants (OHA)', financed together by the Radiation and Nuclear Safety Authority (STUK), the Ministry of Trade and Industry (KTM) and the Technical Research Centre of Finland (VTT), various safety assessment methods and tools for software based systems are developed and evaluated. As a part of the OHA-work a reference model for the licensing process for software-based safety automation systems is defined. The licensing process is defined as the set of interrelated activities whose purpose is to produce and assess evidence concerning the safety and reliability of the system/application to be licensed and to make the decision about the granting the construction and operation permissions based on this evidence. The parties of the licensing process are the authority, the licensee (the utility company), system vendors and their subcontractors and possible external independent assessors. The responsibility about the production of the evidence in first place lies at the licensee who in most cases rests heavily on the vendor expertise. The evaluation and gauging of the evidence is carried out by the authority (possibly using external experts), who also can acquire additional evidence by using their own (independent) methods and tools. Central issue in the licensing process is to combine the quality evidence about the system development process with the information acquired through tests, analyses and operational experience. The purpose of the licensing process described in this report is to act as a reference model both for the authority and the licensee when planning the licensing of individual applications

  5. Licensing process for safety-critical software-based systems

    International Nuclear Information System (INIS)

    Haapanen, P.; Korhonen, J.; Pulkkinen, U.

    2000-12-01

    System vendors nowadays propose software-based technology even for the most critical safety functions in nuclear power plants. Due to the nature of software faults and the way they cause system failures new methods are needed for the safety and reliability evaluation of these systems. In the research project 'Programmable automation systems in nuclear power plants (OHA)', financed together by the Radiation and Nuclear Safety Authority (STUK), the Ministry of Trade and Industry (KTM) and the Technical Research Centre of Finland (VTT), various safety assessment methods and tools for software based systems are developed and evaluated. As a part of the OHA-work a reference model for the licensing process for software-based safety automation systems is defined. The licensing process is defined as the set of interrelated activities whose purpose is to produce and assess evidence concerning the safety and reliability of the system/application to be licensed and to make the decision about the granting the construction and operation permissions based on this evidence. The parties of the licensing process are the authority, the licensee (the utility company), system vendors and their subcontractors and possible external independent assessors. The responsibility about the production of the evidence in first place lies at the licensee who in most cases rests heavily on the vendor expertise. The evaluation and gauging of the evidence is carried out by the authority (possibly using external experts), who also can acquire additional evidence by using their own (independent) methods and tools. Central issue in the licensing process is to combine the quality evidence about the system development process with the information acquired through tests, analyses and operational experience. The purpose of the licensing process described in this report is to act as a reference model both for the authority and the licensee when planning the licensing of individual applications. Many of the

  6. Nuclear power plants. Electrical equipment of the safety system. Qualification

    International Nuclear Information System (INIS)

    2001-01-01

    This International Standard applies to electrical parts of safety systems employed at nuclear power plants, including components and equipment of any interface whose failure could affect unfavourably properties of the safety system. The standard also applies to non-electrical safety-related interfaces. Furthermore, the standard describes the generic process of qualification certification procedures and methods of qualification testing and related documentation. (P.A.)

  7. Reliability estimation of safety-critical software-based systems using Bayesian networks

    International Nuclear Information System (INIS)

    Helminen, A.

    2001-06-01

    Due to the nature of software faults and the way they cause system failures new methods are needed for the safety and reliability evaluation of software-based safety-critical automation systems in nuclear power plants. In the research project 'Programmable automation system safety integrity assessment (PASSI)', belonging to the Finnish Nuclear Safety Research Programme (FINNUS, 1999-2002), various safety assessment methods and tools for software based systems are developed and evaluated. The project is financed together by the Radiation and Nuclear Safety Authority (STUK), the Ministry of Trade and Industry (KTM) and the Technical Research Centre of Finland (VTT). In this report the applicability of Bayesian networks to the reliability estimation of software-based systems is studied. The applicability is evaluated by building Bayesian network models for the systems of interest and performing simulations for these models. In the simulations hypothetical evidence is used for defining the parameter relations and for determining the ability to compensate disparate evidence in the models. Based on the experiences from modelling and simulations we are able to conclude that Bayesian networks provide a good method for the reliability estimation of software-based systems. (orig.)

  8. Passive safety systems reliability and integration of these systems in nuclear power plant PSA

    International Nuclear Information System (INIS)

    La Lumia, V.; Mercier, S.; Marques, M.; Pignatel, J.F.

    2004-01-01

    Innovative nuclear reactor concepts could lead to use passive safety features in combination with active safety systems. A passive system does not need active component, external energy, signal or human interaction to operate. These are attractive advantages for safety nuclear plant improvements and economic competitiveness. But specific reliability problems, linked to physical phenomena, can conduct to stop the physical process. In this context, the European Commission (EC) starts the RMPS (Reliability Methods for Passive Safety functions) program. In this RMPS program, a quantitative reliability evaluation of the RP2 system (Residual Passive heat Removal system on the Primary circuit) has been realised, and the results introduced in a simplified PSA (Probabilistic Safety Assessment). The scope is to get out experience of definition of characteristic parameters for reliability evaluation and PSA including passive systems. The simplified PSA, using event tree method, is carried out for the total loss of power supplies initiating event leading to a severe core damage. Are taken into account: failures of components but also failures of the physical process involved (e.g. natural convection) by a specific method. The physical process failure probabilities are assessed through uncertainty analyses based on supposed probability density functions for the characteristic parameters of the RP2 system. The probabilities are calculated by MONTE CARLO simulation coupled to the CATHARE thermalhydraulic code. The yearly frequency of the severe core damage is evaluated for each accident sequence. This analysis has identified the influence of the passive system RP2 and propose a re-dimensioning of the RP2 system in order to satisfy the safety probabilistic objectives for reactor core severe damage. (authors)

  9. Safety of the medical gas pipeline system

    Directory of Open Access Journals (Sweden)

    Sushmita Sarangi

    2018-01-01

    Full Text Available Medical gases are nowadays being used for a number of diverse clinical applications and its piped delivery is a landmark achievement in the field of patient care. Patient safety is of paramount importance in the design, installation, commissioning, and operation of medical gas pipeline systems (MGPS. The system has to be operational round the clock, with practically zero downtime and its failure can be fatal if not restored at the earliest. There is a lack of awareness among the clinicians regarding the medico-legal aspect involved with the MGPS. It is a highly technical field; hence, an in-depth knowledge is a must to ensure safety with the system.

  10. Risk Assessment in the UK Health and Safety System: Theory and Practice

    Directory of Open Access Journals (Sweden)

    Karen Russ

    2010-09-01

    Full Text Available In the UK, a person or organisation that creates risk is required to manage and control that risk so that it is reduced 'So Far As Is Reasonably Practicable' (SFAIRP. How the risk is managed is to be determined by those who create the risk. They have a duty to demonstrate that they have taken action to ensure all risk is reduced SFAIRP and must have documentary evidence, for example a risk assessment or safety case, to prove that they manage the risks their activities create. The UK Health and Safety Executive (HSE does not tell organisations how to manage the risks they create but does inspect the quality of risk identification and management. This paper gives a brief overview of where responsibility for occupational health and safety lies in the UK, and how risk should be managed through risk assessment. The focus of the paper is three recent major UK incidents, all involving fatalities, and all of which were wholly avoidable if risks had been properly assessed and managed. The paper concludes with an analysis of the common failings of risk assessments and key actions for improvement.

  11. Risk Assessment in the UK Health and Safety System: Theory and Practice.

    Science.gov (United States)

    Russ, Karen

    2010-09-01

    In the UK, a person or organisation that creates risk is required to manage and control that risk so that it is reduced 'So Far As Is Reasonably Practicable' (SFAIRP). How the risk is managed is to be determined by those who create the risk. They have a duty to demonstrate that they have taken action to ensure all risk is reduced SFAIRP and must have documentary evidence, for example a risk assessment or safety case, to prove that they manage the risks their activities create. The UK Health and Safety Executive (HSE) does not tell organisations how to manage the risks they create but does inspect the quality of risk identification and management. This paper gives a brief overview of where responsibility for occupational health and safety lies in the UK, and how risk should be managed through risk assessment. The focus of the paper is three recent major UK incidents, all involving fatalities, and all of which were wholly avoidable if risks had been properly assessed and managed. The paper concludes with an analysis of the common failings of risk assessments and key actions for improvement.

  12. Optimization of maintenance periodicity of complex of NPP safety systems

    International Nuclear Information System (INIS)

    Kolykhanov, V.; Skalozubov, V.; Kovrigkin, Y.

    2006-01-01

    The analysis of the positive and negative aspects connected to maintenance of the safety systems equipment which basically is in a standby state is executed. Tests of systems provide elimination of the latent failures and raise their reliability. Poor quality of carrying out the tests can be a source of the subsequent failures. Therefore excess frequency of tests can result in reducing reliability of safety systems. The method of optimization of maintenance periodicity of the equipment taking into account factors of its reliability and restoration procedures quality is submitted. The unavailability factor is used as a criterion of optimization of maintenance periodicity. It is offered to use parameters of reliability of the equipment and each of safety systems of NPPs received at developing PSA. And it is offered to carry out the concordance of maintenance periodicity of systems within the NPP maintenance program taking into account a significance factor of the system received on the basis of the contribution of system in CDF. Basing on the submitted method the small computer code is developed. This code allows to calculate reliability factors of a separate safety system and to determine optimum maintenance periodicity of its equipment. Optimization of maintenance periodicity of a complex of safety systems is stipulated also. As an example results of optimization of maintenance periodicity at Zaporizhzhya NPP are presented. (author)

  13. Modeling for safety in a synthesis-centric systems engineering framework

    NARCIS (Netherlands)

    Markovski, J.; Mortel - Fronczak, van de J.M.; Ortmeier, F.; Daniel, P.

    2012-01-01

    The ever-increasing complexity of safety-critical systems puts high demands on safety assurance and certification. We focus on the development of control software, where safety) requirements engineering plays a crucial and delicate role. Nowadays, most of the safety features are ensured by the

  14. Access safety systems - New concepts from the LHC experience

    International Nuclear Information System (INIS)

    Ladzinski, T.; Delamare, C.; Luca, S. di; Hakulinen, T.; Hammouti, L.; Havart, F.; Juget, J.F.; Ninin, P.; Nunes, R.; Riesco, T.; Sanchez-Corral Mena, E.; Valentini, F.

    2012-01-01

    The LHC Access Safety System has introduced a number of new concepts into the domain of personnel protection at CERN. These can be grouped into several categories: organisational, architectural and concerning the end-user experience. By anchoring the project on the solid foundations of the IEC 61508/61511 methodology, the CERN team and its contractors managed to design, develop, test and commission on time a SIL3 safety system. The system uses a successful combination of the latest Siemens redundant safety programmable logic controllers with a traditional relay logic hard wired loop. The external envelope barriers used in the LHC include personnel and material access devices, which are interlocked door-booths introducing increased automation of individual access control, thus removing the strain from the operators. These devices ensure the inviolability of the controlled zones by users not holding the required credentials. To this end they are equipped with personnel presence detectors and the access control includes a state of the art bio-metry check. Building on the LHC experience, new projects targeting the refurbishment of the existing access safety infrastructure in the injector chain have started. This paper summarises the new concepts introduced in the LHC access control and safety systems, discusses the return of experience and outlines the main guiding principles for the renewal stage of the personnel protection systems in the LHC injector chain in a homogeneous manner. (authors)

  15. Evaluating the effectiveness of active vehicle safety systems.

    Science.gov (United States)

    Jeong, Eunbi; Oh, Cheol

    2017-03-01

    Advanced vehicle safety systems have been widely introduced in transportation systems and are expected to enhance traffic safety. However, these technologies mainly focus on assisting individual vehicles that are equipped with them, and less effort has been made to identify the effect of vehicular technologies on the traffic stream. This study proposed a methodology to assess the effectiveness of active vehicle safety systems (AVSSs), which represent a promising technology to prevent traffic crashes and mitigate injury severity. The proposed AVSS consists of longitudinal and lateral vehicle control systems, which corresponds to the Level 2 vehicle automation presented by the National Highway Safety Administration (NHTSA). The effectiveness evaluation for the proposed technology was conducted in terms of crash potential reduction and congestion mitigation. A microscopic traffic simulator, VISSIM, was used to simulate freeway traffic stream and collect vehicle-maneuvering data. In addition, an external application program interface, VISSIM's COM-interface, was used to implement the AVSS. A surrogate safety assessment model (SSAM) was used to derive indirect safety measures to evaluate the effectiveness of the AVSS. A 16.7-km freeway stretch between the Nakdong and Seonsan interchanges on Korean freeway 45 was selected for the simulation experiments to evaluate the effectiveness of AVSS. A total of five simulation runs for each evaluation scenario were conducted. For the non-incident conditions, the rear-end and lane-change conflicts were reduced by 78.8% and 17.3%, respectively, under the level of service (LOS) D traffic conditions. In addition, the average delay was reduced by 55.5%. However, the system's effectiveness was weakened in the LOS A-C categories. Under incident traffic conditions, the number of rear-end conflicts was reduced by approximately 9.7%. Vehicle delays were reduced by approximately 43.9% with 100% of market penetration rate (MPR). These results

  16. Reactor safety: the Nova computer system

    International Nuclear Information System (INIS)

    Eisgruber, H.; Stadelmann, W.

    1991-01-01

    After instances of maloperation, the causes of defects, the effectiveness of the measures taken to control the situation, and possibilities to avoid future recurrences need to be investigated above all before the plant is restarted. The most important aspect in all these efforts is to check the sequence in time, and the completeness, of the control measures initiated automatically. For this verification, a computer system is used instead of time-consuming manual analytical techniques, which produces the necessary information almost in real time. The results are available within minutes after completion of the measures initiated automatically. As all short-term safety functions are initiated by automatic systems, their consistent and comprehensive verification results in a clearly higher level of safety. The report covers the development of the computer system, and its implementation, in the Gundremmingen nuclear power station. Similar plans are being pursued in Biblis and Muelheim-Kaerlich. (orig.) [de

  17. The NASA Aviation Safety Reporting System

    Science.gov (United States)

    1983-01-01

    This is the fourteenth in a series of reports based on safety-related incidents submitted to the NASA Aviation Safety Reporting System by pilots, controllers, and, occasionally, other participants in the National Aviation System (refs. 1-13). ASRS operates under a memorandum of agreement between the National Aviation and Space Administration and the Federal Aviation Administration. The report contains, first, a special study prepared by the ASRS Office Staff, of pilot- and controller-submitted reports related to the perceived operation of the ATC system since the 1981 walkout of the controllers' labor organization. Next is a research paper analyzing incidents occurring while single-pilot crews were conducting IFR flights. A third section presents a selection of Alert Bulletins issued by ASRS, with the responses they have elicited from FAA and others concerned. Finally, the report contains a list of publications produced by ASRS with instructions for obtaining them.

  18. Engaging Future Failing States

    Science.gov (United States)

    2011-03-23

    military missions in the Middle East, the Balkans, Africa, Asia , and South America. There is an increasing proliferation of failed and failing states...disparity, overpopulation , food security, health services availability, migration pressures, environmental degradation, personal and 22 community

  19. An Attack Model Development Process for the Cyber Security of Safety Related Nuclear Digital I and C Systems

    Energy Technology Data Exchange (ETDEWEB)

    Khand, Parvaiz Ahmed; Seong, Poong Hyun [Korea Advanced Institute of Science and Technology, Daejeon (Korea, Republic of)

    2007-10-15

    Nuclear power plants (NPPs), the redundant safety related systems are designed to take automatic action to prevent and mitigate accident conditions if the operators and the non-safety systems fail to maintain the plant within normal operating conditions. Presently, there is trend of connecting computer networks of commercial NPPs to corporate local area networks (LANs) to give engineers access to plant data for economic benefits. An increase in plant efficiency of a couple percentage points can translate to millions upon millions of dollars per year. The nuclear industry is also moving in the direction of installing digital controls that would allow for remote operation of plant functions, perhaps within a few years. However, this connectivity may also cause new security problems such as: in 2003, a computer worm named as slammer penetrated a private computer network at Ohio's Davis-Besse nuclear plant and disabled a safety monitoring system called a safety parameter display system (SPDS). Moreover, the present systems were developed with consideration of reliability and safety rather than security. In present scenario, there is a need to model and understand the cyber attacks towards these systems in a systematic way, and to demonstrate that the plant specific procedures and the imposed security controls adequately protect the systems from analyzed cyber security attacks. Attack trees provide a systematic, disciplined and effective way to model and understand cyber attacks towards any type of systems, make it possible to understand risks from deliberate, malicious intrusions from attackers, and make security decisions. Using attack trees the security of large systems can be modeled by considering a security breach as a system failure, and describing it with a set of events that can lead to system failure in a combinatorial way. The attacks towards the system are represented in a tree structure, with an attack that can significantly damage the system operation

  20. An Attack Model Development Process for the Cyber Security of Safety Related Nuclear Digital I and C Systems

    International Nuclear Information System (INIS)

    Khand, Parvaiz Ahmed; Seong, Poong Hyun

    2007-01-01

    Nuclear power plants (NPPs), the redundant safety related systems are designed to take automatic action to prevent and mitigate accident conditions if the operators and the non-safety systems fail to maintain the plant within normal operating conditions. Presently, there is trend of connecting computer networks of commercial NPPs to corporate local area networks (LANs) to give engineers access to plant data for economic benefits. An increase in plant efficiency of a couple percentage points can translate to millions upon millions of dollars per year. The nuclear industry is also moving in the direction of installing digital controls that would allow for remote operation of plant functions, perhaps within a few years. However, this connectivity may also cause new security problems such as: in 2003, a computer worm named as slammer penetrated a private computer network at Ohio's Davis-Besse nuclear plant and disabled a safety monitoring system called a safety parameter display system (SPDS). Moreover, the present systems were developed with consideration of reliability and safety rather than security. In present scenario, there is a need to model and understand the cyber attacks towards these systems in a systematic way, and to demonstrate that the plant specific procedures and the imposed security controls adequately protect the systems from analyzed cyber security attacks. Attack trees provide a systematic, disciplined and effective way to model and understand cyber attacks towards any type of systems, make it possible to understand risks from deliberate, malicious intrusions from attackers, and make security decisions. Using attack trees the security of large systems can be modeled by considering a security breach as a system failure, and describing it with a set of events that can lead to system failure in a combinatorial way. The attacks towards the system are represented in a tree structure, with an attack that can significantly damage the system operation as a

  1. Regulatory system reform of occupational health and safety in China.

    Science.gov (United States)

    Wu, Fenghong; Chi, Yan

    2015-01-01

    With the explosive economic growth and social development, China's regulatory system of occupational health and safety now faces more and more challenges. This article reviews the history of regulatory system of occupational health and safety in China, as well as the current reform of this regulatory system in the country. Comprehensive, a range of laws, regulations and standards that promulgated by Chinese government, duties and responsibilities of the regulatory departments are described. Problems of current regulatory system, the ongoing adjustments and changes for modifying and improving regulatory system are discussed. The aim of reform and the incentives to drive forward more health and safety conditions in workplaces are also outlined.

  2. Human-system safety methods for development of advanced air traffic management systems

    International Nuclear Information System (INIS)

    Nelson, William R.

    1999-01-01

    The Idaho National Engineering and Environmental Laboratory (INEEL) is supporting the National Aeronautics and Space Administration in the development of advanced air traffic management (ATM) systems as part of the Advanced Air Transportation Technologies program. As part of this program INEEL conducted a survey of human-system safety methods that have been applied to complex technical systems, to identify lessons learned from these applications and provide recommendations for the development of advanced ATM systems. The domains that were surveyed included offshore oil and gas, commercial nuclear power, commercial aviation, and military. The survey showed that widely different approaches are used in these industries, and that the methods used range from very high-level, qualitative approaches to very detailed quantitative methods such as human reliability analysis (HRA) and probabilistic safety assessment (PSA). In addition, the industries varied widely in how effectively they incorporate human-system safety assessment in the design, development, and testing of complex technical systems. In spite of the lack of uniformity in the approaches and methods used, it was found that methods are available that can be combined and adapted to support the development of advanced air traffic management systems (author) (ml)

  3. Can cyclist safety be improved with intelligent transport systems?

    Science.gov (United States)

    Silla, Anne; Leden, Lars; Rämä, Pirkko; Scholliers, Johan; Van Noort, Martijn; Bell, Daniel

    2017-08-01

    In recent years, Intelligent Transport Systems (ITS) have assisted in the decrease of road traffic fatalities, particularly amongst passenger car occupants. Vulnerable Road Users (VRUs) such as pedestrians, cyclists, moped riders and motorcyclists, however, have not been that much in focus when developing ITS. Therefore, there is a clear need for ITS which specifically address VRUs as an integrated element of the traffic system. This paper presents the results of a quantitative safety impact assessment of five systems that were estimated to have high potential to improve the safety of cyclists, namely: Blind Spot Detection (BSD), Bicycle to Vehicle communication (B2V), Intersection safety (INS), Pedestrian and Cyclist Detection System+Emergency Braking (PCDS+EBR) and VRU Beacon System (VBS). An ex-ante assessment method proposed by Kulmala (2010) targeted to assess the effects of ITS for cars was applied and further developed in this study to assess the safety impacts of ITS specifically designed for VRUs. The main results of the assessment showed that all investigated systems affect cyclist safety in a positive way by preventing fatalities and injuries. The estimates considering 2012 accident data and full penetration showed that the highest effects could be obtained by the implementation of PCDS+EBR and B2V, whereas VBS had the lowest effect. The estimated yearly reduction in cyclist fatalities in the EU-28 varied between 77 and 286 per system. A forecast for 2030, taking into accounts the estimated accident trends and penetration rates, showed the highest effects for PCDS+EBR and BSD. Copyright © 2016 Elsevier Ltd. All rights reserved.

  4. Towards a Usability and Error "Safety Net": A Multi-Phased Multi-Method Approach to Ensuring System Usability and Safety.

    Science.gov (United States)

    Kushniruk, Andre; Senathirajah, Yalini; Borycki, Elizabeth

    2017-01-01

    The usability and safety of health information systems have become major issues in the design and implementation of useful healthcare IT. In this paper we describe a multi-phased multi-method approach to integrating usability engineering methods into system testing to ensure both usability and safety of healthcare IT upon widespread deployment. The approach involves usability testing followed by clinical simulation (conducted in-situ) and "near-live" recording of user interactions with systems. At key stages in this process, usability problems are identified and rectified forming a usability and technology-induced error "safety net" that catches different types of usability and safety problems prior to releasing systems widely in healthcare settings.

  5. ICT support safety, health and environment management system (e-SHEMS)

    International Nuclear Information System (INIS)

    Amy Hamijah Ab Hamid; Hasfazilah Hassan; Siti Massari Amran; Norzalina Nasirudin; Azimawati Ahmad; Mohd Suhaimi Kassim; Shaharum Ramli; Musa Ibrahim; Mohd Sidek Othman

    2009-01-01

    Safety program is compulsory for a nuclear technology related research and development institution like Nuclear Malaysia. It has been implemented in various safety standard systems including Act 514, Act 304, ISO 14000, OSHAS 18001 and IAEA. This paper began with Nuclear Malaysia history in initiating our own safety standard system since 1982. Currently, Nuclear Malaysia's Safety Health and Environment Management System (SHE-MS) was stipulated for similar purpose. Furthermore, it has implemented guidelines by AELB, IAEA, DOSH, Fire Brigade and Police Force. This paper briefly describes the overall structure of SHE-MS, how it functions and being managed, and lessons learned. The findings which are based on the issues and challenges, then it can be analysed to propose a development of SHE-MS ICT-support application for future improvement and enhancement in inculcating and nurturing safety culture among Nuclear Malaysia staff. (Author)

  6. Safety Systems

    Science.gov (United States)

    Halligan, Tom

    2009-01-01

    Colleges across the country are rising to the task by implementing safety programs, response strategies, and technologies intended to create a secure environment for teachers and students. Whether it is preparing and responding to a natural disaster, health emergency, or act of violence, more schools are making campus safety a top priority. At…

  7. Establishment of Safety Analysis System and Technology for CANDU Reactors

    International Nuclear Information System (INIS)

    Min, Byung Joo; Kim, W. Y.; Kim, H. T.; Rhee, B. W.; Yoon, C.; Kang, H. S.; Yoo, K. J.

    2005-03-01

    To improve the CANDU design/operation safety analysis codes and the CANDU safety analysis methodology, the following works have been done. From the development of the lattice codes (WIMS/CANDU), the lattice model simulates the real core lattice geometry and the effect of the pressure tube creep to the core lattice parameter has been evaluated. From the development of the 3-dimensional thermal-hydraulic analysis model of the moderator behavior (CFX4-CAMO), validation of the model against STERN Lab experiment has been executed. The butterfly-shaped grid structure and the 3-dimensional flow resistance model for porous media were developed and applied to the moderator analysis for Wolsong units 2/3/4. The single fuel channel analysis codes for blowdown and post-blowdown were unified by CATHENA. The 3-dimensional fuel channel analysis model (CFX-CACH) has been developed for validation of CATHENA fuel channel analysis model. The interlinking analysis system (CANVAS) of the thermal-hydraulic safety analysis codes for the primary heat transport system and containment system has been executed. The database system of core physics and thermal-hydraulics experimental data for safety analysis has been established on the URL: http://CANTHIS.kaeri.re.kr. For documentation and Standardization of the general safety analysis procedure, the general safety analysis procedure is developed and applied to a large break LOCA. The present research results can be utilized for establishment of the independent safety analysis technology and acquisition of the optimal safety analysis technology

  8. Software qualification for digital safety system in KNICS project

    International Nuclear Information System (INIS)

    Kwon, Kee-Choon; Lee, Dong-Young; Choi, Jong-Gyun

    2012-01-01

    In order to achieve technical self-reliance in the area of nuclear instrumentation and control, the Korea Nuclear Instrumentation and Control System (KNICS) project had been running for seven years from 2001. The safety-grade Programmable Logic Controller (PLC) and the digital safety system were developed by KNICS project. All the software of the PLC and digital safety system were developed and verified following the software development life cycle Verification and Validation (V and V) procedure. The main activities of the V and V process are preparation of software planning documentations, verification of the Software Requirement Specification (SRS), Software Design Specification (SDS) and codes, and a testing of the software components, the integrated software, and the integrated system. In addition, a software safety analysis and a software configuration management are included in the activities. For the software safety analysis at the SRS and SDS phases, the software Hazard Operability (HAZOP) was performed and then the software fault tree analysis was applied. The software fault tree analysis was applied to a part of software module with some critical defects identified by the software HAZOP in SDS phase. The software configuration management was performed using the in-house tool developed in the KNICS project. (author)

  9. Development of safety review advisory system for nuclear power plants

    International Nuclear Information System (INIS)

    Kim, M. W.; Lee, H. C.; Park, S. O.; Park, W. J.; Lee, J. I.; Hur, K. Y.; Choi, S. S.; Lee, S. J.; Kang, C. M.

    2001-01-01

    For the development of an expert system supporting the safety review of nuclear power plants, the application program was implemented after gathering necessary theoretical background and practical requirements. The general and the detail functional specifications were established, and they were investigated by the safety review experts at KINS. Safety Review Advisory System (SRAS), the windows application on client-server environment was developed according to the above specifications. Reviewers can do their safety reviewing regardless of speciality or reviewing experiences because SRAS is operated by the safety review plans which are converted to standardized format. When the safety reviewing is carried out by using SRAS, the results of safety reviewing are accumulated in the database and may be utilized later usefully, and we can grasp safety reviewing progress. Users of SRAS are categorized into three groups, administrator, project manager, and reviewer. Each user group has appropriate access capability. The function and some screen shots of SRAS are described in this paper

  10. Decision support systems and expert systems for risk and safety analysis

    International Nuclear Information System (INIS)

    Baybutt, P.

    1986-01-01

    During the last 1-2 years, rapid developments have occurred in the development of decision support systems and expert systems to aid in decision making related to risk and safety of industrial plants. These activities are most noteworthy in the nuclear industry where numerous systems are under development with implementation often being made on personal computers. An overview of some of these developments is provided, and an example of one recently developed decision support system is given. This example deals with CADET, a system developed to aid the U.S. Nuclear Regulatory Commission in making decisions related to the topical issue of source terms resulting from degraded core accidents in light water reactors. The paper concludes with some comments on the likely directions of future developments in decision support systems and expert systems to aid in the management of risk and safety in industrial plants. (author)

  11. Risk-based rules for crane safety systems

    Energy Technology Data Exchange (ETDEWEB)

    Ruud, Stian [Section for Control Systems, DNV Maritime, 1322 Hovik (Norway)], E-mail: Stian.Ruud@dnv.com; Mikkelsen, Age [Section for Lifting Appliances, DNV Maritime, 1322 Hovik (Norway)], E-mail: Age.Mikkelsen@dnv.com

    2008-09-15

    The International Maritime Organisation (IMO) has recommended a method called formal safety assessment (FSA) for future development of rules and regulations. The FSA method has been applied in a pilot research project for development of risk-based rules and functional requirements for systems and components for offshore crane systems. This paper reports some developments in the project. A method for estimating target reliability for the risk-control options (safety functions) by means of the cost/benefit decision criterion has been developed in the project and is presented in this paper. Finally, a structure for risk-based rules is proposed and presented.

  12. Risk-based rules for crane safety systems

    International Nuclear Information System (INIS)

    Ruud, Stian; Mikkelsen, Age

    2008-01-01

    The International Maritime Organisation (IMO) has recommended a method called formal safety assessment (FSA) for future development of rules and regulations. The FSA method has been applied in a pilot research project for development of risk-based rules and functional requirements for systems and components for offshore crane systems. This paper reports some developments in the project. A method for estimating target reliability for the risk-control options (safety functions) by means of the cost/benefit decision criterion has been developed in the project and is presented in this paper. Finally, a structure for risk-based rules is proposed and presented

  13. New reactor technology: safety improvements in nuclear power systems.

    Science.gov (United States)

    Corradini, M L

    2007-11-01

    Almost 450 nuclear power plants are currently operating throughout the world and supplying about 17% of the world's electricity. These plants perform safely, reliably, and have no free-release of byproducts to the environment. Given the current rate of growth in electricity demand and the ever growing concerns for the environment, nuclear power can only satisfy the need for electricity and other energy-intensive products if it can demonstrate (1) enhanced safety and system reliability, (2) minimal environmental impact via sustainable system designs, and (3) competitive economics. The U.S. Department of Energy with the international community has begun research on the next generation of nuclear energy systems that can be made available to the market by 2030 or earlier, and that can offer significant advances toward these challenging goals; in particular, six candidate reactor system designs have been identified. These future nuclear power systems will require advances in materials, reactor physics, as well as thermal-hydraulics to realize their full potential. However, all of these designs must demonstrate enhanced safety above and beyond current light water reactor systems if the next generation of nuclear power plants is to grow in number far beyond the current population. This paper reviews the advanced Generation-IV reactor systems and the key safety phenomena that must be considered to guarantee that enhanced safety can be assured in future nuclear reactor systems.

  14. Cognitive screening of older drivers does not produce safety benefits

    DEFF Research Database (Denmark)

    Siren, Anu Kristiina; Meng, Annette

    2012-01-01

    Although screening policies for older drivers based on chronological age are widely used in many countries, previous research has shown that increasing age does not cause higher crash rates and that consequently, chronological age per se is at best only a weak predictor of safe driving performanc...... is an example of a political measure that intuitively makes sense, but fails to produce the desired benefits. On the contrary, on a system level, it decreases the overall safety and is connected to various direct and indirect costs........ Previous research on age-based mandatory screening of older drivers has not been able to demonstrate any safety benefits from screening measures.The present study is a population-based evaluation of the safety effects that the introduction of the cognitive test as an age-based screening tool has had...

  15. Advanced Range Safety System for High Energy Vehicles

    Science.gov (United States)

    Claxton, Jeffrey S.; Linton, Donald F.

    2002-01-01

    The advanced range safety system project is a collaboration between the National Aeronautics and Space Administration and the United States Air Force to develop systems that would reduce costs and schedule for safety approval for new classes of unmanned high-energy vehicles. The mission-planning feature for this system would yield flight profiles that satisfy the mission requirements for the user while providing an increased quality of risk assessment, enhancing public safety. By improving the speed and accuracy of predicting risks to the public, mission planners would be able to expand flight envelopes significantly. Once in place, this system is expected to offer the flexibility of handling real-time risk management for the high-energy capabilities of hypersonic vehicles including autonomous return-from-orbit vehicles and extended flight profiles over land. Users of this system would include mission planners of Space Launch Initiative vehicles, space planes, and other high-energy vehicles. The real-time features of the system could make extended flight of a malfunctioning vehicle possible, in lieu of an immediate terminate decision. With this improved capability, the user would have more time for anomaly resolution and potential recovery of a malfunctioning vehicle.

  16. Safety parameter display system (SPDS) for Russian-designed NPPs

    International Nuclear Information System (INIS)

    Anikanov, S.S.; Catullo, W.J.; Pelusi, J.L.

    1997-01-01

    As part of the programs aimed at improving the safety of Russian-designed reactors, the US DoE has sponsored a project of providing a safety parameter display system (SPDS) for nuclear power plants with such reactors. The present paper is focused mostly on the system architecture design features of SPDS systems for WWER-1000 and RBMK-1000 reactors. The function and the operating modes of the SPDS are outlined, and a description of the display system is given. The system architecture and system design of both an integrated and a stand-alone IandC system is explained. (A.K.)

  17. Nuclear power plant systems, structures and components and their safety classification

    International Nuclear Information System (INIS)

    2000-01-01

    The assurance of a nuclear power plant's safety is based on the reliable functioning of the plant as well as on its appropriate maintenance and operation. To ensure the reliability of operation, special attention shall be paid to the design, manufacturing, commissioning and operation of the plant and its components. To control these functions the nuclear power plant is divided into structural and functional entities, i.e. systems. A systems safety class is determined by its safety significance. Safety class specifies the procedures to be employed in plant design, construction, monitoring and operation. The classification document contains all documentation related to the classification of the nuclear power plant. The principles of safety classification and the procedures pertaining to the classification document are presented in this guide. In the Appendix of the guide, examples of systems most typical of each safety class are given to clarify the safety classification principles

  18. Safety assessment of envisaged systems for automotive hydrogen supply and utilization

    Energy Technology Data Exchange (ETDEWEB)

    Landucci, Gabriele [Dipartimento di Ingegneria Chimica, Chimica Industriale e Scienza dei Materiali, Universita di Pisa, via Diotisalvi n.2, 56126 Pisa (Italy); Tugnoli, Alessandro; Cozzani, Valerio [Dipartimento di Ingegneria Chimica, Mineraria e delle Tecnologie Ambientali, Alma Mater Studiorum - Universita di Bologna, via Terracini n.28, 40131 Bologna (Italy)

    2010-02-15

    A novel consequence-based approach was applied to the inherent safety assessment of the envisaged hydrogen production, distribution and utilization systems, in the perspective of the widespread hydrogen utilization as a vehicle fuel. Alternative scenarios were assessed for the hydrogen system chain from large scale production to final utilization. Hydrogen transportation and delivery was included in the analysis. The inherent safety fingerprint of each system was quantified by a set of Key Performance Indicators (KPIs). Rules for KPIs aggregation were considered for the overall assessment of the system chains. The final utilization stage resulted by large the more important for the overall expected safety performance of the system. Thus, comparison was carried out with technologies proposed for the use of other low emission fuels, as LPG and natural gas. The hazards of compressed hydrogen-fueled vehicles resulted comparable, while reference innovative hydrogen technologies evidenced a potentially higher safety performance. Thus, switching to the inherently safer technologies currently under development may play an important role in the safety enhancement of hydrogen vehicles, resulting in a relevant improvement of the overall safety performance of the entire hydrogen system. (author)

  19. System and safety studies of accelerator driven systems for transmutation. Annual report 2007

    International Nuclear Information System (INIS)

    Arzhanov, Vasily; Fokau, Andrei; Persson, Calle; Runevall, Odd; Sandberg, Nils; Tesinsky, Milan; Wallenius, Janne; Youpeng Zhang

    2008-05-01

    Within the project 'System and safety studies of accelerator driven systems for transmutation', research on design and safety of sub-critical reactors for recycling of minor actinides is performed. During 2007, the reactor physics division at KTH has calculated safety parameters for EFIT-400 with cermet fuel, permitting to start the transient safety analysis. The accuracy of different reactivity meters applied to the YALINA facility was assessed and neutron detection studies were performed. A model to address deviations from point kinetic behaviour was developed. Studies of basic radiation damage physics included calculations of vacancy formation and activation enthalpies in bcc niobium. In order to predict the oxygen potential of inert matrix fuels, a thermo-chemical model for mixed actinide oxides was implemented in a phase equilibrium code

  20. Role of computers in CANDU safety systems

    International Nuclear Information System (INIS)

    Hepburn, G.A.; Gilbert, R.S.; Ichiyen, N.M.

    1985-01-01

    Small digital computers are playing an expanding role in the safety systems of CANDU nuclear generating stations, both as active components in the trip logic, and as monitoring and testing systems. The paper describes three recent applications: (i) A programmable controller was retro-fitted to Bruce ''A'' Nuclear Generating Station to handle trip setpoint modification as a function of booster rod insertion. (ii) A centralized monitoring computer to monitor both shutdown systems and the Emergency Coolant Injection system, is currently being retro-fitted to Bruce ''A''. (iii) The implementation of process trips on the CANDU 600 design using microcomputers. While not truly a retrofit, this feature was added very late in the design cycle to increase the margin against spurious trips, and has now seen about 4 unit-years of service at three separate sites. Committed future applications of computers in special safety systems are also described. (author)

  1. Safety analysis of accident localization system

    International Nuclear Information System (INIS)

    1999-01-01

    A complex safety analysis of accident localization system of Ignalina NPP was performed. Calculation results obtained, results of non-destruct ing testing and experimental data of reinforced concrete testing of buildings does not revealed deficiencies of buildings of accident localization system at unit 1 of Ignalina NPP. Calculations were performed using codes NEPTUNE, ALGOR, CONTAIN

  2. A survey of approaches combining safety and security for industrial control systems

    International Nuclear Information System (INIS)

    Kriaa, Siwar; Pietre-Cambacedes, Ludovic; Bouissou, Marc; Halgand, Yoran

    2015-01-01

    The migration towards digital control systems creates new security threats that can endanger the safety of industrial infrastructures. Addressing the convergence of safety and security concerns in this context, we provide a comprehensive survey of existing approaches to industrial facility design and risk assessment that consider both safety and security. We also provide a comparative analysis of the different approaches identified in the literature. - Highlights: • We raise awareness of safety and security convergence in numerical control systems. • We highlight safety and security interdependencies for modern industrial systems. • We give a survey of approaches combining safety and security engineering. • We discuss the potential of the approaches to model safety and security interactions

  3. Evaluation of food safety management systems in Serbian dairy industry

    Directory of Open Access Journals (Sweden)

    Igor Tomašević

    2016-01-01

    Full Text Available This paper reports incentives, costs, difficulties and benefits of food safety management systems implementation in the Serbian dairy industry. The survey involved 27 food business operators with the national milk and dairy market share of 65 %. Almost two thirds of the assessed dairy producers (70.4 % claimed that they had a fully operational and certified HACCP system in place, while 29.6 % implemented HACCP, but had no third party certification. ISO 22000 was implemented and certified in 29.6 % of the companies, while only 11.1 % had implemented and certified IFS standard. The most important incentive for implementing food safety management systems for Serbian dairy producers was to increase and improve safety and quality of dairy products. The cost of product investigation/analysis and hiring external consultants were related to the initial set-up of food safety management system with the greatest importance. Serbian dairy industry was not greatly concerned by the financial side of implementing food safety management systems due to the fact that majority of prerequisite programmes were in place and regularly used by almost 100 % of the producers surveyed. The presence of competency gap between the generic knowledge for manufacturing food products and the knowledge necessary to develop and implement food safety management systems was confirmed, despite the fact that 58.8 % of Serbian dairy managers had university level of education. Our study brings about the innovation emphasizing the attitudes and the motivation of the food production staff as the most important barrier for the development and implementation of HACCP. The most important identified benefit was increased safety of dairy products with the mean rank scores of 6.85. The increased customer confidence and working discipline of staff employed in food processing were also found as important benefits of implementing/operating HACCP. The study shows that the level of HACCP

  4. Impact of Passive Safety on FHR Instrumentation Systems Design and Classification

    International Nuclear Information System (INIS)

    Holcomb, David Eugene

    2015-01-01

    Fluoride salt-cooled high-temperature reactors (FHRs) will rely more extensively on passive safety than earlier reactor classes. 10CFR50 Appendix A, General Design Criteria for Nuclear Power Plants, establishes minimum design requirements to provide reasonable assurance of adequate safety. 10CFR50.69, Risk-Informed Categorization and Treatment of Structures, Systems and Components for Nuclear Power Reactors, provides guidance on how the safety significance of systems, structures, and components (SSCs) should be reflected in their regulatory treatment. The Nuclear Energy Institute (NEI) has provided 10 CFR 50.69 SSC Categorization Guideline (NEI-00-04) that factors in probabilistic risk assessment (PRA) model insights, as well as deterministic insights, through an integrated decision-making panel. Employing the PRA to inform deterministic requirements enables an appropriately balanced, technically sound categorization to be established. No FHR currently has an adequate PRA or set of design basis accidents to enable establishing the safety classification of its SSCs. While all SSCs used to comply with the general design criteria (GDCs) will be safety related, the intent is to limit the instrumentation risk significance through effective design and reliance on inherent passive safety characteristics. For example, FHRs have no safety-significant temperature threshold phenomena, thus enabling the primary and reserve reactivity control systems required by GDC 26 to be passively, thermally triggered at temperatures well below those for which core or primary coolant boundary damage would occur. Moreover, the passive thermal triggering of the primary and reserve shutdown systems may relegate the control rod drive motors to the control system, substantially decreasing the amount of safety-significant wiring needed. Similarly, FHR decay heat removal systems are intended to be running continuously to minimize the amount of safety-significant instrumentation needed to initiate

  5. Circuit arrangement of an electronic component for the design of fail-safe protective circuits

    International Nuclear Information System (INIS)

    Centmaier, W.; Bernhard, U.; Friederich, B.; Heisecke, I.

    1974-01-01

    The critical parameters of reactors are controlled by safety circuits. These circuits are controlled designed as logic modules operating by the 'n-out-of-m' selection principle. In most cases, a combination of a '1-out-of-3' circuit with a '2-out-of-3' circuit and separate indication is sufficient for a dynamic fail-safe circuit. The basic logic elements are AND and OR gate circuits, respectively, which are triggered by pulse trains and in which the failure of a pulse train is indicated as an error at the output. The module allows the design of safety circuits offering various degrees of safety. If the indication of an error is made on the modules, faulty components can be exchanged by the maintenance crew right away. (DG) [de

  6. The complexity of patient safety reporting systems in UK dentistry.

    Science.gov (United States)

    Renton, T; Master, S

    2016-10-21

    Since the 'Francis Report', UK regulation focusing on patient safety has significantly changed. Healthcare workers are increasingly involved in NHS England patient safety initiatives aimed at improving reporting and learning from patient safety incidents (PSIs). Unfortunately, dentistry remains 'isolated' from these main events and continues to have a poor record for reporting and learning from PSIs and other events, thus limiting improvement of patient safety in dentistry. The reasons for this situation are complex.This paper provides a review of the complexities of the existing systems and procedures in relation to patient safety in dentistry. It highlights the conflicting advice which is available and which further complicates an overly burdensome process. Recommendations are made to address these problems with systems and procedures supporting patient safety development in dentistry.

  7. System analysis of vehicle active safety problem

    Science.gov (United States)

    Buznikov, S. E.

    2018-02-01

    The problem of the road transport safety affects the vital interests of the most of the population and is characterized by a global level of significance. The system analysis of problem of creation of competitive active vehicle safety systems is presented as an interrelated complex of tasks of multi-criterion optimization and dynamic stabilization of the state variables of a controlled object. Solving them requires generation of all possible variants of technical solutions within the software and hardware domains and synthesis of the control, which is close to optimum. For implementing the task of the system analysis the Zwicky “morphological box” method is used. Creation of comprehensive active safety systems involves solution of the problem of preventing typical collisions. For solving it, a structured set of collisions is introduced with its elements being generated also using the Zwicky “morphological box” method. The obstacle speed, the longitudinal acceleration of the controlled object and the unpredictable changes in its movement direction due to certain faults, the road surface condition and the control errors are taken as structure variables that characterize the conditions of collisions. The conditions for preventing typical collisions are presented as inequalities for physical variables that define the state vector of the object and its dynamic limits.

  8. Logical safety system for triggering off the protection action of a safety actuator

    International Nuclear Information System (INIS)

    Plaige, Yves.

    1982-01-01

    This invention applies in particular to the emergency triggering of safety actuators controlling the shutdown of a nuclear reactor. This logical safety system includes four redundant lines each composed, inter alia, of a logical circuit for controlling the triggering of a protection action, a logical alarm circuit connected to the control circuit and a logical inhibiting circuit making it impossible to inhibit several alarm circuits simultaneously [fr

  9. Information systems in food safety management.

    Science.gov (United States)

    McMeekin, T A; Baranyi, J; Bowman, J; Dalgaard, P; Kirk, M; Ross, T; Schmid, S; Zwietering, M H

    2006-12-01

    Information systems are concerned with data capture, storage, analysis and retrieval. In the context of food safety management they are vital to assist decision making in a short time frame, potentially allowing decisions to be made and practices to be actioned in real time. Databases with information on microorganisms pertinent to the identification of foodborne pathogens, response of microbial populations to the environment and characteristics of foods and processing conditions are the cornerstone of food safety management systems. Such databases find application in: Identifying pathogens in food at the genus or species level using applied systematics in automated ways. Identifying pathogens below the species level by molecular subtyping, an approach successfully applied in epidemiological investigations of foodborne disease and the basis for national surveillance programs. Predictive modelling software, such as the Pathogen Modeling Program and Growth Predictor (that took over the main functions of Food Micromodel) the raw data of which were combined as the genesis of an international web based searchable database (ComBase). Expert systems combining databases on microbial characteristics, food composition and processing information with the resulting "pattern match" indicating problems that may arise from changes in product formulation or processing conditions. Computer software packages to aid the practical application of HACCP and risk assessment and decision trees to bring logical sequences to establishing and modifying food safety management practices. In addition there are many other uses of information systems that benefit food safety more globally, including: Rapid dissemination of information on foodborne disease outbreaks via websites or list servers carrying commentary from many sources, including the press and interest groups, on the reasons for and consequences of foodborne disease incidents. Active surveillance networks allowing rapid dissemination

  10. Regulatory system reform of occupational health and safety in China

    Science.gov (United States)

    WU, Fenghong; CHI, Yan

    2015-01-01

    With the explosive economic growth and social development, China’s regulatory system of occupational health and safety now faces more and more challenges. This article reviews the history of regulatory system of occupational health and safety in China, as well as the current reform of this regulatory system in the country. Comprehensive, a range of laws, regulations and standards that promulgated by Chinese government, duties and responsibilities of the regulatory departments are described. Problems of current regulatory system, the ongoing adjustments and changes for modifying and improving regulatory system are discussed. The aim of reform and the incentives to drive forward more health and safety conditions in workplaces are also outlined. PMID:25843565

  11. Firefighter Safety for PV Systems

    DEFF Research Database (Denmark)

    Mathe, Laszlo; Sera, Dezso; Spataru, Sergiu

    2015-01-01

    An important and highly discussed safety issue for photovoltaic (PV) systems is that as long as the PV panels are illuminated, a high voltage is present at the PV string terminals and cables between the string and inverters that is independent of the state of the inverter's dc disconnection switch...

  12. Safety design integrated in the Building Delivery System

    DEFF Research Database (Denmark)

    Jørgensen, Kirsten

    2012-01-01

    phases of the building delivery system by using the principle of the lean construction modelling. The method for the research was to go through the lean construction building delivery system step by step and create a normative description of what to do, when to do and how to do to fully integration...... of safety in each process. The group of participants who created the description had a high experience in a combination of research, safety and health in general and especial in construction and knowledge of the lean construction processes both from the clients perspective as well as from the designers...... and the consultants. The result is a concept and guideline including control schemes for how to integrate safety design in the lean construction building delivery system including what to do and when. The concept has been tested in an educational context and found useful by the designers. The practical value...

  13. System safety program plan for the Isotope Brayton Ground Demonstration System (phase I)

    International Nuclear Information System (INIS)

    1976-01-01

    The safety engineering effort to be undertaken in achieving an acceptable level of safety in the Brayton Isotope Power System (BIPS) development program is discussed. The safety organizational relationships, the methods to be used, the tasks to be completed, and the documentation to be published are described. The plan will be updated periodically as the need arises

  14. Probabilistic Analysis of Passive Safety System Reliability in Advanced Small Modular Reactors: Methodologies and Lessons Learned

    Energy Technology Data Exchange (ETDEWEB)

    Grabaskas, David; Bucknor, Matthew; Brunett, Acacia; Grelle, Austin

    2015-06-28

    Many advanced small modular reactor designs rely on passive systems to fulfill safety functions during accident sequences. These systems depend heavily on boundary conditions to induce a motive force, meaning the system can fail to operate as intended due to deviations in boundary conditions, rather than as the result of physical failures. Furthermore, passive systems may operate in intermediate or degraded modes. These factors make passive system operation difficult to characterize with a traditional probabilistic framework that only recognizes discrete operating modes and does not allow for the explicit consideration of time-dependent boundary conditions. Argonne National Laboratory has been examining various methodologies for assessing passive system reliability within a probabilistic risk assessment for a station blackout event at an advanced small modular reactor. This paper describes the most promising options: mechanistic techniques, which share qualities with conventional probabilistic methods, and simulation-based techniques, which explicitly account for time-dependent processes. The primary intention of this paper is to describe the strengths and weaknesses of each methodology and highlight the lessons learned while applying the two techniques while providing high-level results. This includes the global benefits and deficiencies of the methods and practical problems encountered during the implementation of each technique.

  15. Failure and factors of safety in piping system design

    International Nuclear Information System (INIS)

    Antaki, G.A.

    1993-01-01

    An important body of test and performance data on the behavior of piping systems has led to an ongoing reassessment of the code stress allowables and their safety margin. The codes stress allowables, and their factors of safety, are developed from limits on the incipient yield (for ductile materials), or incipient rupture (for brittle materials), of a test specimen loaded in simple tension. In this paper, we examine the failure theories introduced in the B31 and ASME III codes for piping and their inherent approximations compared to textbook failure theories. We summarize the evolution of factors of safety in ASME and B31 and point out that, for piping systems, it is appropriate to reconsider the concept and definition of factors of safety

  16. Nuclear safety considerations with emphasis on instrumentation and control systems

    International Nuclear Information System (INIS)

    Beare, J.W.

    1978-01-01

    The conceptual model of a nuclear power plant in Canada is that it consists basically of two kinds of systems. The first kind is the process systems, that is, those structures and components associated with the production of nuclear energy and its conversion to other forms of energy. The second kind is the special safety systems, whose purpose it is to protect the public in the event of a serious failure in the process systems which might otherwise lead to unacceptable radiological consequences. Quantitative limits are set on the unavailability of the special safety systems. These limits are low enough to be consistent with low overall risk and yet can be demonstrated by test during operation of the plant. Low unavailability is an important but not the only condition required for low unrealiability for the special safety systems. The special safety systems minimize the chance of a cross-linked failure particularly under the conditions experienced as a result of the more severe types of postulated serious process failures. Nuclear power plants must also withstand, without a major hazard to the public, certain rare events associated with natural phenomena or man-made activities off-site and also certain in-plant events such as fire or break-up of a turbine-generator which might have a cross-linking effect on process and safety systems. In the latest designs, Canadian nuclear power plants have emergency systems to deal with such events. The emergency systems have an enhanced degree of physical and functional separation from other plant systems. (author)

  17. 33 CFR 96.230 - What objectives must a safety management system meet?

    Science.gov (United States)

    2010-07-01

    ... management system meet? 96.230 Section 96.230 Navigation and Navigable Waters COAST GUARD, DEPARTMENT OF HOMELAND SECURITY VESSEL OPERATING REGULATIONS RULES FOR THE SAFE OPERATION OF VESSELS AND SAFETY MANAGEMENT SYSTEMS Company and Vessel Safety Management Systems § 96.230 What objectives must a safety...

  18. Engineering systems reliability, safety, and maintenance an integrated approach

    CERN Document Server

    Dhillon, B S

    2017-01-01

    Today, engineering systems are an important element of the world economy and each year billions of dollars are spent to develop, manufacture, operate, and maintain various types of engineering systems around the globe. Many of these systems are highly sophisticated and contain millions of parts. For example, a Boeing jumbo 747 is made up of approximately 4.5 million parts including fasteners. Needless to say, reliability, safety, and maintenance of systems such as this have become more important than ever before.  Global competition and other factors are forcing manufacturers to produce highly reliable, safe, and maintainable engineering products. Therefore, there is a definite need for the reliability, safety, and maintenance professionals to work closely during design and other phases. Engineering Systems Reliability, Safety, and Maintenance: An Integrated Approach eliminates the need to consult many different and diverse sources in the hunt for the information required to design better engineering syste...

  19. Ethics and choosing appropriate means to an end: Problems with coal mine and nuclear workplace safety

    Energy Technology Data Exchange (ETDEWEB)

    Shrader-Frechette, K.; Cooke, R. [University of Notre Dame, Notre Dame, IN (USA). Dept. of Biological Science

    2004-02-01

    A common problem in ethics is that people often desire an end but fail to take the means necessary to achieve it. Employers and employees may desire the safety end mandated by performance standards for pollution control, but they may fail to employ the means, specification standards, necessary to achieve this end. This article argues that current (de jure) performance standards, for lowering employee exposures to ionizing radiation, fail to promote de facto worker welfare, in part because employers and employees do not follow the necessary means (practices known as specification standards) to achieve the end (performance standards) of workplace safety. To support this conclusion, the article argues that (1) safety requires attention to specification, as well as performance, standards; (2) coal-mine specification standards may fail to promote performance standards; (3) nuclear workplace standards may do the same; (4) choosing appropriate means to the end of safety requires attention to the ways uncertainties and variations in exposure may mask violations of standards; and (5) correcting regulatory inattention to differences between de jute and de facto is necessary for achievement of ethical goals for safety.

  20. Segmentation Scheme for Safety Enhancement of Engineered Safety Features Component Control System

    International Nuclear Information System (INIS)

    Lee, Sangseok; Sohn, Kwangyoung; Lee, Junku; Park, Geunok

    2013-01-01

    Common Caused Failure (CCF) or undetectable failure would adversely impact safety functions of ESF-CCS in the existing nuclear power plants. We propose the segmentation scheme to solve these problems. Main function assignment to segments in the proposed segmentation scheme is based on functional dependency and critical function success path by using the dependency depth matrix. The segment has functional independence and physical isolation. The segmentation structure is that prohibit failure propagation to others from undetectable failures. Therefore, the segmentation system structure has robustness to undetectable failures. The segmentation system structure has functional diversity. The specific function in the segment defected by CCF, the specific function could be maintained by diverse control function that assigned to other segments. Device level control signals and system level control signals are separated and also control signal and status signals are separated due to signal transmission paths are allocated independently based on signal type. In this kind of design, single device failure or failures on signal path in the channel couldn't result in the loss of all segmented functions simultaneously. Thus the proposed segmentation function is the design scheme that improves availability of safety functions. In conventional ESF-CCS, the single controller generates the signal to control the multiple safety functions, and the reliability is achieved by multiplication within the channel. This design has a drawback causing the loss of multiple functions due to the CCF (Common Cause Failure) and single failure Heterogeneous controller guarantees the diversity ensuring the execution of safety functions against the CCF and single failure, but requiring a lot of resources like manpower and cost. The segmentation technology based on the compartmentalization and functional diversification decreases the CCF and single failure nonetheless the identical types of controllers