Safety Cases for Software-intensive Systems: an Industrial Experience Report
This paper describes the development of a safety case for the electronic throttle system for the recently launched Jaguar XK8 sports car. It presents the practical application of a wide range of safety assurance techniques to a significant industrial project and shows how these techniques may be used together to build up evidence supporting a sound safety argument.
The system design and safety assesment took full account of the risk-based approach to safety, and of contemporary and emerging standards such as diEC1508 . The application of best practice was found to be both feasible and beneficial. However lessons were also learnt for future developments. Th e paper is therefore of direct relevance to practising engineers faced wut the problem of assuring the safey of computer-based systems. It is also relevant to researchers investigating how best to combine evidence to form a safety case.
Unable to display preview. Download preview PDF.
- 1.dIEC1508. Functional Safety: safety-related systems. Parts 1 to 7, 65A/179/CDV to 65A/185/CDV, draft, June 1995.Google Scholar
- 2.ISO 9000–3 : 1991(e). Guidelines for the application of ISO 9001 to the development, supply and maintenance of software.Google Scholar
- 3.The Motor Industry Software Reliability Association. Development Guidelines For Vehicle Based Software. November 1994. ISBN 0 9524156 0 7.Google Scholar
- 4.Kendall I. The safety assurance of the AJV8 electronic throttle. In: The Electrical System of the Jaguar XK8, IEE Digest 96/281,1996. UK ISSN 0963–3308Google Scholar
- 5.DRIVE Safely (Project V1051). Towards a European Standard: The Development of Safe Road Transport Informatic Systems. Draft 2, March 1992.Google Scholar
- 6.Allen R, Ashworth A, and Hoskins W. Safety: A Modem Approach for Modem Vehicles. C498/1/178 in: IMechE Proceedings from Autotech 95,1995.Google Scholar
- 7.Farnsworth A and Marshall H. User Guide for MALPAS Release 6.1. Report TACS/1019/N7, TA Consultancy Services Ltd, April 1996.Google Scholar
- 8.McDermid J, Wilson S, Fenelon P. ASAM-II: Concepts and Process. Report ASAMII/ REQ/95.3, Issue 2.2, University of York, 14 May 1996.Google Scholar