Review and Assessment of the ISO 26262 Draft Road Vehicle - Functional Safety

ISO 26262 is the first comprehensive automotive safety standard that addresses the safety of the growing number of electric/electronic and software intensive features in today's road vehicles. This paper assesses the standard's ability to provide safety assurance. The strengths of the standard are: (1) emphasizing safety management and safety culture; (2) prescribing a system engineering development process; (3) setting up a framework for hazard elimination early in the design process; (4) disassociating system safety risk assessment from component probabilistic failure rate. The third and fourth strengths are noteworthy departure from the philosophy of IEC61508. This standard has taken muchneeded and very positive steps towards ensuring the functional safety of the modern road vehicles. SAE publications from industry show a lot of enthusiasm towards this standard. This paper suggested a number of items to be considered further strengthen the standard's ability to provide safety assurance. First, the Automotive Safety Integrity Level (ASIL) assessment may want to consider only the severity level, so that the subjectivity involved in likelihood assessment is eliminated. The ASIL assessment also needs to be standardized across manufacturers in order to address the tension between safety and business competitiveness. Government, industry consortium, and research institutions may want to work together on ASIL standardization efforts. Second, this standard provides little guidance on how to eliminate hazards in the design, but rather provides details on how to design and evaluate the effectiveness of component failure detection and control mechanisms. This paper identifies research that could be conducted on how to adapt the System Theoretic Accident Modeling and Process model during the design phase. Third, this standard gives detailed guidance on reliability engineering methods for component failures, but little on system safety design methods. Reliability and safety are different attributes of the system. This standard can be improved by further research on adapting system safety engineering methods to this standard. Fourth, the standard also substitutes good software systems engineering practices for software safety, although this is on par with other industry standards. Further research is needed to address software safety assurance. Fifth, the need for more detail in the safety assurance process and plan for product and operation phases of the product are discussed. Last, the needs for better design methods and safety assurance plan concerning driver/vehicle interaction design are also presented.

[1]  K. Roberts Some Characteristics of One Type of High Reliability Organization , 1990 .

[2]  Juergen Schwarz,et al.  Preparing the future for functional safety of automotive E/E-systems , 2009 .

[3]  Sidney Dekker,et al.  Just Culture: Balancing Safety and Accountability , 2012 .

[4]  T. Laporte,et al.  Working in Practice But Not in Theory: Theoretical Challenges of “High-Reliability Organizations” , 1991 .

[5]  Marvin Rausand,et al.  System Reliability Theory: Models, Statistical Methods, and Applications , 2003 .

[6]  D. Norman,et al.  New technology and human error , 1989 .

[7]  Sidney Dekker,et al.  The Field Guide to Understanding 'Human Error' , 2014 .

[8]  Nancy Leveson In the Spotlight The Use of Safety Cases in Certification and Regulation , 2011 .

[9]  D. L. Simms,et al.  Normal Accidents: Living with High-Risk Technologies , 1986 .

[10]  J. Carroll,et al.  Moving Beyond Normal Accidents and High Reliability Organizations: A Systems Approach to Safety in Complex Systems , 2009 .

[11]  R. Bell,et al.  IEC 61508: functional safety of electrical/electronic/ programme electronic safety-related systems: overview , 1999 .

[12]  Hans-Jörg Wolff,et al.  Having Your Cake and Eating It: A Model-Based Approach for Satisfying ISO26262 Software Development Requirements , 2011 .

[13]  Charles E. Billings,et al.  Aviation Automation: The Search for A Human-centered Approach , 1996 .

[14]  Galen E. Ressler,et al.  Application of System Safety Engineering Processes to Advanced Battery Safety , 2011 .

[15]  K. Weick,et al.  Collective mind in organizations: Heedful interrelating on flight decks. , 1993 .

[16]  Alessandro Birolini Reliability Engineering: Theory and Practice , 1999 .

[17]  Reinhold Hamann,et al.  ISO 26262 Release Just Ahead: Remaining Problems and Proposals for Solutions , 2011 .

[18]  Nadine B. Sarter,et al.  How in the World Did We Ever Get into That Mode? Mode Error and Awareness in Supervisory Control , 1995, Hum. Factors.