Modeling and Hazard Analysis Using Stpa
Name
Leveson_Modeling and hazard.pdf
Size
1.01 MB
Format
Adobe PDF
Checksum (MD5)
50fbbd5ccd6455fce6299438abae45d3
Author(s) • • • • •
Ishimatsu, Takuto
Leveson, Nancy G.
Thomas, John
Katahira, Masafumi
Miyamoto, Yuko
Nakao, Haruka
Date Issued
September 2010
Journal
Proceedings of the 4th IAASS Conference, Making Safety Matter
Publisher
International Association for the Advancement of Space Safety (IAASS)
Citation
Ishimatsu et al. "Modeling and Hazard Analysis Using Stpa", Proceedings of the 4th IAASS Conference, Making Safety Matter, 19–21 May 2010, Huntsville, Alabama, USA SP-680 (September 2010).
Version
Author's final manuscript
Abstract
A joint research project between MIT and JAXA/JAMSS is investigating the application of a new hazard analysis to the system and software in the HTV. Traditional hazard analysis focuses on component failures but software does not fail in this way. Software most often contributes to accidents by commanding the spacecraft into an unsafe state (e.g., turning off the descent engines prematurely) or by not issuing required commands. That makes the standard hazard analysis techniques of limited usefulness on software-intensive systems, which describes most spacecraft built today.
MIT Department
Massachusetts Institute of Technology. Engineering Systems Division
Terms of Use
Creative Commons Attribution-Noncommercial-Share Alike 3.0
Persistent DSpace Link
DOI of Published Version
http://iaass.space-safety.org/wp-content/uploads/sites/24/2012/12/contents_SP680.pdf