The Safety critical system is the system whose mishap or hazard severity consequence is deemed to be either catastrophic or critical. Reactor protection system in nuclear power plant is also included in the safety critical system and the accident of t...
The Safety critical system is the system whose mishap or hazard severity consequence is deemed to be either catastrophic or critical. Reactor protection system in nuclear power plant is also included in the safety critical system and the accident of this system makes critical damage. Therefore, to reduce the damage of the accident of the system, many hazard analysis techniques are developed and applied.
In previous years, the hazard analysis techniques based on Chain-of-failure event causality model like Fault tree analysis or Failure Mode and effects Analysis were mainly used for hazard analysis. However, recent research indicates that the use of computers and other new technology has allowed increasingly complex design and traditional hazard analysis techniques are not suitable for hazard of these systems. As a result, STAMP/STPA which based on the system-theoretic accident model was proposed for the effective analysis of recent complex system.
However, STPA is designed for system level hazard analysis and does not treat implementation details like software implementation. But problems in implementation details are important because it also can lead to an accident. Therefore, this paper purpose hazard analysis process of software operation based on STPA and software formal specification to find out the hazard of software operation. After then, we applied this process to the software of nuclear power plant reactor protection system to show the feasibility.