Failure Rate Data, Safety System Modeling Concepts, and Fire & Gas Systems Moderator: Lori Dearman, Webinar Producer Thursday, May 16th, 2013

Size: px
Start display at page:

Download "Failure Rate Data, Safety System Modeling Concepts, and Fire & Gas Systems Moderator: Lori Dearman, Webinar Producer Thursday, May 16th, 2013"

Transcription

1 Welcome to Best Practices for the Latest Safety Instrumented System Performance Developments Failure Rate Data, Safety System Modeling Concepts, and Fire & Gas Systems Moderator: Lori Dearman, Webinar Producer Thursday, May 16th, 2013

2 Poll #1 What method do you use to perform Safety Integrity Level (SIL) verification calculations? Live Audience Response 18% 16% 40% 26% Hand calculations Spreadsheet Commercial program Other

3 Knovel At A Glance Our Focus: Engineering Community Our Product: Web-based application integrating technical information with analytical and search tools to drive innovation and deliver answers engineers can trust Our Vision: To be the first place engineers go to solve problems Our History: For over 10 years Knovel has been helping engineers at the world's largest organizations deliver more innovative and cost effective projects on time Our Customers: of the world s leading organizations and government agencies, including 74 Fortune 500 companies - More than 340 leading universities including 12 of the top 15 US engineering schools Missy Stewart Marketing Manager Knovel

4 Dr. William Goble - Managing Partner and Co-founder of exida - Registered professional engineer in Pennsylvania - Certified Functional Safety Expert (CFSE) - ISA Fellow Dr. William Goble CFSE, Managing Partner Co-founder exida - PhD from Eindhoven University of Technology in Reliability Engineering - Author of several books including Safety Instrumented Systems Verification- Practical Probabilistic Calculations, ISA Panel Sponsored By:

5 Safety Lifecycle 1. Process Design - Scope Definition Process Safety Information An engineering process. Series of steps to be taken during the Analysis Design And Operation of a Safety Instrumented System. Event History Application Standards Hazard Characteristics Consequence Database Failure Probabilities Tolerable Risk Guidelines Manufacturer s Safety Manual Application Standards Manufacturer s Failure Data Failure Data Database Manufacturer s Safety Manual Application Standards Manufacturer s Installation Instructions 2. Identify Potential Hazards IEC Clause 8 3. Consequence Analysis SIF No Required? Yes 6. Select RRF, Target SIL for each SIF No IEC Clause 9 4. Identify Protection Layers IEC Clause 9 5. Likelihood Analysis - LOPA IEC Clause 9 IEC Clause 9 7. Develop Process Safety Specification IEC Clause SIF Conceptual Design Select Technology IEC Clause SIF Conceptual Design Select Architecture IEC Clause SIF Conceptual Design Determine Test Plan IEC Clause SIF Conceptual Design Reliability/Safety Calculation IEC Clause 11 RRF, SIL Achieved? Yes 12. Detailed Design IEC Clause 11, Factory Acceptance Test IEC Clause SIS Installation and Commissioning IEC Clause 14 Potential Hazards Hazard Consequences Layers of Protection Hazard Frequencies Design of other risk reduction facilities IEC Clause 9 RRF, Target SILs Safety Requirements Specification SIF Functional Description, Target SIL, RRF, Mitigated Hazards, Process Parameters, Logic, Bypass/Maintenance Requirements, Response Time, Proof Test Targets, etc. Equipment Justification Report H/W & S/W Design Safety Requirements - Technology Chosen, Voting Logic, Proof Test Requirements, Automatic Diagnostic Logic, Bypass Logic, Repair Time Requirements, SIL achieved, etc. Detailed Design Documentation Loop Diagrams, Wiring Diagrams, Logic Diagrams, Panel Layout, PLC Programming, PLC Program Testing, FAT Test Plan, Installation Requirements, Commissioning Requirements, Proof Test Plans, etc. FAT Test Report Commission Test Report Security Regulations, Guidelines To correct step in the Safety Lifecycle Modify 15 SIS Safety Validation IEC Clause Cyber-Security Audit 17. SIS Operation and Maintenance IEC Clause Modify, Decommission? IEC Clause SIS Decommissioning IEC Clause 18 Validation Test Report Cyber-Security Audit Report Maintenance Records Proof Test Results Change Requests Safety Impact Analysis Change Authorizations Detailed Safety Lifecycle Drawings, Copyright exida 2008, used with permission.

6 Safety Lifecycle Event History Application Standards 1. Process Design - Scope Definition 2. Identify Potential Hazards IEC Clause 8 Process Safety Information Potential Hazards In order to: Reduce design mistakes Increase safety, and Optimize cost Hazard Characteristics Consequence Database Failure Probabilities Tolerable Risk Guidelines Manufacturer s Safety Manual Application Standards Manufacturer s Failure Data Failure Data Database Manufacturer s Safety Manual Application Standards Manufacturer s Installation Instructions 3. Consequence Analysis SIF No Required? Yes 6. Select RRF, Target SIL for each SIF No IEC Clause 9 4. Identify Protection Layers IEC Clause 9 5. Likelihood Analysis - LOPA IEC Clause 9 IEC Clause 9 7. Develop Process Safety Specification IEC Clause SIF Conceptual Design Select Technology IEC Clause SIF Conceptual Design Select Architecture IEC Clause SIF Conceptual Design Determine Test Plan IEC Clause SIF Conceptual Design Reliability/Safety Calculation IEC Clause 11 RRF, SIL Achieved? Yes 12. Detailed Design IEC Clause 11, Factory Acceptance Test IEC Clause SIS Installation and Commissioning IEC Clause 14 Hazard Consequences Layers of Protection Hazard Frequencies Design of other risk reduction facilities IEC Clause 9 RRF, Target SILs Safety Requirements Specification SIF Functional Description, Target SIL, RRF, Mitigated Hazards, Process Parameters, Logic, Bypass/Maintenance Requirements, Response Time, Proof Test Targets, etc. Equipment Justification Report H/W & S/W Design Safety Requirements - Technology Chosen, Voting Logic, Proof Test Requirements, Automatic Diagnostic Logic, Bypass Logic, Repair Time Requirements, SIL achieved, etc. Detailed Design Documentation Loop Diagrams, Wiring Diagrams, Logic Diagrams, Panel Layout, PLC Programming, PLC Program Testing, FAT Test Plan, Installation Requirements, Commissioning Requirements, Proof Test Plans, etc. FAT Test Report Commission Test Report Security Regulations, Guidelines To correct step in the Safety Lifecycle Modify 15 SIS Safety Validation IEC Clause Cyber-Security Audit 17. SIS Operation and Maintenance IEC Clause Modify, Decommission? IEC Clause SIS Decommissioning IEC Clause 18 Validation Test Report Cyber-Security Audit Report Maintenance Records Proof Test Results Change Requests Safety Impact Analysis Change Authorizations Detailed Safety Lifecycle Drawings, Copyright exida 2008, used with permission.

7 SIF Verification Calculations { Manufacturer s Safety Manual Application Standards Manufacturer s Failure Data Failure Data Database Failure rate and failure mode data is needed for each component in a safety instrumented function. SIL Verification Manufacturer s Safety Manual Application Standards 8. SIF Conceptual Design Select Technology No IEC Clause SIF Conceptual Design Select Architecture IEC Clause SIF Conceptual Design Determine Test Plan IEC Clause SIF Conceptual Design Reliability/Safety Calculation IEC Clause 11 RRF, SIL Achieved? Safety Requirements Specification SIF Functional Description, Target SIL, RRF, Mitigated Hazards, Process Parameters, Logic, Bypass/Maintenance Requirements, Response Time, Proof Test Targets, etc. Yes 12. Detailed Design IEC Clause 11, 12 Equipment Justification Report H/W & S/W Design Safety Requirements - Technology Chosen, Voting Logic, Proof Test Requirements, Automatic Diagnostic Logic, Bypass Logic, Repair Time Requirements, SIL achieved, etc. Detailed Design Documentation Loop Diagrams, Wiring Diagrams, Logic Diagrams, Panel Layout, PLC Programming, PLC Program Testing, FAT Test Plan, Installation Requirements, Commissioning Requirements, Proof Test Plans, etc. Detailed Safety Lifecycle Drawings, Copyright exida 2008, used with permission.

8 Getting Failure Data Where does one get failure rate and failure mode data? End User Field Failure Studies Manufacturer Field Return Data Studies FMEDA (Failure Modes Effects and Diagnostic Analysis) B10 Data

9 End User Field Failure Studies Opportunity to obtain failure rate/ failure mode information ISSUES: Insufficient information Different definitions of failure Operating Environment not recorded Merging of different technologies, products

10 Field Data Collection Standards IEC :2010, lists: ISO 14224:2006. IEC :2004 also Namur NE 93 AIChE CCPS has formed the PERD (Process Equipment Reliability Database) committee

11 End User Field Failure Studies After performing dozens of studies our experience recognized that the data collection process varies by an order of magnitude or more! When is a failure report written? What is the definition of failure? Are "as found" conditions recorded during a proof test? What were the operating conditions?

12 Manufacturer Field Return Failure Studies Opportunity to obtain failure rate/ failure mode information ISSUES: Calculation methods vary widely Cannot know what % of actual failures are returned Different definitions of FAILURE (Not a problem scenario)

13 Manufacturer Field Return Studies Many manufacturers classify returned items as a failure only if a manufacturing defect is found. Many returned items are marked no problem found. Manufacturer s warranty studies are useful primarily for failure mode information but not for absolute failure rates.

14 FMEDA COMPONENT DATABASE Product λ Component λ s FMEDA Product Failure Modes Failure Mode Distribution Diagnostic Coverage Using a component database, failure rates and failure modes for a product can be determined far more accurately than with only field failure data Copyright 2013 exida

15 FMEDA Biggest Negative COMPONENT DATABASE Component λ s Failure Mode Distribution FMEDA Product λ Product Failure Modes Diagnostic Coverage The accuracy of the FMEDA depends on the accuracy of the component database. It must include failure data for each environmental operating profile.

16 Sixty Billion Unit Operating Hours After several hundred field failure studies: Updated a component failure database to constantly improve the model Identified & updated the model when differences between the model and the results are explained Field Failure Data Product λ Compare FMEDA Product λ ELEC./MECH. COMPONENT DATABASE Industry Database Significant Difference? YES Update Component Database NO Finish Copyright 2013 exida

17 B10 Failure Data The B10 method uses cycle test data. Cycle test is done on a set of products (>20) until 10% of the units under test fail. The number of cycles until failure is called the B10 point. The B10 number of cycles is converted to a time period by knowing the cycles per hour in any particular application. A failure rate is calculated by dividing the 10% failure count by the time period. Copyright exida

18 B10 Failure Data The B10 method assumes that the constant failure rate during the useful life is due to premature wear-out AND all other failure modes are insignificant. Research shows other failure modes become significant when these products do not move frequently some failure modes become significant if a product is static for 100 hours.

19 B10 Failure Data - Relays Relays used in de-energize to trip applications will have much higher coil temperatures when energy is applied at a duty cycle greater than 50%. Relays will suffer from failures due to stiction in moving joints. Failure rates will be much higher in static applications where a relay stays energized and static for long periods (one year).

20 B10 Failure Data Solenoids, Actuators When O-rings and other seals are part of a product, many failure modes become significant when the product remains static for a week or more. These include: Stiction Cold-welding Corrosion binding, etc. Most of these failures are dangerous. Copyright exida

21 Careful of High Demand Certifications Some certifications are based on failure data derived from cycle testing or other methods that require frequent movement of electromechanical products. This assessment is not valid for typical low demand process applications. Copyright 2012 exida

22 Comparison of Solenoid Valve Data Sources Source Product Type D Failure Rate per hour Comment FMEDA #1 (exid1) Solenoid Valve 1.59E-07 FMEDA #2 (exid2) Spool Solenoid Valve 5.66E-07 DOW Plant Study [Skwe08] Solenoid Valve 3.51E-07 Actual field data - chemical industry OREDA / PDS-BIP Solenoid Valve 9.00E-07 Highest Number Cycle Test Results #1 (TUVRhSolenoid Valve 8.59E-09 Very Low Number Cycle Test Results #2 (TUVRhSolenoid Valve 4.53E-10 Lowest Number Manufacturer Study [AEAT05] Solenoid Valve 1.70E-08 Warranty Data Cycle test results may be valid for dynamic operation but typically produce results that are 30X 500X smaller than FMEDA and field test records for low demand applications.

23 Comparison of Solenoid Valve Data Sources Source Product Type D Failure Rate per hour Comment FMEDA #1 (exid1) Solenoid Valve 1.59E-07 FMEDA #2 (exid2) Spool Solenoid Valve 5.66E-07 DOW Plant Study [Skwe08] Solenoid Valve 3.51E-07 Actual field data - chemical industry OREDA / PDS-BIP Solenoid Valve 9.00E-07 Highest Number Cycle Test Results #1 (TUVRhSolenoid Valve 8.59E-09 Very Low Number Cycle Test Results #2 (TUVRhSolenoid Valve 4.53E-10 Lowest Number Manufacturer Study [AEAT05] Solenoid Valve 1.70E-08 Warranty Data Cycle test results may be valid for dynamic operation but typically produce results that are 30X 500X smaller than FMEDA and field test records for low demand applications.

24 Comparison of Solenoid Valve Data Sources Source Product Type D Failure Rate per hour Comment FMEDA #1 (exid1) Solenoid Valve 1.59E-07 FMEDA #2 (exid2) Spool Solenoid Valve 5.66E-07 DOW Plant Study [Skwe08] Solenoid Valve 3.51E-07 Actual field data - chemical industry OREDA / PDS-BIP Solenoid Valve 9.00E-07 Highest Number Cycle Test Results #1 (TUVRhSolenoid Valve 8.59E-09 Very Low Number Cycle Test Results #2 (TUVRhSolenoid Valve 4.53E-10 Lowest Number Manufacturer Study [AEAT05] Solenoid Valve 1.70E-08 Warranty Data Cycle test results may be valid for dynamic operation but typically produce results that are 30X 500X smaller than FMEDA and field test records for low demand applications.

25 Comparison of Solenoid Valve Data Sources Source Product Type D Failure Rate per hour Comment FMEDA #1 (exid1) Solenoid Valve 1.59E-07 FMEDA #2 (exid2) Spool Solenoid Valve 5.66E-07 DOW Plant Study [Skwe08] Solenoid Valve 3.51E-07 Actual field data - chemical industry OREDA / PDS-BIP Solenoid Valve 9.00E-07 Highest Number Cycle Test Results #1 (TUVRhSolenoid Valve 8.59E-09 Very Low Number Cycle Test Results #2 (TUVRhSolenoid Valve 4.53E-10 Lowest Number Manufacturer Study [AEAT05] Solenoid Valve 1.70E-08 Warranty Data Cycle test results may be valid for dynamic operation but typically produce results that are 30X 500X smaller than FMEDA and field test records for low demand applications.

26 Comparison of Solenoid Valve Data Sources Source Product Type D Failure Rate per hour Comment FMEDA #1 (exid1) Solenoid Valve 1.59E-07 FMEDA #2 (exid2) Spool Solenoid Valve 5.66E-07 DOW Plant Study [Skwe08] Solenoid Valve 3.51E-07 Actual field data - chemical industry OREDA / PDS-BIP Solenoid Valve 9.00E-07 Highest Number Cycle Test Results #1 (TUVRhSolenoid Valve 8.59E-09 Very Low Number Cycle Test Results #2 (TUVRhSolenoid Valve 4.53E-10 Lowest Number Manufacturer Study [AEAT05] Solenoid Valve 1.70E-08 Warranty Data Cycle test results may be valid for dynamic operation but typically produce results that are 30X 500X smaller than FMEDA and field test records for low demand applications. Failure data must match the application.

27 Optimistic = Unsafe Optimistic = Unsafe The problem with optimistic data is SIF verification calculations can fool a designer into thinking a design is safe enough when the design is NOT. Power Supply CPU Output Input Module Module PT 3 REACTOR PT 1 SIS TT 1 PT 2 Power Supply TT 2 TT 3 CPU Output Input Module Module BPCS

28 Comparing Failure Rate Sources Failure Rate D Failure Source Product Type per hour Rate Comment Refinery Data [Shel00] Analog Pressure Transducer Failure 2.71E-06 Rate D Failure Seals? Manifold? Refinery Source Data [Shel00] Smart Product Pressure Type Transmitter per 7.19E-06 hour Rate Impulse Comment Line? DOW Refinery Plant Data Study [Shel00] [Skwe08] Pressure Analog Pressure Transmitter Transducer 4.96E E-06 Seals? Manifold? OLF-070 Refinery Data OREDA [Shel00] Pressure Smart Pressure Transmitter Transmitter 7.19E E-07 Impulse Line? FMEDA DOW Plant Analog Study 1151 [Skwe08] Analog Pressure Pressure Transmitter Transducer 3.53E E E-07 High Trip FMEDA OLF-070 Analog OREDA 1152 Analog Pressure Pressure Transmitter Transducer 8.13E E E-07 FMEDA Micro Analog 1151 Smart Analog Pressure Transmitter Transducer 5.64E E E E-07 High Trip FMEDA Micro Analog Smart Analog Pressure Transmitter Transducer 5.43E E E E-07 No remote seal FMEDA Safety Micro Smart Pressure Certified Pressure Transmitter Trans 5.36E E E-07 No High remote Trip seal FMEDA Safety Micro 3051 EJX Smart Pressure Certified Pressure Transmitter Trans 5.01E E E-08 No remote seal FMEDA Safety Certified Pressure Trans 5.36E-07 No remote seal FMEDA 3051 Safety w EJX Remote Sea Smart Pressure Certified Pressure Transmitter Trans 7.04E E E-07 Include Remote Seal FMEDA 3051 w Remote Sea Smart Pressure Transmitter 7.04E E-07 Include Remote Seal

29 Comparing Failure Rate Sources Failure Rate D Failure Source Product Type per hour Rate Comment Refinery Data [Shel00] Refinery Source Data [Shel00] Analog Pressure Transducer Smart Product Pressure Type Transmitter Failure 2.71E-06 Rate D Failure per 7.19E-06 hour Rate Seals? Manifold? Impulse Comment Line? DOW Refinery Plant Data Study [Shel00] [Skwe08] Pressure Analog Pressure Transmitter Transducer 4.96E E-06 Seals? Manifold? OLF-070 Refinery Data OREDA [Shel00] Pressure Smart Pressure Transmitter Transmitter 7.19E E-07 Impulse Line? FMEDA DOW Plant Analog Study 1151 [Skwe08] Analog Pressure Pressure Transmitter Transducer 3.53E E E-07 High Trip FMEDA OLF-070 Analog OREDA 1152 Analog Pressure Pressure Transmitter Transducer 8.13E E E-07 FMEDA Micro Analog 1151 Smart Analog Pressure Transmitter Transducer 5.64E E E E-07 High Trip FMEDA Micro Analog Smart Analog Pressure Transmitter Transducer 5.43E E E E-07 No remote seal FMEDA Safety Micro Smart Pressure Certified Pressure Transmitter Trans 5.36E E E-07 No High remote Trip seal FMEDA Safety Micro 3051 EJX Smart Pressure Certified Pressure Transmitter Trans 5.01E E E-08 No remote seal FMEDA Safety Certified Pressure Trans 5.36E-07 No remote seal FMEDA 3051 Safety w EJX Remote Sea Smart Pressure Certified Pressure Transmitter Trans 7.04E E E-07 Include Remote Seal FMEDA 3051 w Remote Sea Smart Pressure Transmitter 7.04E E-07 Include Remote Seal Quality field failure data from OREDA & DOW matches up with FMEDA results. FMEDA does seem somewhat pessimistic.

30 Comparing Failure Rate Sources Failure Rate D Failure Source Product Type per hour Rate Comment Refinery Data [Shel00] Refinery Source Data [Shel00] Analog Pressure Transducer Smart Product Pressure Type Transmitter Failure 2.71E-06 Rate D Failure per 7.19E-06 hour Rate Seals? Manifold? Impulse Comment Line? DOW Refinery Plant Data Study [Shel00] [Skwe08] Pressure Analog Pressure Transmitter Transducer 4.96E E-06 Seals? Manifold? OLF-070 Refinery Data OREDA [Shel00] Pressure Smart Pressure Transmitter Transmitter 7.19E E-07 Impulse Line? FMEDA DOW Plant Analog Study 1151 [Skwe08] Analog Pressure Pressure Transmitter Transducer 3.53E E E-07 High Trip FMEDA OLF-070 Analog OREDA 1152 Analog Pressure Pressure Transmitter Transducer 8.13E E E-07 FMEDA Micro Analog 1151 Smart Analog Pressure Transmitter Transducer 5.64E E E E-07 High Trip FMEDA Micro Analog Smart Analog Pressure Transmitter Transducer 5.43E E E E-07 No remote seal FMEDA Safety Micro Smart Pressure Certified Pressure Transmitter Trans 5.36E E E-07 No High remote Trip seal FMEDA Safety Micro 3051 EJX Smart Pressure Certified Pressure Transmitter Trans 5.01E E E-08 No remote seal FMEDA Safety Certified Pressure Trans 5.36E-07 No remote seal FMEDA 3051 Safety w EJX Remote Sea Smart Pressure Certified Pressure Transmitter Trans 7.04E E E-07 Include Remote Seal FMEDA 3051 w Remote Sea Smart Pressure Transmitter 7.04E E-07 Include Remote Seal Quality field failure data from OREDA & DOW matches up with FMEDA results. FMEDA does seem somewhat pessimistic.

31 Getting Failure Data Where does one get failure rate and failure mode data? End User Field Failure Studies With quality collection system Manufacturer Field Return Data Studies With quality component database (Failure Modes Effects and Diagnostic Analysis) FMEDA B10 Data Do not use in low demand applications

32 Paul Gruhn, P.E., ISA 84 Expert - Global Process Safety Consultant, Rockwell Automation - Safety Systems Specialist for > 25 years - ISA Fellow - Member of ISA 84 & 101 committees - Developer & Instructor for ISA s courses on Safety Instrumented Systems - Co-author of Safety Instrumented Systems: Design, Analysis and Justification, ISA - Developed 1 st commercial SIS modeling software - Registered Professional Engineer in Texas - ISA 84 Expert Panel Sponsored By:

33 Basic PFD Reliability Formula for 1oo1 PFD = [λ DD * (MTTR + TI A /2)] + [λ DU * TI M /2] + [λ DN * Life/2] + [TD/TI M ] Where: TI A = Automatic test interval DD = Dangerous detected failure TI M = Manual test interval DU = Dangerous undetected failure TD = Test (Bypass) Duration DN = Dangerous never detected failure MTTR = Mean Time To Repair PFD = Probability of Failure on Demand λ S λ DD λ DU λ DN C A = Automatic Diagnostic Coverage factor C M = Manual Test Coverage factor λ DD = λ D x C A λ DU = λ D x (1 - C A ) x C M λ DN = λ D x (1 - C A ) x (1 - C M ) λ D = λ DD + λ DU + λ DN

34 PFD of a Dumb Switch PFD = [λ DD * (MTTR + TI A /2)] + [λ DU * TI M /2] + [λ DN * Life/2] + [TD/TI M ] λ S λ DU Assuming a MTTF D of 30 years, and a 1 year TI. And remembering that MTTF = 1/ λ, and that RRF = 1/PFD PFD = 1 / 30 years * 1 year / 2 = 1 / 60 RRF = 60 (SIL 1 is a (system) RRF between 10 and 100)

35 PFD of a Smart Transmitter PFD = [λ DD * (MTTR + TI A /2)] + [λ DU * TI M /2] + [λ DN * Life/2] + [TD/TI M ] λ S λ DD λ DU Assuming a MTTF D of 60 years, an automatic diagnostic coverage of 50%, a 72 hour repair time, and a 1 year manual test interval. And remembering that MTTF = 1/ λ, and that RRF = 1/PFD PFD = [(1 / 60 years) * 0.5 * (72 hrs / 8760 hr/yr)] + [(1 / 60 years) * 0.5 * 1 year / 2] = 6.85 E E-3 RRF = 240 (SIL 2 is a (system) RRF between 100 and 1,000)

36 Smart Trsmtr w/ Imperfect Manual Testing PFD = [λ DD * (MTTR + TI A /2)] + [λ DU * TI M /2] + [λ DN * Life/2] + [TD/TI M ] λ S λ DD λ DU λ DN Assuming a MTTF D of 60 years, an automatic diagnostic coverage of 50%, a 72 hour repair time, a 1 year manual test interval, 90% effective manual test, and a 15 year life. PFD = [(1 / 60 years) * 0.5 * (72 hrs / 8760 hr/yr)] + [(1 / 60 years) * 0.5 * 0.9 * (1 year / 2)] + [(1 / 60 years) * 0.5 * 0.1 * (15 year / 2)] = 6.85 E E E-3 RRF = 100 (SIL 1 is a (system) RRF between 10 and 100)

37 Now Including Bypassing PFD = [λ DD * (MTTR + TI A /2)] + [λ DU * TI M /2] + [λ DN * Life/2] + [TD/TI M ] λ S λ DD λ DU λ DN Assuming a MTTF D of 60 years, an automatic diagnostic coverage of 50%, a 72 hour repair time, a 1 year manual test interval, 90% effective manual test, a 15 year life, and a 1 week bypass. PFD = [(1 / 60 years) * 0.5 * (72 hrs / 8760 hr/yr)] + [(1 / 60 years) * 0.5 * 0.9 * (1 year / 2)] + [(1 / 60 years) * 0.5 * 0.1 * (15 year / 2)] + [1 week / 52 weeks/yr] = 6.85 E E E E-2 RRF = 34 (SIL 1 is a (system) RRF between 10 and 100)

38 Basic Reliability Formulas Configuration 1oo1 MTTF sp 1 / λ S 1oo2 1 / ((2 * λ S ) + (β * λ s )) 2oo2 1 / ((2 * λ S 2 * MTTR ) + (β * λ s )) 2oo3 1 / ((6 * λ S 2 * MTTR ) + (β * λ s )) Where: MTTF sp = Mean Time To Fail spurious MTTR = Mean Time To Repair s = Safe failure β = Beta percentage

39 Basic Reliability Formulas Configuration PFD avg 1oo1 [λ DD * (MTTR + TI A /2)] + [λ DU * TI M /2] + [λ DN * Life/2] + [TD/TI M ] 1oo2 [(λ DD ) 2 * (MTTR + TI A /2) 2 ] + [((λ DU ) 2 * (TI M ) 2 ) / 3] + [((λ DN ) 2 * Life 2 ) / 3] + [2 * TD * λ DU * (((TI M /2) + MTTR) / TI M )] + [λ DU * β * TI M /2] 2oo2 [2 * λ DD * (MTTR + TI A /2)] + [λ DU * TI M ] + [λ DN * Life] + [2 * TD/TI M ] + [λ DU * β * TI M /2] 2oo3 [3 * (λ DD ) 2 * (MTTR + TI A /2) 2 ] + [(λ DU ) 2 * (TI M ) 2 ] + [(λ DN ) 2 * Life 2 ] + [6 * TD * λ DU * (((TI M /2) + MTTR) / TI M )] + [λ DU * β * TI M /2] Where: TI A = Automatic test interval DD = Dangerous detected failure TI M = Manual test interval DU = Dangerous undetected failure β = Beta percentage DN = Dangerous never detected failure TD = Test Duration MTTR = Mean Time To Repair Note: These formulas are valid as long as MTTF >> TI

40 Understanding the Formulas The portions of the PFD calculations are: 1. The dangerous detected portion: usually negligible, except in the case of partial stroking of valves (because the automatic test interval is significant in that case) 2. The dangerous undetected portion: significant 3. The dangerous never detected portion: included when assuming imperfect manual testing. Its impact can be significant, yet it is often ignored. 4. The portion due to bypassing: can be significant for 1oo1 and 2oo2 configurations, although this factor is also often ignored 5. The common cause portion. This factor dominates for 1oo2 and 2oo3 configurations. This factor does not apply for 1oo1. λ S λ DD λ DU λ DN C A = Automatic Diagnostic Coverage factor C M = Manual Test Coverage factor λ DD = λ D x C A λ DU = λ D x (1 - C A ) x C M λ DN = λ D x (1 - C A ) x (1 - C M ) λ D = λ DD + λ DU + λ DN

41 Edward Marszal PE Edward Marszal PE President Kenexis - President Kenexis - Author of Safety Integrity Level Selection years of experience in the design and implementation of engineered safeguards - ISA Fellow - ISA 84 Expert - Participates on ISA standards committees - Registered Professional Engineer (Control Systems) - Certified Functional Safety Expert Panel Sponsored By:

42 Basis of Safety for FGS All critical instrumentation / control systems require a basis of safety Specify adequate equipment selection and design Specify functional testing requirements For fire and gas systems basis of safety are developed in two ways: Prescriptive Basis of Safety, NFPA/EN standards, etc. Performance Basis / Risk Assessment

43 Performance-Based Standards ISA TR Provides guidance for FGS design in accordance with the principles of ISA84 / IEC61511 Specify and Verify Performance Targets Availability (equivalent to SIL) Detector Coverage Written specifically for process industry Not intended as replacement for prescriptive design; intended as supplement

44 Typical Workflow for FGS Design Identify Requirement for FGS Design Specification Develop FGS Philosophy Procedure Development FGS Zone Definition Determine FGS Performance Requirements Verify Detector Coverage Verify FGS Availability Modify Design (if required) Construction, Installation, And Commissioning PSAT Operation, Maintenance and Testing Management of Change

45 FGS Performance Targets Performance Targets Specify requirements for Risk Reduction: Fire and Gas Detector Coverage Geographic Coverage Scenario Coverage Equipment Probability of Failure Safety Availability Safety Integrity Level (SIL)

46 Performance Target Determination Two Common Approaches: Semi-Quantitative (Similar to LOPA) Quantitative Risk Analysis (QRA)

47 Risk Integration Event Tree Early Ignition? Release Detected? ("Detector Coverage") FGS Effectiveness ("PFD") Delayed Ignition? Residual Fire Detected Residual FGS Effectiveness ("PFD") Frequency (1/year) Success Yes Failure Yes No 0.15 Success 0.9 Yes Success Release Yes 2.97E Failure Yes No Failure No 0.96 No Success Yes 0.85 Failure Yes No No No 0.96 Total 9.10E E E E E E E E E E E E E-04

48 Semi-Quantitative Approach Team-Based approach employing calibrated risk assessment tables Risk factors qualitatively ranked by team Likelihood Consequence Mitigating factors Selected categories determine zone grade Zone grade defines geographic coverage & safety availability Grade Level of Risk Detection Coverage FGS Safety Availability A High Risk 0.90 B Medium Risk 0.80 C Low Risk (High SIL 1 Equivalent) 0.90 (SIL 1 Equivalent) 0.90 (SIL 1 Equivalent)

49 Why Verify Detector Coverage? Failure of Fire & Gas System to Function are related to one of two Mechanisms: Inadequate Coverage Failure to detect hazard due to inadequate sensor type, number and/or location Inadequate Availability Failure of component hardware to function as intended Proposed detector layout should be assessed to ensure adequate coverage: The coverage footprint is sufficient to provide the required hazard alarms and control actions Detector views are not impeded by pipework, cable trays and other obstruction HSE Statistics Indicate that >30% of Major Gas Release in North Sea Offshore Installations are Not Detected by Gas Detection Systems

50 FGS Detector Mapping Assessment Detector Performance characterized based on data from FM approval testing Detector Coverage calculated based on 3-dimensional modeling 50 % Sensitivity 75 % Sensitivity 100 % Sensitivity Achieved coverage is compared against performance target

51 FGS Detector Results Geographic Fire Detector Coverage Scenario-Based Geographic Risk Geographic Gas Detector Coverage Scenario-Based Coverage

52 Poll #2 Which of the following will be the most immediate priorities for achieving functional safety? Live Audience Response 15% 25% Start a field failure data collection program Get management buy-in 28% 32% Get buy-in from other departments for their required inputs Find a suitable consultant and/or integrator

53 Getting Started Find more resources at Pages.knovel.com/SISWhitepapers Webinar Designing and Verifying Safety Instrumented Systems White Papers: Field Failure Data- the Good, the Bad and the Ugly FMEDA- Accurate Product Failure Metrics Understanding Fire and Gas Mapping Software and Effigy

54 Continue the Discussion Watch the webinar on demand On Facebook Like our fan page to comment on posts about this webinar Learn more about Knovel Learn more about ISA

IEC61511 Standard Overview

IEC61511 Standard Overview IEC61511 Standard Overview Andre Kneisel Instrumentation Engineer Chevron C.T. Refinery SAFA Symposium 2011 August 5 th, 2011 Presentation Overview Provide some understanding of the key aspects of Functional

More information

Failure Modes, Effects and Diagnostic Analysis

Failure Modes, Effects and Diagnostic Analysis Failure Modes, Effects and Diagnostic Analysis Project: Detcon FP-700 Combustible Gas Sensor Customer: Detcon The Woodlands, TX USA Contract No.: DC 06/08-04 Report No.: DC 06/08-04 R001 Version V1, Revision

More information

Failure Modes, Effects and Diagnostic Analysis

Failure Modes, Effects and Diagnostic Analysis Failure Modes, Effects and Diagnostic Analysis Project: Fireye Flame Sensor Module CE Flameswitch, model MBCE-110/230FR Company: Fireye Derry, NH USA Contract Number: Q09/10-26 Report No.: FIR 09/10-26

More information

Failure Modes, Effects and Diagnostic Analysis. Rosemount Inc. Chanhassen, Minnesota USA

Failure Modes, Effects and Diagnostic Analysis. Rosemount Inc. Chanhassen, Minnesota USA Failure Modes, Effects and Diagnostic Analysis Project: 2088 Pressure Transmitter Customer: Rosemount Inc. Chanhassen, Minnesota USA Contract No.: ROS 06/10-18 Report No.: ROS 06/10-18 R001 Version V1,

More information

Safety Integrity Verification and Validation of a High Integrity Pressure Protection System to IEC 61511

Safety Integrity Verification and Validation of a High Integrity Pressure Protection System to IEC 61511 TÜV Rheinland International Symposium in China Functional Safety in Industrial Applications October 18 19, 2011 in Shanghai China Safety Integrity Verification and Validation of a High Integrity Pressure

More information

Safety Instrumented Systems Overview and Awareness. Workbook and Study Guide

Safety Instrumented Systems Overview and Awareness. Workbook and Study Guide Safety Instrumented Systems Overview and Awareness Workbook and Study Guide V 1.0 Preface Copyright Notice and Disclaimer Copyright 2017, Kenexis Consulting Corporation All Rights Reserved 3366 Riverside

More information

PPA Michaël GROSSI - FSCE PR electronics

PPA Michaël GROSSI - FSCE PR electronics Functional Safety Component selection according to IEC61511 Title 2 Presentation Michaël GROSSI: Ex / SIL Product manager @ Degree in Instrumentation & Measurement More than 10 years experience in Functional

More information

Failure Modes, Effects and Diagnostic Analysis

Failure Modes, Effects and Diagnostic Analysis Failure Modes, Effects and Diagnostic Analysis Project: Type 95IR/95UV/95DS Flame Scanners Customer: FIREYE Derry, New Hampshire USA Contract No.: FIR 04/08-21 Report No.: FIR 04/08-21 R002 Version V1,

More information

AVOID CATASTROPHIC SITUATIONS: EXPERT FIRE AND GAS CONSULTANCY OPTIMIZES SAFETY

AVOID CATASTROPHIC SITUATIONS: EXPERT FIRE AND GAS CONSULTANCY OPTIMIZES SAFETY AVOID CATASTROPHIC SITUATIONS: EXPERT FIRE AND GAS CONSULTANCY OPTIMIZES SAFETY World-class services help reduce incidents, protect the environment, and keep people and plants safe White Paper PAGE 1 Introduction

More information

Safety Transmitter / Logic Solver Hybrids. Standards Certification Education & Training Publishing Conferences & Exhibits

Safety Transmitter / Logic Solver Hybrids. Standards Certification Education & Training Publishing Conferences & Exhibits Safety Transmitter / Logic Solver Hybrids Standards Certification Education & Training Publishing Conferences & Exhibits Traditional Pressure Sensor Portfolio Trip Alarm or Trip Module Process Transmitter

More information

Fire and Gas Detection and Mitigation Systems

Fire and Gas Detection and Mitigation Systems Fire and Gas Detection and Mitigation Systems Dr. Lawrence Beckman, PE, TÜV FSExp SafePlex Systems, Inc., Houston, Texas ABSTRACT Fire and Gas Detection systems are key components in the overall safety

More information

AVOID CATASTROPHIC SITUATIONS: EXPERT FIRE AND GAS CONSULTANCY OPTIMIZES SAFETY

AVOID CATASTROPHIC SITUATIONS: EXPERT FIRE AND GAS CONSULTANCY OPTIMIZES SAFETY AVOID CATASTROPHIC SITUATIONS: EXPERT FIRE AND GAS CONSULTANCY OPTIMIZES SAFETY World-class services help reduce incidents, protect the environment, and keep people and plants safe White Paper PAGE 1 Introduction

More information

Failure Modes, Effects and Diagnostic Analysis

Failure Modes, Effects and Diagnostic Analysis Failure Modes, Effects and Diagnostic Analysis Project: Phoenix Type 85UVF/IRF Flame Scanner Company: FIREYE Derry, New Hampshire USA Contract Number: Q08/04-57 Report No.: FIR 08/04-57 R001 Version V2,

More information

Failure Modes, Effects and Diagnostic Analysis

Failure Modes, Effects and Diagnostic Analysis Failure Modes, Effects and Diagnostic Analysis Project: Honeywell Temperature Transmitter STT650 with 4-20 ma Output Company: Honeywell International Inc. Field Products 512 Virginia Drive Fort Washington,

More information

United Electric Controls One Series Safety Transmitter Safety Manual

United Electric Controls One Series Safety Transmitter Safety Manual United Electric Controls One Series Safety Transmitter Safety Manual OneST-SM-02 1 INTRODUCTION This Safety Manual provides information necessary to design, install, verify and maintain a Safety Instrumented

More information

Failure Modes, Effects and Diagnostic Analysis

Failure Modes, Effects and Diagnostic Analysis Failure Modes, Effects and Diagnostic Analysis Project: ST3000 pressure transmitter Customer: Honeywell International Inc. Fort Washington, Pennsylvania USA Contract No.: HON 06/05-18 Report No.: HON 06/05-18

More information

Failure Modes, Effects and Diagnostic Analysis

Failure Modes, Effects and Diagnostic Analysis Failure Modes, Effects and Diagnostic Analysis Project: 3144P 4-20mA HART Temperature Transmitter Device Label SW REV 1.1.X Customer: Rosemount Inc. (an Emerson Process Management company) Shakopee, MN

More information

Session Ten Achieving Compliance in Hardware Fault Tolerance

Session Ten Achieving Compliance in Hardware Fault Tolerance Session Ten Achieving Compliance in Hardware Fault Tolerance Mirek Generowicz FS Senior Expert (TÜV Rheinland #183/12) Engineering Manager, I&E Systems Pty Ltd Abstract The functional safety standards

More information

100 & 120 Series Pressure and Temperature Switches Safety Manual

100 & 120 Series Pressure and Temperature Switches Safety Manual 100 & 120 Series Pressure and Temperature Switches Safety Manual MECH-SM-01 1 INTRODUCTION This Safety Manual provides information necessary to design, install, verify and maintain a Safety Instrumented

More information

InstrumentationTools.com

InstrumentationTools.com Author: Instrumentation Tools Categories: Safety Systems S84 / IEC 61511 Standard for Safety Instrumented Systems IEC 61511 is a technical standard which sets out practices in the engineering of systems

More information

Digital EPIC 2 Safety manual

Digital EPIC 2 Safety manual Safety manual Before installation these instructions must be fully read and understood Table of contents Safety manual... 1 1. Introduction... 1 1.1 Terms and abbreviations... 2 1.2 Acronyms... 2 1.3 Product

More information

Failure Modes, Effects and Diagnostic Analysis. PR electronics A/S Rønde Denmark

Failure Modes, Effects and Diagnostic Analysis. PR electronics A/S Rønde Denmark Failure Modes, Effects and Diagnostic Analysis Project: 9203 Solenoid / Alarm Driver Customer: PR electronics A/S Rønde Denmark Contract No.: PR electronics 06/03-19 Report No.: PR electronics 06/03-19

More information

Safety Instrumented Systems

Safety Instrumented Systems Safety Instrumented Systems What is a Safety Instrumented System? A Safety Instrumented System SIS is a new term used in standards like IEC 61511 or IEC 61508 for what used to be called Emergency Shutdown

More information

Assessment of the Safety Integrity of Electrical Protection Systems in the Petrochemical Industry

Assessment of the Safety Integrity of Electrical Protection Systems in the Petrochemical Industry Assessment of the Safety Integrity of Electrical Protection Systems in the Petrochemical Industry 1. Introduction Author: Colin Easton ProSalus Limited ~ Independent Safety Consultants Within the United

More information

User s Manual. YTA110, YTA310, YTA320, and YTA710 Temperature Transmitters. Manual Change No

User s Manual. YTA110, YTA310, YTA320, and YTA710 Temperature Transmitters. Manual Change No User s Manual YTA110, YTA310, YTA320, and YTA710 Temperature Transmitters Manual Change No. 16-045 Please use this manual change for the manuals listed below. 1. Applicable manuals, revised item, revised

More information

Failure Modes, Effects and Diagnostic Analysis

Failure Modes, Effects and Diagnostic Analysis Failure Modes, Effects and Diagnostic Analysis Project: 3144P SIS Temperature Transmitter Customer: Rosemount Inc. Chanhassen, MN USA Contract No.: ROS 04/08-19 Report No.: ROS 04/08-19 R003 Version V2,

More information

Failure Modes, Effects and Diagnostic Analysis

Failure Modes, Effects and Diagnostic Analysis Failure Modes, Effects and Diagnostic Analysis Project: Oldham OLCT 200 Transmitter Company: Industrial Scientific Corporation Oakdale, PA USA Contract Number: Q11/05-009 Report No.: IS 10/10-010 R001

More information

Addressing Challenges in HIPPS Design and Implementation

Addressing Challenges in HIPPS Design and Implementation Addressing Challenges in HIPPS Design and Implementation Valve Manufacturer s Association Afton Coleman, CFSP March 11, 2016 Agenda SIS and SIL basics HIPPS Purpose Increased demand for HIPPS, why? The

More information

Certification Report of the ST 3000 Pressure Transmitter with HART 6

Certification Report of the ST 3000 Pressure Transmitter with HART 6 Certification Report of the ST 3000 Pressure Transmitter with HART 6 Revision No.: 2.4 Date: Report Number: 2010-Mar-18 SAS-190/2006T Product: ST 3000 Pressure Transmitter with HART 6 Customer: Order Number:

More information

Failure Modes, Effects and Diagnostic Analysis. Rosemount Inc. Chanhassen, MN USA

Failure Modes, Effects and Diagnostic Analysis. Rosemount Inc. Chanhassen, MN USA Failure Modes, Effects and Diagnostic Analysis Project: 3144P SIS Temperature Transmitter Customer: Rosemount Inc. Chanhassen, MN USA Contract No.: ROS 04/08-19 Report No.: ROS 04/08-19 R003 Version V1,

More information

Process Safety - Market Requirements. V.P.Raman Mott MacDonald Pvt. Ltd.

Process Safety - Market Requirements. V.P.Raman Mott MacDonald Pvt. Ltd. Process Safety - Market Requirements V.P.Raman Mott MacDonald Pvt. Ltd. Objective of Process Safety Protect personnel Protect the environment Protect the plant equipment / production. Multiple Layers

More information

Failure Modes, Effects and Diagnostic Analysis

Failure Modes, Effects and Diagnostic Analysis Failure Modes, Effects and Diagnostic Analysis Project: 3144 4-20mA HART Temperature Transmitter Company: Rosemount Inc. (Emerson Automation Solutions) Shakopee, MN USA Contract Number: Q16/12-041 Report

More information

Certification Report of the ST3000 Pressure Transmitter

Certification Report of the ST3000 Pressure Transmitter Certification Report of the ST3000 Pressure Transmitter Revision No.: 1.0 Date: Report Number: Product: Customer: Order Number: Authority: Responsible: 2006-Dec-12 SAS-128/2006T ST3000 Pressure Transmitter

More information

ACCURATE FAILURE METRICS FOR MECHANICAL INSTRUMENTS IN SAFETY APPLICATIONS

ACCURATE FAILURE METRICS FOR MECHANICAL INSTRUMENTS IN SAFETY APPLICATIONS ACCURATE FAILURE METRICS FOR MECHANICAL INSTRUMENTS IN SAFETY APPLICATIONS Dr. William M. Goble Principal Partner exida.com, LLC Sellersville, PA, USA KEYWORDS FMEDA, PFD analysis, Safety Integrity Level

More information

Safety Instrumented Systems The Smart Approach

Safety Instrumented Systems The Smart Approach Safety Instrumented Systems The Smart Approach The Emerson Approach to Safety More than ever, running your plant productively and safely requires the right technologies and experience. With increasingly

More information

SIL Safety Guide Series MS Single-Acting Spring-Return Hydraulic Linear Actuators

SIL Safety Guide Series MS Single-Acting Spring-Return Hydraulic Linear Actuators SIL Safety Guide Series MS Single-Acting Spring-Return Hydraulic Linear Actuators Rev 0, November 17 2015 Page 1 of 9 Table of Contents 1 INTRODUCTION 3 1.1 Terms and abbreviations 3 1.2 Acronyms 4 1.3

More information

Failure Modes, Effects and Diagnostic Analysis

Failure Modes, Effects and Diagnostic Analysis Failure Modes, Effects and Diagnostic Analysis Project: Mobrey 2130 Vibrating Fork Point Level Switch Company: Mobrey Measurement SLOUGH, SL1 4UE UK Contract Numbers: Mobrey Q08/08-57 and Q11/05-090 Report

More information

Soliphant M with electronic insert FEM52

Soliphant M with electronic insert FEM52 Functional safety manual Soliphant M with electronic insert FEM52 Level Limit Measuring System Application Overfill protection or operating maximum detection of all types of solids in tanks to satisfy

More information

Failure Modes, Effects and Diagnostic Analysis

Failure Modes, Effects and Diagnostic Analysis Failure Modes, Effects and Diagnostic Analysis Project: 644 4-20mA / HART Temperature Transmitter Company: Rosemount Inc. (Emerson Automation Solutions) Shakopee, MN USA Contract Number: Q16/12-041 Report

More information

Fire and Gas Mapping- Updates to ISA84 TR7

Fire and Gas Mapping- Updates to ISA84 TR7 Fire and Gas Mapping- Updates to ISA84 TR7 Murtaza I. Gandhi, P.E. BakerRisk BAKER ENGINEERING AND RISK CONSULTANTS, INC. 2017 Baker Engineering and Risk Consultants, Inc. Agenda Introduction to Fire and

More information

Options for Developing a Compliant PLC-based BMS

Options for Developing a Compliant PLC-based BMS Options for Developing a Compliant PLC-based BMS Jack Boone aesolutions Greenville, South Carolina, United States of America ABSTRACT Facilities are focusing on improving the reliability of their burner

More information

Failure Modes, Effects and Diagnostic Analysis

Failure Modes, Effects and Diagnostic Analysis Failure Modes, Effects and Diagnostic Analysis Project: Rosemount 3051SMV MultiVariable Transmitter Company: Emerson Automation Solutions Rosemount Inc. Shakopee, MN USA Contract Number: Q16/12-041 Report

More information

Session Number: 3 SIL-Rated Fire (& Gas) Safety Functions Fact or Fiction?

Session Number: 3 SIL-Rated Fire (& Gas) Safety Functions Fact or Fiction? Session Number: 3 SIL-Rated Fire (& Gas) Safety Functions Fact or Fiction? Raymond Wright PhD Senior Consultant, FSE Global Australia Pty Ltd Abstract SIL-rated process safety functions are now commonplace,

More information

Safety in the process industry

Safety in the process industry Products Solutions Services Safety in the process industry Simply reliable Table of contents Endress+Hauser: At home in the process safety Smart devices and concepts for hazardous areas Introduction to

More information

Guidelines. Safety Integrity Level - SIL - Valves and valve actuators. February Valves

Guidelines. Safety Integrity Level - SIL - Valves and valve actuators. February Valves Valves Guidelines Safety Integrity Level - SIL - Valves and valve actuators February 2009 VDMA German Engineering Federation Valves Manufacturers Association Chairman: Prof.-Dr.-Ing. Heinfried Hoffmann

More information

SAFETY MANUAL. Electrochemical Gas Detector GT3000 Series Includes Transmitter (GTX) with H 2 S or O 2 Sensor Module (GTS)

SAFETY MANUAL. Electrochemical Gas Detector GT3000 Series Includes Transmitter (GTX) with H 2 S or O 2 Sensor Module (GTS) SAFETY MANUAL Electrochemical Gas Detector GT3000 Series Includes Transmitter (GTX) with H 2 S or O 2 Sensor Module (GTS) Sensor Module (GTS) Transmitter (GTX) Detector (GT3000) SAFETY CERTIFIED GT3000

More information

Implementing Safety Instrumented Burner Management Systems: Challenges and Opportunities

Implementing Safety Instrumented Burner Management Systems: Challenges and Opportunities Implementing Safety Instrumented Burner Management Systems: Challenges and Opportunities Mike Scott, PE, CFSE Standards Certification Education & Training Publishing Conferences & Exhibits Presenter Mike

More information

Rosemount Functional Safety Manual. Manual Supplement , Rev AF March 2015

Rosemount Functional Safety Manual. Manual Supplement , Rev AF March 2015 Rosemount 2120 Functional Safety Manual Manual Supplement Manual Supplement Contents Contents 1Section 1: Introduction 1.1 Scope and purpose of the safety manual.................................. 1 1.2

More information

SAFETY MANUAL. PointWatch Eclipse Infrared Hydrocarbon Gas Detector Safety Certified Model PIRECL

SAFETY MANUAL. PointWatch Eclipse Infrared Hydrocarbon Gas Detector Safety Certified Model PIRECL SAFETY MANUAL PointWatch Eclipse Infrared Hydrocarbon Gas Detector SIL 2 Certified Model PIRECL Safety Certified Model PIRECL PointWatch Eclipse IR Gas Detector This manual addresses the specific requirements

More information

ADIPEC 2013 Technical Conference Manuscript

ADIPEC 2013 Technical Conference Manuscript ADIPEC 2013 Technical Conference Manuscript Name: Heidi Fuglum Company: ABB AS Job title: Deployment Manager Address: Ole Deviksvei, Oslo, Norway Phone number: +47 91 36 98 70 Email: Heidi.Fuglum@no.abb.com

More information

Failure Modes, Effects and Diagnostic Analysis

Failure Modes, Effects and Diagnostic Analysis Failure Modes, Effects and Diagnostic Analysis Project: 3051S Electronic Remote Sensors (ERS ) System Company: Emerson Automation Solutions Rosemount Inc. Shakopee, MN USA Contract Number: Q16/12-041 Report

More information

IEC Functional Safety Assessment

IEC Functional Safety Assessment IEC 61508 Functional Safety Assessment Project: Honeywell 7800 Series Burner Control System Customer: Honeywell Combustion Controls Golden Valley, MN USA Contract No.: Q13/03-070 Report No.: HCC 09/10-38

More information

Practical Methods for Process Safety Management

Practical Methods for Process Safety Management Practical Methods for Process Safety Management Putting Process Safety Management At The Heart Of Our Lives Canadian Chemical Engineering Conference 2006 October 18, 2006 CSChE Conference 2006 Quote Concern

More information

Australian Standard. Functional safety Safety instrumented systems for the process industry sector

Australian Standard. Functional safety Safety instrumented systems for the process industry sector AS IEC 61511.2 2004 IEC 61511-2:2003 AS IEC 61511.2 Australian Standard Functional safety Safety instrumented systems for the process industry sector Part 2: Guidelines for the application of AS IEC 61511.1

More information

Rosemount 2140:SIS Level Detector

Rosemount 2140:SIS Level Detector Rosemount 2140:SIS Level Detector Functional Safety Manual Manual Supplement Manual Supplement Contents Contents 1Section 1: Introduction 1.1 Scope and purpose of the safety manual..................................

More information

Introduction. Additional information. Additional instructions for IEC compliant devices. Measurement made easy

Introduction. Additional information. Additional instructions for IEC compliant devices. Measurement made easy ABB MEASUREMENT & ANALYTICS SIL-SAFETY MANUAL TTH300, TTF300 Temperature transmitter Additional instructions for IEC 61508 compliant devices Measurement made easy TTH300 TTF300 Introduction TTH300, TTF300

More information

White Paper. Integrated Safety for a Single BMS Evaluation Based on Siemens Simatic PCS7 System

White Paper. Integrated Safety for a Single BMS Evaluation Based on Siemens Simatic PCS7 System White Paper Project: Integrated Safety for a Single BMS Evaluation Based on Siemens Simatic PCS7 System Version 1, Revision 2, August 4, 2016 Jim Jenkins, William Goble The document was prepared using

More information

Key Topics. Steven T. Maher, PE CSP. Using HAZOP/LOPA to Create an Effective Mechanical Integrity Program. David J. Childs

Key Topics. Steven T. Maher, PE CSP. Using HAZOP/LOPA to Create an Effective Mechanical Integrity Program. David J. Childs Steven T. Maher, PE CSP Using HAZOP/LOPA to Create an Effective Mechanical Integrity Program Steven T. Maher, PE CSP & 949/282-0123 www.rmpcorp.com 37-Year Engineer 33 in Process Safety Consulting Specializing

More information

Using HAZOP/LOPA to Create an Effective Mechanical Integrity Program

Using HAZOP/LOPA to Create an Effective Mechanical Integrity Program Using HAZOP/LOPA to Create an Effective Mechanical Integrity Program Steven T. Maher, PE CSP & David J. Childs 949/282-0123 www.rmpcorp.com Download Presentation & Handout www.sems1.com/gcps/2017.htm Steven

More information

FUNCTIONAL SAFETY IN FIRE PROTECTION SYSTEM E-BOOK

FUNCTIONAL SAFETY IN FIRE PROTECTION SYSTEM E-BOOK FUNCTIONAL SAFETY IN FIRE PROTECTION SYSTEM E-BOOK USEFUL TERMINOLOGY BASIC PROCESS CONTROL SYSTEM (BPCS) System which responds to input signals from the process, its associated equipment, other programmable

More information

STT850 and STT750 SmartLine Temperature Transmitter HART Communications Options Safety Manual 34-TT Revision 4 September 2017

STT850 and STT750 SmartLine Temperature Transmitter HART Communications Options Safety Manual 34-TT Revision 4 September 2017 STT850 and STT750 SmartLine Temperature Transmitter HART Communications Options Safety Manual 34-TT-25-05 Revision 4 September 2017 Honeywell Process Solutions Copyrights, Notices and Trademarks Copyright

More information

FUNCTIONAL SAFETY: A PRACTICAL APPROACH FOR END-USERS AND SYSTEM INTEGRATORS

FUNCTIONAL SAFETY: A PRACTICAL APPROACH FOR END-USERS AND SYSTEM INTEGRATORS FUNCTIONAL SAFETY: A PRACTICAL APPROACH FOR END-USERS AND SYSTEM INTEGRATORS TINO VANDE CAPELLE 1, Dr. MICHEL HOUTERMANS 2, 3 1- HIMA Paul Hildebrandt GmbH + Co KG, Brühl, GERMANY 2 Risknowlogy, Brunssum,

More information

Technical Paper. Functional Safety Update IEC Edition 2 Standards Update

Technical Paper. Functional Safety Update IEC Edition 2 Standards Update Technical Paper Functional Safety Update IEC 61511 Edition 2 Standards Update Functional Safety Update Table of Contents 1.0 Introduction 2.0 IEC 61511-1 changes 3.0 IEC 61511-2 changes 4.0 IEC 61511-3

More information

Tank protection example using Simatic

Tank protection example using Simatic SIEMENS INDUSTRY INC. Tank protection example using Simatic Luis M.F. Garcia G - CFSE 2/11/2013 Introduction Objective of this essay For protection of tanks holding volatile fluids, the industry best practice

More information

Why AC800M High Integrity is used in Burner Management System Applications?

Why AC800M High Integrity is used in Burner Management System Applications? Why AC800M High Integrity is used in Burner Management System Applications? Prepared by: Luis Duran Product Marketing Manager Safety Systems ABB Process Automation/Control Technologies TÜV Functional Safety

More information

High Integrity Pressure Protection System

High Integrity Pressure Protection System High Integrity Pressure Protection System 412748_CCI_HIPPS.indd 1 A CCI HIPPS offering is unique in its: Innovative custom engineered system approach Variety of actuator and valve solutions for an optimized

More information

SAFETY MANUAL. X2200 UV, X9800 IR, X5200 UVIR SIL 2 Certified Flame Detectors

SAFETY MANUAL. X2200 UV, X9800 IR, X5200 UVIR SIL 2 Certified Flame Detectors SAFETY MANUAL X2200 UV, X9800 IR, X5200 UVIR SIL 2 Certified Flame Detectors SAFETY-CERTIFIED Flame DETECTORs This manual addresses the specific requirements and recommendations applicable to the proper

More information

Things IEC61508/61511 Doesn't Tell You About Safety Systems- Why You Should Care!

Things IEC61508/61511 Doesn't Tell You About Safety Systems- Why You Should Care! Things IEC61508/61511 Doesn't Tell You About Safety Systems- Why You Should Care! Standards Certification Education & Training Publishing Conferences & Exhibits Implementing IEC61511 on real Process Plants

More information

SAFETY MANUAL. Multispectrum IR Flame Detector X3301

SAFETY MANUAL. Multispectrum IR Flame Detector X3301 SAFETY MANUAL Multispectrum IR Flame Detector X3301 SAFETY-CERTIFIED MODEL X3301 MULTISPECTRUM INFRARED DETECTOR This manual addresses the specific requirements and recommendations applicable to the proper

More information

HIPPS High Integrity Pressure Protection System

HIPPS High Integrity Pressure Protection System HIPPS High Integrity Pressure Protection System L&T Valves L&T Valves is a wholly owned subsidiary of Larsen & Toubro. Backed by a heritage of excellence that exceeds five decades, the company manufactures

More information

IEC Functional Safety Assessment

IEC Functional Safety Assessment IEC 61508 Functional Safety Assessment Project: Detcon IR-700 Combustible Hydrocarbon Gas Sensor Customer: Detcon The Woodlands, TX USA Contract No.: Q13/06-003 Report No.: DC 13-06-003 R002 Version V1,

More information

Pressure Transmitter cerabar M PMC 41/45 cerabar M PMP 41/45/46/48 with Output Signal ma/hart

Pressure Transmitter cerabar M PMC 41/45 cerabar M PMP 41/45/46/48 with Output Signal ma/hart Safety Manual SD 172P/00/en 71036063 Pressure Transmitter cerabar M PMC 41/45 cerabar M PMP 41/45/46/48 with Output Signal 4...20 ma/hart Functional Safety Manual Application Pressure measurement (e.g.

More information

Overfill Prevention Control Unit with Ground Verification & Vehicle Identification Options. TÜVRheinland

Overfill Prevention Control Unit with Ground Verification & Vehicle Identification Options. TÜVRheinland Scully Intellitrol Safety Manual Overfill Prevention Control Unit with Ground Verification & Vehicle Identification Options TÜVRheinland Functional Safety Type Approved FS IEC 61508 Certified SIL 2 / SIL

More information

, CFSE, Senior Manager, ABB Taiwan;, 2011/9/2. Functional Safety. ABB Group September 5, 2011 Slide 1

, CFSE, Senior Manager, ABB Taiwan;, 2011/9/2. Functional Safety. ABB Group September 5, 2011 Slide 1 , CFSE, Senior Manager, ABB Taiwan;, 2011/9/2 Functional Safety September 5, 2011 Slide 1 (Ken Meng) Computer Engineering /DCS/ 8 2 ABB Ltd DCS 12 ( 3 9 ) CFSE (Certified Functional Safety Expert) E-mail:

More information

Functional Safety of Machinery Presented by Greg Richards Manufacturing in America 02/22-23/2017

Functional Safety of Machinery Presented by Greg Richards Manufacturing in America 02/22-23/2017 Functional Safety of Machinery Presented by Greg Richards Manufacturing in America 02/22-23/2017 AGENDA Definition of Safety? Machinery Safety Standards Comparison of ISO 13849-1 and IEC 62061 Safety-related

More information

Simply reliable: Process safety from Endress+Hauser

Simply reliable: Process safety from Endress+Hauser Products Solutions Services Simply reliable: Process safety from Endress+Hauser Safety by choice, not by chance: Functional Safety Slide 1 Oil & Gas industry Hai-Thuy Industry Manager Oil & Gas Slide 2

More information

FMEDA and Proven-in-use Assessment. Pepperl+Fuchs GmbH Mannheim Germany

FMEDA and Proven-in-use Assessment. Pepperl+Fuchs GmbH Mannheim Germany FMEDA and Proven-in-use Assessment Project: Transmitter Supply Isolators KF**-CRG-*** Customer: Pepperl+Fuchs GmbH Mannheim Germany Contract No.: P+F 02/11-01 Report No.: P+F 02/11-01 R012 Version V2,

More information

IEC PRODUCT APPROVALS VEERING OFF COURSE

IEC PRODUCT APPROVALS VEERING OFF COURSE IEC 61508 PRODUCT APPROVALS VEERING OFF COURSE Angela E. Summers, P.E., PhD, President, SIS-TECH Solutions, LP Published on-line: IEC 61508 Product Approvals Veering off Course, ControlGlobal.com, July

More information

FMEDA Report. Failure Modes, Effects and Diagnostic Analysis. KFD0-CS-Ex*.54* and KFD0-CS-Ex*.56* Project: X7300

FMEDA Report. Failure Modes, Effects and Diagnostic Analysis. KFD0-CS-Ex*.54* and KFD0-CS-Ex*.56* Project: X7300 Failure Modes, Effects and Diagnostic Analysis Device Designation: KFD0-CS-Ex*.54* and KFD0-CS-Ex*.56* Project: X7300 Pepperl+Fuchs GmbH Mannheim Germany Mannheim norm sheet 1 of 16 Released EDM checkout

More information

SAFETY MANUAL. Intelligent Sensors for H 2 S Gas Applications

SAFETY MANUAL. Intelligent Sensors for H 2 S Gas Applications SAFETY MANUAL Intelligent Sensors for H 2 S Gas Applications The information and technical data disclosed in this document may be used and disseminated only for the purposes and to the extent specifically

More information

Reliability and Safety Assessment in Offshore and Process Industries

Reliability and Safety Assessment in Offshore and Process Industries Reliability and Safety Assessment in Offshore and Process Industries PSAM 7 / ESREL 04 Berlin, Germany Lars Bodsberg SINTEF, Trondheim, Norway 1 2 All models are wrong! Some are useful. (G.E. Box) 3 Many

More information

HIPPS High Integrity Pressure Protection System

HIPPS High Integrity Pressure Protection System HIPPS High Integrity Pressure Protection System L&T Valves L&T Valves Limited (Formerly Audco India Limited) is a wholly owned subsidiary of Larsen & Toubro. Backed by a fifty-year track-record of excellence

More information

Integrated but separate

Integrated but separate End users of older automation systems essentially had to invest in two separate systems: a basic process control system and a separate safety instrumented system. Nowadays, suppliers differ in their opinions

More information

2015 Functional Safety Training & Workshops

2015 Functional Safety Training & Workshops HAZAN RISK SIS SIF - IEC 61508/61511 - SIL PFD SFF CCF 2015 Functional Safety Training & Workshops Select the right course for your organisation from our extensive choice of Functional Safety related training

More information

Siemens Process Automation End-user Summit- 2011

Siemens Process Automation End-user Summit- 2011 Siemens Process Automation End-user Summit- 2011 Experience. Technology. Community SIMATIC PCS 7 Process Safety Jean-Luc Gummersbach I IA AS PA PRM1 Global market trend in Process Safety Process Safety

More information

Failure Modes, Effects and Diagnostic Analysis

Failure Modes, Effects and Diagnostic Analysis Failure Modes, Effects and Diagnostic Analysis Project: Yokogawa YTA610 Temperature Transmitter Company: Yokogawa Electric Corporation Musashino-shi, Tokyo Japan Contract Number: Q16/12-111 Report No.:

More information

Proof Testing Level Instruments

Proof Testing Level Instruments Proof Testing Level Instruments Partial proof testing of level instruments can save millions of dollars while maintaining required safety ratings By Bill Sholette, Level Product Business Manager Endress+Hauser

More information

The agri-motive safety performance integrity level Or how do you call it?

The agri-motive safety performance integrity level Or how do you call it? TÜV Rheinland InterTraffic GmbH Safety in Transportation 4 The agri-motive safety performance integrity level Or how do you call it? Dipl.-Ing. Sebastian Gräfling, TÜV Rheinland InterTraffic GmbH Contents

More information

Functional Safety: the Next Edition of IEC 61511

Functional Safety: the Next Edition of IEC 61511 HazAus2015/1507 Functional Safety: the Next Edition of IEC 61511 Mirek Generowicz Engineering Manager I&E Systems Pty Ltd Level 2, 445 Hay Street Perth WA 6000 Abstract The functional safety standard IEC

More information

Process Safety Workshop. Avoiding Major Accident Hazards the Key to Profitable Operations

Process Safety Workshop. Avoiding Major Accident Hazards the Key to Profitable Operations CC & technical support services www.silsupport.com Process Safety Workshop Avoiding Major Accident Hazards the Key to Profitable Operations A two (2) day workshop with many practical methods, case studies

More information

Mobrey Magnetic Level Switches

Mobrey Magnetic Level Switches Horizontal Float Switch Mobrey Magnetic Level Switches www.mobrey.com Horizontal Float Switch Contents Introduction Scope and Purpose of the Safety Manual...page 3 Skill Level Requirement...page 3 Terms,

More information

excellence in Dependable Automation

excellence in Dependable Automation excellence in Dependable Automation We help our clients improve the safety, security, and availability of their automation systems. contents About Us 4 What We Do 6 Certification Program 8 Services Available

More information

Functional Safety Solutions

Functional Safety Solutions Demand Moore Reliability IEC 61508/61511 Solutions Line Card Functional Safety Solutions for Your Safety Instrumented System www.miinet.com Functional Safety Products Designed and Built for your Process

More information

2013 Honeywell Users EMEA Nice. Johan School. Concepts and Implementation of Process Risk Management using Safety Manager

2013 Honeywell Users EMEA Nice. Johan School. Concepts and Implementation of Process Risk Management using Safety Manager 2013 Honeywell Users EMEA Nice Johan School Concepts and Implementation of Process Risk Management using Safety Manager 1 Agenda Introduction What about safety Safety Instrumented Systems Industry Standards

More information

INTERNATIONAL STANDARD

INTERNATIONAL STANDARD INTERNATIONAL STANDARD IEC 61511-2 First edition 2003-07 Functional safety Safety instrumented systems for the process industry sector Part 2: Guidelines for the application of IEC 61511-1 Reference number

More information

An Approach towards Safety Using Safety Instrumented Systems: A Case Study

An Approach towards Safety Using Safety Instrumented Systems: A Case Study International Journal of Emerging Engineering Research and Technology Volume 2, Issue 4, July 2014, PP 374-382 ISSN 2349-4395 (Print) & ISSN 2349-4409 (Online) An Approach towards Safety Using Safety Instrumented

More information

PRIMATECH WHITE PAPER CHANGES IN THE SECOND EDITION OF IEC 61511: A PROCESS SAFETY PERSPECTIVE

PRIMATECH WHITE PAPER CHANGES IN THE SECOND EDITION OF IEC 61511: A PROCESS SAFETY PERSPECTIVE PRIMATECH WHITE PAPER CHANGES IN THE SECOND EDITION OF IEC 61511: A PROCESS SAFETY PERSPECTIVE Summary From the perspective of process safety, the most notable change is the addition of requirements for

More information

New Developments in the IEC61511 Edition 2

New Developments in the IEC61511 Edition 2 New Developments in the IEC61511 Edition 2 Presented by Dr Issam Mukhtar PhD(Eng.) TÜV FS Expert (IDNo.:117/06) 6 th May 2013 2010 Invensys. All Rights Reserved. The names, logos, and taglines identifying

More information

SAFETY MANUAL. FL4000H and FL4000 Multi-Spectral Infrared Flame Detectors

SAFETY MANUAL. FL4000H and FL4000 Multi-Spectral Infrared Flame Detectors SAFETY MANUAL FL4000H and FL4000 Multi-Spectral Infrared Flame Detectors The information and technical data disclosed in this document may be used and disseminated only for the purposes and to the extent

More information

The SIL Concept in the process industry International standards IEC 61508/ 61511

The SIL Concept in the process industry International standards IEC 61508/ 61511 The SIL Concept in the process industry International standards IEC 6508/ 65 Chris M. Pietersen MSc Safety Solutions Consultants BV (SSC) Director pietersen@safety-sc.com th Urea Symposium 9- May 008,

More information