SlideShare a Scribd company logo
Requirements of ISO 26262

The issue of safety has always been one of the most important topics for the automotive
industry. The announcement made by Toyota last year for the recall of their defective vehicles
only serves to highlight how costly defects can be not only for the company’s balance sheet but
also costly in terms of eroded consumers’ confidence. New technologies introduced to enhance
vehicle control and driver assistance have now become standard accessories rather than
optional. In addition, a recent regulation approved by the European Parliament laid out the
requirements for type approvals of motor vehicles on their safety aspects calls for the
introduction of these new safety features as a prerequisite. As such, the need for an
internationally recognized standard for safety critical systems becomes more crucial to measure
how safe a system is.

Unlike other industries, detailed discussions about functional safety in the automotive industry
only began a few years ago. One of the reasons was that there was a prevailing view that the
risks posed as a result of mechanical failures are still within the control of the driver. A driver
merely had to stop the motor vehicle to bring the motor vehicle to a safe state. But we now
know that this is not always possible when there is a failure in the drive-by-wire throttle system,
as illustrated in the cases of gas pedal failures in Toyota cars in 2010.

Although there were existing standards on functional safety like the IEC 61508, this standard is
not dedicated to the auto industry. The application of a non dedicated functional safety standard
within different firms will not result in harmonization of functional safety objectives as different
interpretations of the standard will ensue.

SILs & ASILs

The ISO 26262 was developed to overcome this problem and to reach a harmonized standard
for the auto industry. This standard is provided for the requirements, processes and methods to
lessen the effects of systematic failures and unsystematic hardware failures. The ISO 26262 is
based on the IEC 61508 which is a generic yardstick on the functional safety for
Electrical/Electronic (E/E) systems created in 2002 by CENELEC. The ISO 26262 borrowed on
the IEC 61508 concept of “Safety Integrity Level” (SIL) and redefined it as “Automotive Safety
Integrity Levels” (ASIL).

The structure of the ISO 26262 comes in 10 parts as listed below:

   •    ISO   26262:     Part   one: Vocabulary
   •    ISO   26262:     Part   two: Management of functional safety
   •    ISO   26262:     Part   three: Concept phase
   •    ISO   26262:     Part   four: Product development: system level
   •    ISO   26262:     Part   five: Product development: hardware level
   •    ISO   26262:     Part   six: Product development: software level
   •    ISO   26262:     Part   seven: Production and operation
   •    ISO   26262:     Part   eight: Supporting processes
   •    ISO   26262:     Part   nine: ASIL-oriented and safety-oriented analyses
   •    ISO   26262:     Part   ten: Guideline on ISO 26262




-----------------------------------------------------------------------------------------------------------------------------------
                                  IQPC GmbH | Friedrichstr. 94 | D-10117 Berlin, Germany
                 t: +49 (0) 30 2091 3330 | f: +49 (0) 30 2091 3263 | e: eq@iqpc.de | w: www.iqpc.de
               Visit IQPC for a portfolio of topic-related events, congresses, seminars and conferences: www.iqpc.de
Overview of ISO 26262 structure



The ISO 26262 is specifically formulated for safety systems that have one or more
electrical/electronic systems which are installed in series production cars with a maximum gross
weight of 3500kg.

As the standard is designed for series production cars, Part 7 of the standard includes something
that is not found in the IEC 61508 standard which is the requirements for the production and
operation processes. The production aspect is seen in the framework of the automotive safety
lifecycle that include management stage, the development stage, the production stage, the
operation stage, the service stage and the decommissioning stage.

Approach of ISO 26262

As mentioned earlier, ISO 26262 standard uses a different approach for evaluating functional
safety in the sense it adopt ASILs instead of the SILS of IEC 61508. SILs have three levels while
ASILs have four levels from the lowest (A) to the highest (D).

The ASIL is obtained by conducting a hazard and risk analysis. From the start of a development,
all intended functions are evaluated and compared to possible hazards. The main question asked
is “What would result if malfunctions occur within the context of different operational
circumstances?”




-----------------------------------------------------------------------------------------------------------------------------------
                                  IQPC GmbH | Friedrichstr. 94 | D-10117 Berlin, Germany
                 t: +49 (0) 30 2091 3330 | f: +49 (0) 30 2091 3263 | e: eq@iqpc.de | w: www.iqpc.de
               Visit IQPC for a portfolio of topic-related events, congresses, seminars and conferences: www.iqpc.de
The risk assessment is based on a combination of several factors like the probability of
exposure, the controllability of the situation by the driver and the measurement of the severity
of injury of the person that is involved in the hazard.

Implementing the ASIL
Once all these factors are taken into consideration, an ASIL will be the result and this ASIL will
be assigned a consequent safety requirement that is generated to avoid the risk. There are five
stages in the implementation of ASIL. They are:

   1. Defining the safety goals
      These are the safety requirements of the function, assigned to each hazard that the risk
      assessment indentified, that depict the safety goals to reach.

   2. Safe state implementation
      This is the stage where the function is put into operation in order that the level of risk is
      reduced to an acceptable level so that the safety goals are not violated.

   3. Risks Mitigation
      Mitigation of risks resulted for random hardware failure to an acceptable level with the
      application of specific measures.


   4. Systematic Failures Prevention
      Prevention of systematic failures through the definition of a set of requirements.

   5. ASIL Decomposition
      This process allows the distribution of an ASIL that is associated to a function to the
      various elements that assist in the performance of the function dealing with the same
      safety goals.

The Development Models

The development model include in Part three to Part six of the ISO 26262 standard
encompasses the development process from:

   •    Part   three – concept phrase
   •    Part   four- Product development system phrase
   •    Part   five – Product development (hardware phrase)
   •    Part   six – Product development (software phrase)

For the product development system phrase, the ISO 26262 uses a V model. Likewise, the
hardware development phrase and software development phrase also uses a V model.

Below is the list of recommended phases for the product development (software) stage:

   •    Initiation   of software development
   •    Software     safety requirements specification
   •    Software     architectural and design
   •    Software     unit implementation

-----------------------------------------------------------------------------------------------------------------------------------
                                  IQPC GmbH | Friedrichstr. 94 | D-10117 Berlin, Germany
                 t: +49 (0) 30 2091 3330 | f: +49 (0) 30 2091 3263 | e: eq@iqpc.de | w: www.iqpc.de
               Visit IQPC for a portfolio of topic-related events, congresses, seminars and conferences: www.iqpc.de
•    Software unit test
   •    Software integration and test
   •    Software safety acceptance test

There is a standard framework of objectives, inputs, recommendations, requirements and work
products that generally become the inputs for the next phase. It is these recommendations and
requirements that form the foundation of the standard.

For example, under Part 6, the requirements to methods for informally verifying the architecture
of the software design are as listed in the table below:




Requirements Traceability

Prior to the development of the software stage, the ISO 26262 standard requires the planning of
activities, methods and measures utilized in the different sub-phrases of software development,
is always with reference to the system’s ASIL under development. One vital aspect to consider
upfront is “Requirements Traceability”. This refers to the capability to track the life of a
particular requirement in both directions, forward and backward.

The objective is to follow a requirement to its implementation and its testing phrase. This is
helpful in seeing whether a requirement has been fulfilled and tested for. Requirements
traceability also helps in ensuring the completeness of the requirements through the
identification of requirements that are not integrated into the model and by indentifying parts of
the model that cannot be linked to any particular requirement. Being able to indentify the
discrete parts of the model, it will help in preventing the modelling and implementation of
behaviours which are not intended. In addition, it will assist in the management of changes in
requirements.


-----------------------------------------------------------------------------------------------------------------------------------
                                  IQPC GmbH | Friedrichstr. 94 | D-10117 Berlin, Germany
                 t: +49 (0) 30 2091 3330 | f: +49 (0) 30 2091 3263 | e: eq@iqpc.de | w: www.iqpc.de
               Visit IQPC for a portfolio of topic-related events, congresses, seminars and conferences: www.iqpc.de
Conclusion

Most of the requirements of the ISO 26262 standard in dealing with the development and
auxiliary processes are already incorporated into existing internal quality standard. That is not to
say that the automotive industry faces no challenges in the adoption of the ISO 26262.
Requirements have to be applied efficiently with consideration to the internal context and
limitation. Most of the difficulties in implementing the ISO 26262 requirements occur during the
later part of the development phrases. This is mainly due to the integration of areas into a
setting which has yet to develop into the same standard. Because the ISO 26262 standard is a
process standard, full integration in current E/E processes will require some time. One should
bear in mind that the ISO 26262 is just a standard guideline. It is equally important to
understand that good engineering sense is required in helping to improve the processes used in
relation to the existing E/E processes. Using the ISO 26262 standard with the correct attitude
will only benefit the automotive industry in terms of functional safety in the long run.



     Want to learn more about E/E commercial vehicles, about current technologies
                                 and developments?
              Visit our Download Center for more articles, whitepapers and interviews:
                                  http://bit.ly/eecommercials-articles



About IQPC:

IQPC provides tailored conferences, large events, seminars and internal training programmes for
managers around the world. Topics include current information on industry trends, technical
developments and regulatory rules and guidelines. IQPC's conferences are market leading events, highly
regarded for their opportunity to exchange knowledge and ideas for professionals from various industries.

IQPC has offices in major cities across six continents including: Berlin, Dubai, London, New York, Sao
Paulo, Singapore, Johannesburg, Sydney and Toronto. IQPC leverages a global research base of best
practices to produce an unrivaled portfolio of problem-solving conferences. Each year IQPC offers
approximately 2,000 worldwide conferences, seminars, and related learning programs.




-----------------------------------------------------------------------------------------------------------------------------------
                                  IQPC GmbH | Friedrichstr. 94 | D-10117 Berlin, Germany
                 t: +49 (0) 30 2091 3330 | f: +49 (0) 30 2091 3263 | e: eq@iqpc.de | w: www.iqpc.de
               Visit IQPC for a portfolio of topic-related events, congresses, seminars and conferences: www.iqpc.de

More Related Content

PPTX
ISO/PAS 21448 (SOTIF) in the Development of ADAS and Autonomous Vehicles
PPTX
ISO 26262 Unit Testing | Functional Safety in Automotive
PPTX
Automotive Functional Safety ISO 26262 Training Bootcamp : Tonex Training
PDF
ISO 26262 Approval of Automotive Software Components
PPTX
Automotive functional safety iso 26262 training bootcamp 2019
PDF
Iso26262 component reuse_webinar
PPTX
HARA ISO 26262: What is HARA and Why is it Required?
PPTX
How to Apply Functional Safety to Autosar ECU's
ISO/PAS 21448 (SOTIF) in the Development of ADAS and Autonomous Vehicles
ISO 26262 Unit Testing | Functional Safety in Automotive
Automotive Functional Safety ISO 26262 Training Bootcamp : Tonex Training
ISO 26262 Approval of Automotive Software Components
Automotive functional safety iso 26262 training bootcamp 2019
Iso26262 component reuse_webinar
HARA ISO 26262: What is HARA and Why is it Required?
How to Apply Functional Safety to Autosar ECU's

What's hot (20)

PPTX
ISO 26262 2nd Edition
PDF
MISRA Safety Case Guidelines -
PDF
An integrative solution towards SOTIF and AV safety
PDF
ISO26262-6 Software development process (Ver 3.0)
PDF
An approach towards sotif with ansys medini analyze
PPTX
19 Jun 2018 - Hazard Analysis and Functional Safety Compliance
PDF
MISRA C in an ISO 26262 context
PPTX
SEooC ISO 26262 | What is Safety Element Out of Context in Automotive Functio...
PDF
Webinar presentation on AUTOSAR Multicore Systems
PPTX
TARA- Automotive Cybersecurity.pptx
PPTX
Frequently Asked Question (FAQ's) on ISO 26262 Functional Safety
PPTX
Automotive Functional Safety ISO 26262 Training Bootcamp - Tonex Training
PDF
Why safety plan is critical in development of iso 26262 complaint
PDF
NQA - ISO 27001 Implementation Guide
PDF
Secure Systems Security and ISA99- IEC62443
PPT
Software Verification & Validation
PDF
Automotive SPICE
PPTX
Introduction to ASPICE
PDF
Achieve iso 26262 certification
PPT
Misra c rules
ISO 26262 2nd Edition
MISRA Safety Case Guidelines -
An integrative solution towards SOTIF and AV safety
ISO26262-6 Software development process (Ver 3.0)
An approach towards sotif with ansys medini analyze
19 Jun 2018 - Hazard Analysis and Functional Safety Compliance
MISRA C in an ISO 26262 context
SEooC ISO 26262 | What is Safety Element Out of Context in Automotive Functio...
Webinar presentation on AUTOSAR Multicore Systems
TARA- Automotive Cybersecurity.pptx
Frequently Asked Question (FAQ's) on ISO 26262 Functional Safety
Automotive Functional Safety ISO 26262 Training Bootcamp - Tonex Training
Why safety plan is critical in development of iso 26262 complaint
NQA - ISO 27001 Implementation Guide
Secure Systems Security and ISA99- IEC62443
Software Verification & Validation
Automotive SPICE
Introduction to ASPICE
Achieve iso 26262 certification
Misra c rules
Ad

Viewers also liked (17)

PPTX
ISO 26262 introduction
PDF
Qualification of Eclipse-based Tools according to ISO 26262
PPT
Introduction to Functional Safety and SIL Certification
PDF
GTC's High Performance Tray Tower Solutions
PPT
Introduction to multicomponent distillation
PDF
Fouling Resistances for Cooling Water
PDF
Evaluating sieve tray flooding in a distillation
PDF
Optimizing Fire3 and Gas System Design Using the ISA Technical Report ISA TR8...
PDF
17427 chemical process technology
PDF
9th standard annual question paper 2015 16
PDF
Scheme g second semester (ae,me,pg,pt,fe,mh,mi,ps)
PPTX
Columns and their hydraulic limits
PPT
Performance based gas detection for hydrocarbon storage
PPTX
Jamil R. Mazzawi, Founder and CEO, Optima Design Automation
PDF
Dorner works do-254_information
PDF
ISApaperIEC61508_AMN_Final
PDF
DMAP's presentation
ISO 26262 introduction
Qualification of Eclipse-based Tools according to ISO 26262
Introduction to Functional Safety and SIL Certification
GTC's High Performance Tray Tower Solutions
Introduction to multicomponent distillation
Fouling Resistances for Cooling Water
Evaluating sieve tray flooding in a distillation
Optimizing Fire3 and Gas System Design Using the ISA Technical Report ISA TR8...
17427 chemical process technology
9th standard annual question paper 2015 16
Scheme g second semester (ae,me,pg,pt,fe,mh,mi,ps)
Columns and their hydraulic limits
Performance based gas detection for hydrocarbon storage
Jamil R. Mazzawi, Founder and CEO, Optima Design Automation
Dorner works do-254_information
ISApaperIEC61508_AMN_Final
DMAP's presentation
Ad

Similar to Requirements of ISO 26262 (20)

PDF
Requirements of ISO 26262
PDF
Afry software safety ISO26262 (Embedded @ Gothenburg Meetup)
PDF
IRJET- Use of Artificial Intelligence in Software Development Life Cycle Requ...
PDF
Comparitive Analysis of Secure SDLC Models
PPTX
ISO 26262: Automotive Functional Safety
PDF
AutoSpice Agile Hand in Hand
PDF
Towards 0-bug software in the automotive industry
PDF
2014_NXP_Functional Safety Compliance Throughout the Vehicle with SafeAssure ...
PDF
Application of the Common Criteria to Building Trustworthy Automotive SDLC
PPTX
P4_Safety & Security_25082022.pptxP4_Safety & Security_25082022.pptx
PDF
Assurance-Level Driven Method for Integrating Security into SDLC Process
PPTX
FuSA_upload.pptx
PDF
How to Achieve Functional Safety in Safety-Critical Embedded Systems
PDF
How to Achieve Functional Safety in Safety-Citical Embedded Systems
PDF
ISO 13485: What's Next?
PPTX
Ch 5 -Functionl safety.pptx part of elective course
PPTX
Introduction to software testing Presentation
PPTX
Introduction of Secure Software Development Lifecycle
PPTX
Agile for Software as a Medical Device
PPTX
ISO-26262-Webinar.pptx
Requirements of ISO 26262
Afry software safety ISO26262 (Embedded @ Gothenburg Meetup)
IRJET- Use of Artificial Intelligence in Software Development Life Cycle Requ...
Comparitive Analysis of Secure SDLC Models
ISO 26262: Automotive Functional Safety
AutoSpice Agile Hand in Hand
Towards 0-bug software in the automotive industry
2014_NXP_Functional Safety Compliance Throughout the Vehicle with SafeAssure ...
Application of the Common Criteria to Building Trustworthy Automotive SDLC
P4_Safety & Security_25082022.pptxP4_Safety & Security_25082022.pptx
Assurance-Level Driven Method for Integrating Security into SDLC Process
FuSA_upload.pptx
How to Achieve Functional Safety in Safety-Critical Embedded Systems
How to Achieve Functional Safety in Safety-Citical Embedded Systems
ISO 13485: What's Next?
Ch 5 -Functionl safety.pptx part of elective course
Introduction to software testing Presentation
Introduction of Secure Software Development Lifecycle
Agile for Software as a Medical Device
ISO-26262-Webinar.pptx

More from Torben Haagh (20)

PDF
Siemens Gamesaa, RCAM Tecnologies, Goldwind, Nabrawind, ESTEYO confirmed spea...
PDF
ISO26262 Conference 2019
PDF
SOTIF Conference 2019 - APTIV, Toyota, Delphi Tech, Texas Instruments
PDF
Daimler, Audi, and Volvo, at Advanced E-Motor - Advanced E-Motor Technology C...
PDF
Volkswagen, Ford, and PSA Group - Intelligent Automotive Lighting Agenda 2019
PDF
14th International Conference Innovative Seating 2019
PDF
Agenda - Airport Operational Excellence and Automation 2019, Frankfurt Am Ma...
PDF
Agenda: Interior Cabin Innovation for Automated Vehicles 2019
PDF
Cognitive Automation 2019, Berlin, Germany
PDF
Präsentation zu Roll-Out Messsysteme Infrastruktur bei EnBW
PDF
Is there potential for robotics in finance and accounting?
PDF
Mythos und Realität des ERF
PDF
Expert interview with Nexans - the 66kV cabling technology
PDF
ENERCON - Energy System Change: Era of Feed-in Tariffs is coming to an end
PDF
Innovative Ansätze im Mahn- und Inkassoprozess - Kundenorientiertes Mahnen in...
PDF
Letzte Chance auf Ihr Konferenzticket
PDF
Effizienter mit Kooperationen bei Integra-Partnern
PDF
Digitalisierte bAV
PDF
Die Bank von morgen
PDF
"Die Zeit-Zielscheibe" von Zach Davis
Siemens Gamesaa, RCAM Tecnologies, Goldwind, Nabrawind, ESTEYO confirmed spea...
ISO26262 Conference 2019
SOTIF Conference 2019 - APTIV, Toyota, Delphi Tech, Texas Instruments
Daimler, Audi, and Volvo, at Advanced E-Motor - Advanced E-Motor Technology C...
Volkswagen, Ford, and PSA Group - Intelligent Automotive Lighting Agenda 2019
14th International Conference Innovative Seating 2019
Agenda - Airport Operational Excellence and Automation 2019, Frankfurt Am Ma...
Agenda: Interior Cabin Innovation for Automated Vehicles 2019
Cognitive Automation 2019, Berlin, Germany
Präsentation zu Roll-Out Messsysteme Infrastruktur bei EnBW
Is there potential for robotics in finance and accounting?
Mythos und Realität des ERF
Expert interview with Nexans - the 66kV cabling technology
ENERCON - Energy System Change: Era of Feed-in Tariffs is coming to an end
Innovative Ansätze im Mahn- und Inkassoprozess - Kundenorientiertes Mahnen in...
Letzte Chance auf Ihr Konferenzticket
Effizienter mit Kooperationen bei Integra-Partnern
Digitalisierte bAV
Die Bank von morgen
"Die Zeit-Zielscheibe" von Zach Davis

Recently uploaded (20)

PDF
computer system to create, modify, analyse or optimize an engineering design.
PPTX
Paediatric History & Clinical Examination.pptx
PPTX
vsdfhlahsadfjkhasihdflakjsdfhlajdhlfkjahfdljkash
PDF
Volvo EC290C NL EC290CNL excavator weight.pdf
PPTX
IMMUNITY TYPES PPT.pptx very good , sufficient
PPTX
Materi Kuliah Umum Prof. Hsien Tsai Wu.pptx
PDF
How much does a e145 excavator weight.pdf
PPTX
1. introduction-to-bvcjdhjdfffffffffffffffffffffffffffffffffffmicroprocessors...
PDF
3-REasdfghjkl;[poiunvnvncncn-Process.pdf
PDF
Physics class 12thstep down transformer project.pdf
PDF
How much horsepower does a Volvo EC210Cl have.pdf
PDF
Journal Meraj.pdfuuuuuuuuuuuuuuuuuuuuuuuuuuuuuuu
PPTX
Intro to ISO 9001 2015.pptx for awareness
PDF
Delivers.ai: 2020–2026 Autonomous Journey
PDF
120725175041.pdfhjjjjjjjjjjjjjjjjjjjjjjh
PPTX
Lecture 3b C Library xnxjxjxjxkx_ ESP32.pptx
PDF
Caterpillar CAT 311B EXCAVATOR (8GR00001-UP) Operation and Maintenance Manual...
PPTX
Robot_ppt_YRG[1] [Read-Only]bestppt.pptx
PDF
Diagnose and Repair Transmission Sound Issues in Volkswagen Vehicles
PDF
Volvo ecr88 excavator specs Manual Download
computer system to create, modify, analyse or optimize an engineering design.
Paediatric History & Clinical Examination.pptx
vsdfhlahsadfjkhasihdflakjsdfhlajdhlfkjahfdljkash
Volvo EC290C NL EC290CNL excavator weight.pdf
IMMUNITY TYPES PPT.pptx very good , sufficient
Materi Kuliah Umum Prof. Hsien Tsai Wu.pptx
How much does a e145 excavator weight.pdf
1. introduction-to-bvcjdhjdfffffffffffffffffffffffffffffffffffmicroprocessors...
3-REasdfghjkl;[poiunvnvncncn-Process.pdf
Physics class 12thstep down transformer project.pdf
How much horsepower does a Volvo EC210Cl have.pdf
Journal Meraj.pdfuuuuuuuuuuuuuuuuuuuuuuuuuuuuuuu
Intro to ISO 9001 2015.pptx for awareness
Delivers.ai: 2020–2026 Autonomous Journey
120725175041.pdfhjjjjjjjjjjjjjjjjjjjjjjh
Lecture 3b C Library xnxjxjxjxkx_ ESP32.pptx
Caterpillar CAT 311B EXCAVATOR (8GR00001-UP) Operation and Maintenance Manual...
Robot_ppt_YRG[1] [Read-Only]bestppt.pptx
Diagnose and Repair Transmission Sound Issues in Volkswagen Vehicles
Volvo ecr88 excavator specs Manual Download

Requirements of ISO 26262

  • 1. Requirements of ISO 26262 The issue of safety has always been one of the most important topics for the automotive industry. The announcement made by Toyota last year for the recall of their defective vehicles only serves to highlight how costly defects can be not only for the company’s balance sheet but also costly in terms of eroded consumers’ confidence. New technologies introduced to enhance vehicle control and driver assistance have now become standard accessories rather than optional. In addition, a recent regulation approved by the European Parliament laid out the requirements for type approvals of motor vehicles on their safety aspects calls for the introduction of these new safety features as a prerequisite. As such, the need for an internationally recognized standard for safety critical systems becomes more crucial to measure how safe a system is. Unlike other industries, detailed discussions about functional safety in the automotive industry only began a few years ago. One of the reasons was that there was a prevailing view that the risks posed as a result of mechanical failures are still within the control of the driver. A driver merely had to stop the motor vehicle to bring the motor vehicle to a safe state. But we now know that this is not always possible when there is a failure in the drive-by-wire throttle system, as illustrated in the cases of gas pedal failures in Toyota cars in 2010. Although there were existing standards on functional safety like the IEC 61508, this standard is not dedicated to the auto industry. The application of a non dedicated functional safety standard within different firms will not result in harmonization of functional safety objectives as different interpretations of the standard will ensue. SILs & ASILs The ISO 26262 was developed to overcome this problem and to reach a harmonized standard for the auto industry. This standard is provided for the requirements, processes and methods to lessen the effects of systematic failures and unsystematic hardware failures. The ISO 26262 is based on the IEC 61508 which is a generic yardstick on the functional safety for Electrical/Electronic (E/E) systems created in 2002 by CENELEC. The ISO 26262 borrowed on the IEC 61508 concept of “Safety Integrity Level” (SIL) and redefined it as “Automotive Safety Integrity Levels” (ASIL). The structure of the ISO 26262 comes in 10 parts as listed below: • ISO 26262: Part one: Vocabulary • ISO 26262: Part two: Management of functional safety • ISO 26262: Part three: Concept phase • ISO 26262: Part four: Product development: system level • ISO 26262: Part five: Product development: hardware level • ISO 26262: Part six: Product development: software level • ISO 26262: Part seven: Production and operation • ISO 26262: Part eight: Supporting processes • ISO 26262: Part nine: ASIL-oriented and safety-oriented analyses • ISO 26262: Part ten: Guideline on ISO 26262 ----------------------------------------------------------------------------------------------------------------------------------- IQPC GmbH | Friedrichstr. 94 | D-10117 Berlin, Germany t: +49 (0) 30 2091 3330 | f: +49 (0) 30 2091 3263 | e: eq@iqpc.de | w: www.iqpc.de Visit IQPC for a portfolio of topic-related events, congresses, seminars and conferences: www.iqpc.de
  • 2. Overview of ISO 26262 structure The ISO 26262 is specifically formulated for safety systems that have one or more electrical/electronic systems which are installed in series production cars with a maximum gross weight of 3500kg. As the standard is designed for series production cars, Part 7 of the standard includes something that is not found in the IEC 61508 standard which is the requirements for the production and operation processes. The production aspect is seen in the framework of the automotive safety lifecycle that include management stage, the development stage, the production stage, the operation stage, the service stage and the decommissioning stage. Approach of ISO 26262 As mentioned earlier, ISO 26262 standard uses a different approach for evaluating functional safety in the sense it adopt ASILs instead of the SILS of IEC 61508. SILs have three levels while ASILs have four levels from the lowest (A) to the highest (D). The ASIL is obtained by conducting a hazard and risk analysis. From the start of a development, all intended functions are evaluated and compared to possible hazards. The main question asked is “What would result if malfunctions occur within the context of different operational circumstances?” ----------------------------------------------------------------------------------------------------------------------------------- IQPC GmbH | Friedrichstr. 94 | D-10117 Berlin, Germany t: +49 (0) 30 2091 3330 | f: +49 (0) 30 2091 3263 | e: eq@iqpc.de | w: www.iqpc.de Visit IQPC for a portfolio of topic-related events, congresses, seminars and conferences: www.iqpc.de
  • 3. The risk assessment is based on a combination of several factors like the probability of exposure, the controllability of the situation by the driver and the measurement of the severity of injury of the person that is involved in the hazard. Implementing the ASIL Once all these factors are taken into consideration, an ASIL will be the result and this ASIL will be assigned a consequent safety requirement that is generated to avoid the risk. There are five stages in the implementation of ASIL. They are: 1. Defining the safety goals These are the safety requirements of the function, assigned to each hazard that the risk assessment indentified, that depict the safety goals to reach. 2. Safe state implementation This is the stage where the function is put into operation in order that the level of risk is reduced to an acceptable level so that the safety goals are not violated. 3. Risks Mitigation Mitigation of risks resulted for random hardware failure to an acceptable level with the application of specific measures. 4. Systematic Failures Prevention Prevention of systematic failures through the definition of a set of requirements. 5. ASIL Decomposition This process allows the distribution of an ASIL that is associated to a function to the various elements that assist in the performance of the function dealing with the same safety goals. The Development Models The development model include in Part three to Part six of the ISO 26262 standard encompasses the development process from: • Part three – concept phrase • Part four- Product development system phrase • Part five – Product development (hardware phrase) • Part six – Product development (software phrase) For the product development system phrase, the ISO 26262 uses a V model. Likewise, the hardware development phrase and software development phrase also uses a V model. Below is the list of recommended phases for the product development (software) stage: • Initiation of software development • Software safety requirements specification • Software architectural and design • Software unit implementation ----------------------------------------------------------------------------------------------------------------------------------- IQPC GmbH | Friedrichstr. 94 | D-10117 Berlin, Germany t: +49 (0) 30 2091 3330 | f: +49 (0) 30 2091 3263 | e: eq@iqpc.de | w: www.iqpc.de Visit IQPC for a portfolio of topic-related events, congresses, seminars and conferences: www.iqpc.de
  • 4. Software unit test • Software integration and test • Software safety acceptance test There is a standard framework of objectives, inputs, recommendations, requirements and work products that generally become the inputs for the next phase. It is these recommendations and requirements that form the foundation of the standard. For example, under Part 6, the requirements to methods for informally verifying the architecture of the software design are as listed in the table below: Requirements Traceability Prior to the development of the software stage, the ISO 26262 standard requires the planning of activities, methods and measures utilized in the different sub-phrases of software development, is always with reference to the system’s ASIL under development. One vital aspect to consider upfront is “Requirements Traceability”. This refers to the capability to track the life of a particular requirement in both directions, forward and backward. The objective is to follow a requirement to its implementation and its testing phrase. This is helpful in seeing whether a requirement has been fulfilled and tested for. Requirements traceability also helps in ensuring the completeness of the requirements through the identification of requirements that are not integrated into the model and by indentifying parts of the model that cannot be linked to any particular requirement. Being able to indentify the discrete parts of the model, it will help in preventing the modelling and implementation of behaviours which are not intended. In addition, it will assist in the management of changes in requirements. ----------------------------------------------------------------------------------------------------------------------------------- IQPC GmbH | Friedrichstr. 94 | D-10117 Berlin, Germany t: +49 (0) 30 2091 3330 | f: +49 (0) 30 2091 3263 | e: eq@iqpc.de | w: www.iqpc.de Visit IQPC for a portfolio of topic-related events, congresses, seminars and conferences: www.iqpc.de
  • 5. Conclusion Most of the requirements of the ISO 26262 standard in dealing with the development and auxiliary processes are already incorporated into existing internal quality standard. That is not to say that the automotive industry faces no challenges in the adoption of the ISO 26262. Requirements have to be applied efficiently with consideration to the internal context and limitation. Most of the difficulties in implementing the ISO 26262 requirements occur during the later part of the development phrases. This is mainly due to the integration of areas into a setting which has yet to develop into the same standard. Because the ISO 26262 standard is a process standard, full integration in current E/E processes will require some time. One should bear in mind that the ISO 26262 is just a standard guideline. It is equally important to understand that good engineering sense is required in helping to improve the processes used in relation to the existing E/E processes. Using the ISO 26262 standard with the correct attitude will only benefit the automotive industry in terms of functional safety in the long run. Want to learn more about E/E commercial vehicles, about current technologies and developments? Visit our Download Center for more articles, whitepapers and interviews: http://bit.ly/eecommercials-articles About IQPC: IQPC provides tailored conferences, large events, seminars and internal training programmes for managers around the world. Topics include current information on industry trends, technical developments and regulatory rules and guidelines. IQPC's conferences are market leading events, highly regarded for their opportunity to exchange knowledge and ideas for professionals from various industries. IQPC has offices in major cities across six continents including: Berlin, Dubai, London, New York, Sao Paulo, Singapore, Johannesburg, Sydney and Toronto. IQPC leverages a global research base of best practices to produce an unrivaled portfolio of problem-solving conferences. Each year IQPC offers approximately 2,000 worldwide conferences, seminars, and related learning programs. ----------------------------------------------------------------------------------------------------------------------------------- IQPC GmbH | Friedrichstr. 94 | D-10117 Berlin, Germany t: +49 (0) 30 2091 3330 | f: +49 (0) 30 2091 3263 | e: eq@iqpc.de | w: www.iqpc.de Visit IQPC for a portfolio of topic-related events, congresses, seminars and conferences: www.iqpc.de