12.07.2015 Views

IEC 61508 Functional Safety Assessment Rosemount Inc. - Exida

IEC 61508 Functional Safety Assessment Rosemount Inc. - Exida

IEC 61508 Functional Safety Assessment Rosemount Inc. - Exida

SHOW MORE
SHOW LESS
  • No tags were found...

You also want an ePaper? Increase the reach of your titles

YUMPU automatically turns print PDFs into web optimized ePapers that Google loves.

1 Purpose and ScopeGenerally three options exist when doing an assessment of sensors, interfaces and/or finalelements.Option 1: Hardware assessment according to <strong>IEC</strong> <strong>61508</strong>Option 1 is a hardware assessment by exida according to the relevant functional safety standard(s)like <strong>IEC</strong> <strong>61508</strong> or EN 954-1. The hardware assessment consists of a FMEDA to determine the faultbehavior and the failure rates of the device, which are then used to calculate the Safe FailureFraction (SFF) and the average Probability of Failure on Demand (PFD AVG ).This option shall provide the safety instrumentation engineer with the required failure data as per<strong>IEC</strong> <strong>61508</strong> / <strong>IEC</strong> 61511 and does not include an assessment of the development process.Option 2: Hardware assessment with proven-in-use consideration according to <strong>IEC</strong> <strong>61508</strong> /<strong>IEC</strong> 61511Option 2 is an assessment by exida according to the relevant functional safety standard(s) like <strong>IEC</strong><strong>61508</strong> or EN 954-1. The hardware assessment consists of a FMEDA to determine the faultbehavior and the failure rates of the device, which are then used to calculate the Safe FailureFraction (SFF) and the average Probability of Failure on Demand (PFD AVG ). In addition, this optionincludes an assessment of the proven-in-use demonstration of the device and its software includingthe modification process.This option for pre-existing (programmable electronic) devices shall provide the safetyinstrumentation engineer with the required failure data as per <strong>IEC</strong> <strong>61508</strong> / <strong>IEC</strong> 61511 and justify thereduced fault tolerance requirements of <strong>IEC</strong> 61511 for sensors, final elements and other PE fielddevices.Option 3: Full assessment according to <strong>IEC</strong> <strong>61508</strong>Option 3 is a full assessment by exida according to the relevant application standard(s) like <strong>IEC</strong>61511 or EN 298 and the necessary functional safety standard(s) like <strong>IEC</strong> <strong>61508</strong> or EN 954-1. Thefull assessment extends option 1 by an assessment of all fault avoidance and fault controlmeasures during hardware and software development.This assessment shall be done according to option 3.This document shall describe the results of the <strong>IEC</strong> <strong>61508</strong> functional safety assessment of theModel 3051 C/T/L <strong>Safety</strong> Pressure Transmitter with option code QT, which will be referred to as the3051C/T/L Pressure Transmitter throughout this document.© exida Certification rosemount 11-07-062 r007 v1 r1 iec <strong>61508</strong> assessment.docx, 3/8/2012Michael Medoff Page 4 of 21

Hooray! Your file is uploaded and ready to be published.

Saved successfully!

Ooh no, something went wrong!