1、BRITISH STANDARD BS EN ISO 14620-1:2002 Space systems Safety requirements Part 1: System safety The European Standard EN ISO 14620-1:2002 has the status of a British Standard ICS 49.140 BS EN ISO 14620-1:2002 This British Standard was published under the authority of the Standards Policy and Strateg
2、y Committee on 12 February 2003 BSI 12 February 2003 ISBN 0 580 41247 4 National foreword This British Standard is the official English language version of EN ISO 14620-1:2002. It is identical with ISO 14620-1:2002. The UK participation in its preparation was entrusted by Technical Committee ACE/68,
3、 Space systems and operations, to Subcommittee ACE/68/-/3, Operations and ground support, which has the responsibility to: A list of organizations represented on this subcommittee can be obtained on request to its secretary. Cross-references The British Standards which implement international or Eur
4、opean publications referred to in this document may be found in the BSI Catalogue under the section entitled “International Standards Correspondence Index”, or by using the “Search” facility of the BSI Electronic Catalogue or of British Standards Online. This publication does not purport to include
5、all the necessary provisions of a contract. Users are responsible for its correct application. Compliance with a British Standard does not of itself confer immunity from legal obligations. aid enquirers to understand the text; present to the responsible international/European committee any enquiries
6、 on the interpretation, or proposals for change, and keep the UK interests informed; monitor related international and European developments and promulgate them in the UK. Summary of pages This document comprises a front cover, an inside front cover, the EN ISO title page, pages 2 to 42, an inside b
7、ack cover and a back cover. The BSI copyright date displayed in this document indicates when the document was last issued. Amendments issued since publication Amd. No. Date CommentsEUROPEANSTANDARD NORMEEUROPENNE EUROPISCHENORM ENISO146201 December2002 ICS49.140 Englishversion SpacesystemsSafetyrequ
8、irementsPart1:Systemsafety (ISO146201:2002) SystmesspatiauxExigencesdescuritPartie1: Scuritsystme(ISO146201:2002) RaumfahrtsystemeSicherheitsanforderungenTeil1: Systemsicherheit(ISO146201:2002) ThisEuropeanStandardwasapprovedbyCENon24June2002. CENmembersareboundtocomplywiththeCEN/CENELECInternalRegu
9、lationswhichstipulatetheconditionsforgivingthisEurope an Standardthestatusofanationalstandardwithoutanyalteration.Uptodatelistsandbibliographicalreferencesconcernings uchnational standardsmaybeobtainedonapplicationtotheManagementCentreortoanyCENmember. ThisEuropeanStandardexistsinthreeofficialversio
10、ns(English,French,German).Aversioninanyotherlanguagemadebytra nslation undertheresponsibilityofaCENmemberintoitsownlanguageandnotifiedtotheManagementCentrehasthesamestatusasthe official versions. CENmembersarethenationalstandardsbodiesofAustria,Belgium,CzechRepublic,Denmark,Finland,France,Germany,Gr
11、eece, Iceland,Ireland,Italy,Luxembourg,Malta,Netherlands,Norway,Portugal,Spain,Sweden,SwitzerlandandUnitedKingdom. EUROPEANCOMMITTEEFORSTANDARDIZATION COMITEUROPENDENORMALISATION EUROPISCHESKOMITEEFRNORMUNG ManagementCentre:ruedeStassart,36B1050Brussels 2002CEN Allrightsofexploitationinanyformandbya
12、nymeansreserved worldwideforCENnationalMembers. Ref.No.ENISO146201:2002EENISO146201:2002(E) 2 Contents page Foreword5 Introduction .6 1 Scope 6 1.1 General6 1.2 Fieldofapplication 7 1.3 Tailoring7 2 Normativereferences 7 3 Terms,definitionsandabbreviatedterms 7 3.1 Termsanddefinitions. .7 3.2 Abbrev
13、iatedterms . 12 4 Systemsafetyprogramme. .12 4.1 Scope 12 4.2 Safetyorganization. .13 4.2.1 General13 4.2.2 Safetyrepresentative. 13 4.2.3 Reportinglines. 13 4.2.4 Safetyintegration .13 4.2.5 Coordinationwithothers 13 4.3 Safetyrepresentativeaccessandauthority 13 4.3.1 Access.13 4.3.2 Delegatedautho
14、ritytorejectstopwork. .13 4.3.3 Delegatedauthoritytointerruptoperations. .13 4.3.4 Conformance13 4.3.5 Approvalofreports. .14 4.3.6 Review.14 4.3.7 Representationonboards 14 4.4 Safetyriskmanagement 14 4.4.1 Risks14 4.4.2 Hazardassessment . 14 4.4.3 Preferredmeasures .14 4.5 Projectphasesandsafetyre
15、viewcycle 14 4.5.1 Progressmeetings. 14 4.5.2 Projectreviews. 15 4.5.3 Safetyprogrammereview . 17 4.5.4 Safetydatapackage . .17 4.6 Safetyprogrammeplan . 17 4.6.1 Implementation.17 4.6.2 Safetyactivities. .17 4.6.3 Definition.17 4.6.4 Description .18 4.6.5 Safetyandprojectengineeringactivities. .18
16、4.6.6 Supplierandsubsupplierpremises 18 4.6.7 Conformance18 4.7 Safetycertification .18 4.8 Safetytraining . .18 4.8.1 Overalltraining .18 4.8.2 Participation .19 4.8.3 Detailedtechnicaltraining . .19 4.8.4 Productspecifictraining. 19ENISO146201:2002(E) 3 4.8.5 Records.19 4.8.6 Identification.19 4.9
17、 Accident/incidentreportingandinvestigation . 19 4.10 Safetydocumentation . 19 4.10.1 General19 4.10.2 Customeraccess .19 4.10.3 Supplierreview 19 4.10.4 Documentation.20 4.10.5 Safetydatapackage 20 4.10.6 Safetydeviationsandwaivers 20 4.10.7 Verificationtrackinglog 21 4.10.8 Lessonslearnedfile . .2
18、1 5 Safetyengineering .21 5.1 Safetyengineeringpolicy . 21 5.1.1 General21 5.1.2 Elements.21 5.1.3 Lessonslearned. 22 5.2 Safetydesignprinciples .22 5.2.1 Humanlifeconsideration 22 5.2.2 Designselection 22 5.2.3 Systemsafetyorderofprecedence. 22 5.2.4 Environmentalcompatibility. 23 5.2.5 Safewithout
19、services . .23 5.2.6 Failsafedesign 23 5.2.7 HazarddetectionSignallingandsafing 23 5.2.8 Access 24 5.3 Safetyriskreductionandcontrol. 24 5.3.1 Severity .24 5.3.2 Failuretolerancerequirements 26 5.3.3 Designforminimumrisk. 27 5.3.4 Probabilisticsafetytargets .27 5.4 Identificationandcontrolofsafetycr
20、iticalfunctions. .28 5.4.1 Identification.28 5.4.2 Inadvertentoperation . .28 5.4.3 Provisions.28 5.4.4 Safeshutdownandfailuretolerancerequirements .28 5.4.5 Electronic,electrical,electromechanical . .28 6 Safetyanalysisrequirementsandtechniques . 29 6.1 General29 6.2 Assessmentandallocationofrequir
21、ements . .29 6.2.1 Safetyrequirements . .29 6.2.2 Additionalsafetyrequirements 29 6.2.3 Definesafetyrequirementsfunctions .29 6.2.4 Definesafetyrequirementssubsystems . .29 6.2.5 Justification29 6.2.6 Functionalandsubsystemspecification 30 6.3 Safetyanalysis. 30 6.3.1 General30 6.3.2 Missionanalysis
22、 30 6.3.3 Feasibility .30 6.3.4 Preliminarydefinition 30 6.3.5 Detaileddefinition,productionandqualification . 30 6.3.6 Utilization30 6.3.7 Disposal 30 6.4 Specificsafetyanalysis 30 6.4.1 General30 6.4.2 Hazardanalysis. .31 6.4.3 Safetyriskassessment .31 6.4.4 Safetyanalysisforhardwaresoftwaresystem
23、s . .32 6.5 Supportingassessmentandanalysis .32ENISO146201:2002(E) 4 6.5.1 General32 6.5.2 Warningtimeanalysis . 32 6.5.3 Cautionandwarninganalysis 33 6.5.4 Commoncauseandcommonmodefailureanalysis. 33 6.5.5 Faulttreeanalysis. .34 6.5.6 Humandependabilityanalysis .34 6.5.7 Failuremodes,effectsandcrit
24、icalityanalysis . 34 6.5.8 Sneakanalysis .34 6.5.9 Zonalanalysis 35 6.5.10 Energytraceanalysis 35 7 Safetyverification . .35 7.1 General35 7.2 Trackingofhazards . 36 7.2.1 Hazardreportingsystem. 36 7.2.2 Status 36 7.2.3 Safetyprogressmeeting. 36 7.2.4 Reviewanddisposition .36 7.2.5 Documentation.36
25、7.2.6 Mandatoryinspectionpoints. .36 7.3 Safetyverificationmethods. .36 7.3.1 Verificationengineeringandplanning . .36 7.3.2 Methodsandreports . 36 7.3.3 Verificationrequirements. .37 7.3.4 Analysis 37 7.3.5 Inspections .37 7.3.6 Tests37 7.3.7 Verificationandapproval. .37 7.4 Qualificationofsafetycr
26、iticalfunctions .37 7.4.1 Validation37 7.4.2 Qualification .37 7.4.3 Failuretests. .38 7.4.4 Verificationofdesignoroperationalcharacteristics. 38 7.4.5 Safetyverificationtesting . 38 7.5 Hazardcloseout 38 7.5.1 Safetyassuranceverification . 38 7.5.2 Safetyapprovalauthority. .38 7.6 Residualriskreduc
27、tion . 38 8 Operationalsafety 39 8.1 Basicrequirements 39 8.2 Flightoperationsandmissioncontrol . .39 8.2.1 Launcheroperations . 39 8.2.2 Contamination39 8.2.3 Flightrules 39 8.2.4 Hazardouscommandingcontrol 39 8.2.5 Missionoperationchangecontrol .40 8.2.6 Safetysurveillanceandanomalycontrol . .40 8
28、.3 Groundoperations. 40 8.3.1 Applicability40 8.3.2 Initiation 40 8.3.3 Reviewandinspection . .40 8.3.4 Hazardousoperations .40 8.3.5 Launchandlandingsiterequirements 41 8.3.6 GSErequirements 41 Bibliography 42EN ISO1 46201 :2002(E) 5 Foreword ThisdocumentENISO146201:2002hasbeenpreparedbyTechnicalCo
29、mmitteeCEN/SST02“Aerospace“,the secretariatofwhichisheldbyCMC,incollaborationwithTechnicalCommitteeISO/TC20“Aircraftandspace vehicles“. This EuropeanSt andard shall be giventh e status of a nationalst andard, either by publication ofaniden ticaltextor byendorsement,atthelatestbyJune2003,andconflicti
30、ngnationalstandardsshallbewithdrawnatthelatestby June2 003. TheEuropeanStandardENISO 146201waspreparedbytheEuropeanCooperationforSpaceStandardization (ECSS)ProductAssuranceWorkingGroupforCENinclosecolla borationwithISOTechnicalCommittee ISO/TC20, Aircraftandspacevehicles , Subcommittee SC14, Spacesy
31、stemsandoperations, WG5 ,Program management. EN ISO1 4620c onsistsofthe followingparts , undertheg eneraltitle SpacesystemsSafetyrequirements : Part1:Systemsafety Part2:Launchsiteoperations AccordingtotheCEN/CENELECInternalRegulations,thenationalstandardsorganizationsofthefollowing countriesarebound
32、toimplementthisEuro peanStandard:Austria,Belgium,CzechRepublic,Denmark,Finland, France,Germany,Greece,Iceland,Ireland,Italy,Luxembourg,Malta,Netherlands,Norway,Portugal,Spain, Sweden, Switzerland and the UnitedKin gdom.ENISO146201:2002(E) 6 Introduction ThisEuropeanStandardisoneoftheseriesofspacesta
33、ndardsintendedtobeappliedtogetherforthe management,engineeringandproductassuranceinspaceprojectsandapplications. 1Scope 1.1General ThisEuropeanStandarddefinesthesafetyprogrammeandthetechnicalsafetyrequirementsthatareimplemented inordertocomplywiththesafetypolicyasdefinedinISO143002.Itisintendedtopro
34、tectflightandground personnel,thelaunchvehicle,associatedpayloads,groundsupportequipment,thegeneralpublic,publicand privateproperty,andtheenvironmentfromhazardsassociatedwithspacesystems.Launchsiteoperationsare describedbyISO146202. Thesafetypolicyisappliedbyimplementingasystemsafetyprogramme,suppor
35、tedbyriskassessment,whichcan besummarizedasfollows: a) hazardouscharacteristics(systemandenvironmentalhazards)andfunctionswithpotentiallyhazardousfailure effectsareidentifiedandprogressivelyevaluatedbyiterativelyperformingsystematicsafetyanalyses; b) thepotentialhazardousconsequencesassociatedwithth
36、esystemcharacteristicsandfunctionalfailuresare subjectedtoahazardreductionsequencewhereby: 1) hazardsareeliminatedfromthesystemdesignandoperations; 2)hazards are minimized; 3) hazardcontrolsareappliedandverified. c) therisksthatremainaftertheapplicationofahazardeliminationandreductionprocessareprogr
37、essively assessedandsubjectedtoriskassessment,inorderto: 1) showcompliancewithsafetytargets; 2) supportdesigntrades; 3) identifyandrankriskcontributors; 4) supportapportionmentofprojectresourcesforriskreduction; 5) assessriskreductionprogress; 6) supportthesafetyandprojectdecisionmakingprocess(e.g.w
38、aiverapproval,residualrisk acceptance). d) theadequacyofthehazardandriskcontrolmeasuresappliedareformallyverifiedinordertosupportsafety validationandriskacceptance; e) safetycomplianceisassessedbytheprojectandsafetyapprovalobtainedfromtherelevantauthorities.ENISO146201:2002(E) 7 1.2 Fieldofapplicati
39、on ThisEuropeanStandardisapplicabletoallspaceprojectswhereduringanyprojectphasethereexiststhe potentialforhazardstopersonnelorthegeneralpublic,spaceflightsystems,groundsupportequipment,facilities, publicorprivateproperty,ortheenvironment. Theimpositionoftheserequirementsontheprojectsuppliersactiviti
40、esrequiresthatthecustomersprojectproduct assuranceandsafetyorganizationalsorespondtotheserequirementsinamannerwhichiscommensuratewith theprojectssafetycriticality. 1.3Tailoring Whenviewedfromtheperspectiveofaspecificprogrammeorprojectcontext,therequirementsdefinedinthis EuropeanStandardshouldbetailo
41、redtomatchthegenuinerequirementsofaparticularprofileandcircumstances ofaprogrammeorproject. NOTE Tailoringistheprocessbywhichindividualrequirementsofspecifications,standardsandrelateddocumentsare evaluated,andmadeapplicabletoaspecificprogrammeorprojectbyselection,andinsomeexceptionalcases,modificati
42、onof existingoradditionofnewrequirements. 2 Normativereferences ThisEuropeanStandardincorporatesbydatedorundatedreference,provisionsfromotherpublications.These normativereferencesarecitedattheappropriateplacesinthetext,andthepublicationsarelistedhereafter.For datedreferences,subsequentamendmentstoor
43、revisionsofanyofthesepublicationsapplytothisEuropean Standardonlywhenincorporatedinitbyamendmentorrevision.Forundatedreferencesthelatesteditionofthe publicationreferredtoapplies(includingamendments). ISO143001, SpacesystemsProgrammemanagementPart1:Structuringofaprogramme . ISO143002, SpacesystemsPro
44、grammemanagementPart2:Productassurance . ISO146202, SpacesystemsSafetyrequirementsPart2:Launchsiteoperations . 3 Terms,definitionsandabbreviatedterms 3.1 Termsanddefinitions ForthepurposesofthisEuropeanStandard,thefollowingtermsanddefinitionsapply. 3.1.1 accident undesiredeventarisingfromoperationof
45、anyprojectspecificitemswhichresultsin: a) humandeathorinjury; b) lossof,ordamageto,hardware,softwareorfacilitieswhichcouldthenaffecttheaccomplishmentofthe mission; c) lossof,ordamageto,publicorprivateproperty;or d) detrimentaleffectsontheenvironment EN13701:2001 NOTE Accidentandmishaparesynonymous.ENISO146201:2002(E) 8 3.1.2 cause thatwhichproducesaneffect;thatwhichgivesrisetoan