Services for the functional safety of the Automotive sector in accordance with ISO 26262 standards.

ISO 26262 Consulting

In the context of ISO 26262, we help you create the work products required by legislation

  • Development Interface Agreement (DIA). The relationship between the OEM and the supplier is defined early on in the life cycle, setting the activities and work products, and the division of responsibilities between the various project stakeholders. We can define timescales and costs relative to compliance with ISO 26262 at the pre-contractual stage.
  • Safety Plan. The Safety Plan for ISO 26262 is a document that describes how an organization intends to meet functional safety requirements, and how to highlight their importance. The plan sets out the processes, procedures and resources used to identify, assess and mitigate functional safety risks throughout the life cycle of an automotive product.
  • ASILs (Automotive Safety Integrity Levels) and HARA Analysis. The Hazard and Risk Assessment Analysis is a way to identify and categorize the potentially dangerous aspects of items, and to specify the safety objectives and the ASILs (Automotive Safety Integrity Levels) in relation to preventing or mitigating hazards, so as to avoid unnecessary risks.
  • Functional Safety Concept. A key document which describes the strategic approach used to ensure the functional safety of a product. It forms the basis for product development processes, and defines the key principles and guidelines in relation to design, implementation and verification.
  • Safety Analysis and Dependent Failure Analysis. The Safety Analysis consists of various processes to identify, analyze and evaluate any potential hazards and risks associated with an electrical or electronic (E/E) system. It involves various techniques, including:
    • The Failure Mode and Effects Analysis (FMEA), which identifies potential modes of failure in components, their effects on the system and degree of severity
    • The Fault Tree Analysis (FTA), which examines the logical sequence of events that could lead to a system failure
    • The Hazard and Operability Study (HAZOP), which examines the design and operation of a system, to identify any potential hazards and the safety measures required
  • Safety Validation Specifications. The safety validation specifications define the criteria, methods and procedures that are used to conduct the validation process. These specifications must be designed in such a way that they are fully aligned with the safety specifications, and also proportionate to the intended Automotive Safety Integrity Level (ASIL). The specifications also define the tests to be performed and the requisite criteria for passing these tests.
  • Safety Case. A key document in relation to ISO 26262 compliance, as it consists of a structured argument to support the thesis that a system is safe. It sets out all the evidence that demonstrates compliance with the requirements of ISO 26262.

 

Contact us to apply correctly the ISO 26262 standard.


ISO 26262 Training

Training in ISO 26262 standards allows you to acquire the necessary knowledge to manage the functional safety of your automotive products. Design your training program: request a quote.


ISO 26262 Functional Safety Assessment

Ask this service to evaluate the functional safety of an electrical or electronic product destined for the automotive sector

The aim of the Functional Safety Assessment is to evaluate the functional safety of an E/E product.

In the instance of a car manufacturer, we refer to an Item, i.e. the function of a particular product in relation to a vehicle. In the instance of suppliers, the assessment focuses on the degree of functional safety provided by the systems or components.

This assessment is a means to reveal whether the objectives of ISO 26262 are being achieved. The greater the ASIL objectives, the greater the conditions that need to be met, and the greater the degree of independence required for performing the assessment.

 

The conditions for independence are as follows:

  • ASIL A does not require the execution of a Functional Safety Assessment
  • ASIL B requires a person who is independent from whoever made the work products
  • ASIL C requires a person who is independent from the team that created the work products
  • ASIL D requires a person from another department or an external company

 

The final assessment report should stipulate one of three possible results:

  • If the objectives of ISO 26262 are met unconditionally, the report will recommend acceptance of functional safety
  • If the evaluators consider that the product is safe from a functional point of view, but only under certain conditions, the report will only recommend conditional acceptance
  • However, if the evaluators are not convinced that a product is safe, it will fail this review, and the company developing the product will have to make changes and repeat the assessment process.

 

Contact us to comply with the automotive standards.


ISO 26262 Functional Safety Audit

Ask this service to check functional safety processes in the automotive sector

The aim of a Functional Safety Audit is to check that the processes required for functional safety have actually been implemented.
The following in particular need to be examined:

  • The implementation of a Safety Plan
  • The compatibility of the Safety Plan with company roles and processes
  • The quality of the evidence (if provided) indicating that the objectives of the ISO 26262 series of standards have been met
  • The accessibility of the work products under review and their consistency in terms of quality

The aim of the evaluator is also to provide recommendations and advise about possible improvements to strengthen compliance with ISO 26262.

 

Contact us to evaluate the compliance of your process with the functional safety standards.


ISO 26262 Confirmation Reviews

Ask this service to check the functional safety of the work products in compliance with the requirements of ISO 26262

The Confirmation Reviews form part of the Confirmation Measures, and should be carried out as directed in ISO 26262-1 paragraph 6.4.9.
The checks known as Confirmation Reviews are required to evaluate whether the work products offer sufficient and compelling evidence that they will contribute to achieving functional safety, in line with the objectives and associated requirements of ISO 26262 standards.

 

The Confirmation Reviews required by ISO 26262 in its original version are as follows:

  • Confirmation Review of the impact analysis at the item level
  • Confirmation Review of the hazard analysis and risk assessment
  • Confirmation Review of the Safety Plan
  • Confirmation Review of the Functional Safety Concept
  • Confirmation Review of the Technical Safety Concept
  • Confirmation Review of the integration and test strategy
  • Confirmation Review of the safety validation specifications
  • Confirmation Review of the safety analysis and dependent failure analysis
  • Confirmation Review of the safety case

 

Contact us to comply with the ISO 26262 standard requirements.

Faq

ISO 26262 provides a functional safety standard for electrical and/or electronic (E/E) systems, and sets out a particular life cycle for components used in the automotive sector. It therefore acts as a model for the safety life cycle of vehicles, and helps companies adapt the activities they carry out during the various stages of development, manufacturing, operation, servicing and decommissioning. The ISO 26262 standard provides a specific risk-based approach for the automotive industry, for determining the risk classes known as Automotive Safety Integrity Levels (ASILs). The standard uses the ASILs to determine which of the requirements of ISO 26262 are applicable, in order to avoid unreasonable residual risks. It also sets out the requirements for managing functional safety, design, implementation, verification, validation and confirmation measures. Finally, the standard sets out the requirements for customer-supplier relationships in the form of a Development Interface Agreement (DIA).

In relation to the ISO 26262 Standard, the Automotive Safety Integrity Levels (ASILs) stipulate the degree of safety to be met to achieve the requirements for design and performance in the automotive sector. The ASILs have to meet the ISO 26262 standard for Functional Safety in relation to the prevention and mitigation of risks associated with vehicle systems. The HARA method of analysis is used to determine these levels, with the aim of identifying and classifying hazardous events according to certain set safety objectives.

The DIA is the agreement between the customer and supplier, and specifies the responsibilities regarding activities to be carried out, tests to be performed, or products to be exchanged between the parties in relation to the development of the final project. The agreement refers specifically to the development phase, whereas the supply contract applies to the production phase. The DIA is crucially important, because there is considerable collaboration between suppliers and manufacturers working in the automotive sector. This agreement between the two parties is therefore essential when developing complex systems that comply with all the functional safety requirements.

Why choose us

  • We are a company in the TÜV Rheinland group with an established reputation in the automotive sector
  • We offer a customized, tailor-made service throughout the process of meeting the ISO 26262 requirements
  • We provide a single interface for managing the various aspects: functional safety, design, implementation, verification, validation and confirmation measures
  • We approach this in a targeted way, based on the complexity of the product and using many risk analysis techniques, including FMEA, FTA, and HAZOP

What some of our customers say about us