1 User’s perspectives on the management of Elements Important for Safety (EIS) AMMW - CERN 2013-11-14 Anne Funken, Marc Tavlet / BE-ASR-SU.


Similar presentations
Emergency Preparedness and Response

New Radiation Safety Interlock System for the SPring-8 Accelerator Complex C. Saji, M. Toko, T. Matsushita, R. Furuta, H. Hanaki, S. Hashimoto 1), Y. Hashimoto,
Ghislain Roy Safety Unit Accelerators and Beams Department CERN.
Commissioning the access system M. Gruwé Machine checkout workshop November 8 th 2007.
International Energy Agency Hydrogen Implementing Agreement Proposed Task on Hydrogen Safety.
1 Personnel Protection System (PPS) – Definition Interlock system, to protect personnel from Ionising Radiation (and other hazards) –(Note: does not include.
SAE AS9100 Quality Systems - Aerospace Model for Quality Assurance
Electrical Safety Training
Computer Security: Principles and Practice
Documents and Records-Writing a Quality Manual-Module 16 1 Quality Manual Structure and Contents Quality Manual Structure and Contents - optional.
HLTC 15 th April 2014 EDMS: Y. Muttoni EN-MEF-INT with the contribution of P. Fessia.
Systems Engineering Approach to MPS Risk Management Kelly Mahoney Presented at the Workshop for Machine Protection in Linear Accelerators.
Zornitsa Zaharieva BE-CO-DA, CERN 15 November 2013 Asset and Maintenance Management Workshop November 2013.
Safety & Safety Documentation 2 3 Safety in three Questions Why ? Providing a safe workplace is a legal and moral obligation on every undertaking, and.
Christophe Delamare EDMS Accelerator Consolidation Workshop GS/ASE activities.
© Palaniappan R Kannan PMP.,CFSE 1 IEC Standard – What is it? IEC is a Standard for the functional safety of Electric / Electronic / Programmable.
Health Insurance Portability and Accountability Act of 1996 (HIPAA) Proposed Rule: Security and Electronic Signature Standards.
Consolidation of access systems for the injector Complex ATOP days 4-6 March 2009 P. Ninin & R, Nunes in behalf of the PS and SPS access project teams…
LHC Access System August 2006 LHC Access System – Status and Planning August 2006 Elena Manola-Poggioli Eva Sanchez-Corral TS-CSE on behalf of the LHC.
July LEReC Review July 2014 Low Energy RHIC electron Cooling Edward T. Lessard ESHQ.
CERN Equipment Management Integrates Safety Aspects EDMS Doc Eva Sanchez-Corral Mena, Stephan Petit / CERN 1 CERN Equipment Management Integrates.
TS Workshop, Archamps, May 24 – May 26, 2005 The LHC Access System Status report – May 2005 P. Ninin & the Access project team TS/CSE.
FACILITATOR Prof. Dr. Mohammad Majid Mahmood Art of Leadership & Motivation HRM – 760 Lecture - 25.
HC Review, May 2005 Hardware Commissioning Review Hardware Commissioning Review Quality Assurance and Documentation of Results Félix Rodríguez Mateos,
This Project is funded by the European Union Project implemented by Human Dynamics Consortium This project is funded by the European Union Projekat finansira.
1 1. Some recent views ( ) 2 Linac tunnel
LHC ACCESS SYSTEM 1 Authors: P, Ninin, L. Scibile T, Ladzinski EDMS: The LHC Access System Where do we stand ? P. Ninin, T. Ladzinski, L. Scibile,
2 IMPACT - THE FIRE PERMIT = Hot Work Permit 3 Welcome ! This course is linked to the use of IMPACT, so it is assumed that: You know how to use IMPACT.
C O N T R A C T O R I N F O R M A T I O N E X C H A N G E Reister CE Presentation 1/98 1 Program Elements and Related Activities Rich Reister U.S. Department.
Organization and Implementation of a National Regulatory Program for the Control of Radiation Sources Inspection Part III.
Samy Chemli – Configuration Management - S. Chemli EN-MEF – Contents Configuration Management Hardware Baseline Change Management.
For more info:
LS2 Safety Thomas Otto, LS2 Safety Coordinator.
MTF – Manufacturing and Test Folder Large Scale Deployment of MTF Sonia Mallón Amérigo Elena Manola-Poggioli on behalf of the EDMS Team, TS-CSE.
International Security Management Standards. BS ISO/IEC 17799:2005 BS ISO/IEC 27001:2005 First edition – ISO/IEC 17799:2000 Second edition ISO/IEC 17799:2005.
IX-1 MOD IX - ADDRESSING LEAD IN YOUR MAINTENANCE PROGRAM  Explain management’s role in a lead maintenance program  Outline the fundamental components.
Purpose NEW BEAM DUMP TUNNEL Launch Safety Agreement - conventional aspects LIU-SPS external beam dump meeting - C. Colloca DGS/SEE LSA conventional.
M. Arnaud, C. Bedel, J. Etheridge, E. Paulat CERN SAFETY AND COORDINATION TEAM.
19/11/2015 PSB and PS&TT2 Facilities YETS L. Kobzeva.
Quality assurance - documentation and diagnostics during interventions Corrective maintenance seen from the Technical Infrastructure operation Peter Sollander,
AB/CO Review, Interlock team, 20 th September Interlock team – the AB/CO point of view M.Zerlauth, R.Harrison Powering Interlocks A common task.
Horst Breuker Review Oct ELENA Safety and Radio Protection ELENA TDR : Chapter 6; Safety Files in preparation; Descriptive, Demonstrative (Risk.
Horst Breuker ADUC Jan Safety and Radio Protection, Consequences for the Experiments ELENA TDR : Chapter 6; Safety Files in preparation; Descriptive,
ELENA Documentation and Data Management Items, Assets, Functional Positions T. Birtwistle EN-ACE-CL With input from T. Krastev EN-ACE-EDM.
ESS Cryomodule Status Meeting – Elements of Safety | | Christine Darve Elements of Safety Applicable to the ESS 2013 January, 9 th Christine.
Work by contractors And Safety Coordination CONTRACTORS ’ ACTIVITIES What is the role of TSOs when contractors are working in their area? HSE Unit - Olivier.
July 2014, TE-CRG-MLEDMS Naming Key Issues – List of Naming conventions in use QAC Naming Conventions Sub-committee Meeting n.2 S. Knoops QAC TE(-CRG)
Good Laboratory Practice
Logo area MQXF Review: Safety Thomas Otto HL-LHC Project Safety Officer With contributions by -Paolo Ferrcin and Ezio Todesco, TE-MSC -Francesca Viggiano,
C. Mugnier, D. Lafarge, C. Perolini, R. Pilon, J. Ruiz-Cabezas
CV works in the non- LHC accelerator complex during 2008 and plans for 2009 ATOP days 2009.
1 Interfaces, Engineering and Standards. 2 Interfaces LoKI Interface document description for deliverables Elements: PBS number, Deliverable description,
Design process of the Interlock Systems Patrice Nouvel - CERN / Institut National Polytechnique de Toulouse CLIC Workshop Accelerator / Parameters.
Computer Security: Principles and Practice First Edition by William Stallings and Lawrie Brown Lecture slides by Lawrie Brown Chapter 17 – IT Security.
Electrial Safety LS2 days November 2016 AP
Start the program by pressing “enter”.
Some arrangements for personnel safety 1- Procedures for access
Beam Interlock System SPS CIBU Connection Review
PSB Lock Out Test, Follow-Up AP. Bernardes-/EN-STI, K
HSE rules & regulations
Quality Assurance applied to Accelerator Safety
EP Experiments safety validation process Safety Permits
Air Carrier Continuing Analysis and Surveillance System (CASS)
Workshop on Accelerator Operations
Property, Plant and Equipment (PPE) register in Infor EAM
PSS0 Design & Concept of Operations
Operation of Target Safety System (TSS)
Management of Change GROUP HSE RULE (CR-GR-HSE-302)
Presentation transcript:

1 User’s perspectives on the management of Elements Important for Safety (EIS) AMMW - CERN Anne Funken, Marc Tavlet / BE-ASR-SU

2 EIS = Elément Important pour la Sûreté/Sécurité ~ Equipment or Element Important for Safety EIS & Access Safety Systems Quality assurance for the Access Safety Systems ; IEC Legal aspect Quality assurance for EIS (CMMS or AMM) Demo of the Layout DataBase Summary and conclusion Outline

3 The Beam Facilities at CERN

4 Equipment Important for Safety (EIS) AMMW - CERN Three categories: EIS-Beam ; to protect people from the hazards generated by the beam (circulating or injected beams) EIS-Machine ; to protect people from other hazards generated by the operation of the machine, such as RF power, HV, vacuum… EIS-Access ; to prevent people entering into the machine : access doors, sas, (movable) shielding walls… (Access control system is not a safety system.) Any other safety systems such as fire detection, water detection, transmission of alarms, automatic fire-fighting systems… are excluded here.

5 Typical examples of EIS-M AMMW - CERN Deflecting Magnets, may be fail-safe or not Kicker magnets, septa magnets beam-stoppers can withstand few beam shots e.g. vacuum valves, MTV screens, TBSE Beam-dump can withstand continuous beams e.g. TED

6 EIS & Access Safety Systems AMMW - CERN All EIS are instrumented and connected to an Access Safety System (ASS) EIS are part of “safety chains” Essential function of an ASS = ensure the following: If Beam (“Beam Mode”)  No people permitted If People (Access Mode”)  No beam possible  High reliability and availability of the ASS required Including intrusion cases !

7 Quality assurance for ASS AMMW - CERN IEC : “Functional Safety of Electrical/Electronic/Programmable Electronic Safety-related Systems (E/E/PE)” addresses the hazard & risk analysis  functions of E/E/PE safety system the design and realisation of the instrumented (E/E/PE) system, the operation of the system, including ancillary equipment (e.g. cables, compressed air piping…), maintenance of these systems; must rely on systematic techniques (procedures), verification and validation.

8 ( Quality assurance & Legal aspect concerning ASS and EIS ) AMMW - CERN According to the Tripartite agreement signed between CERN and its host states, the quality insurance related to the management of ASS and EIS is assessed by the official bodies of the CERN host states: Autorité de Sûreté Nucléaire (ASN) and Institut de Radioprotection et de Sûreté Nucléaire (IRSN) for France Office Fédéral de la Santé Publique (OFSP) for Switzerland

9 Quality assurance for EIS (1) AMMW - CERN Clear identification of EIS in database in situ Written procedure for EIS repair and maintenance, by the groups in charge (accessible from Layout Database) +Written maintenance reports Written procedure for functional verification, by the group in charge of the ASS +Written test reports of the safety-chains Written procedure for validation, by the BE-DSO (process in BPMN)

10 Quality assurance for EIS (2) AMMW - CERN Identification of EIS by “functional position” in the Layout Database related to the slot where the asset is indeed installed according to safety chains

11 Quality assurance for EIS (2) AMMW - CERN Layout Database = entry point to  MTF : link between the slot (functional position) and the real piece of equipment (asset) which is installed to date  Infor EAM : data about specific asset and maintenance  NormaWeb : DB about “warm” magnets  Any other DB specific to equipment group  Maintenance documents in EDMS Tag :

12 Demo of the Layout DataBase AMMW - CERN ayout/default.aspx?version =study&navigator=eis&id= &name

13 Summary and conclusion (1) AMMW - CERN Operation of the accelerators  beam hazards (radiation)  other high-level hazards The Access Safety System must guarantee the separation of the personnel from the hazards (= technical collective protection). EIS are part of the ASS and are automatically operated and checked by the Access Safety System. ASS and EIS need to be highly available and reliable.

14 Summary and conclusion (2) AMMW - CERN High availability and reliability rely on proper design  norms & qualified personnel proper building & implementation  qualified material & qualified personnel proper maintenance  documentation & qualified personnel proper functional checks  procedures & qualified personnel proper validation  procedures & authority For quality insurance and legal compliance all of these needs to be documented. An CMMS or AMM tool is essential in this respect.

15 Optional additional slides / IEC AMMW - CERN Thank you

16 Quality assurance for ASS (1) AMMW - CERN IEC : “Functional Safety of Electrical/Electronic/Programmable Electronic Safety-related Systems (E/E/PE)” : Basic functional safety standard applicable to all kinds of industry. Functional safety includes the “Equipment Under Control” (~ EIS) their control system, other technology safety-related system, other external risk reduction systems.

17 Quality assurance for ASS (3) AMMW - CERN IEC usually implies Redundancy of communication, both ways (control and check of EIS status) Avoid common mode of failure (independent EIS based on different technologies) Test or auto-test of the system (this includes preventive maintenance)

18 ( The risk seen by IEC ) AMMW - CERN Reminder: Risk = likelihood * severity of undesirable event [ In many beam facilities, the severity may be very high = death! ] IEC considers that Zero risk can never be reached Safety must be considered from the beginning Non-tolerable risks must be reduced (ALARP principle) IEC usually tends to reduce the likelihood of an event.

19 Quality assurance for EIS (2) AMMW - CERN Written procedure EIS status change & check The group in charge of the ASS and the Beams-Department Safety Officer have a constant clear view of the EIS status. Any change of an EIS status (other than from the Beam-Operation group) has to be requested to and approved by the BE-DSO. Any by-pass of an EIS status from a safety chain has to be requested to and approved by the BE-DSO and the ASS-group (GS-ASE). After functional verification, the BE-DSO validates the system.