The hazard analysis of an ATT system is an essential part of the safety life-cycle. A systematic methodology for performing this task has been produced by the project PASSPORT. For each of the two phases, preliminary safety analysis and detailed safety analysis, novel modelling techniques have been devised upon which to perform the hazard analysis. The methodology has been validated by its use on twelve DRIVE II demonstrator projects. (A)
Abstract