Current safety standards for automated driving recommend the development of a safety case. This case aims to justify and critically evaluate, by means of an explicit argument and evidence, how the safety claims concerning the intended functionality of an automated driving feature are supported. However, little guidance exists on how such an argument could be developed. In this paper, the MISRA consortium proposes a state machine on which an argument concerning the safety of the intended functionality could be structured. By systematically covering the activation status of the automated driving feature within and outside the operational design domain, this state machine helps in exploring the conditions, and asserting the corresponding safety claims, under which hazardous events could be caused by the intended functionality. MISRA uses a Traffic Jam Drive feature to illustrate the application of this approach.
CITATION STYLE
Birch, J., Blackburn, D., Botham, J., Habli, I., Higham, D., Monkhouse, H., … Rivett, R. (2020). A Structured Argument for Assuring Safety of the Intended Functionality (SOTIF). In Lecture Notes in Computer Science (including subseries Lecture Notes in Artificial Intelligence and Lecture Notes in Bioinformatics) (Vol. 12235 LNCS, pp. 408–414). Springer Science and Business Media Deutschland GmbH. https://doi.org/10.1007/978-3-030-55583-2_31
Mendeley helps you to discover research relevant for your work.