Engineering Papers⌕ Search

SEARCH · Engineering Papers

Results for “Digital Instrumentation and Control”

Search indexed NASA NTRS and DOE OSTI research on propulsion, heat transfer, battery materials and energy systems. Follow report and document links to the original sources.

Quote a phrase for an exact phrase match. Source license links do not imply unrestricted reuse.

At least 73 records · Page 4

Root Cause Correlation Analysis of Software Failures via Orthogonal Defect Classification and Natural Language Processing

Systems theoretic process analysis (STPA) is becoming an increasingly popular technique to assess how complex digital software systems can fail. Rather than defining failures by their observable failure events, which may be sparse especially for safety rated nuclear digital instrumentation and control systems (DI&C), failures are defined as postulated unsafe actions under specific contextual conditions. This permits a top-down analysis of system hazards and identifies whether imposed constraints and requirements can sufficiently address undesirable hazards. However, STPA is a qualitative approach at identifying inadequacies in the development process and cannot currently be used to quantify unsafe action likelihoods for probabilistic risk assessment. Therefore, in this work, we examine the root causes of software failure and explore whether a consistent correlation can be linked to specific unsafe action classes. We implement Lbl2Vec, an unsupervised document classification and retrieval algorithm, on a database of 4,096 software defect reports acquired from various open-source software systems. By analyzing sentence structure, embedded labels, and word vectors, we show that certain defect types positively correlate to specific unsafe action classes over others. The correlations developed can be used to estimate the failure probability of safety intended DI&C systems which provides a licensing basis for nuclear plant modernization efforts.

22 GENERAL STUDIES OF NUCLEAR REACTORS↗

Root Cause Correlation Analysis of Software Failures via Orthogonal Defect Classification and Natural Language Processing

Systems theoretic process analysis (STPA) is becoming an increasingly popular technique to assess how complex digital software systems can fail. Rather than defining failures by their observable failure events, which may be sparse especially for safety rated nuclear digital instrumentation and control systems (DI&C), failures are defined as postulated unsafe actions under specific contextual conditions. This permits a top-down analysis of system hazards and identifies whether imposed constraints and requirements can sufficiently address undesirable hazards. However, STPA is a qualitative approach at identifying inadequacies in the development process and cannot currently be used to quantify unsafe action likelihoods for probabilistic risk assessment. Therefore, in this work, we examine the root causes of software failure and explore whether a consistent correlation can be linked to specific unsafe action classes. We implement Lbl2Vec, an unsupervised document classification and retrieval algorithm, on a database of 4,096 software defect reports acquired from various open-source software systems. By analyzing sentence structure, embedded labels, and word vectors, we show that certain defect types positively correlate to specific unsafe action classes over others. The correlations developed can be used to estimate the failure probability of safety intended DI&C systems which provides a licensing basis for nuclear plant modernization efforts.

22 - GENERAL STUDIES OF NUCLEAR REACTORS↗

Automating Bug Report Classification with Few Shot Learning

Orthogonal defect classification (ODC) is a method used to categorize software defects, providing valuable insights into the development process. This study focuses on automating the classification of software bug reports into different ODC defect types using few shot learning, a machine learning approach that requires minimal labeled data. Previous research has manually classified bug reports or used traditional machine learning algorithms like linear support vector machine, achieving limited success. Our approach uses few shot learning to improve classification accuracy and efficiency. The results show a harmonic mean of recall and precision (i.e., the F1 score) of around 0.6 which is a performance improvement over previous methods. The results highlight the potential benefit of few shot learning techniques and their application in enhancing the safety and reliability of nuclear digital instrumentation and control (DI&C) systems. Future work will explore incorporating advanced techniques to supplement the model's training data and achieve better results.

42 - ENGINEERING↗

Cyber Security Analysis for Nuclear Reactor Control Systems (Final Technical Report)

This project investigated the cyber-security impacts of moving from an all analog, point-to-point, instrumentation and control (I&C) system to a digital I&C system based on Modbus and a shared communication medium. A formalism called a hybrid attack graph was expanded to support the nuclear research reactor system. The hybrid attack graph allows one to check a system for vulnerabilities, in this case cyber-security vulnerabilities, and to document the attack vectors (scenarios) causing those vulnerabilities. In parallel, a simulation of the system was developed to model both the physical reactor parameters and operations, as well as the network interconnects and communications. This simulation platform was modeled on the nuclear research reactor located at Washington State University. The simulation platform provided a sandbox to evaluate and quantify the impact of identified and proposed vulnerabilities in the system and to determine the effectiveness of countermeasures at stopping these attacks. The simulation and hybrid attack graph tools were integrated to provide a streamlined process of generating attack scenarios, playing those scenarios out in the simulation, and then analyzing the results to correlate system state to states in the hybrid attack graph. This process was used to (1) quantify the impact of attack scenarios and (2) to determine if the system moved through the hybrid attack graph as anticipated. The hybrid attack graph tool was extended and customized to produce a tool to automatically identify critical assets (CAs) and critical digital assets (CDAs) as defined by NRC Regulatory Guide 5.71. This tool was verified using the nuclear research reactor at Washington State University. Finally, a series of educational modules covering the findings of the different aspects of this research have been created.

97 MATHEMATICS AND COMPUTING↗

Technical Challenges and Gaps in Integration of Advanced Sensors, Instrumentation, and Communication Technologies with Digital Twins for Nuclear Application

This paper explores integrating advanced sensor, instrumentation, and communication technologies with digital twin technologies for nuclear energy application. Digital twins and digital-twin-enabling technologies are expected to integrate with future nuclear reactor designs and have the potential to impact currently operating nuclear power plants. Greater digital integration, advanced instrumentation and control systems, and advanced operations and maintenance practices are all associated with digital-twin-enabling technologies. Advanced sensors, instrumentation, and communication technology are expected to comprise important elements of the infrastructure required to develop and operate a nuclear digital twin system. This paper identifies and discusses challenges and gaps in developing and implementing advanced sensors and instrumentation and communication technology to be integrated with a digital twin in current and advanced reactor applications. It is important to address some challenge and gap to enable a successful near-term deploying advanced sensors, instrumentation, and communication technologies integrated with digital twins.

Yadav, Vaibhav↗

Common Cause Failure Analysis for Nuclear Power Plant Instrumentation and Control Systems

This presentation is prepared for the IAEA Virtual Consultancy Meeting on Preparation of a Coordinated Research Project on Common Cause Failures in Nuclear Power Plant Instrumentation and Control Systems from February 5 ? 8, 2024. It provides an overview of the INL activities on the common cause failure analysis for instrumentation and control system in nuclear power plants.

99 GENERAL AND MISCELLANEOUS↗

Safety-Related Instrumentation & Control Pilot Upgrade Initiation Phase Implementation Report

This research report (1) describes the process followed and products developed during the SR I&C Pilot Project Initial Scoping Phase, and (2) captures lessons learned. Exelon Generation and LWRS collaborated to develop a Digital Transformation Strategy as part of a larger Advanced Concept of Operations. The proposed SR I&C Pilot Upgrade provides a foundation stone for this Digital Transformation that will improve plant safety, reliability, and operational performance while lowering plant Total Cost of Ownership (TCO). Initial Scoping Phase activities for this Pilot Project have been performed in accordance with industry processes that have been adapted to better support digital upgrades. These processes include IP-ENG-001, Standard Design Process (SDP) [Reference 2], NISP-EN-04, Standard Digital Engineering Process (SDEP) [Reference 3], and Electric Power Research Institute (EPRI) Report 3002011816, Digital Engineering Guide (DEG). Completing Initial Scoping Phase Engineering and Operations, Licensing, and Project Management Activities was necessary to sufficiently bound the scope, schedule, and estimated cost of the Project to enable utility management to authorize moving into the Conceptual Design Phase. A significant finding of the Business Case Analysis (BCA) methodology developed and applied as part of this effort was that the growth rate of material costs for sustaining the operation of obsolete SR I&C equipment is accelerating. This directly contributed to the Project Economic Analysis created to justify continuing the Project. Project Initial Scoping Phase lessons learned have also been captured to assist the larger industry in understanding the Digital Transformation Strategy and SR I&C Pilot Project Initial Scoping Phase efforts. This is in keeping with the public/private partnership that has been established between the Department of Energy (DOE) and Exelon for this effort with engagement from the NRC. By addressing first-of-a-kind (FOAK) risks and capturing lessons learned, the SR I&C Pilot Upgrade Project addresses technical, regulatory, and business risks to enable subsequent implementers of similar upgrades.

22 GENERAL STUDIES OF NUCLEAR REACTORS↗

Safety-Related Instrumentation and Control Pilot Upgrade (Initial Scoping Phase Implementation Report)

This research report (1) describes the process followed and products developed during the SR I&C Pilot Project Initial Scoping Phase, and (2) captures lessons learned. Exelon Generation and LWRS collaborated to develop a Digital Transformation Strategy as part of a larger Advanced Concept of Operations. The proposed SR I&C Pilot Upgrade provides a foundation stone for this Digital Transformation that will improve plant safety, reliability, and operational performance while lowering plant Total Cost of Ownership (TCO). Initial Scoping Phase activities for this Pilot Project have been performed in accordance with industry processes that have been adapted to better support digital upgrades. These processes include IP-ENG-001, Standard Design Process (SDP), NISP-EN-04, Standard Digital Engineering Process (SDEP), and Electric Power Research Institute (EPRI) Report 3002011816, Digital Engineering Guide (DEG). Completing Initial Scoping Phase Engineering and Operations, Licensing, and Project Management Activities was necessary to sufficiently bound the scope, schedule, and estimated cost of the Project to enable utility management to authorize moving into the Conceptual Design Phase. A significant finding of the Business Case Analysis (BCA) methodology developed and applied as part of this effort was that the growth rate of material costs for sustaining the operation of obsolete SR I&C equipment is accelerating. This directly contributed to the Project Economic Analysis created to justify continuing the Project. Project Initial Scoping Phase lessons learned have also been captured to assist the larger industry in understanding the Digital Transformation Strategy and SR I&C Pilot Project Initial Scoping Phase efforts. This is in keeping with the public/private partnership that has been established between the Department of Energy (DOE) and Exelon for this effort with engagement from the NRC. By addressing first-of-a-kind (FOAK) risks and capturing lessons learned, the SR I&C Pilot Upgrade Project addresses technical, regulatory, and business risks to enable subsequent implementers of similar upgrade.

22 GENERAL STUDIES OF NUCLEAR REACTORS↗

INS–Support for Formal Cyber Security Education in Brazil–After Action Report

The adoption of digital technology into Instrumentation and Control (I&C) systems in nuclear facilities fundamentally changes the nature of these systems. Greater interconnectivity of reprogrammable, and functionally interdependent control systems has given rise to the need for computer security consideration in digital I&C Systems. The cyber security of I&C systems presents a growing risk to nuclear facilities and requires the development of educational and research tools to ensure the safety of these facilities. Currently there is a major gap in formal educational offerings on cyber security for these Operational Technology (OT) systems. To provide formal cyber security education resources, DOE’s office of International Nuclear Security (INS) partnered with the University of São Paulo (USP) to develop a training course on the cyber security of nuclear facility I&C systems using the hypothetical Nuclear Power Plant, Asherah.

46 INSTRUMENTATION RELATED TO NUCLEAR SCIENCE AND ↗

Digital Infrastructure Migration Framework Report

This document presents a full-scope Digital Infrastructure implementation and associated lifecycle support recommendations that enable a plant life of 80+ years. Specific technologies and software applications are researched, developed, selected, implemented, and then integrated by utilities to enhance safety, reliability, and economic performance such that the result provides much more than the sum of its parts. Specific selection of these technologies is driven by business case analyses which are utility, station, and unit specific.

42 ENGINEERING↗

Report on the "Symposium on Advancements in Simulating Neutron Scattering Instruments and Experiments"

An international group of researchers gathered for the “Symposium on Advancements in Simulating Neutron Scattering Instruments and Experiments” at Oak Ridge National Laboratory (ORNL) on October 29- 30, 2024. The symposium highlighted state-of-the-art advancements in neutron scattering instrument simulations and the development of digital twins for scattering instruments. This document summarizes the recurring themes from the 19 talks and discussions. A key focus was on the role of neutronics simulations in the design, analysis, and performance optimization of neutron instruments. Presentations featured the most widely used software packages, such as McStas, McVine, Vitess, and MCNP. Another major theme addressed the analysis and interpretation of experimental neutron data, where materials models and simulations play a critical role. Talks on relevant software tools, including NCrystal, OCLimax, and Paradyse, were delivered by their respective developers. During the symposium, both talks and breakout sessions explored strategies to enhance the interplay between neutronics simulations and materials models. A key question emerged: How can we develop a RealTime Explainable Digital Twin of a neutron scattering experiment? Discussions include the idea that the Digital Twin concept has implications for instrument control and testing. Through this symposium, we gained valuable insights into the challenges and requirements for developing a Real-Time Explainable Digital Twin of a neutron scattering experiment. The discussions and presentations paved the way for future innovations in this rapidly advancing field.

46 INSTRUMENTATION RELATED TO NUCLEAR SCIENCE AND ↗

HAZARD ANALYSIS OF DIGITAL ENGINEERED SAFETY FEATURES ACTUATION SYSTEM IN ADVANCED NUCLEAR POWER PLANTS USING A REDUNDANCY-GUIDED APPROACH

Replacing the existing aging analog instrumentation and control (I&C) systems with modern safety control and protection digital technology offers one of the foremost means of performance improvements and cost reductions for the existing nuclear power plants (NPPs). However, the qualification of digital I&C systems remains a challenge, especially considering the issue of software common-cause failures (CCFs), which are difficult to address. With the application and upgrades of advanced digital I&C systems, software CCFs have become a potential threat to plant safety because most redundant designs use similar digital platforms or software in the operating and application systems. With complex designs of multilayer redundancy to meet the single-failure criterion, digital I&C safety systems (e.g., engineered safety-features actuation system [ESFAS]) are of a particular concern in the U.S. Nuclear Regulatory Commission (NRC) licensing procedures. This paper applies a modularized approach to conduct redundancy-guided systems-theoretic hazard analysis for an advanced digital ESFAS with multilevel redundancy designs. Systematic methods and risk-informed tools are incorporated to address both hardware and software CCFs, which provide guidance to eliminate the triggers of potential single points of failure in the design of digital safety systems in advanced plant designs.

46 INSTRUMENTATION RELATED TO NUCLEAR SCIENCE AND ↗

An Integrated Risk Assessment Process of Safety-Related Digital I&C Systems in Nuclear Power Plants

Upgrading the existing analog instrumentation and control (I&C) systems to state-of-the-art digital I&C (DI&C) systems will greatly benefit existing light water reactors. However, the issue of software common cause failure (CCF) remains an obstacle in terms of qualification for digital technologies. Existing analyses of CCFs in I&C systems mainly focus on hardware failures. With the application and upgrading of new DI&C systems, design flaws could cause software CCFs to become a potential threat to plant safety, considering that most redundancy designs use similar digital platforms or software in their operating and application systems. With complex multilayer redundancy designs to meet the single failure criterion, these I&C safety systems are of particular concern in U.S. Nuclear Regulatory Commission licensing procedures. In Fiscal Year 2019, the Risk-Informed Systems Analysis (RISA) Pathway of the U.S. Department of Energy’s Light Water Reactor Sustainability Program initiated a project to develop a risk assessment strategy for delivering a strong technical basis to support effective, licensable, and secure DI&C technologies for digital upgrades and designs. An integrated risk assessment for the DI&C process was proposed for this strategy to identify potential key digital-induced failures, implement reliability analyses of related digital safety I&C systems, and evaluate the unanalyzed sequences introduced by these failures (particularly software CCFs) at the plant level. Here this paper summarizes these RISA efforts in the risk analysis of safety-related DI&C systems at Idaho National Laboratory.

22 GENERAL STUDIES OF NUCLEAR REACTORS↗

INTEGRATED RISK ASSESSMENT OF DIGITAL I&C SAFETY SYSTEMS FOR NUCLEAR POWER PLANTS

Upgrading the existing analog instrumentation and control (I&C) systems to state-of-the-art digital I&C (DI&C) systems provides the foremost means to improve performance and reduce costs for existing light-water reactors (LWRs). However, qualification of digital technologies remains a challenge?especially the issue of software common cause failure (CCF), which has been difficult to address. Existing analyses of CCFs in I&C systems mainly focus on hardware failures. With the application and upgrading of new DI&C systems, software CCFs due to design flaws might become a potential threat to plant safety, considering that most redundancy designs use similar digital platforms or software in their operating and application systems. With complex multi-layer redundancy designs to meet the single failure criterion, these I&C safety systems are of particular concern in U.S. Nuclear Regulatory Commission (NRC) licensing procedures. In 2019, the Risk-Informed Systems Analysis (RISA) Pathway of the U.S. Department of Energy?s (DOE?s) Light Water Reactor Sustainability (LWRS) Program initiated a project to develop a risk assessment strategy for delivering a strong technical basis to support effective, licensable, secure DI&C technologies for digital upgrades/designs. An integrated risk assessment for the DI&C (RADIC) process was proposed for this strategy to identify potential key digital-induced failures, implement reliability analyses of related digital safety I&C systems, and evaluate the unanalyzed sequences introduced by these failures (particularly software CCFs) at the plant level. This paper summarizes these RISA efforts in the risk analysis of safety-related DI& systems at Idaho National Laboratory.

22 GENERAL STUDIES OF NUCLEAR REACTORS↗

Hazard analysis for identifying common cause failures of digital safety systems using a redundancy-guided systems-theoretic approach

Replacing the existing aging analog instrumentation and control (I&C) systems with modern safety control and protection, digital technology offers one of the foremost means of performance improvements and cost reductions for the existing nuclear power plants (NPPs). However, the qualification of digital I&C systems remains a challenge, especially considering the issue of software common-cause failures (CCFs), which are difficult to address. With the application and upgrades of advanced digital I&C systems, software CCFs have become a potential threat to plant safety because most redundant designs use similar digital platforms or software in the operating and application systems. With complex designs of multilayer redundancy to meet the single-failure criterion, digital I&C safety systems (e.g., engineered safety-features actuation system [ESFAS]) are of a particular concern in the U.S. Nuclear Regulatory Commission (NRC) licensing procedures. Here, this paper applies a modularized approach to conduct redundancy-guided systems-theoretic hazard analysis for an advanced digital ESFAS with multilevel redundancy designs. Systematic methods and risk-informed tools are incorporated to address both hardware and software CCFs, which provide guidance to eliminate the causal factors of potential single points of failure in the design of digital safety systems in advanced plant designs.

42 ENGINEERING↗

Human-System Interface Design Review Guidelines

The U.S. Nuclear Regulatory Commission (NRC) staff reviews the human factors engineering (HFE) aspects of nuclear power plants in accordance with the Standard Review Plan (NUREG-0800, Standard Review Plan for the Review of Safety Analysis Reports for Nuclear Power Plants: LWR Edition). The Human Factors Engineering Program Review Model (NUREG-0711, Revision 3, issued November 2012) contains detailed design review procedures. As part of the review process, the interfaces between plant personnel and the plant's systems and components are evaluated for conformance with HFE guidelines. This document, Human-System Interface Design Review Guidelines (NUREG-0700, Revision 3), provides the guidelines necessary to perform this evaluation. The review guidelines address the physical and functional characteristics of human-system interfaces (HSIs). Because these guidelines only address the HFE aspects of design and not other related considerations, such as instrumentation and control and structural design, they are referred to as HFE guidelines. In addition to the review of actual HSIs, the NRC staff can use the NUREG-0700 guidelines to evaluate a design-specific HFE guidelines document or style guide. The HFE guidelines are organized into four basic parts, which are divided into sections. Part I contains guidelines for the basic HSI elements: information displays, user-interface interaction and management, and analog displays and controls. These elements are used as building blocks to develop HSI systems to serve specific functions. Part II contains the guidelines for reviewing the following HSI systems: alarm system, safety parameter display system, group-view display system, soft control system, computer-based procedure system, automation system, and communication system. Part III provides guidelines for the review of workstations and workplaces. Part IV provides guidelines for the review of HSI support (i.e., maintainability of digital systems and degraded HSI and instrumentation and control conditions).

42 ENGINEERING↗

Human Factors for Advanced Reactors

Existing light water reactors in the U.S. are primarily large baseload electricity generating facilities. The concept of operations for these plants remains largely unchanged since the advent of commercial nuclear power—the main control room serves as the hub of plant activities and is staffed with multiple licensed operators who work in tandem under the shift supervisor, and staff such as field workers support the control room remotely. While newer plants have brought the advent of digital human-machine interfaces to replace earlier analog and mechanical instrumentation and controls, much of the control process remains unchanged and manual. It is simply a newer version of legacy concepts. Advanced reactors potentially bring considerable changes to the size, fuel type, automation, and staffing of nuclear power plants, necessitating a fundamental shift not just from analog to digital, but further from human to automation, from onsite to remote, from control to monitoring, and from many to few operators. Despite this multitude of parallel evolutions in reactor designs, many of the vendors developing the next generation of reactors represent smaller research and development enterprises. It is therefore not feasible to address all aspects of plant design at the same time. In particular, the competing design aspects of new reactors present a significant challenge to the development of robust and human factored systems at the plant. As vendors develop new reactor designs, much of the early focus is naturally on the fuel and reactor system technology. Looming behind these early advances is the daunting prospect of first-of-a-kind control concepts that have not yet been developed or validated. A failure to address the human element of reactor design early will lead to missed opportunities. The quickest development process is the replication of existing concepts of operations at legacy plants, even when such systems were long ago surpassed by better human-machine technologies outside the nuclear industry. Conversely, attempting to undertake novel concepts of operations late in the design life cycle of a plant could result in protracted development efforts and delays in licensing and deployment. This does not have to happen, and it is imperative that human factors be considered now, early in the design of new reactors.

99 GENERAL AND MISCELLANEOUS↗