Engineering Papers⌕ Search

SEARCH · Engineering Papers

Results for “Criticality Safety”

Search indexed NASA NTRS and DOE OSTI research on propulsion, heat transfer, battery materials and energy systems. Follow report and document links to the original sources.

Quote a phrase for an exact phrase match. Source license links do not imply unrestricted reuse.

At least 91 records · Page 5

Adaptive Stress Testing: Using Reinforcement Learning to Find Failures in Safety-Critical Systems

Emerging applications in artificial intelligence, such as driverless cars and autonomous aircraft promise to be more efficient, cheaper to operate, and always available. However, ensuring the safety of these systems remains a major challenge to their certification and adoption. These autonomous systems are expected to routinely make safety-critical decisions where failures can have serious consequences including loss of life and property. Testing and validation techniques aim to identify and diagnose potential failures before the system is deployed. However, finding failure scenarios in autonomous systems can be very challenging due to high-dimensional and continuous state spaces, interaction with large environments over many time steps, and the rarity of failures. This talk presents Adaptive Stress Testing (AST), a simulation-based testing framework for finding the most likely path to a failure event of a safety-critical system. The key idea of AST is that stress testing can be formulated as a Partially Observable Markov Decision Process (POMDP), which enables reinforcement learning techniques to be used for finding failure events. Reinforcement learning algorithms can efficiently explore the search space and have been shown to scale to very large systems. We present applications of AST to find failures in various safety-critical systems including the aircraft collision avoidance systems, autonomous cars, and small unmanned aerial vehicles.

autonomous vehicles↗

Nuclear Criticality Safety Program @ ORNL [Slides]

This presentation provides an overview of the Nuclear Criticality Safety Program (NCSP) and its activities at Oak Ridge National Lab, including the program's history, mission and vision, accomplishments, challenges, initiatives, and tasks, as well as information regarding ORNL's NCSP budget.

73 NUCLEAR PHYSICS AND RADIATION PHYSICS↗

Domestic and international consensus standards for nuclear criticality safety – overview & status [Abstract]

The domestic and international consensus standards for nuclear criticality safety (NCS) were developed as the lessons-learned from process criticality accidents. These consensus standards were developed to reduce the rate of process criticality accidents in facilities that process, store, handle or transport fissionable materials by hand. After a significant increase in criticality accidents through the mid-1960’s, the rate of criticality accidents decreased due to these standards and the criticality accident rate is extremely low from an industrial safety perspective.

ANS↗

The Integrated Safety-Critical Advanced Avionics Communication and Control (ISAACC) System Concept: Infrastructure for ISHM

Integrated System Health Management (ISHM) architectures for spacecraft will include hard real-time, critical subsystems and soft real-time monitoring subsystems. Interaction between these subsystems will be necessary and an architecture supporting multiple criticality levels will be required. Demonstration hardware for the Integrated Safety-Critical Advanced Avionics Communication & Control (ISAACC) system has been developed at NASA Marshall Space Flight Center. It is a modular system using a commercially available time-triggered protocol, ?Tp/C, that supports hard real-time distributed control systems independent of the data transmission medium. The protocol is implemented in hardware and provides guaranteed low-latency messaging with inherent fault-tolerance and fault-containment. Interoperability between modules and systems of modules using the TTP/C is guaranteed through definition of messages and the precise message schedule implemented by the master-less Time Division Multiple Access (TDMA) communications protocol. "Plug-and-play" capability for sensors and actuators provides automatically configurable modules supporting sensor recalibration and control algorithm re-tuning without software modification. Modular components of controlled physical system(s) critical to control algorithm tuning, such as pumps or valve components in an engine, can be replaced or upgraded as "plug and play" components without modification to the ISAACC module hardware or software. ISAACC modules can communicate with other vehicle subsystems through time-triggered protocols or other communications protocols implemented over Ethernet, MIL-STD- 1553 and RS-485/422. Other communication bus physical layers and protocols can be included as required. In this way, the ISAACC modules can be part of a system-of-systems in a vehicle with multi-tier subsystems of varying criticality. The goal of the ISAACC architecture development is control and monitoring of safety critical systems of a manned spacecraft. These systems include spacecraft navigation and attitude control, propulsion, automated docking, vehicle health management and life support. ISAACC can integrate local critical subsystem health management with subsystems performing long term health monitoring. The ISAACC system and its relationship to ISHM will be presented.

Gwaltney, David A.↗

Nuclear Criticality Safety Margin and Handbook Data: Concepts and Applications [Slides]

At the end of this briefing, personnel should be able to: • Define concepts associated with criticality safety margin • Provide and understand practical applications that illustrate safety margin concepts • Describe how safety margin is addressed in criticality safety evaluations • Improve documentation and communication of safety margin • Connect these concepts to related statements in the ANS-8 Standards • Find numerous applications for handbook data.

73 NUCLEAR PHYSICS AND RADIATION PHYSICS↗

Evolution of safety-critical requirements post-launch

This paper reports the results of a small study of requirements changes to the onboard software of three spacecraft subsequent to launch. Only those requirement changes that resulted from post-launch anomalies (i.e., durring operations) were of interest here, since the goal was to better understand the relationship between critical anomolies during operations and how safety-critical requirements evolve.

requirements↗

Nuclear Criticality Safety Repository, Radiation Safety Information Computational Center (RSICC), & NDA Program [Slides]

This lecture covers the Nuclear Criticality Safety Repository (NCSR), Radiation Safety Information Computational center (RSICC), and Non-destructive Assay (NDA) program. The lecture provides information on the Fiscal year of 2022 and various phases of the NCSR Program and NDA. Further background information is provided for the RSICC and operations summary.

96 KNOWLEDGE MANAGEMENT AND PRESERVATION↗

The role of driver head pose dynamics and instantaneous driving in safety critical events: Application of computer vision in naturalistic driving

This paper investigates the role of driver behavior especially head pose dynamics in safety–critical events (SCEs). Using a large dataset collected in a naturalistic driving study, this paper analyzes the head pose dynamics and driving behavior in moments leading up to crashes or near-crashes. The study uses advanced computer vision and mixed logit modeling techniques to identify patterns and relationships between drivers’ head pose dynamics and crash involvement. The results suggest that driver-head pose dynamics, especially poses that indicate distraction and movement volatility, are important factors that can contribute to undesirable safety outcomes. Marginal effects show that angular deviation for head pose dynamics indicated by yaw, pitch and roll increase the likelihood of crash intensity by 4.56%, 4.92% and 8.26% respectively. Furthermore, traffic flow and lane changing also contribute to increase in likelihood of crash intensity. These findings provide new insights into pre-crash factors, especially human factors and safety–critical events. The study highlights the importance of considering human factors in designing driver assistance systems and developing safer vehicles. This research contributes by examining naturalistic driving data at the microscopic level with early detection of behaviors that lead to SCEs and provides a basis for future research on automation.

33 ADVANCED PROPULSION SYSTEMS↗

Updated Guidance on Sensitivity/Uncertainty Methods Use for Nuclear Criticality Safety Validation

The use of sensitivity/uncertainty (S/U) methods in nuclear criticality safety (NCS) was established more than 25 years ago and has been increasing ever since. Recent interest in commercial applications involving uranium enrichments above 5 wt% 235 U has increased focus on demonstrating the applicability of existing critical experiments to this enrichment range. S/U techniques can also be particularly useful in assessing the similarity of new fuel forms in relation to those documented in existing published evaluations of benchmark critical experiments. Publishing updated recommendations for the use of these methods is thus important to ensure that new S/U practitioners can benefit from the years of development and application invested in generating a set of best practices to maximize the utility of these tools.

NCS↗

Overview of Risk Mitigation for Safety-Critical Computer-Based Systems

This report presents a high-level overview of a general strategy to mitigate the risks from threats to safety-critical computer-based systems. In this context, a safety threat is a process or phenomenon that can cause operational safety hazards in the form of computational system failures. This report is intended to provide insight into the safety-risk mitigation problem and the characteristics of potential solutions. The limitations of the general risk mitigation strategy are discussed and some options to overcome these limitations are provided. This work is part of an ongoing effort to enable well-founded assurance of safety-related properties of complex safety-critical computer-based aircraft systems by developing an effective capability to model and reason about the safety implications of system requirements and design.

Torres-Pomales, Wilfredo↗

Latching Safety Critical Signals in Pyrotechnic Circuits

In recent designs of safety-critical pyro control circuitry, latching circuits, used to store the state of control signals, have been found to have sensitivity to noise that could lead to inadvertent firing. This technical bulletin describes the sensitive circuit, and provides best practice recommendations to improve the design.

Latching Safety↗

Consistent Nuclear Data Evaluations for Criticality Safety [Slides]

This presentation covers consistent nuclear data evaluations for criticality safety. Topics include the evaluation procedure, n+ 139 La evaluation, the work in progress for the n+ 233 U evaluation (emphasis on capture), and a concluding Summary.

07 ISOTOPE AND RADIATION SOURCES↗

Preventing Failures By Dataset Shift Detection in Safety-Critical Graph Applications

Dataset shift refers to the problem where the input data distribution may change over time (e.g., between training and test stages). Since this can be a critical bottleneck in several safety-critical applications such as healthcare, drug-discovery, etc., dataset shift detection has become an important research issue in machine learning. Though several existing efforts have focused on image/video data, applications with graph-structured data have not received sufficient attention. Therefore, in this paper, we investigate the problem of detecting shifts in graph structured data through the lens of statistical hypothesis testing. Specifically, we propose a practical two-sample test based approach for shift detection in large-scale graph structured data. Our approach is very flexible in that it is suitable for both undirected and directed graphs, and eliminates the need for equal sample sizes. Using empirical studies, we demonstrate the effectiveness of the proposed test in detecting dataset shifts. We also corroborate these findings using real-world datasets, characterized by directed graphs and a large number of nodes.

97 MATHEMATICS AND COMPUTING↗

Development and Implementation of a Nuclear and Criticality Safety Engineering Pipeline Course at North Carolina State University

Savannah River Nuclear Solutions, owner of both the criticality safety program and accident analysis qualification at Savannah River Site, experienced increasing difficulty in recruiting, training, and retaining key talent areas. In an effort to curb attrition, provide a talent base to recruit from, and introduce potential new hires to niche subject areas, a pipeline college course was developed for a regional university. The course introduces a variety of topic areas particular to criticality safety and nuclear safety at Department of Energy nonreactor nuclear facilities. Several administrative and developmental hurdles were encountered before the course was successfully initiated at North Carolina State University in fall 2024.

criticality↗

Assuring Safety-Critical Machine Learning Enabled Systems: Challenges and Promise

Machine learning is increasingly being used in safety-critical systems, where the public safety requires a rigorous assurance process. We shall outline how assurance processes work for conventional systems and identify the primary difficulty in applying them to machine learning enabled systems. We will then outline a path forward including identifying where considerable basic research remains

Safety-critical systems↗

Credible Criticality Safety Margin in the 30B Package with LEU+ UF 6 and Hypothetical Water Ingress

The commercial nuclear industry is pursuing advancements in fuel and reactor design that increase the uranium enrichment above 5 wt. % 235 U. These advancements will necessitate the ability to transport bulk quantities of UF 6 at increased enrichments. Currently, the 30B cylinder is the primary container used by the industry for UF 6 storage and transportation and has a long history of successful shipments. This container can support up to 2,277 kg of UF 6 at a maximum enrichment of 5 wt. % 235 U. Previous evaluations have assessed the potential impact of criticality safety for 30B transport at higher enrichments but assumed moderator intrusion would not require evaluation. Although current regulations allow for the exception of moderator intrusion for UF 6 packages through the design and quality control of the package content, this exception is limited to enrichments up to 5 wt. % 235 U. Thus, an investigation of moderator intrusion into a 30B cylinder should be performed. Moderator intrusion into a 30B cylinder is a unique condition for criticality safety evaluation in transportation because of the violent chemical reactions that occur between UF 6 and H 2 O. The resulting intrusion is strongly dependent on the breach size, breach location, breach interface solid/ullage of the UF 6 content, the UF 6 distribution (which is temperature dependent), and temperature/pressure conditions which are dynamic in accident conditions. Additionally, the complexity of the HF-UO 2 F 2 -H 2 O interface that occurs during the event can influence the potential solubility of uranium in the system, as well as influence the amount of UF 6 reaction with H 2 O. With the operating experience from Orano Federal Services LLC, the UF 6 chemical expertise from Oak Ridge National Laboratory (ORNL), and the criticality safety expertise from ORNL, this paper evaluates the neutronic conditions (i.e., k eff ) that apply the understood chemistry and experimental conditions that occur during moderator intrusion of a breached 30B cylinder under postulated accidents. This report examines the historical evaluations of UF 6 transport and expands these evaluations for the enrichments expected for nuclear industry advancement. These simulations primarily feature a homogeneous mixture of UF 6 and H 2 O as an infinite media system and as a sphere with water reflection given an impurity limit of 0.5 wt. % UF 6 . This report demonstrates that this H/U limit is valid up to 8 wt. % enrichment for both H 2 O and HF as the moderating mixture. The water-reflected homogeneous mixed spheres evaluated demonstrate the amount of safety margin applied by restricting the 30B cylinder impurity limit to 0.5 wt. %. Additionally, this report evaluates moderator ingress scenarios of a 30B cylinder. The 30B cylinder simulations vary the cylinder orientation, the mass of UF 6 in the system, the mass of H 2 O in the system, and how much H 2 O has reacted with UF 6 . The moderator ingress of a 30B cylinder was evaluated for the water-reflected homogeneous mixed spheres to demonstrate the amount of safety margin applied by restricting the 30B cylinder impurity limit to 0.5 wt. %. These simulations are standard practice and are independent of the UF 6 -H 2 O reaction. This work also explored more complex simulations that layer the H 2 O over the UF 6 , which incorporates the amount of reacted UF 6 as a separate layer and considers solubility limits of UO 2 F 2 in H 2 O as it is produced. This approach is intended to simulate the postulated event of a large hairline crack occurring on a submerged cylinder. Finally, this work considers the potential of H 2 O mixing into the UF 6 solid heterogeneously using a sponge-like model. The water ingress into the UF 6 is treated as random size spheres, and the reaction products form into a layer over the spheres.

11 NUCLEAR FUEL CYCLE AND FUEL MATERIALS↗

Recalculating Dissolver Curves for Critical Parameters for Nuclear Criticality Safety

The dissolver paradox is a phenomenon in criticality safety whereby a high density fissile material is being dissolved in a low fissile density solution and is subcritical before and after dissolution. However, as the metal is being dissolved, there may be an intermediate concentration that leads to a critical state. CCG-184 is a Y-12 report written in 1980 that provided critical parameter data for two separate dissolver paradox scenarios: solid metal spheres and hollow metal spheres with internal moderation effects. The sphere and shell are both surrounded by solution, however the shell contains solution of the same concentration within itself. In 1980, there are limitations to the computational methods to determine critical parameters. These are due to the lower number of energy groups utilized (16-group) at the time, smaller number of established cross-sectional data, as well as a larger uncertainty within the resonance region of neutron energies. With these constraints in mind, these critical parameters are recalculated with newer cross-sectional data, a newer Monte Carlo code: SCALE 6.1.3 using KENO V.a, and a larger number of energy bins.

61 RADIATION PROTECTION AND DOSIMETRY↗