Engineering Papers⌕ Search

SEARCH · Engineering Papers

Results for “Probabilistic Risk analysis”

Search indexed NASA NTRS and DOE OSTI research on propulsion, heat transfer, battery materials and energy systems. Follow report and document links to the original sources.

Quote a phrase for an exact phrase match. Source license links do not imply unrestricted reuse.

At least 109 records · Page 6

An Earth Entry Vehicle For Returning Samples From Mars

The driving requirement for design of a Mars Sample return mission is assuring containment of the returned samples. The impact of this requirement on developmental costs, mass allocation, and design approach of the Earth Entry Vehicle is significant. A simple Earth entry vehicle is described which can meet these requirements and safely transport the Mars Sample Return mission's sample through the Earth's atmosphere to a recoverable location on the surface. Detailed analysis and test are combined with probabilistic risk assessment to design this entirely passive concept that circumvents the potential failure modes of a parachute terminal descent system. The design also possesses features that mitigate other risks during the entry, descent, landing and recovery phases. The results of a full-scale drop test are summarized.

Mitcheltree, R.↗

A Probabilistic Approach to Model Update

Finite element models are often developed for load validation, structural certification, response predictions, and to study alternate design concepts. In rare occasions, models developed with a nominal set of parameters agree with experimental data without the need to update parameter values. Today, model updating is generally heuristic and often performed by a skilled analyst with in-depth understanding of the model assumptions. Parameter uncertainties play a key role in understanding the model update problem and therefore probabilistic analysis tools, developed for reliability and risk analysis, may be used to incorporate uncertainty in the analysis. In this work, probability analysis (PA) tools are used to aid the parameter update task using experimental data and some basic knowledge of potential error sources. Discussed here is the first application of PA tools to update parameters of a finite element model for a composite wing structure. Static deflection data at six locations are used to update five parameters. It is shown that while prediction of individual response values may not be matched identically, the system response is significantly improved with moderate changes in parameter values.

Horta, Lucas G.↗

Earth Entry Vehicle for Mars Sample Return

The driving requirement for design of a Mars Sample return mission is assuring containment of the returned samples. The impact of this requirement on developmental costs, mass allocation, and design approach of the Earth Entry Vehicle is significant. A simple Earth entry vehicle is described which can meet these requirements and safely transport the Mars Sample Return mission's sample through the Earth's atmosphere to a recoverable location on the surface. Detailed analysis and test are combined with probabilistic risk assessment to design this entirely passive concept that circumvents the potential failure modes of a parachute terminal descent system. The design also possesses features that mitigate other risks during the entry, descent, landing and recovery phases. The results of a full-scale drop test are summarized.

Mitcheltree, R. A.↗

Probability of failure and risk assessment of propulsion structural components

Because of the increasing need to account for the uncertainties in material properties, loading conditions, geometry, etc., a methodology was developed to determine structural reliability and to assess the associated risk. The methodology consists of a probabilistic structural analysis by a probabilistic finite element computer code, numerical evaluation of stochastic structures under stress (NESSUS), and a generic probabilistic material property model. The methodology is versatile and is equally applicable to structures operating at high and cryogenic temperature environments. Results obtained demonstrate that the issues of structural reliability and risk can be formally evaluated by using the methodology developed which is inclusive of the uncertainties in material properties, structural parameters, and loading conditions. The methodology is described in some detail with illustrative examples.

Shiao, Michael C.↗

Derivation of the Most Influential Medical Conditions for An Extended Duration Artemis Mission

BACKGROUND: The risk of loss of mission due to medical conditions may be influenced by loss of crew life (LOCL), need for evacuation (RTDC; return to definitive care), and crew task time lost. Predicting what medical conditions are most likely to lead to crew morbidity and mortality may influence medical system design, clinical capability prioritization, and research strategies. NASA’s Informing Mission Planning via Analysis of Complex Tradespaces tool (IMPACT) applies Probabilistic Risk Assessment (PRA) methodology to assess these risks. OVERVIEW: A team of subject matter experts (SME) from a variety of medical disciplines developed a consensus-based process to determine 120 of the most clinically relevant medical conditions for long-duration exploration missions (LDEMs) . This IMPACT Condition List (ICL) expanded upon previous work done for Integrated Medical Model (IMM). For each condition a best-case and worst-case definition were derived. These definitions were used to identify probability of occurrence, proportion of cases that are best case vs. worst case, clinical phase duration, and risk of outcomes (task time loss [TTL], RTDC, and LOCL) for both treated and untreated states. These data were sources from existing spaceflight databases (e.g. Longitudinal Survey of Astronaut Health), relevant models (e.g. the ISS fire model), and/or terrestrial literature. Each condition was then tied to diagnostic and therapeutic resources and capabilities. IMPACT was then run for the LDLOLS DRM (see Abstract #2 for this panel). DISCUSSION: This abstract will present the process for generating the IMPACT condition list, the relevant data for each clinical condition, and present results for the ten most influential conditions impacting LOCL, RTDC, and TTL for a representative extended duration Artemis mission.

A Nelson↗

Application of Fault Management Theory to the Quantitative Selection of a Launch Vehicle Abort Trigger Suite

The theory of System Health Management (SHM) and of its operational subset Fault Management (FM) states that FM is implemented as a "meta" control loop, known as an FM Control Loop (FMCL). The FMCL detects that all or part of a system is now failed, or in the future will fail (that is, cannot be controlled within acceptable limits to achieve its objectives), and takes a control action (a response) to return the system to a controllable state. In terms of control theory, the effectiveness of each FMCL is estimated based on its ability to correctly estimate the system state, and on the speed of its response to the current or impending failure effects. This paper describes how this theory has been successfully applied on the National Aeronautics and Space Administration's (NASA) Space Launch System (SLS) Program to quantitatively estimate the effectiveness of proposed abort triggers so as to select the most effective suite to protect the astronauts from catastrophic failure of the SLS. The premise behind this process is to be able to quantitatively provide the value versus risk trade‐off for any given abort trigger, allowing decision makers to make more informed decisions. All current and planned crewed launch vehicles have some form of vehicle health management system integrated with an emergency launch abort system to ensure crew safety. While the design can vary, the underlying principle is the same: detect imminent catastrophic vehicle failure, initiate launch abort, and extract the crew to safety. Abort triggers are the detection mechanisms that identify that a catastrophic launch vehicle failure is occurring or is imminent and cause the initiation of a notification to the crew vehicle that the escape system must be activated. While ensuring that the abort triggers provide this function, designers must also ensure that the abort triggers do not signal that a catastrophic failure is imminent when in fact the launch vehicle can successfully achieve orbit. That is, the abort triggers must have low false negative rates to be sure that real crew‐threatening failures are detected, and also low false positive rates to ensure that the crew does not abort from non‐crew‐threatening launch vehicle behaviors. The analysis process described in this paper is a compilation of over six years of lessons learned and refinements from experiences developing abort triggers for NASA's Constellation Program (Ares I Project) and the SLS Program, as well as the simultaneous development of SHM/FM theory. The paper will describe the abort analysis concepts and process, developed in conjunction with SLS Safety and Mission Assurance (S&MA) to define a common set of mission phase, failure scenario, and Loss of Mission Environment (LOME) combinations upon which the SLS Loss of Mission (LOM) Probabilistic Risk Assessment (PRA) models are built. This abort analysis also requires strong coordination with the Multi‐Purpose Crew Vehicle (MPCV) and SLS Structures and Environments (STE) to formulate a series of abortability tables that encapsulate explosion dynamics over the ascent mission phase. The design and assessment of abort conditions and triggers to estimate their Loss of Crew (LOC) Benefits also requires in‐depth integration with other groups, including Avionics, Guidance, Navigation and Control(GN&C), the Crew Office, Mission Operations, and Ground Systems. The outputs of this analysis are a critical input to SLS S&MA's LOC PRA models. The process described here may well be the first full quantitative application of SHM/FM theory to the selection of a sensor suite for any aerospace system.

Lo, Yunnhon↗

Probabilistic analysis of air carrier accidents

In order to estimate the potential risks due to carbon fibers (CF) released from aircraft accidents, it was necessary to quantify the probability of an accident or incident at a major hub airport. This probability was contingent upon various conditions surrounding the incident including the phase of operation, aircraft type, and the weather conditions. The type of accident predicted was categorized according to its location relative to the runway and the severity of damage sustained. The methodology utilized to estimate the probability of a specific type of accident is outlined and the various models that were developed in the course of this work are described.

Source record↗

Comparison of Artemis 2 and Artemis 5 Model Outcomes Using the Impact Probabilistic Risk Assessment Tool

BACKGROUND The Artemis campaign is a Moon exploration program with a series of six planned missions, five of which will be crewed. These five crewed missions will contain a single mission segment (space flight), or multiple mission segments involving space flight (Orion), lunar landing (LTV) and/or space habitat (Gateway). Each crewed segment faces the risk of unique medical conditions, necessitating medical sets/kits tailored to those specificities. To support and enable a data-driven and evidence-based decision-making process through out a mission’s life cycle, a software tool called IMPACT was developed. Using probabilistic risk assessment (PRA) methodologies, IMPACT (Informing Mission Planning via Analysis of Complex Tradespaces) is a novel tool built for analyzing the possibility of encountering complex medical risks during space flight, and for identifying the medical resources and capabilities needed to treat those potential at-risk medical conditions. This presentation will seek to compare IMPACT’s computational results upon potential complex space medical conditions (e.g., sprain/strain back or sleep disturbance) using IMPACT’s risk metrics and the associated optimized medical sets/kits between two Artemis missions: single segment Artemis 2 and multi-segmented Artemis 5. OVERVIEW By identifying potential medical conditions in space using input criteria such as crew quantity and composition, certain crew physical characteristics, mission duration and mission activities, IMPACT can produce analyses on the type of medical resources and capabilities needed to produce an optimized medical set/kit to address those medical conditions. IMPACT achieves this by performing hundreds of thousands of Monte Carlo simulations of missions to build aggregate pictures of medical risk. IMPACT’s risk metrics include loss of crew life (LOCL) – a measure of crew mortality due to medical conditions in space, return to definitive care (RTDC) – the need to perform crew evacuation, and task time lost (TTL) – a measure of the inability to perform activities due to crew disability. These risk metrics are applied to every medical condition identified by IMPACT’s computation analyses for every segment of the mission. Medical sets/kits are optimized to address these medical conditions but must fit within the stated Artemis Design Reference Mission (DRM) request for mass and volume physical size constraints. ANTICIPATED ANALYSIS AND CONCLUSION Using two Artemis missions, Artemis 2 and Artemis 5, IMPACT will provide the analyses for comparison of medical set/kit contents based upon mass and/or volume requirements and identify the at-risk medical conditions within both missions. This paper serves as an initial exploration of probabilistic risk assessment (PRA) medical risk calculations between two crewed Artemis missions and is not intended to be deemed the official medical response for the Artemis campaign.

probabilistic risk assessment↗

Reliability and risk assessment of structures

Development of reliability and risk assessment of structural components and structures is a major activity at Lewis Research Center. It consists of five program elements: (1) probabilistic loads; (2) probabilistic finite element analysis; (3) probabilistic material behavior; (4) assessment of reliability and risk; and (5) probabilistic structural performance evaluation. Recent progress includes: (1) the evaluation of the various uncertainties in terms of cumulative distribution functions for various structural response variables based on known or assumed uncertainties in primitive structural variables; (2) evaluation of the failure probability; (3) reliability and risk-cost assessment; and (4) an outline of an emerging approach for eventual certification of man-rated structures by computational methods. Collectively, the results demonstrate that the structural durability/reliability of man-rated structural components and structures can be effectively evaluated by using formal probabilistic methods.

Chamis, C. C.↗

Adapting Traditional Hazards Analysis Methods to Address Cyber Risks

Traditional hazards analysis (HA) methods, originally developed to address physical and operational risks, often fall short when it comes to identifying and mitigating cyber threats. These cyber threats pose unique and evolving risks to critical infrastructure and industrial control systems (ICS). This report explores the integration of Cyber-Informed Engineering (CIE) principles into existing HA methods to enhance their ability to address cyber-induced risks. CIE provides organizations with a practical, cost-effective approach to closing the gap between traditional HA methods and the need for cyber risk mitigation. By leveraging existing safety processes and controls, CIE allows users to examine and mitigate cyber vulnerabilities without overhauling existing HA methods. This report identifies areas where HA and CIE naturally align and where their approaches diverge. It emphasizes how CIE principles can be used to adapt HA methods, broadening their scope to include cyber risks and enabling the mitigation of cyber- induced impacts alongside traditional hazards and failure scenarios. This report examines how CIE can be applied across various HA methods—such as Hazard and Operability Studies (HAZOP), Probabilistic Risk Assessment (PRA), Failure Modes and Effects Analysis (FMEA), Systems-Theoretic Process Analysis (STPA), Hazard and Consequence Analysis for Digital Systems (HAZCADS), and Layers of Protection Analysis (LOPA). It provides strategies for integrating CIE to strengthen the identification, assessment, and mitigation of cyber-induced risks. The findings offer a structured entry point for organizations to embed CIE concepts into hazards and safety analyses, as well as broader engineering processes, ultimately supporting the design and operation of a more resilient infrastructure.

42 ENGINEERING↗

Adapting Traditional Hazards Analysis Methods to Address Cyber Risks

Traditional hazards analysis (HA) methods, originally developed to address physical and operational risks, often fall short when it comes to identifying and mitigating cyber threats. These cyber threats pose unique and evolving risks to critical infrastructure and industrial control systems (ICS). This report explores the integration of Cyber-Informed Engineering (CIE) principles into existing HA methods to enhance their ability to address cyber-induced risks. CIE provides organizations with a practical, cost-effective approach to closing the gap between traditional HA methods and the need for cyber risk mitigation. By leveraging existing safety processes and controls, CIE allows users to examine and mitigate cyber vulnerabilities without overhauling existing HA methods. This report identifies areas where HA and CIE naturally align and where their approaches diverge. It emphasizes how CIE principles can be used to adapt HA methods, broadening their scope to include cyber risks and enabling the mitigation of cyber- induced impacts alongside traditional hazards and failure scenarios. This report examines how CIE can be applied across various HA methods—such as Hazard and Operability Studies (HAZOP), Probabilistic Risk Assessment (PRA), Failure Modes and Effects Analysis (FMEA), Systems-Theoretic Process Analysis (STPA), Hazard and Consequence Analysis for Digital Systems (HAZCADS), and Layers of Protection Analysis (LOPA). It provides strategies for integrating CIE to strengthen the identification, assessment, and mitigation of cyber-induced risks. The findings offer a structured entry point for organizations to embed CIE concepts into hazards and safety analyses, as well as broader engineering processes, ultimately supporting the design and operation of a more resilient infrastructure.

42 - ENGINEERING↗

Near-Earth Phase Risk Comparison of Human Mars Campaign Architectures

A risk analysis of the launch, orbital assembly, and Earth-departure phases of human Mars exploration campaign architectures was completed as an extension of a probabilistic risk assessment (PRA) originally carried out under the NASA Constellation Program Ares V Project. The objective of the updated analysis was to study the sensitivity of loss-of-campaign risk to such architectural factors as composition of the propellant delivery portion of the launch vehicle fleet (Ares V heavy-lift launch vehicle vs. smaller/cheaper commercial launchers) and the degree of launcher or Mars-bound spacecraft element sparing. Both a static PRA analysis and a dynamic, event-based Monte Carlo simulation were developed and used to evaluate the probability of loss of campaign under different sparing options. Results showed that with no sparing, loss-of-campaign risk is strongly driven by launcher count and on-orbit loiter duration, favoring an all-Ares V launch approach. Further, the reliability of the all-Ares V architecture showed significant improvement with the addition of a single spare launcher/payload. Among architectures utilizing a mix of Ares V and commercial launchers, those that minimized the on-orbit loiter duration of Mars-bound elements were found to exceed the reliability of no spare all-Ares V campaign if unlimited commercial vehicle sparing was assumed

Manning, Ted A.↗

Advancing Multi-Hazard Risk and Safety Considerations for Aging Nuclear Facilities (Revision 1)

This project will demonstrate a multi-hazard time-dependent probabilistic risk assessment (PRA) approach for nuclear facilities considering aging-related deterioration of structures. A generic pressurized water reactor (PWR) reactor subjected to seismic mainshock-aftershock sequences considering the aging of the containment structure will be used as a case study to demonstrate the multi-hazard PRA approach. Using advanced modeling and simulation, seismic mainshock-aftershock fragility functions will be simulated for the containment structure considering aging effects. A multi-hazard PRA model for a generic PWR reactor will be built to quantify the multi-hazard core damage frequency (CDF) and large early release frequency (LERF) with explicit time-dependent modeling of event sequences. To date, the cascading impacts of multi-hazards are not adequately accounted for in the PRA models for nuclear facilities. In addition, for both initial and periodic evaluation of facilities to withstand natural phenomena hazards (NPH), deterioration of the SSCs due to aging and other effects is not adequately considered. By advancing multi-hazard considerations accounting for aging effects, this project will contribute to improved understanding of the safety of aging nuclear facilities. Project outcomes such as the multi-hazard CDF and LERF will also allow facility owners to optimize upgrade and retrofit protocols. This project is divided into two components: (1) advanced modeling and simulations; and (2) multi-hazard PRA. For the first component, Idaho National Laboratory’s (INL) Multi-hazard Analysis for STOchastic time-DOmaiN phenomena (MASTODON) and BlackBear codes will be used to simulate the seismic response and damage of a containment structure under cascading mainshock-aftershock sequences with aging effects. Uncertainties related to the seismic inputs, material parameters, and environmental factors such as temperature and humidity will be identified and propagated to the fragility functions. These fragility functions, which consider aging effects, will be time dependent. The second component will take the fragility information from the first component to build a multi-hazard time-dependent PRA model starting from a generic PWR model to evaluate the multi-hazard CDF and LERF and characterize the associated consequences. For this component, OpenPRA Web Application and SAPHIRE code will be used. Events such as the Fukushima Daiichi accident have highlighted the importance of considering the cascading impacts of multi-hazards for PRA. Moreover, many of the reactors in the current nuclear fleet in the United States (US) are already operating well beyond their initially planned design life, and applications for further extensions to operating licenses are being considered. Therefore, considering multi-hazard effects and aging deterioration in the NPH risk assessment process will contribute to the safety of both existing and future nuclear facilities. Outcomes of this project will thus directly benefit the standards DOE-STD-1020-16 and DOE-HDBK-1224-18.

22 GENERAL STUDIES OF NUCLEAR REACTORS↗

Information and problem report usage in system saftey engineering division

Five basic problems or question areas are examined. They are as follows: (1) Evaluate adequacy of current problem/performance data base; (2) Evaluate methods of performing trend analysis; (3) Methods and sources of data for probabilistic risk assessment; and (4) How is risk assessment documentation upgraded and/or updated. The fifth problem was to provide recommendations for each of the above four areas.

Morrissey, Stephen J.↗

Probabilistic Risk Assessment Procedures Guide for NASA Managers and Practitioners (Second Edition)

Probabilistic Risk Assessment (PRA) is a comprehensive, structured, and logical analysis method aimed at identifying and assessing risks in complex technological systems for the purpose of cost-effectively improving their safety and performance. NASA's objective is to better understand and effectively manage risk, and thus more effectively ensure mission and programmatic success, and to achieve and maintain high safety standards at NASA. NASA intends to use risk assessment in its programs and projects to support optimal management decision making for the improvement of safety and program performance. In addition to using quantitative/probabilistic risk assessment to improve safety and enhance the safety decision process, NASA has incorporated quantitative risk assessment into its system safety assessment process, which until now has relied primarily on a qualitative representation of risk. Also, NASA has recently adopted the Risk-Informed Decision Making (RIDM) process [1-1] as a valuable addition to supplement existing deterministic and experience-based engineering methods and tools. Over the years, NASA has been a leader in most of the technologies it has employed in its programs. One would think that PRA should be no exception. In fact, it would be natural for NASA to be a leader in PRA because, as a technology pioneer, NASA uses risk assessment and management implicitly or explicitly on a daily basis. NASA has probabilistic safety requirements (thresholds and goals) for crew transportation system missions to the International Space Station (ISS) [1-2]. NASA intends to have probabilistic requirements for any new human spaceflight transportation system acquisition. Methods to perform risk and reliability assessment in the early 1960s originated in U.S. aerospace and missile programs. Fault tree analysis (FTA) is an example. It would have been a reasonable extrapolation to expect that NASA would also become the world leader in the application of PRA. That was, however, not to happen. Early in the Apollo program, estimates of the probability for a successful roundtrip human mission to the moon yielded disappointingly low (and suspect) values and NASA became discouraged from further performing quantitative risk analyses until some two decades later when the methods were more refined, rigorous, and repeatable. Instead, NASA decided to rely primarily on the Hazard Analysis (HA) and Failure Modes and Effects Analysis (FMEA) methods for system safety assessment.

Stamatelatos,Michael↗

Probabilistic structural analysis: Introductory remarks

The development of probabilistic structural analysis methodology consists of the following program elements: (1) composite load spectra models, (2) computational probabilistic structural analysis methods, and (3) probabilistic constitutive relationships. The development of the probabilistic structural analysis methodology is a joint program of NASA Lewis in-house and sponsored research. The objective of this session is to illustrate recent progress on the application of this methodology to determine the reliability of structural components for rocket propulsion systems. The session contains descriptions of and progress reports on the following specific activities: (1) The NESSUS computer code, (2) approximate methods, (3) advanced methods, (4) composite load spectra applications, (5) probabilistic fracture mechanisms, and (6) probability of failure and risk analysis. Collectively, the progress to date demonstrates that the structural durability of hot engine structural components can be effectively evaluated in a formal probabilistic/reliability framework.

Chamis, Christos C.↗

Probability of Failure and Risk Assessment of Propulsion Structural Components

Due to increasing need to account for the uncertainties in material properties, loading conditions, or geometries, a methodology was developed to determine structural reliability and the assess the risk associated with it. The methodology consists of a probabilistic structural analysis by a probabilistic finite element computer code Nonlinear Evaluation of Stochastic Structures Under Stress (NESSUS) and a generic probabilistic material properties model. The methodology is versatile and is equally applicable to high and cryogenic temperature structures. Results obtained demonstrate that the whole issue of structural reliability and risk can be formally evaluated using the methodology developed which is inclusive of uncertainties in material properties, structural parameters and loading conditions. The methodology is described in some detail with illustrative examples.

Shiao, Michael C.↗

LOFTID Aeroshell Thermal Response Uncertainty Analysis Utilizing the End-to-End Monte Carlo Approach

A probabilistic thermal margin process has been performed to design the flexible thermal protection system (FTPS) and select entry trajectory constraints given an acceptable risk level for the Low-Earth Orbit Flight Test of and Inflatable Decelerator (LOFTID) project. Uncertainties exist in atmospheric entry aeroheating environments and the predicted thermal response of thermal protection system (TPS) material. Entry vehicle TPS is often over-sized to mitigate uncertainty by combining conservative bounding scenarios together. The probabilistic thermal margin process allows engineers to make informed aeroshell design, flight design, and FTPS performance risk trades while preventing excessive FTPS margin from being applied. This paper describes the uncertainty analysis methodology used to carry out a probabilistic thermal margin process used for LOFTID’s aeroshell and explains how the calculated probability of exceeding flight allowable temperatures is used to design the FTPS and establish nominal flight design constraints. This probabilistic thermal margin process had never been applied to entry, decent, and landing design for a flown entry vehicle and it is one of the LOFTID project’s goals to demonstrate its merits.

Steven Andrew Tobin↗