Engineering PapersSearch

SEARCH · Engineering Papers

Results for “Consequence Analysis”

Search indexed NASA NTRS and DOE OSTI research on propulsion, heat transfer, battery materials and energy systems. Follow report and document links to the original sources.

Quote a phrase for an exact phrase match. Source license links do not imply unrestricted reuse.

At least 19 records

Use of National Centers for Environmental Prediction (NCEP) Data to Support Severe Accident Consequence Analysis at Locations Without Onsite Meteorological Data

Certain regulatory actions under 10 CFR Parts 50, 52, or the proposed part 53 require the assessment of the potential off-site consequence risks to public safety and the environment from a hypothetical severe accident. As an important part of these analyses, atmospheric transport and dispersion (ATD) modeling relies heavily on the prevailing weather patterns of a site. When considering future deployment of new reactor designs in areas where historical onsite meteorological data is not available,

54 ENVIRONMENTAL SCIENCES

Radiological Safety Analysis Computer (RSAC 7.2) Presentation

This presentation will be for the graduate seminar class for the University of New Mexico. We will discuss the Radiological Safety Analysis Computer (RSAC) version 7.2, a critical tool in radiological consequence analysis within the nuclear safety domain. We will begin with an introduction to radiological consequence analysis and the importance of dose modeling in nuclear safety, referencing key regulatory frameworks such as DOE-STD-3009 and 10 CFR 20. The presentation will provide an overview of RSAC, including its history, primary functions, and the inputs and outputs involved in its calculations. A detailed examination of RSAC's atmospheric dispersion model, based on the Gaussian plume methodology, will be presented, highlighting how meteorological factors influence the results. We will discuss the regulatory alignment of RSAC with DOE and NRC guidelines, emphasizing the assumptions required for compliance and the balance between conservative and realistic inputs. The presentation will also address the limitations and assumptions inherent in RSAC, comparing it with other consequence analysis codes like MACCS, HotSpot, and RASCAL. An example RSAC run will be demonstrated, showcasing a hypothetical accident scenario and interpreting the resulting dose calculations. Finally, we will introduce new ideas to enhance the current RSAC framework. This future work aims to provide multi-industry adaptability and integration with new dispersion models, addressing the evolving needs of DOE and NRC. The presentation will conclude with a discussion on RSAC's ongoing role in nuclear safety and the opportunities for future innovation.

computer program

Adapting Traditional Hazards Analysis Methods to Address Cyber Risks

Traditional hazards analysis (HA) methods, originally developed to address physical and operational risks, often fall short when it comes to identifying and mitigating cyber threats. These cyber threats pose unique and evolving risks to critical infrastructure and industrial control systems (ICS). This report explores the integration of Cyber-Informed Engineering (CIE) principles into existing HA methods to enhance their ability to address cyber-induced risks. CIE provides organizations with a practical, cost-effective approach to closing the gap between traditional HA methods and the need for cyber risk mitigation. By leveraging existing safety processes and controls, CIE allows users to examine and mitigate cyber vulnerabilities without overhauling existing HA methods. This report identifies areas where HA and CIE naturally align and where their approaches diverge. It emphasizes how CIE principles can be used to adapt HA methods, broadening their scope to include cyber risks and enabling the mitigation of cyber- induced impacts alongside traditional hazards and failure scenarios. This report examines how CIE can be applied across various HA methods—such as Hazard and Operability Studies (HAZOP), Probabilistic Risk Assessment (PRA), Failure Modes and Effects Analysis (FMEA), Systems-Theoretic Process Analysis (STPA), Hazard and Consequence Analysis for Digital Systems (HAZCADS), and Layers of Protection Analysis (LOPA). It provides strategies for integrating CIE to strengthen the identification, assessment, and mitigation of cyber-induced risks. The findings offer a structured entry point for organizations to embed CIE concepts into hazards and safety analyses, as well as broader engineering processes, ultimately supporting the design and operation of a more resilient infrastructure.

42 ENGINEERING

Adapting Traditional Hazards Analysis Methods to Address Cyber Risks

Traditional hazards analysis (HA) methods, originally developed to address physical and operational risks, often fall short when it comes to identifying and mitigating cyber threats. These cyber threats pose unique and evolving risks to critical infrastructure and industrial control systems (ICS). This report explores the integration of Cyber-Informed Engineering (CIE) principles into existing HA methods to enhance their ability to address cyber-induced risks. CIE provides organizations with a practical, cost-effective approach to closing the gap between traditional HA methods and the need for cyber risk mitigation. By leveraging existing safety processes and controls, CIE allows users to examine and mitigate cyber vulnerabilities without overhauling existing HA methods. This report identifies areas where HA and CIE naturally align and where their approaches diverge. It emphasizes how CIE principles can be used to adapt HA methods, broadening their scope to include cyber risks and enabling the mitigation of cyber- induced impacts alongside traditional hazards and failure scenarios. This report examines how CIE can be applied across various HA methods—such as Hazard and Operability Studies (HAZOP), Probabilistic Risk Assessment (PRA), Failure Modes and Effects Analysis (FMEA), Systems-Theoretic Process Analysis (STPA), Hazard and Consequence Analysis for Digital Systems (HAZCADS), and Layers of Protection Analysis (LOPA). It provides strategies for integrating CIE to strengthen the identification, assessment, and mitigation of cyber-induced risks. The findings offer a structured entry point for organizations to embed CIE concepts into hazards and safety analyses, as well as broader engineering processes, ultimately supporting the design and operation of a more resilient infrastructure.

42 - ENGINEERING

CIE Analysis Process for Engineered Systems

"CIE Analysis Process for Engineered Systems" outlines a comprehensive methodology for integrating Cyber-Informed Engineering (CIE) principles into both new and existing engineered systems. Sponsored by the U.S. Department of Energy’s Office of Cybersecurity, Energy Security, and Emergency Response (DOE CESER), the process aims to achieve cyber-informed decisions by producing functional security requirements for new systems and retrofitting existing systems to mitigate digital risks. The document details a step-by-step approach, including mission and function definition, digital asset awareness, consequence analysis, and mitigation analysis. It emphasizes the importance of documenting mechanical, electrical, programmable, and network components to protect system functions and provides examples and considerations for each step. The ultimate goal is to ensure that engineered systems remain resilient against cyber threats, maintaining safety, performance, and reliability.

42 - ENGINEERING

MACCS User Guide (V.5.0)

MACCS is used by the Nuclear Regulatory Commission (NRC) and various national and international organizations for probabilistic consequence analysis of nuclear power accidents. This user guide is intended to assist analysts in understanding the MACCS/MACCS-UI User Interface (UI) model and to provide information regarding the code. This user guide version describes MACCS Version 5.0, model history, explains how to set up and execute a problem, and informs the user of the definition of various input parameters and any constraints placed on those parameters. This report is part of a series of reports documenting MACCS. Other reports include the MACCS Theory Manual, MACCS Verification Report, Technical Bases for Consequence Analyses Using MACCS, as well as documentation for preprocessor codes including SecPop, MelMACCS, and COMIDA2.

22 GENERAL STUDIES OF NUCLEAR REACTORS

MACCS User Guide - Version 5.2

MACCS is used by the Nuclear Regulatory Commission (NRC) and various national and international organizations for probabilistic consequence analysis of nuclear power accidents. This user guide is intended to assist analysts in understanding the MACCS/MACCS-UI User Interface (UI) model and to provide information regarding the code. This user guide version describes MACCS Version 5.2, model history, explains how to set up and execute a problem, and informs the user of the definition of various input parameters and any constraints placed on those parameters. This report is part of a series of reports documenting MACCS. Other reports include the MACCS Theory Manual, MACCS Verification Report, Technical Bases for Consequence Analyses Using MACCS, as well as documentation for preprocessor codes including SecPop, MelMACCS, and COMIDA2.

54 ENVIRONMENTAL SCIENCES

ECAR-5127 Rev 1 Evaluation of the MARVEL Reactor Inhalation Dose Consequences

The following dose consequence analysis is performed to support the preliminary Microreactor Applications Research Validation and Evaluation Project (MARVEL) design effort. The purpose of the MARVEL project is to develop a nuclear microreactor applications test bed at Idaho National Laboratory (INL) to perform research and development on various operational features of microreactors to ultimately improve integration of microreactors to end-user applications. The MARVEL concept is a 100 kilowatt (kW) thermal (kWth) and approximately 20-kW electric (kWe) generating microreactor. The MARVEL system will be located in the INL TREAT facility in the north high-bay equipment pit. This ECAR considers the bounding release fractions of the MARVEL reactor concept and documents the dose consequences to the public and collocated worker.

21 - SPECIFIC NUCLEAR REACTORS AND ASSOCIATED PLAN

Enhancing Data Quality Monitoring at CMS with Interactive Visualization Tools and Automated Reference Run Selection

Current data quality monitoring (DQM) tools at CMS offer granularity limited to per-run analysis. Consequently, issues manifesting at the per-lumisection level can go unnoticed or, even if detectable, often lead to the classification of the whole run as bad, resulting in unnecessary data loss. Additionally, shifters have to evaluate a large set of monitoring elements during their long shifts, increasing the probability of human errors or overlooked problems. In this contribution, we present ongoing work on the development of tools that will provide shifters with an accessible, granularity-enhanced view of DQM data through interactive and dynamic visualizations. Furthermore, we introduce a reference run selection tool currently under development, which will automate the selection based on data-taking conditions and will offer a curated set of training data for machine learning models that will be used for the partial automation of the offline data certification process. These endeavors will be integrated into the DIALS website, enabling enhancements in data certification accuracy and improving the accessibility of DQM at CMS.

72 PHYSICS OF ELEMENTARY PARTICLES AND FIELDS

Worst Case Sabotage Consequence Modeling for Advanced Reactors

Under proposed rulemaking by the United States Nuclear Regulatory Commission, advanced reactor licensees may qualify for a reduction in onsite responders if the consequences from a sabotage attack do not exceed 25 rem at the reactor site boundary 2 hours after a release occurs. This work presents a preliminary assessment of the feasibility of meeting the 25 rem at the site boundary criteria. Using advanced reactor radionuclide inventories radiological release estimates created by collaborators at Oak Ridge National Laboratory, the MACCS consequence analysis code was used to investigate the distance at the dose from hypothetical sabotage events reaches 25 rem for different advanced reactor technologies. It was found that the distance to 25 rem depended heavily on sampled weather conditions and sabotage release fractions, and further refinement of release fractions and MACCS modeling parameters is recommended.

22 GENERAL STUDIES OF NUCLEAR REACTORS

Advanced Test Reactor Safety Basis Update for Gas-Cooled Experiments

The Advanced Test Reactor (ATR) supports neutron irradiation of several types of experiments. One such experiment type is referred to as a gas leadout. Gas leadout experiments actively flow gas through the experiment which allows for active temperature control. It also allows for in-situ data of the experiment. For example, fission gas migration through a fuel sample can be monitored via activity of the sweep gas. Historically, ex-pile equipment and fission product monitors were housed in shielded ATR cubicles. Due to other facility updates, cubicle space is no longer available for gas leadout experiment equipment. To support continued operation of gas leadout experiments, ATR completed a safety basis update that supports a new housing for leadout equipment that may process potentially contaminated gas. In addition to the structure and associated equipment, technical safety requirements regarding handling and storage of experiments needed to be revised to support fueled gas leadout experiments and associated outage configurations. The safety basis update addressed the full lifecycle of these experiments, including experiment movement and interim storage, and credible abnormal events such as failures or leaks in contaminated gas tubing in occupied areas. This paper discusses the completed analyses performed to support the safety basis update associated with gas leadout experiments, including thermal-hydraulic evaluation, probabilistic analysis, and dose consequence analyses.

11 - NUCLEAR FUEL CYCLE AND FUEL MATERIALS

Advanced Reactor Designs Security Analysis, Risk, and Recommendations: Risks, Consequences, and Possible by-Design Mitigation Approaches Associated with Select Advanced Reactors

Next-generation advanced reactors (ARs) incorporate enhanced safety systems, have smaller source terms, and feature compact modular designs, which should lessen their collective risk profiles. However, to fully evaluate risk, security needs to be a part of the equation. Without taking security into consideration, safety systems and components in the new ARs may be vulnerable to sabotage. These base attributes, coupled with enhanced security features specific to AR design through sound engineering and security-by-design (SeBD), should provide developers and operators with lower inherent security risk profiles. Building security early into the AR design may remove or passively secure potential critical targets from an adversary’s reach , thereby increasing overall safety and security. An integrated approach and diverse design team that includes engineering, operations, and security experts are fundamental to building security into the design without sacrificing fundamental operational efficiencies and principles. The objective of this project was to evaluate the security and safety interfaces for five classes of reactors, identify potential security vulnerabilities of structures, systems, and components (SSC), and underscore the need to consider security alongside safety in the design o f these concepts. The five reactor classes evaluated in this project and presented in this report are molten-salt reactors (MSR), high temperature gas reactors (HTGR), sodium-fast reactors (SFR), advanced light-water reactors (ALWR), and microreactors. These designs were selected because they reflect the concepts that are closest to market deployment and have received significant resource investments from the public and private sector. This project assesses the inherent security risks posed by common classes of ARs, provides a methodology and framework to assess security along with safety, and offers an analysis of potential mitigation strategies that could be incorporated. For each AR technology, the SSCs that relate to radionuclide source safety functions are discussed to understand the SSC contribution to safety and relative importance in the protective strategy for the design. The assumptions that went into evaluating each reactor concept originated from generic publicly available nonproprietary information and should not directly be used to qualify an absolute risk profile nor to rank specific AR designs. Instead, the purpose of the analysis is to understand and compare the generic inherent security risks of different AR technologies.

98 - NUCLEAR DISARMAMENT, SAFEGUARDS, AND PHYSICAL

Myriad World Baseline: Global Geodemographic Estimates

The LandScan Myriad World Baseline (MWB) method produces global, residential (nighttime/home-location) gridded geodemographic estimates based on 5-year age/gender cohorts—at 30-arcsecond (≈1 km) resolution. MWB is designed to fill gaps where detailed, georeferenced survey data (e.g., Demographic and Health Surveys (DHS)) are missing or outdated, and to provide a baseline that can support human security analysis, including consequence assessment, “patterns of life” modeling, and scenario-based population futures. MWB’s workflow spatializes household-level age/gender characteristics from the GLOPOP-S dataset by conflating household and gridded expected relative wealth adapted from Global Gridded Relative Deprivation Index (GRDI), then adjusts them to a target year of interest. Age/gender estimates are then applied to harmonize lowest-administrative-level statistics with LandScan residential counts, yielding final geodemographic estimates. Two validation case studies are presented: Ghana (2021) and Tokyo/Kanagawa, Japan (2020), illustrating spatial variability in demographic cohorts and comparing MWB outputs to official gridded statistics. Results show close overall alignment relative to validation criteria including population pyramids and age-dependency ratios.

Tuccillo, Joe [ORNL] (ORCID:0000000259300943)

From Data to Knowledge: A Graph-Based Reliability Approach to Assess System Health

With the goal of maximizing plant reliability and availability, complex systems such as nuclear power plants continuously monitor and record the performance and the health status of many components, assets, and systems. Such data may take the form of online monitoring data, condition reports, and maintenance reports and it carries the potential to provide system engineers with insights into anomalous behaviors or degradation trends as well as the possible causes behind them and to predict their direct consequences. The analysis of such data poses however few challenges. While some of these challenges are technical in nature (i.e., data are often distributed over several physical servers or databases), others are conceptual in nature (i.e., data elements come in different formats, numeric or textual), and measured values have different scales (e.g., vibration spectra and oil temperature). This paper directly tackles these challenges, and it focuses on the integration of all these data elements in order to assist plant system engineers in analyzing component, assets, and systems performances and optimize maintenance activities. This is performed by 1) extracting knowledge from textual data via technical language processing methods, and 2) quantifying system, asset, and component health from numeric condition-based data. We rely on model-based system engineering (MBSE) models of systems and assets to identify their architecture and functional (i.e., cause and effect) relations. Numeric and textual data elements are then associated with an MBSE graph element, based on their nature. This bonding of MBSE models and data elements constitutes a first-of-its-kind knowledge graph of a nuclear power plants system, with data elements being organized in a structured manner that enables system engineers to identify cause-effect trends in data elements and carry out appropriate actions in response.

97 MATHEMATICS AND COMPUTING

Utility-Scale Operational Consequences for Solar Grid Services

This report delves into the critical aspects of grid services provided by solar inverter-based resources (IBRs), with an emphasis on the evolving landscape of microgrids, virtual power plants (VPPs), aggregators, and distributed energy resource management systems (DERMS). As the energy sector undergoes a transformative shift towards more decentralized and resilient grid architectures, understanding the multifaceted risks associated with these technologies becomes paramount. The report categorizes these risks into organizational, technical, and procedural domains, providing a thorough risk assessment framework that stakeholders can utilize to anticipate and mitigate potential issues. In addressing the increasing complexity of grid interconnections, the report highlights the importance of Cyber-Informed Engineering (CIE). By embedding engineering controls and cybersecurity measures into the early stages of system design, this approach aims to fortify grid infrastructure against emerging cyber threats. The analysis includes an exploration of best practices and strategies for integrating CIE principles to enhance grid security and resilience. To provide practical insights, the report conducts a detailed consequence analysis of various grid services and cyber mitigations that can be applied through the interconnection process. This analysis evaluates the potential impacts of different failure modes and vulnerabilities, offering a clear understanding of the consequences that could arise from disruptions within the energy grid. The findings are further enriched by a series of case studies that illustrate real-world scenarios and lessons learned from past incidents. Through this comprehensive examination of grid services and their criticality, the report aims to prepare industry professionals with the knowledge and tools necessary to navigate the complexities of modern energy systems. By providing a comprehensive approach that includes risk assessment, cybersecurity, and consequence analysis, solar stakeholders can more effectively guarantee the reliability, efficiency, and security of the energy grid.

14 SOLAR ENERGY

Cyber-Informed Engineering (CIE) Workbook: End-of-Train (EoT) / Head-of-Train (HoT) Communications

This workbook presents a vulnerability (CVE-2025-1727 ) found in train applications and guides a digital risk assessment and mitigation analysis and application of Cyber-Informed Engineering principles to mitigate the potential consequences and ultimately the hazard through the engineering discipline because of exploiting this vulnerability. Workshop participants are encouraged to use the workbook to capture insights and lessons learned. The workbook guides the participant to: • Understand the HE communication vulnerability • Map digital threats to physical consequences • Use bowtie analysis to illustrate both “security” and “engineering” barriers • Apply CIE principles to ensure that even if communications are compromised, the physical engineered system still behaves safely. • Produce an actionable set of engineered and infosec controls for implementation

42 - ENGINEERING

Explicit Dynamic Impact Analysis of the Building 3525 Packages

The safe transport and handling of radioactive material containers is critical to ensure the protection of personnel, facilities, and the environment. Accidental drops during handling pose a significant hazard, necessitating robust design and analysis to mitigate potential consequences. This study presents an explicit dynamic impact analysis of two container designs, the Baby Sugarman and the Core Conduction Cooldown Test Facility (CCCTF) Tall Boy, used in Building 3525 at Oak Ridge National Laboratory. The analysis employed nonlinear finite element modeling in LS-DYNA to simulate free-fall impacts from a height of 16.5 ft across eight critical orientations. The study evaluated deformation, strain failure, and shielding integrity under these extreme conditions. Results demonstrated that both designs maintain structural integrity, with no breaches or loss of shielding under specified administrative controls. Notably, a maximum shielding loss of 10 lbs was observed during a top-corner drop, highlighting the need to limit drop heights to less than 1 ft for certain orientations. These findings underscore the effectiveness of engineering controls and design measures in preventing containment breaches and ensuring compliance with safety requirements. This work provides a comprehensive methodology for impact analysis, contributing valuable insights to the field of radioactive materials packaging and transportation safety.

Martinez, Oscar [ORNL] (ORCID:0000000181814046)