Académique Documents
Professionnel Documents
Culture Documents
Safety
Is determined considering the system as a whole. Has to consider the environment with which it interacts .
Copyright 2012 IHS Inc.
Example of Functional Safety: Over-temperature protection device of an electric motor to deenergise the motor before overheat. Example of non-Functional Safety: Providing specialised insulation to withstand high temperatures
10" Line
Offgas to Compressor
PCV Com pressor Shutdow n Interlock
Flash Gas
PSV
Demister Gas & Liquid Feed 12" Line Separator Vessel V-1 @ 300 psig
LAHH 1
To Flare
LAH 1
LIC 2
LG 1
LIC 1
4"Line
LCV 1
6"Line
LCV 2
Liquid Effluent
3"
Example of Functional Safety: High level protection device to prevent liquid carry over from vessel to compressor
Safety Functions
Safety functions are implemented by safety related systems such as: Safety Instrumented System (SIS) Safety related technology, e.g. PSV External risk reduction facilities, e.g. Drain system, dike which is intended to achieve or maintain a safe state for the process, with respect to a specific hazardous event
C om b ustio n C ha m b er
B u rn e rs
F C V 2 P ilo t L in e
PSH 1
In terlo ck sh u ts F C V -1 a n d F C V -2
PAH 1
A Safety Function is needed: Flame detection sensors that will trip out the main and pilot gas supplies as soon as the flame is lost and start the purge timer to prevent startup of the pilot flame for a specified period of time.
Potential damage due to explosion Frequency of a flame out incident that leads to explosion
Copyright 2012 IHS Inc.
Severity Likelihood
Safety Integrity
Functional Safety To summarize : Hazard Analysis identifies what has to be done Risk assessment determines safety integrity of safety system required to reduce the risk to an acceptable level
Copyright 2012 IHS Inc.
What safety function has to be performed? What degree of certainty is necessary that the safety function will be carried out ?
Designing in a way to prevent dangerous failures or to control them when they arise is a challenge. Dangerous failures : Failure which has the potential to put the safety instrumented system in a hazardous or fail-to-function state.
Copyright 2012 IHS Inc.
Instrumentation or controls that are installed for the purpose of mitigating the hazard or bring the process to a safe state in the event of a process upset.
Think
SIF as a: Safety function with a specified Safety Integrity Level which is necessary to achieve functional safety and which can be either a safety instrumented protection function or a safety instrumented control function
specific hazardous event. A SIS may contain one or many SIFs and each is assigned a Safety Integrity Level (SIL). As well, a SIF may be accomplished by more than one SIS.
close High fuel gas pressure initiates fuel gas ESDV (Emergency shutdown valve) High level in the vessel initiates Compressor shut down Loss of cooling liquid to reactor trips isolation and depressurization of reactor
Safety Integrity
Average probability of a SIS satisfactorily performing
the required SIF(s) under all the stated conditions within a stated period of time.
There are 4 levels. Measure by failure rate in the dangerous mode of
10
reaches the trip condition and causes the SIS to take action.
11
are insufficient to mitigate the potential hazard. Then, one should consider installing Safety Instrumented System as an additional means for risk reduction.
Copyright 2012 IHS Inc.
12
What are you trying to achieve when you design a SIS ???
13
I
ESDV 172
LT 214
LSHH 214
LAHH 214
V 180
LT 213
LC 213
LCV 213
SIS: Monitors a process variable (Level in this case) and initiates action when required (trips ESDV 172 and shutdown compressor C130)
Two-phase flow hydrocarbons
I
ESDV 172
LT 214
LSHH 214
LAHH 214
V 180
LT 213
BPCS: Maintain a process variable within prescribed limits (Level in this case)
Copyright 2012 IHS Inc.
LC 213
LCV 213
14
LAHH 214
V 180
LT 213
BPCS: Signals are dynamic; easier to detect failures, e.g. out of range signals, flat line outputs etc.
Copyright 2012 IHS Inc.
LC 213
LCV 213
Diagnostics Redundancy
Copyright 2012 IHS Inc.
15
high Control valve output low Process parameter indication low Process parameter erratic indication
SIS failure modes Fail to operate on demand Spuriously operation Function delayed
16
Process
Protection Available
Yes at 5500 rpm Not applicable NO at 5500 rpm
Failure indication
Not applicable Yes, High speed trip indication Not without diagnostic
Normal at 5000 rpm Shut down of compressor, speed 0 rpm Normal at 5000 rpm
Fail danger
Copyright 2012 IHS Inc.
17