Sie sind auf Seite 1von 20

Background Overview Hazard & Risk IEC 61508 & 61511 Risk Analyisis

Layer of Protection Analysis (LOPA)


in determining
Safety Integrity Level (SIL)
Part 1 - Introduction
Heru Wandira
PT. AT Solusi

7 Oktober 2014

HW

LOPA

Background Overview Hazard & Risk IEC 61508 & 61511 Risk Analyisis

Daftar Isi
1

Background

Overview

Hazard & Risk

IEC 61508 & 61511


IEC 61508
IEC 61511
IEC 61508 & 61511 Relationship
Relationship of SIF & other

Risk Analyisis
RA in SIS
LOPA
The Concept of LOPA
Evaluation of LOPA
HW

LOPA

Background Overview Hazard & Risk IEC 61508 & 61511 Risk Analyisis

Background

Figure: Safety life Cycle [1]


HW

LOPA

Background Overview Hazard & Risk IEC 61508 & 61511 Risk Analyisis

Overview

Safety Integrity Level (SIL) determined by target Probability of


Failure on Demand (PFD) set on demand mode or dangerous
failure rate (continuous mode) set by :
Process Risk
Tolerable Risk
other mean of protection
One of the popular risk analysis in determining SILs level is
using Layer Of Protection Analysis (LOPA). LOPA is
quantitative method for determining risk hazard in industrial
level published in 1993 by CCPS

HW

LOPA

Background Overview Hazard & Risk IEC 61508 & 61511 Risk Analyisis

Hazard & Risk in Industry

Figure: Protection Layers for Hazard & Risk in Industry [2]


HW

LOPA

Background Overview Hazard & Risk IEC 61508 & 61511 Risk
IEC Analyisis
61508 IEC 61511 IEC 61508 & 61511 Relationship Rel

IEC 61508 Functional Safety of E/E/PE safety-related


systems

Functional Safety Of Electrical/Electronic/ Programmable


Electronic Safety-Related
Systems

Figure: Functionality of IEC 61508[2]


HW

LOPA

Background Overview Hazard & Risk IEC 61508 & 61511 Risk
IEC Analyisis
61508 IEC 61511 IEC 61508 & 61511 Relationship Rel

IEC 61511 - Functional Safety - SIS for Process


Industry
Functional Safety - Safety Instrumented Systems For The Process Industry Sector
Part 1 : Framework,
definitions, system,
hardware and software
requirements
Part 2 : Guidelines For The
Application Of IEC 61511-1
Part 3 : Guidance For The
Determination Of The
Required Safety Integrity
Levels

Figure: Functionality of IEC 61511 [2]


HW

LOPA

Background Overview Hazard & Risk IEC 61508 & 61511 Risk
IEC Analyisis
61508 IEC 61511 IEC 61508 & 61511 Relationship Rel

Relationship between IEC 61511 & 61508

Figure: Relationship between IEC 61511 & 61508


HW

LOPA

Background Overview Hazard & Risk IEC 61508 & 61511 Risk
IEC Analyisis
61508 IEC 61511 IEC 61508 & 61511 Relationship Rel

Relationship between SIFs and other Functions

Figure: Relationship between SIFs and other Functions


HW

LOPA

Background Overview Hazard & Risk IEC 61508 & 61511 Risk
RA in
Analyisis
SIS LOPA The Concept of LOPA Evaluation of LOPA

Risk Analysys in determining SIL

Suggested methods in IEC 61508 & 61511 for calculate target


SIL value of SIF :
Qualitative : Risk matriks, and Risk Graph
Quantitative : LOPA, Failure Mode, and Effect Analysis
(FMEA) or MARKOV modelling

HW

LOPA

Background Overview Hazard & Risk IEC 61508 & 61511 Risk
RA in
Analyisis
SIS LOPA The Concept of LOPA Evaluation of LOPA

Layer Of Protection Analysis (LOPA) - Overview

LOPA is a quantitative tool which is readily applied after the Process Hazard Analysis (PHA) on determinig SILs level. The concept of LOPA published by CCPS, and proposed in IEC 61511
standard
Guidelines for Safe Automation of Chemical Process
(CCPS, 1993)
IEC 61511-3 Annex F : Provides An Overview Of A Method
Using A Layer Of Protection Analysis (LOPA) Approach To
Select The Required SIL

HW

LOPA

Background Overview Hazard & Risk IEC 61508 & 61511 Risk
RA in
Analyisis
SIS LOPA The Concept of LOPA Evaluation of LOPA

Layers of Protections

Figure: Layers of protection to lower the frequency of a specific


accident scenario [5]
HW

LOPA

Background Overview Hazard & Risk IEC 61508 & 61511 Risk
RA in
Analyisis
SIS LOPA The Concept of LOPA Evaluation of LOPA

The Concept of LOPA


LOPA is used to identify multiple Independent Protection Layers
(IPLs) that mitigate a potential hazard [3].

Figure: The concept of LOPA [2]

HW

LOPA

Background Overview Hazard & Risk IEC 61508 & 61511 Risk
RA in
Analyisis
SIS LOPA The Concept of LOPA Evaluation of LOPA

The Concept of LOPA

Independent Protection Layers (IPLs) are devices, systems, or


actions that are capable of preventing a scenario from developing into an undesired consequence. All these layers are independent from one another so that any failure of the layer will not
affect the functioning of the other layers [3].
Each company that chooses to use LOPA needs its own specific procedure. The Procedure must include tables for initiating
cause likelihoods and PFDs for various types of IPLs [3]. The
LOPA procedure must have clear rules with which to evaluate
safeguards to determine if they qualify as IPLs.

HW

LOPA

Background Overview Hazard & Risk IEC 61508 & 61511 Risk
RA in
Analyisis
SIS LOPA The Concept of LOPA Evaluation of LOPA

Team composition and training of LOPA facilitators

LOPA team composition and training that company should also establish had the minimum requirements. The team should
consist of the [3]:
Operator with experience operating the process under
consideration
Engineer with experience in the process
Manufacturing management
Process control engineer
Instrument / Electrical maintenance person with
experience in the process under consideration
Risk analysis (LOPA) specialist

HW

LOPA

Background Overview Hazard & Risk IEC 61508 & 61511 Risk
RA in
Analyisis
SIS LOPA The Concept of LOPA Evaluation of LOPA

LOPA process
The LOPA process consist 6 steps :

HW

Identify the consequence to screen


the scenarios

Select an accident scenario

Identify the initiating cause of the


scenario and determine the initiating
cause frequency (event per year)

Identify the IPL and estimate the


PFD of each IPL

Estimate the risk of the scenario by


mathematically combining the
consequence, initiating event and
IPL data

Evaluate the risk and give


recommendations
LOPA

Background Overview Hazard & Risk IEC 61508 & 61511 Risk
RA in
Analyisis
SIS LOPA The Concept of LOPA Evaluation of LOPA

Benefits of LOPA
LOPA advantages[3] :
Simple risk assessment tools with less time and resources
than for a QRA but more rigorous than HAZOP
It facilitate the determination for more precise
cause-consequence pairs
It identifies operations, practices, system and processes
that do not have adequate safeguards and help in deciding
the PLs required on the most critical safety systems
It avoids the generalities of the safety layer matrix method
by including its own calibration
Even though more time-consuming than Risk graph, it
allow a better understanding of the safety system in the
functional safety of the overall design
It requires much less work than FTA
Provide due credit to all PLs and helps in estimating the
specific risk level of the unit or equipment
HW

LOPA

Background Overview Hazard & Risk IEC 61508 & 61511 Risk
RA in
Analyisis
SIS LOPA The Concept of LOPA Evaluation of LOPA

Benefits of LOPA

It removes subjectivity while providing clarity and


consistency to risk assessment and helps to compare risk
based on a common ground if it is used throughout a plant
It is useful for making risk-based decision during stages
like design, management of change, etc
Provide due credit to all PLs and helps in estimating the
specific risk level of the unit or equipment
It removes subjectivity while providing clarity and
consistency to risk assessment and helps to compare risk
based on a common ground if it is used throughout a plant

HW

LOPA

Background Overview Hazard & Risk IEC 61508 & 61511 Risk
RA in
Analyisis
SIS LOPA The Concept of LOPA Evaluation of LOPA

Benefits of LOPA
Limitation of using LOPA[3] :
It is not intended to be a hazard identification tool
Criteria for risk tolerance must be established for LOPA
exercise before process starts
LOPA offers flexibility to the user in the areas of selecting
IPLs and PFDs, this brings in subjectivity in the
assessment process and depends on the expertise of the
user
LOPA is a simplified approach and should not be applied to
all scenarios.
LOPA analysis tends to drive initiating cause likelihoods to
higher levels than actual field experience

HW

LOPA

Background Overview Hazard & Risk IEC 61508 & 61511 Risk
RA in
Analyisis
SIS LOPA The Concept of LOPA Evaluation of LOPA

Daftar Pustaka
IEC 61508 - 1998 Functional Safety Of Electrical/Electronic
/Programmable Electronic Safety-Related Systems
IEC 61511 - 2003 Functional safety Safety instrumented
systems for the process industry sector
B. R. Hanniken, Applicability of Layer of Protection Analysis
to determine Safety Integrity Levels in the Process
Industry, NTNU, Norwegia : 2007
ANSI ISA S84.01 - 1996 Application of Safety Instrumented
Systems for the Process Industries
D. A. Crowl, Chemical Process Safety : Fundamental with
Applications 2nd Edition, Prentice Hall, New Jersey : 2001

HW

LOPA

Das könnte Ihnen auch gefallen