
exida explains Blog

  • by Dave Butler, CFSE
  • Tuesday, November 06, 2012
  • Software

IEC 61508 Compliant Module Testing: Part 4

Part 3 covered the design of tests, resulting in one or more Module Test Plans.  To execute a test plan, one would start with the test plan and a test results template (which could be a copy of the test plan as indicated previously), document the general test information…


Industrial Control System Cyber Security – Legislation and Standards

There is a lot of concern around cyber security in Industrial Control Systems.  With new threats like Stuxnet and Flame, the perceived risk to critical infrastructure has increased dramatically.  There are increased calls for legislation and new methods for dealing with these threats.  The history of how we have…


  • by Dave Butler, CFSE
  • Thursday, October 25, 2012
  • Software

IEC 61508 Compliant Module Testing: Part 3

The Test Plan

Assessment requires evidence that module tests are designed properly, run properly, and have been successfully run. Documented test results are also required.  In order to meet these requirements it is generally a good idea to document a test plan for each module.  Information that applies…


  • by Dave Butler, CFSE
  • Friday, October 19, 2012
  • Software

IEC 61508 Compliant Module Testing: Part 2

Last week you learned about what exactly a module is, and examples of different types of modules. Now we will move on to interfaces, the need for module testing, and code coverage requirements.

An interface, such as the 3D printer’s communication interface, or the format of the 3D data…


Pen Testing a Live Control System – Are You Mad?

A recent, disturbing trend I’ve seen in industrial control system (ICS) security is that, in response to concerns about the security of their ICS & SCADA systems, companies are performing penetration (pen) testing on operational systems.  Often times they request these services as one of the first steps in…


  • by Dave Butler, CFSE
  • Friday, October 12, 2012
  • Software

IEC 61508 Compliant Module Testing: Part I

3D printers are cool!  I watched a TED talk this past year about them.  I know they have been around for over 30 years, but I still think they’re cool.  As I watched, I thought of the wheel for my dishwasher’s roll-out rack, which had…


How to Decode an exida IEC 61508 Certificate: Part 2

Click here to read Part 1

Now that you know the step-by-step process of product certification, now let’s take a look at the actual information on the certificate. 

In the left panel (gray background) you will find an exida certification logo. …


How to Decode an exida IEC 61508 Certificate: Part 1

So you downloaded a product certificate from the exida website and you are trying to understand the information documented in the certificate.  Also, you likely want to know what stands behind the certificate and what was involved in the certification of the product.
I’m not…


  • by Michael Medoff , CFSE, CISA
  • Thursday, September 20, 2012
  • Certification

Component De-rating Without the Overhead

If you were going to build a bridge, you would want to make sure that it did not fall down if there were too many cars on the bridge.  One way that this is accomplished is to overdesign.  If the bridge is expected to hold at most 20,000 pounds,…


People and Risk: The Common Enemy

In today’s modern society there is an increasing demand for “safer” products/systems, which have to meet increasingly demanding standards.  The management of “risk” is a major factor in ensuring that a product/system can meet its design objectives, as well as satisfying the required standards and, even more importantly, meeting…


Super-Duper Logic Solver Data; So what?

  • by John Yozallinas, CFSE
  • Thursday, August 16, 2012
  • Certification

Are You Going for Gold in Safety?

Olympic athletes don’t wake up one day and decide to compete in the Olympics.  They don’t arrive at the games by chance or coincidence.  Their journey starts long before the games begin. They are often influenced and inspired by watching others or by their own interests.  They may begin…


  • by Iwan van Beurden, CFSE
  • Monday, July 23, 2012
  • Software

Analysis and Realization: Done. Let’s Start Operation… What’s Next?

Congratulations! You’ve completed the Analysis and Realization phases of the Safety Lifecycle, and are about to begin the Operation phase, but what’s next? Well obviously you need to do proof testing, but is there anything else? You may be familiar with the figure below:


Why should I get my mechanical device certified per IEC 61508?

I was recently approached with a question regarding why it would be necessary to certify mechanical devices, such as valves, per IEC 61508 when it is not clearly stated in the standard that the standard is applicable to such devices.  After looking through IEC 61511 and Read More...

Relating Test Data to Operating Modes & “Proven in Use”

Everyone wants data, and generally everyone agrees high quality proven in use data is the best. Properly designed experimental testing is one means to simulate actual operation. That is what we all learned as far back as high school during our chemistry and physics labs. These tests can…