What is a Safety Instrumented System?

RealPars
13 Aug 201815:46

Summary

TLDRThis video script delves into the critical role of Safety Instrumented Systems (SIS) in safeguarding chemical and manufacturing plants. It underscores the necessity of SIS as an additional layer of protection, beyond basic process control, to mitigate risks that could lead to accidents. The script explains the structure of SIS, including sensors, logic solvers, and final control elements, and their purpose of driving the process to a safe state. It also touches on the importance of risk analysis, Safety Integrity Levels, and redundancy in enhancing system reliability. The video aims to educate on the measures that contribute to a safer operating environment in high-risk industries.

Takeaways

  • 🔐 A Safety Instrumented System (SIS) is a critical component in industrial plants, designed to ensure safety by taking the process to a safe state when predetermined conditions are violated.
  • 🏭 The SIS is an additional layer of protection that complements the basic process control system, alarms, and operator intervention, aiming to reduce the risk of injury, fire, or explosion.
  • 📉 The SIS should provide at least a 10-fold decrease in the risk of operation, known as a risk reduction factor.
  • ⚠ Historical accidents, such as those in Flixborough, Bhopal, and Texas City, highlight the necessity for SIS to mitigate risks that basic process controls might not address.
  • đŸ› ïž The SIS consists of sensors, logic solvers, and final control elements, operating independently from the basic process control system to ensure integrity.
  • 🔍 A detailed risk analysis is essential for designing an SIS, identifying potential risks and determining which require a Safety Instrumented Function (SIF).
  • 📊 The Probability of Failure on Demand (PFD) is a key metric used to assess the reliability of SIFs, with lower PFD indicating higher reliability.
  • 🔱 Safety Integrity Levels (SIL) are used to categorize the required reliability of a SIF, with SIL 4 representing the highest level of reliability, though it may not always be practical.
  • 💡 Redundancy in SIS design can increase reliability and reduce risk, but it also adds to the cost of the system.
  • 👹‍🔧 Standards like ISA-84/IEC-61511 provide a framework for the development and documentation of SIS, emphasizing principles like no online logic solver changes and strict testing requirements.

Q & A

  • What is a Safety Instrumented System (SIS)?

    -A Safety Instrumented System (SIS) is a separate set of devices from the basic process control system, designed to take the process to a safe state when pre-determined conditions are violated. It includes sensors, logic solvers, and final control elements.

  • Why are SISs important in industrial plants?

    -SISs are crucial in industrial plants because they provide an additional layer of protection to reduce the risk of injury, fire, explosion, or other hazards to a tolerable level, ensuring the safety of the process, equipment, personnel, and the community.

  • How does an SIS differ from a basic process control system?

    -An SIS is separate and independent from the basic process control system. It is designed to provide a risk reduction factor of greater than 10X and is not interlinked with the basic process control system to avoid its shortcomings.

  • What is a Safety Instrumented Function (SIF)?

    -A Safety Instrumented Function (SIF) is an individual function within a plant that is designed to perform a specific safety task, such as 'reactor overpressure protection,' using the components of the SIS.

  • What is the role of a logic solver in an SIS?

    -The logic solver in an SIS is a specialized, hardened PLC-like device that processes inputs from sensors and determines the appropriate state of the SIS outputs to maintain safety in response to abnormal conditions.

  • What is the significance of the Probability of Failure on Demand (PFD) in SIS design?

    -The Probability of Failure on Demand (PFD) is a measure of the likelihood that a device within the SIS will fail to respond when called upon. It is used to determine the Safety Integrity Level (SIL) required for each SIF to ensure the system meets the necessary reliability standards.

  • How is redundancy used to enhance the reliability of an SIS?

    -Redundancy in an SIS involves having multiple layers or components that perform the same function, which increases the system's reliability by providing backup in case one component fails. Examples include 1 out of 2 or 2 out of 3 fault-tolerant systems.

  • What standards guide the development and documentation of an SIS?

    -The development and documentation of an SIS are guided by standards such as ISA-84/IEC-61511, which prescribe methodologies for designing, testing, and managing changes to the system to ensure its effectiveness and safety.

  • Why is a detailed risk analysis important in designing an SIS?

    -A detailed risk analysis is essential in designing an SIS because it identifies all potential risks and determines which risks require a Safety Instrumented Function to be defined. This analysis helps in deciding the tolerable level of risk and the necessary safety measures.

  • How does the Fatal Accident Rate (FAR) compare between the chemical industry and driving a car?

    -The Fatal Accident Rate (FAR) in the chemical industry is 4, which is significantly lower than the FAR of driving a car, which is 40. This comparison highlights the effectiveness of safety measures, including SISs, in reducing risks in the chemical industry.

Outlines

00:00

🔐 Introduction to Safety Instrumented Systems

The video introduces the concept of Safety Instrumented Systems (SIS), emphasizing their critical role in ensuring the safe operation of chemical, refining, and manufacturing plants. It acknowledges the inherent dangers in these industries, such as fire, explosion, and chemical exposure, and the impracticality of eliminating these risks by not operating such plants. The video sets the stage for discussing how SIS, along with process control systems and trained personnel, forms the first line of defense against these risks. Historical incidents like the Flixborough, Bhopal, and Texas City disasters are mentioned to highlight the importance of SIS in reducing the risk to a tolerable level.

05:06

🛠 The Role of Safety Instrumented Systems in Risk Mitigation

This section delves into the specifics of what a Safety Instrumented System is and its function in reducing operational risks. It explains that an SIS is a separate system from the basic process control, designed to bring the process to a safe state when predetermined conditions are violated. The paragraph introduces the concept of Safety Instrumented Functions (SIFs) and how they are identified and designed through a detailed risk analysis. The video also discusses the concept of tolerable risk levels and how they are determined by each company, often with industry benchmarks. It further explains the components of an SIS, including sensors, logic solvers, and final control elements, using a reactor overpressure protection example to illustrate how these components work together to provide an additional layer of safety.

10:09

📊 Safety Integrity Levels and Redundancy in SIS Design

The paragraph explores the importance of Safety Integrity Levels (SIL) in the design of SIS, which are determined by the Probability of Failure on Demand (PFD) for each SIF. It explains how PFD values are derived from vendor data or industry databases and how they influence the design of SIS to meet specific safety integrity levels. The video also discusses the concept of redundancy in SIS design, explaining how adding redundant systems can increase reliability and safety but also add to the cost. It outlines different redundancy configurations, such as 1 out of 2 and 2 out of 3 systems, and their impact on safety and cost. The paragraph concludes with a mention of the ISA-84/IEC-61511 standards, which provide a methodology for developing and documenting SIS, including design principles and management of change processes.

15:10

🏱 Conclusion and Call to Action for Further Learning

The final paragraph summarizes the importance of Safety Instrumented Systems in reducing the risk of accidents and injuries in industrial processes. It reiterates that SIS is one of many protective layers used by plants to safeguard processes, equipment, personnel, and communities. The video concludes with a call to action, encouraging viewers to visit realpars.com for more training material on PLC programming and to subscribe to their training series for further learning in the field of automation and controls engineering.

Mindmap

Keywords

💡Safety Instrument System (SIS)

A Safety Instrument System (SIS) is a separate and critical component in industrial plants designed to ensure safety by taking the process to a safe state when pre-determined conditions are violated. It is a layer of protection that operates independently of the basic process control system. The SIS is crucial for risk reduction in hazardous environments, as it includes sensors, logic solvers, and final control elements. In the video, the SIS is highlighted as an essential tool for preventing accidents in chemical and refining plants, with examples given of how it can stop a process to prevent over-pressurization.

💡Functional Safety

Functional safety refers to the concept of ensuring that systems perform their intended safety functions correctly and reliably. It is a key principle behind the development of standards like ISA 84 and IEC 61508, which were later harmonized into ISA-84/IEC-61511. The video emphasizes functional safety as a holistic approach to managing risks in industrial processes, moving beyond isolated risk assessments to consider the entire processing function.

💡Risk Reduction Factor

The Risk Reduction Factor (RRF) is a measure of how much a safety measure, such as an SIS, can reduce the likelihood of an accident. The video explains that the SIS should provide a risk reduction factor of at least 10, meaning it should decrease the risk of an operation by an order of magnitude. This is a critical metric in determining the effectiveness of safety measures in an industrial setting.

💡Basic Process Control System

The Basic Process Control System is the primary system that manages the day-to-day operations of a plant, including monitoring and controlling variables like pressure, temperature, and flowrate. It is the first line of defense in maintaining safe operations. The video contrasts this system with the SIS, emphasizing that while the basic system is essential, it may not be sufficient to reduce risks to a tolerable level, hence the need for an additional layer like the SIS.

💡Alarm Detection and Reporting System

An Alarm Detection and Reporting System is a component of the process control system that alerts operators to abnormal conditions, enabling them to take corrective actions before a risk becomes an accident. The video mentions this system as part of the initial layers of protection in a plant, highlighting its role in safety but also indicating that it may not be enough on its own to prevent serious incidents.

💡Safety Integrity Level (SIL)

Safety Integrity Level (SIL) is a classification used to specify the required reliability of a safety-related control system. The video discusses how the SIL is determined based on the Probability of Failure on Demand (PFD), with higher SILs indicating a lower probability of failure. This is crucial for designing SISs to ensure they provide the necessary level of safety.

💡Probability of Failure on Demand (PFD)

The Probability of Failure on Demand (PFD) is a measure of the likelihood that a safety device will fail to perform its required function when needed. The video explains how PFD values are used to determine the Safety Integrity Level required for a Safety Instrumented Function, with lower PFDs corresponding to higher SILs and more reliable safety functions.

💡Tolerable Risk Level

The Tolerable Risk Level is the acceptable threshold of risk that a company sets for its operations. The video discusses how each company must determine its own tolerable risk level, which is then used to design safety measures like the SIS. This concept is central to the video's discussion of risk management and the implementation of safety systems.

💡Safety Instrumented Function (SIF)

A Safety Instrumented Function (SIF) is a specific safety function within an SIS that is designed to perform a particular safety task, such as preventing overpressure in a reactor. The video uses the example of 'reactor overpressure protection' to illustrate how a SIF is implemented with a pressure sensor, logic solver, and control valve to provide an independent layer of protection.

💡Redundancy

Redundancy in the context of safety systems refers to the inclusion of backup or duplicate components to increase the reliability of the system. The video discusses how adding redundancy, such as a 1 out of 2 or 2 out of 3 system, can improve safety by providing alternative pathways to achieve a safe state if the primary components fail. However, it also notes that redundancy adds cost and may not always be practical or economically feasible.

Highlights

A Safety Instrument System (SIS) is crucial for maintaining the safety of chemical, refining, and manufacturing plants.

Process control systems and alarm detection systems are installed to maintain plant safety, but they might not be sufficient to reduce risks to a tolerable level.

Historical accidents like Flixborough, Bhopal, and Texas City highlight the need for more robust safety measures beyond basic process controls.

OSHA and industry groups developed standards like ISA 84 and IEC 61508 to address functional safety and risk mitigation.

The SIS is an additional layer of protection that should provide at least a 10-fold decrease in operational risk.

Chemical industry's Fatal Accident Rate (FAR) is lower than that of driving a car, indicating the effectiveness of safety measures.

Safety Instrumented Functions (SIFs) are designed to take the process to a safe state when predetermined conditions are violated.

The SIS consists of sensors, logic solvers, and final control elements, operating independently from the basic process control system.

A detailed risk analysis is necessary to identify potential risks and decide which require a SIF.

The Probability of Failure on Demand (PFD) is a key metric used to determine the reliability of SIFs.

Safety Integrity Levels (SIL) are used to categorize the required reliability of a SIF, with SIL 4 being the highest.

Redundancy in SIS design can increase reliability but also adds cost.

ISA-84/IEC-61511 standards provide a methodology for developing and documenting SIS.

The SIS is one of many layers of protection used in plants to safeguard processes, equipment, personnel, and the community.

RealPars offers training materials for PLC programming and automation controls engineering.

Transcripts

play00:04

In this video, you will learn what a Safety Instrument System is,

play00:08

how it is constructed, and how it plays an important role in keeping our chemical,

play00:13

refining, and other manufacturing plants running safely

play00:17

and as productive community partners and employers.

play00:32

Before we get into today’s video, if you love our videos,

play00:36

be sure to click the like button below,

play00:39

and make sure to click subscribe and the bell to receive notifications of new RealPars videos.

play00:45

This way you never miss another one!

play00:50

Chemical, petrochemical, mining, gas compression,

play00:54

and many other types of plants and manufacturing facilities

play00:58

can be very dangerous places to work due to the presence of risk:

play01:02

risk due to fire, explosion, tank overflow, gas release, or chemical exposure.

play01:11

The only way to eliminate these risks is to not build or operate these types of plants.

play01:17

But that is not practical.

play01:19

These plants produce materials that are useful,

play01:22

necessary, and important in our everyday lives.

play01:26

Even a product like dry powdered laundry detergent is made

play01:31

via a process that includes pumping liquids at high pressure,

play01:34

spraying droplets into very hot air,

play01:37

and collecting the product below which may be dusty and pose an inhalation hazard.

play01:45

In order to minimize these risks,

play01:47

process control systems are installed to maintain a safe operation of the plant,

play01:52

assisted by a robust alarm detection and reporting system,

play01:56

and operated by trained, qualified personnel.

play02:00

But often, these measures alone cannot reduce the risk of injury,

play02:05

fire, explosion, or other risks to a tolerable level.

play02:10

Regardless of the types of risks, the process design itself,

play02:14

the basic process control system, alarms, and operator intervention,

play02:19

provide the first layers of protection for the process.

play02:23

Each of these layers provides approximately a 10-fold

play02:27

or greater protection to the process plant than the layer below.

play02:32

In the process design, care is taken to specify lines,

play02:36

equipment, and valves with the right sizes,

play02:39

materials of construction, and proper accessories.

play02:43

The basic process control system is installed with the appropriate instruments,

play02:48

controls, and monitoring logic to allow the plant to be operated

play02:53

within the safest ranges for pressure, temperature and flowrate.

play02:58

Alarms are configured to allow the operators to react to abnormal conditions

play03:04

and take corrective actions before a risk becomes an accident.

play03:09

Even with all of these layers of protection in place,

play03:12

the risks may still be too great to prevent an accident from happening.

play03:17

A couple of examples illustrate this.

play03:20

In 1974, a nylon plant in Flixborough, England,

play03:24

exploded, killing 28 and injuring more than 100.

play03:30

In 1984, a gas leak in a fertilizer plant in Bhopal, India,

play03:35

killed over 3000 and injured 200,000.

play03:40

More recently, in 2005, an explosion at a Texas City refinery

play03:45

killed 15 and injured more than 150.

play03:49

All three of these plants had control systems, alarms, and trained operators.

play03:56

But these first three layers of protection do not reduce a hazardous plant’s risk to a tolerable level.

play04:03

The risks associated with production at Flixborough were not all well-defined,

play04:08

and the proper controls were not in place to minimize those risks.

play04:14

At Bhopal, systems were in place to prevent the resulting gas leak

play04:18

but did not take into account the scenario that led to the accident.

play04:23

In Texas City, several technical and operational shortcomings led to an explosion.

play04:31

In order to mitigate risks like the ones above, OSHA,

play04:36

The Occupational Safety and Health Administration,

play04:38

and several companies in the chemical industry,

play04:41

along with ISA and other professional groups,

play04:45

embraced the idea of defining risks, not as isolated processing line or tank risks,

play04:51

but as risks associated with processing functions as a whole.

play04:55

Standards ISA 84 and IEC 61508 were developed around the concept of functional safety.

play05:06

Later, these standards, ISA in the US and IEC in Europe,

play05:11

were harmonized in a single standard, ISA-84/IEC-61511.

play05:19

The way functional safety would be addressed in a plant

play05:22

in order to reduce functional risks was to install a separate,

play05:26

well-designed, Safety Instrumented System.

play05:31

The Safety Instrumented System, or SIS,

play05:35

represents an additional layer of protection above the first three layer discussed previously.

play05:42

This layer should provide at least a 10-fold decrease in the risk of the operation.

play05:47

This decrease can be called a risk reduction factor of equal to or greater than 10.

play05:55

So as we have seen, many levels of protection are required

play06:00

to reduce the risk of an operation to a tolerable risk level.

play06:05

This level of tolerable risk must be determined by each individual company,

play06:10

but there are benchmarks for many industries,

play06:13

such as chemical, oil & gas, food & beverage, and others.

play06:19

Overall, the chemical industry has a Fatal Accident Rate, or FAR, of 4.

play06:26

Driving a car has an FAR of 40.

play06:30

Fatal Accident Rate is just one way that overall risk can be measured.

play06:36

And in addition to the layers discussed so far,

play06:39

others can be added to reduce the overall risk even greater,

play06:43

like physical protection devices, such as relief valves and dikes,

play06:48

and plant and community response teams, like fire departments.

play06:54

So, now let’s answer what a Safety Instrumented System is.

play06:59

A Safety Instrumented System is comprised of sensors,

play07:03

logic solvers, and final control elements

play07:06

for the single purpose of taking the process to a safe state

play07:10

when pre-determined conditions are violated.

play07:20

This means that the Safety Instrumented System, or SIS,

play07:25

is a separate set of devices from the basic process control system.

play07:30

In order to provide a risk reduction factor of greater than 10X,

play07:35

it cannot be interlinked with the basic process control system,

play07:39

and any of shortcomings of that system.

play07:42

The logic solver is a specialized, hardened PLC- like device

play07:47

that may have multiple processors executing the logic in parallel

play07:52

to insure integrity of the logic and resulting action.

play07:56

The SIS is designed around individual functions in the plant,

play08:01

called Safety Instrumented Functions, or SIF for short.

play08:05

The logic solver takes the SIS inputs

play08:09

and determines what the state of the SIS outputs should be for that SIF.

play08:17

Consider this process for transferring a liquid from a tank to reactor.

play08:23

Normally, the flow controller,

play08:25

which resides in the basic process control system,

play08:29

can easily make the transfer of liquid in a very controlled, repeatable manner.

play08:35

When the reactor level reaches a high alarm point,

play08:38

the flow is stopped by shutting the control valve in order to keep the closed tank from over-pressurizing.

play08:46

Let’s define our Safety Instrumented Function as “reactor overpressure protection”.

play08:53

Now, let’s add the pieces of the SIS that are required to implement the components required for this function.

play09:01

As you can see, we keep the basic process flow control loop in place,

play09:06

operating as it normally does.

play09:09

But now, we add a pressure sensor, logic solver,

play09:13

and a positive shutoff valve to stop the flow independent of the flow controller

play09:19

and the basic process control logic.

play09:22

We have provided an independent layer of protection against reactor overpressure.

play09:28

This improves the overall safety of the process.

play09:32

In designing a Safety Instrumented System,

play09:35

the design team must do a detailed risk analysis,

play09:39

identifying all of the potential risks and deciding which of the risks

play09:43

require a Safety Instrumented Function to be defined.

play09:48

A detailed risk matrix can be used to identify the level of risk that is tolerable,

play09:53

and at what point a function require as a SIF to be defined.

play09:58

This can be done qualitatively,

play10:00

or quantitatively by assigning numerical values to the expected frequency and severity of the risk.

play10:09

Even a Safety Instrumented System has a probability to fail.

play10:13

What if the pressure sensor in the previous example does not detect the high pressure condition?

play10:18

What if the isolation valve does not close when it is told to?

play10:23

The probability that a device, whether input, output, or logic solver,

play10:28

will fail causing the SIF to not respond when called upon,

play10:33

is called the Probability of Failure on Demand, or PFD.

play10:39

For instance, a pressure regulator has approximately a 1 in 10,

play10:44

or 1 x 10-1 , probability of failure in a years’ time.

play10:52

Failure of an isolation valve is about 1 in 100, or 1 x 10-2.

play11:01

These values can be obtained from vendor data for specific devices,

play11:06

or from industry databases of typical PFD’s for each type of device.

play11:13

When we design an overall safety instrumented system for each safety instrumented function,

play11:19

we need to determine the overall Probability of Failure on Demand

play11:23

or PFD for each function that is required.

play11:29

If we determine the PFD should be less than 0.01, or 1 x 10-2,

play11:37

then our SIF needs to be designed to a Safety Integrity Level of 2.

play11:43

Similarly, a PFD of less than 1 x 10-1 requires a safety integrity level of 1,

play11:52

and a PFD of less than 1 x 10-3 requires a safety integrity level of 3.

play12:00

We can look up the PFD values for each of the devices

play12:04

and logic solver elements we would like to use,

play12:07

but to determine the overall PFD for an individual SIF usually requires a computer program.

play12:15

Suffice it to say, the higher the safety integrity level,

play12:19

the more reliable the safety instrument function will be.

play12:22

A Safety Integrity Level of 4 is possible,

play12:26

or a PFD of 1 x 10-4, but is usually not practical or economically feasible.

play12:37

Another way to reduce risk is to add redundancy.

play12:41

Redundancy adds cost, but generally will increase the reliability of the system and reduce risk.

play12:49

A 1 out of 2 system will provide a greater

play12:52

level of safety response than a simplex system.

play12:56

A 2 out of 3 fault-tolerant system

play12:58

can provide a greater level of safety response than a 1 out of 2 system.

play13:04

While the 2 out of 3 system may be more reliable,

play13:08

it may be installed at a much higher cost than a 1 out of 2 system.

play13:13

Likewise, a 1 out of 2 system will have a higher cost than a simplex system.

play13:19

When designing a Safety Instrumented System,

play13:22

the ISA-84/IEC-61511 standards prescribe a methodology

play13:29

for developing and documenting the system.

play13:32

Certain design principles should be followed,

play13:35

such as not allowing on-line changes to a logic solver,

play13:38

requirements for testing the SIF, and a Management of Change process

play13:43

for making any changes to the system once the design has been approved.

play13:49

To review, past accidents and fatalities have led to a new way of looking at risk in a processing plant.

play13:57

We now look at Safety Instrumented Functions in order to mitigate risk

play14:01

and provide a safer operating environment.

play14:06

The goal of the Safety Instrument System is to reduce the risk of accident or injury.

play14:12

The SIS is only one of many layers of protection

play14:15

that a plant uses to safeguard the process,

play14:18

equipment, personnel, and the community.

play14:22

But when implemented correctly, it can provide a very large reduction in the overall risk profile.

play14:30

Safety Instrumented Systems are comprised of sensors,

play14:33

logic solvers, and final control elements which are separate from all basic process control system elements,

play14:41

and the logic solver drives the final control elements to the state required

play14:46

to provide a safe state if the inputs indicate an abnormal situation.

play14:54

Make sure that you head over to realpars.com.

play14:57

To find even more training material for all of your PLC Programing needs.

play15:02

We offer many videos to assist you in learning PLC Programing

play15:07

and landing that job in a high-paying,

play15:09

highly thought after field of automation and controls engineering.

play15:14

Go to realpars.com and subscribe to our highly effective training series now!

Rate This
★
★
★
★
★

5.0 / 5 (0 votes)

Étiquettes Connexes
Safety SystemsIndustrial SafetyProcess ControlRisk MitigationChemical PlantsManufacturingAlarm SystemsFunctional SafetySafety IntegrityAutomation Engineering
Besoin d'un résumé en anglais ?