MIT OpenCourseWare


» ¶i¶¥·j´M
 ½Òµ{­º­¶
 ±Ð¾Ç¤jºõ
 ±Ð¾Ç®Éµ{
 ¬ÛÃö¾\Ū¸ê®Æ
 ½Ò°óÁ¿½Z
 §@·~
 ±MÃD

16.358J / ESD.358J 2003¬K©u½Òµ{¡G¨t²Î¦w¥þ(System Safety, Spring 2003)


¥»­¶Â½Ä¶¶i«×

¿O¸¹»¡©ú

¼f©w¡GµL
½Ķ¡G³¯§Æ¦¨(²¤¶¨Ã±H«H)
½s¿è¡G¦¶¾ÇùÚ(²¤¶¨Ã±H«H)


Photo of space shuttle cockpit showing computerized display panels.
¬°¤ÓªÅ±ô¶}µoªº·s¾r¾p¿µÅã¥Ü³]³Æªº¼ÒÀÀ¾¹ (¹Ï¹³¥ÑNASA´£¨Ñ¡C)
Simulator of the new cockpit displays being developed for the Space Shuttle. (Image courtesy of NASA.)

½Òµ{­«ÂI

¾Ç¥Í­Ì¨Ï¥Î±Ð®vªº¤@¥»·sªº½u¤W¯ó½Z¡A¥H¤Î¦o¥ý«e¥Xª©ªº¡m¦w¥þ·§©À¡n(Safeware)³o¥»®Ñ¡A¥i¥H±´¨s¨ì³Ì·s¿oªººc«Ø¦w¥þ¦M«æ¨t²Îªº¤èªk¡C³o¨Ç¤èªk¦b¥Ñ¼Æ¦ì²Õ¦¨ªº¨t²Î¤¤¤ñ¶Ç²Î¤S¤¾¾lªº§Þ³N§ó°ª®Ä¡C©Ò¦³¾Ç¥Í³£±N§â¥L­Ìªº©Ò¾ÇÀ³¥Î¨ì¥]¬ADisney°¨¶ð¨¤«_ÀI­¸¨®³]­p¦b¤ºªº¥ô¤@±M®×¤¤¡C¦¹¥~¡A¬ã¨s¥Í­ÌÁÙ·|¦b¥Ó»â¥L­Ì¦Û¤vªº¬ì¬ã¸É§U¸g¶O®ÉÀò¨ú¹ê½î¸gÅç¡C

Using online drafts of a new textbook written by the instructor, as well as her earlier published book Safeware, students will explore state-of-the-art approaches to building safety-critical systems. These approaches are more effective in systems comprising digital components than traditional, redundancy based techniques. All students will apply what they learn to a project involving the Disney Matterhorn ride. In addition, graduate students will gain practical experience by writing their own research grant proposals.

½Òµ{´y­z

¥»½Òµ{¥]¬A¤F³]­p©M¾Þ§@Á{¬É¦w¥þ©Ê¨t²Î®É­«­nªº²z½×©M§Þ³N¡C¨ä¥DÃD¦³¡G¦MÀIªº©Ê½è¡A¬ðµo·N¥~¨Æ¥ó©M¤HÃþ¿ù»~¼Ò«¬¡A·N¥~¨Æ¥óªº¦]¯À¡A¨t²Î¦w¥þ¤uµ{¾Çªº°ò¥»²z½×¡A¨t²Î©M³nÅ骺¦MÀI¤ÀªR¡A¦w¥þ©M®e¿ù³]­p¡A³]­p¦w¥þªº¤H¾÷¤¶­±¡A¦w¥þ½T»{¡A³Ð³y¦w¥þ¤å¤Æ©MºÞ²z¦w¥þÃöÁä¤uµ{¡C¥¦ÁÙ¥]¬A¤@¦¸Ãö©ó¦w¥þ¦M«æ¨t²Î°ª¯Å¨t²Î³]­p©M¤ÀªRªº½Ò°ó³]­p¡C

Covers important concepts and techniques in designing and operating safety-critical systems. Topics include: the nature of risk, formal accident and human error models, causes of accidents, fundamental concepts of system safety engineering, system and software hazard analysis, designing for safety, fault tolerance, safety issues in the design of human-machine interaction, verification of safety, creating a safety culture, and management of safety-critical projects. Includes a class project involving the high-level system design and analysis of a safety-critical system.

®v¸ê

Á¿®v¡G
Nancy Leveson ±Ð±Â

¤W½Ò®É¼Æ

±Ð®v±Â½Ò¡G
¨C¶g1¸`
¨C¸`3¤p®É

µ{«×
¤j¾Ç³¡ / ¬ã¨s©Ò
¦^À³
§i¶D§Ú­Ì±z¹ï¥»½Òµ{©Î¡u¶}©ñ¦¡½Òµ{ºô­¶¡vªº«ØÄ³¡C
Án©ú
³Â¬Ù²z¤u¾Ç°|¶}©ñ¦¡½Òµ{»{¥i ¶}©ñ¦¡½Òµ{­pµe¡]OOPS¡^ªºÂ½Ä¶­pµe¡A¶}©ñ¦¡½Òµ{­pµe¡]OOPS¡^¤D¬O¹B¥Î¨ä¿W¥ß¹Î¶¤¡B¿W¥ß¸ê·½¡B¿W¥ß¬yµ{¶i¦æÂ½Ä¶­pµe¤§¹Î¶¤¡C

©Ò¦³³Â¬Ù²z¤u¾Ç°|¶}©ñ¦¡½Òµ{¤§§÷®Æ¬Ò¥H³Â¬Ù²z¤u¾Ç°|¶}©ñ¦¡½Òµ{³Ð§@¦@¨É±ÂÅvµo§G¡A©Ò¦³¤§Â½Ä¶¸ê®Æ¬Ò¥Ñ¶}©ñ¦¡½Òµ{­pµe¡]OOPS¡^©Ò´£¨Ñ¡A¨Ã¥Ñ¨ä­t½Ķ«~½è¤§³d¥ô¡C

¦¹³B³Â¬Ù²z¤u¾Ç°|¶}©ñ¦¡½Òµ{¤§¸ê®Æ¤D¥Ñ ¶}©ñ¦¡½Òµ{­pµe¡]OOPS¡^ ͬ°¥¿Å餤¤å¡C³Â¬Ù²z¤u¾Ç°|¶}©ñ¦¡½Òµ{¦b¦¹Án©ú¡A¤£½×¬O§_¾D¹J©Îµo²{¬ÛÃöijÃD¡A³Â¬Ù²z¤u¾Ç°|¶}©ñ¦¡½Òµ{¡B³Â¬Ù²z¤u¾Ç°|±Ð®v¡B³Â¬Ù²z¤u¾Ç°|®Õ¤è¨Ã¤£¹ï½Ķ¥¿½T«×¤Î§¹¾ã©Ê§@«OÃÒ¡C¤W­z³æ¦ì¨Ã¹ï½Ķ«á¤§¸ê®Æ¤£§@©ú¥Ü©ÎÀq³\¹ï¥ô¤@¯S©w¥Øªº¤§¾A¦X©Ê¤§«OÃÒ¡B«D«IÅv¤§«OÃÒ¡B©Î¥Ã¤£¥X¿ù¤§«OÃÒ¡C³Â¬Ù²z¤u¾Ç°|®Õ¤è¡B³Â¬Ù²z¤u¾Ç°|¶}©ñ¦¡½Òµ{¹ï½Ķ¤W¤§¤£¥¿½T¤£­t¥ô¦ó³d¥ô¡C¥Ñ½Ķ©Ò¤Þµo¥ô¦óÃö©ó¦¹µ¥¸ê®Æ¤§¤£¥¿½T©Î¨ä¥L·å²«¡A¬Ò¥Ñ¶}©ñ¦¡½Òµ{­pµe¡]OOPS¡^­t¥þ³d¡A¦Ó«D³Â¬Ù²z¤u¾Ç°|¶}©ñ¦¡½Òµ{¤§³d¡C

­ì¤åÁn©ú

 
MIT Home
Massachusetts Institute of Technology Terms of Use Privacy