Overview
This two-day advanced training and workshop helps engineering teams deepen their understanding of qualitative safety analyses applied under ISO 26262:2018 and ISO 21448:2022 for Advanced Driver Assistance Systems (ADAS) and Automated Driving Systems (ADS). The course addresses inductive, bottom-up methods; deductive, top-down methods; and systems-theoretic approaches, with a strong emphasis on hands-on exercises.
Participants examine the practical application of FMEA, FTA, STPA, Cause Tree Analysis (CTA), and ISO 21448 methods for evaluating functional insufficiencies and triggering conditions. The course focuses primarily on qualitative analyses while also providing guidance on how quantitative methods can support the establishment of risk criteria.
The content and pace are tailored to engineering teams working on safety-critical ADAS and ADS architectures. The training is delivered by experienced SRES practitioners who have applied these techniques in OEM and supplier programs and includes opportunities for interactive discussion and exchange of experience.
Intended Audience
This advanced course is intended for engineers and technical professionals responsible for conducting, supporting, or reviewing safety analyses for ADAS and ADS development. It is particularly relevant for:
- Functional safety and autonomy safety engineers working with ISO 26262 and ISO 21448
- Systems engineers developing safety-critical ADAS or ADS architectures
- Engineers responsible for hazard identification, fault analysis, or risk evaluation
- Professionals conducting or reviewing FMEA, FTA, STPA, Cause Tree Analysis, or SOTIF safety analyses
- Engineering managers and technical leads overseeing ADAS or ADS safety programs
Objectives
By the end of this course, participants will be able to:
- Explain the fundamentals of FMEA, FTA, and STPA and their relevance under ISO 26262 and ISO 21448
- Apply structured methods for hazard identification, fault identification, and risk evaluation in ADAS and ADS development
- Conduct inductive, deductive, and systems-theoretic safety analyses through practical exercises
- Apply ISO 21448 methods for evaluating functional insufficiencies and triggering conditions
- Understand how qualitative safety analyses support the objectives of ISO 26262 and ISO 21448
- Recognize how quantitative methods can support the establishment of risk criteria
Agenda
Below you will find an outline of the training course schedule.
- Inductive (bottom-up) safety analyses with hands-on exercise
- ISO 26262: Failure Modes and Effects Analysis (FMEA)
- ISO 21448: Functional Insufficiencies to Triggering Conditions (FI2TC) and Triggering Conditions to Functional Insufficiencies (TC2FI) methods
- Deductive (top-down) safety analyses with hands-on exercise
- ISO 26262: Fault Tree Analysis (FTA)
- ISO 21448: Cause Tree Analysis (CTA)
- Systems-Theoretic Process Analysis (STPA)
- ISO 21448: Hazard identification and evaluation of triggering conditions
- ISO 26262: Concept phase safety analysis (optional)
- Wrap-up
- Summary, comments, and discussion

