{"status":"ok","message-type":"work","message-version":"1.0.0","message":{"indexed":{"date-parts":[[2026,5,5]],"date-time":"2026-05-05T02:20:48Z","timestamp":1777947648442,"version":"3.51.4"},"reference-count":47,"publisher":"Springer Science and Business Media LLC","issue":"4","license":[{"start":{"date-parts":[[2020,2,26]],"date-time":"2020-02-26T00:00:00Z","timestamp":1582675200000},"content-version":"tdm","delay-in-days":0,"URL":"http:\/\/www.springer.com\/tdm"},{"start":{"date-parts":[[2020,2,26]],"date-time":"2020-02-26T00:00:00Z","timestamp":1582675200000},"content-version":"vor","delay-in-days":0,"URL":"http:\/\/www.springer.com\/tdm"}],"funder":[{"DOI":"10.13039\/501100002347","name":"Bundesministerium f\u00fcr Bildung und Forschung","doi-asserted-by":"publisher","award":["16KIS0792"],"award-info":[{"award-number":["16KIS0792"]}],"id":[{"id":"10.13039\/501100002347","id-type":"DOI","asserted-by":"publisher"}]}],"content-domain":{"domain":["link.springer.com"],"crossmark-restriction":false},"short-container-title":["Softw Syst Model"],"published-print":{"date-parts":[[2020,7]]},"DOI":"10.1007\/s10270-020-00782-w","type":"journal-article","created":{"date-parts":[[2020,2,26]],"date-time":"2020-02-26T06:02:57Z","timestamp":1582696977000},"page":"889-910","update-policy":"https:\/\/doi.org\/10.1007\/springer_crossmark_policy","source":"Crossref","is-referenced-by-count":41,"title":["Model-based safety assessment with SysML and component fault trees: application and lessons learned"],"prefix":"10.1007","volume":"19","author":[{"ORCID":"https:\/\/orcid.org\/0000-0001-6674-9434","authenticated-orcid":false,"given":"Peter","family":"Munk","sequence":"first","affiliation":[]},{"ORCID":"https:\/\/orcid.org\/0000-0002-0179-1655","authenticated-orcid":false,"given":"Arne","family":"Nordmann","sequence":"additional","affiliation":[]}],"member":"297","published-online":{"date-parts":[[2020,2,26]]},"reference":[{"key":"782_CR1","doi-asserted-by":"publisher","first-page":"312","DOI":"10.1007\/978-3-642-21210-9_30","volume-title":"Models in Software Engineering","author":"R Adler","year":"2011","unstructured":"Adler, R., Domis, D., H\u00f6fig, K., Kemmann, S., Kuhn, T., Schwinn, J.P., Trapp, M.: Integration of component fault trees into the UML. In: Dingel, J., Solberg, A. (eds.) Models in Software Engineering, pp. 312\u2013327. Springer, New York (2011)"},{"issue":"1 & 2","key":"782_CR2","first-page":"12","volume":"6","author":"JI Aizpurua","year":"2013","unstructured":"Aizpurua, J.I., Muxika, E.: Model-based design of dependable systems: limitations and evolution of analysis and verification approaches. Int. J. Adv. Secur. 6(1 & 2), 12\u201331 (2013)","journal-title":"Int. J. Adv. Secur."},{"issue":"2","key":"782_CR3","doi-asserted-by":"publisher","first-page":"9","DOI":"10.3390\/safety2020009","volume":"2","author":"JI Aizpurua","year":"2016","unstructured":"Aizpurua, J.I., Muxika, E., Papadopoulos, Y., Chiacchio, F., Manno, G.: Application of the D3H2 methodology for the cost-effective design of dependable systems. Safety 2(2), 9 (2016)","journal-title":"Safety"},{"key":"782_CR4","doi-asserted-by":"publisher","first-page":"204","DOI":"10.4236\/jsea.2018.115013","volume":"11","author":"B Alshboul","year":"2018","unstructured":"Alshboul, B., Petriu, D.: Automatic derivation of fault tree models from SysML models for safety analysis. J. Softw. Eng. Appl. 11, 204\u2013222 (2018). https:\/\/doi.org\/10.4236\/jsea.2018.115013","journal-title":"J. Softw. Eng. Appl."},{"key":"782_CR5","doi-asserted-by":"crossref","unstructured":"Amarnath, R., Munk, P., Thaden, E., Nordmann, A., Burton, S.: Dependability challenges in the model-driven engineering of automotive systems. In: Proceedings of the International Symposium on Software Reliability Engineering Workshops (ISSREW) (2016)","DOI":"10.1109\/ISSREW.2016.15"},{"key":"782_CR6","volume-title":"Recent Advances in Evolutionary Multi-objective Optimization","year":"2017","unstructured":"Bechikh, S., Datta, R., Gupta, A. (eds.): Recent Advances in Evolutionary Multi-objective Optimization. Wiley, New York (2017)"},{"key":"782_CR7","doi-asserted-by":"publisher","unstructured":"Biggs, G., Juknevicius, T., Armonas, A., Post, K.: Integrating safety and reliability analysis into MBSE: overview of the new proposed OMG standard. In; INCOSE International Symposium, vol. 28, no. 1, pp. 1322\u20131336 (2018). https:\/\/doi.org\/10.1002\/j.2334-5837.2018.00551.x","DOI":"10.1002\/j.2334-5837.2018.00551.x"},{"key":"782_CR8","doi-asserted-by":"publisher","first-page":"32","DOI":"10.1016\/j.procs.2016.09.290","volume":"95","author":"JY Choley","year":"2016","unstructured":"Choley, J.Y., Mhenni, F., Nguyen, N., Baklouti, A.: Topology-based safety analysis for safety critical CPS. Procedia Comput. Sci. 95, 32\u201339 (2016). https:\/\/doi.org\/10.1016\/j.procs.2016.09.290","journal-title":"Procedia Comput. Sci."},{"key":"782_CR9","doi-asserted-by":"publisher","first-page":"85","DOI":"10.1007\/978-3-030-26601-1_6","volume-title":"Computer Safety, Reliability, and Security","author":"K Clegg","year":"2019","unstructured":"Clegg, K., Li, M., Stamp, D., Grigg, A., McDermid, J.: A SysML profile for fault trees\u2014linking safety models to system design. In: Romanovsky, A., Troubitsyna, E., Bitsch, F. (eds.) Computer Safety, Reliability, and Security, pp. 85\u201393. Springer, New York (2019)"},{"key":"782_CR10","doi-asserted-by":"publisher","first-page":"192","DOI":"10.1016\/j.pnucene.2015.06.019","volume":"85","author":"Y Deng","year":"2015","unstructured":"Deng, Y., Wang, H., Guo, B.: BDD algorithms based on modularization for fault tree analysis. Prog. Nucl. Energy 85, 192\u2013199 (2015)","journal-title":"Prog. Nucl. Energy"},{"key":"782_CR11","doi-asserted-by":"crossref","unstructured":"Domis, D., Trapp, M.: Integrating safety analyses and component-based design. In: Proceedings of the 27th International Conference on Computer Safety, Reliability, and Security, pp. 58\u201371 (2008)","DOI":"10.1007\/978-3-540-87698-4_8"},{"key":"782_CR12","doi-asserted-by":"crossref","unstructured":"Greiner, S., Munk, P., Nordmann, A.: Compositionality of component fault trees. In: Proceedings of 6th International Symposium on Model Based Safety and Assessment (IMBSA) (2019)","DOI":"10.1007\/978-3-030-32872-6_9"},{"key":"782_CR13","unstructured":"Grunske, L.: Strukturorientierte Optimierung der Qualit\u00e4tseigenschaften von softwareintensiven technischen Systemen im Architekturentwurf. Ph.D. thesis, Universit\u00e4t Potsdam (2004)"},{"key":"782_CR14","doi-asserted-by":"crossref","unstructured":"Helle, P.: Automatic SysML-based safety analysis. In: Proceedings of the 5th International Workshop on Model Based Architecting and Construction of Embedded Systems, pp. 19\u201324 (2012)","DOI":"10.1145\/2432631.2432635"},{"key":"782_CR15","doi-asserted-by":"crossref","unstructured":"H\u00f6fig, K., Joanni, A., Zeller, M., Montrone, F., Rothfelder, M., Amarnath, R., Munk, P., Nordmann, A.: Model-based reliability and safety: reducing the complexity of safety analyses using component fault trees. In: Proceedings of the Annual Reliability & Maintainability Symposium (RAMS) (2018)","DOI":"10.1109\/RAM.2018.8463058"},{"key":"782_CR16","doi-asserted-by":"crossref","unstructured":"H\u00f6fig, K., Zeller, M., Heilmann, R.: Alfred: a methodology to enable component fault trees for layered architectures. In: Proceedings of the 41st Euromicro Conference on Software Engineering and Advanced Applications, pp. 167\u2013176 (2015)","DOI":"10.1109\/SEAA.2015.26"},{"key":"782_CR17","unstructured":"International Electrotechnical Commission (IEC): IEC 60812: Analysis techniques for system reliability\u2014procedure for failure mode and effects analysis (FMEA) (2006)"},{"key":"782_CR18","unstructured":"International Standard Organization (ISO 26262): Road vehicles\u2014functional safety (2018)"},{"key":"782_CR19","doi-asserted-by":"crossref","unstructured":"Junges, S., Guck, D., Katoen, J.P., Stoelinga, M.: Uncovering dynamic fault trees. In: Proceedings of 46th Annual International Conference on Dependable Systems and Networks, pp. 299\u2013310 (2016)","DOI":"10.1109\/DSN.2016.35"},{"key":"782_CR20","doi-asserted-by":"crossref","unstructured":"Kabir, S., Papadopoulos, Y., Walker, M., Parker, D., Aizpurua, J.I., Lampe, J., R\u00fcde, E.: A model-based extension to HiP-HOPS for dynamic fault propagation studies. In: Proceedings of the International Symposium on Model-Based Safety and Assessment, pp. 163\u2013178 (2017)","DOI":"10.1007\/978-3-319-64119-5_11"},{"issue":"11","key":"782_CR21","doi-asserted-by":"publisher","first-page":"1521","DOI":"10.1016\/j.ress.2006.10.010","volume":"92","author":"B Kaiser","year":"2007","unstructured":"Kaiser, B., Gramlich, C., F\u00f6rster, M.: State\/event fault trees\u2014a safety analysis model for software-controlled systems. Reliab. Eng. Syst. Saf. 92(11), 1521\u20131537 (2007)","journal-title":"Reliab. Eng. Syst. Saf."},{"key":"782_CR22","unstructured":"Kaiser, B., Liggesmeyer, P., M\u00e4ckel, O.: A new component concept for fault trees. In: Proceedings of the 8th Australian Workshop on Safety Critical Systems and Software, pp. 37\u201346 (2003)"},{"key":"782_CR23","doi-asserted-by":"crossref","unstructured":"Kaiser, B., Schneider, D., Adler, R., Domis, D., M\u00f6hrle, F., Berres, A., Zeller, M., H\u00f6fig, K., Rothfelder, M.: Advances in component fault trees. In: Proceedings of ESREL (2018)","DOI":"10.1201\/9781351174664-103"},{"key":"782_CR24","doi-asserted-by":"crossref","unstructured":"Kaleeswaran, A.P., Munk, P., Sarkic, S., Vogel, T., Nordmann, A.: A domain specific language to support HAZOP studies of SysML models. In: Proceedings of 6th International Symposium on Model Based Safety and Assessment (IMBSA) [in press] (2019)","DOI":"10.1007\/978-3-030-32872-6_4"},{"key":"782_CR25","doi-asserted-by":"crossref","unstructured":"Lisagor, O., Kelly, T., Niu, R.: Model-based safety assessment: review of the discipline and its challenges. In: Proceedings of the 9th International Conference on Reliability, Maintainability and Safety, pp. 625\u2013632 (2011)","DOI":"10.1109\/ICRMS.2011.5979344"},{"key":"782_CR26","doi-asserted-by":"crossref","unstructured":"Mhenni, F., Choley, J.Y., Nguyen, N.: SysML extensions for safety-critical mechatronic systems design. In: Proceedings of the International Symposium on Systems Engineering, pp. 242\u2013247 (2015)","DOI":"10.1109\/SysEng.2015.7302764"},{"key":"782_CR27","doi-asserted-by":"crossref","unstructured":"Mhenni, F., Nguyen, N., Choley, J.Y.: Automatic fault tree generation from SysML system models. In: Proceedings of the International Conference on Advanced Intelligent Mechatronics (2014)","DOI":"10.1109\/AIM.2014.6878163"},{"key":"782_CR28","unstructured":"M\u00f6hrle, F., Zeller, M., H\u00f6fig, K., Rothfelder, M., Liggesmeyer, P.: Towards automated design space exploration for safety-critical systems using type-annotated component fault trees. In: Proceedings of the International Symposium on Model-Based Safety and Assessment, Demo Sessions (2017)"},{"key":"782_CR29","doi-asserted-by":"publisher","first-page":"91","DOI":"10.1007\/978-3-319-08964-5_6","volume-title":"Dependability Problems of Complex Information Systems","author":"Z Mian","year":"2015","unstructured":"Mian, Z., Bottaci, L., Papadopoulos, Y., Sharvia, S., Mahmud, N.: Model transformation for multi-objective architecture optimisation of dependable systems. In: Zamojski, W., Sugier, J. (eds.) Dependability Problems of Complex Information Systems, pp. 91\u2013110. Springer, New York (2015)"},{"key":"782_CR30","doi-asserted-by":"crossref","unstructured":"Munk, P., Abele, A., Thaden, E., Nordmann, A., Amarnath, R., Schweizer, M., Burton, S.: INVITED: semi-automatic safety analysis and optimization. In: Proceedings of the Design Automation Conference (DAC) (2018)","DOI":"10.1145\/3195970.3199857"},{"key":"782_CR31","unstructured":"Nordmann, A., Munk, P.: Lessons learned from model-based safety assessment with SysML and component fault trees. In: Proceedings of the International Conference on Model Driven Engineering Languages and Systems (MODELS), pp. 134\u2013143. (2018). 10.1145\/3239372.3239373"},{"key":"782_CR32","unstructured":"Object Management Group (OMG): Systems Modeling Language Version 1.4 (2015). http:\/\/www.omg.org\/spec\/SysML\/1.4\/. Accessed 30 Oct 2019"},{"key":"782_CR33","doi-asserted-by":"publisher","first-page":"139","DOI":"10.1007\/3-540-48249-0_13","volume-title":"Computer Safety, Reliability and Security","author":"Y Papadopoulos","year":"1999","unstructured":"Papadopoulos, Y., McDermid, J.A.: Hierarchically performed hazard origin and propagation studies. In: Felici, M., Kanoun, K. (eds.) Computer Safety, Reliability and Security, pp. 139\u2013152. Springer, New York (1999)"},{"issue":"2","key":"782_CR34","doi-asserted-by":"publisher","first-page":"590","DOI":"10.1016\/j.engfailanal.2010.09.025","volume":"18","author":"Y Papadopoulos","year":"2011","unstructured":"Papadopoulos, Y., Walker, M., Parker, D., R\u00fcde, E., Hamann, R., Uhlig, A., Gr\u00e4tz, U., Lien, R.: Engineering failure analysis and design optimisation with HiP-HOPS. Eng. Fail. Anal. 18(2), 590\u2013608 (2011)","journal-title":"Eng. Fail. Anal."},{"key":"782_CR35","doi-asserted-by":"publisher","unstructured":"Papadopoulos, Y., Walker, M., Reiser, M.O., Weber, M., Chen, D., T\u00f6rngren, M., Servat, D., Abele, A., Stappert, F., Lonn, H., Berntsson, L., Johansson, R., Tagliabo, F., Torchiaro, S., Sandberg, A.: Automatic allocation of safety integrity levels. In: Proceedings of the 1st Workshop on Critical Automotive Applications: Robustness & Safety (CARS), pp. 7\u201310 (2010). https:\/\/doi.org\/10.1145\/1772643.1772646","DOI":"10.1145\/1772643.1772646"},{"issue":"6","key":"782_CR36","doi-asserted-by":"publisher","first-page":"33","DOI":"10.1145\/203241.203251","volume":"38","author":"M Petre","year":"1995","unstructured":"Petre, M.: Why looking isn\u2019t always seeing: readership skills and graphical programming. Commun. ACM 38(6), 33\u201344 (1995)","journal-title":"Commun. ACM"},{"key":"782_CR37","unstructured":"Robert Bosch GmbH: The BRS boost recuperation system: increased power, enhanced comfort and lower fuel consumption. https:\/\/www.bosch-presse.de\/pressportal\/de\/media\/migrated_download\/de\/BRS_Broschuere_RZ_en.pdf. Accessed 30 Oct 2019"},{"key":"782_CR38","doi-asserted-by":"publisher","first-page":"29","DOI":"10.1016\/j.cosrev.2015.03.001","volume":"15\u201316","author":"E Ruijters","year":"2015","unstructured":"Ruijters, E., Stoelinga, M.: Fault tree analysis: a survey of the state-of-the-art in modeling, analysis and tools. Comput. Sci. Rev. 15\u201316, 29\u201362 (2015)","journal-title":"Comput. Sci. Rev."},{"key":"782_CR39","doi-asserted-by":"publisher","first-page":"251","DOI":"10.1016\/B978-0-12-802301-3.00012-0","volume-title":"Software Quality Assurance","author":"S Sharvia","year":"2016","unstructured":"Sharvia, S., Kabir, S., Walker, M., Papadopoulos, Y.: Model-based dependability analysis: State-of-the-art, challenges, and future outlook. In: Mistrik, I., Soley, R., Ali, N., Grundy, J., Tekinerdogan, B. (eds.) Software Quality Assurance, pp. 251\u2013278. Morgan Kaufmann, Burlington (2016)"},{"key":"782_CR40","unstructured":"Verband der Automobilindustrie e. V.: Quality management in the automobile industry\u2014quality assurance in the process landscape\u2014general, risk analyses, methods, process models: Volume 4\u2014product- and process-FMEA (2012)"},{"issue":"6","key":"782_CR41","doi-asserted-by":"publisher","first-page":"79","DOI":"10.5381\/jot.2009.8.6.c6","volume":"8","author":"M V\u00f6lter","year":"2009","unstructured":"V\u00f6lter, M.: Best practices for DSLs and model-driven development. J. Object Technol. 8(6), 79\u2013102 (2009)","journal-title":"J. Object Technol."},{"key":"782_CR42","doi-asserted-by":"publisher","first-page":"2507","DOI":"10.1007\/s10270-018-0679-0","volume":"18","author":"M V\u00f6lter","year":"2018","unstructured":"V\u00f6lter, M., Kolb, B., Birken, K., Tomassetti, F., Alff, P., Wiart, L., Wortmann, A., Nordmann, A.: Using language workbenches and domain-specific languages for safety-critical software development. Softw. Syst. Model 18, 2507\u20132530 (2018)","journal-title":"Softw. Syst. Model"},{"key":"782_CR43","unstructured":"V\u00f6lter, M., Lisson, S.: Supporting diverse notations in MPS\u2019 projectional editor. In: Proceedings of GEMOC@MoDELS, pp. 7\u201316 (2014)"},{"key":"782_CR44","doi-asserted-by":"publisher","first-page":"791","DOI":"10.4271\/2009-01-0738","volume":"2","author":"M Walker","year":"2009","unstructured":"Walker, M., Papadopoulos, Y., Parker, D., L\u00f6nn, H., T\u00f6rngren, M., Chen, D., Johannson, R., Sandberg, A.: Semi-automatic FMEA supporting complex systems with combinations and sequences of failures. Int. J. Passeng. Cars Mech. Syst. 2, 791\u2013802 (2009)","journal-title":"Int. J. Passeng. Cars Mech. Syst."},{"issue":"10","key":"782_CR45","doi-asserted-by":"publisher","first-page":"2467","DOI":"10.1016\/j.jss.2013.04.001","volume":"86","author":"M Walker","year":"2013","unstructured":"Walker, M., Reiser, M.O., Tucci-Piergiovanni, S., Papadopoulos, Y., L\u00f6nn, H., Mraidha, C., Parker, D., Chen, D., Servat, D.: Automatic optimisation of system architectures using EAST-ADL. J. Syst. Softw. 86(10), 2467\u20132487 (2013)","journal-title":"J. Syst. Softw."},{"key":"782_CR46","unstructured":"Yakymets, N., Jaber, H., Lanusse, A.: Model-based system engineering for fault tree generation and analysis. In: Proceedings of the 1st International Conference on Model-Driven Engineering and Software Development (2013)"},{"key":"782_CR47","doi-asserted-by":"publisher","unstructured":"Zeller, M., Montrone, F.: Combination of component fault trees and markov chains to analyze complex, software-controlled systems. In: International Conference on System Reliability and Safety (ICSRS) (2018). https:\/\/doi.org\/10.1109\/ICSRS.2018.8688854","DOI":"10.1109\/ICSRS.2018.8688854"}],"container-title":["Software and Systems Modeling"],"original-title":[],"language":"en","link":[{"URL":"http:\/\/link.springer.com\/content\/pdf\/10.1007\/s10270-020-00782-w.pdf","content-type":"application\/pdf","content-version":"vor","intended-application":"text-mining"},{"URL":"http:\/\/link.springer.com\/article\/10.1007\/s10270-020-00782-w\/fulltext.html","content-type":"text\/html","content-version":"vor","intended-application":"text-mining"},{"URL":"http:\/\/link.springer.com\/content\/pdf\/10.1007\/s10270-020-00782-w.pdf","content-type":"application\/pdf","content-version":"vor","intended-application":"similarity-checking"}],"deposited":{"date-parts":[[2021,2,25]],"date-time":"2021-02-25T00:23:44Z","timestamp":1614212624000},"score":1,"resource":{"primary":{"URL":"http:\/\/link.springer.com\/10.1007\/s10270-020-00782-w"}},"subtitle":[],"short-title":[],"issued":{"date-parts":[[2020,2,26]]},"references-count":47,"journal-issue":{"issue":"4","published-print":{"date-parts":[[2020,7]]}},"alternative-id":["782"],"URL":"https:\/\/doi.org\/10.1007\/s10270-020-00782-w","relation":{},"ISSN":["1619-1366","1619-1374"],"issn-type":[{"value":"1619-1366","type":"print"},{"value":"1619-1374","type":"electronic"}],"subject":[],"published":{"date-parts":[[2020,2,26]]},"assertion":[{"value":"19 July 2019","order":1,"name":"received","label":"Received","group":{"name":"ArticleHistory","label":"Article History"}},{"value":"30 October 2019","order":2,"name":"revised","label":"Revised","group":{"name":"ArticleHistory","label":"Article History"}},{"value":"7 February 2020","order":3,"name":"accepted","label":"Accepted","group":{"name":"ArticleHistory","label":"Article History"}},{"value":"26 February 2020","order":4,"name":"first_online","label":"First Online","group":{"name":"ArticleHistory","label":"Article History"}}]}}