Fail-safe system

A system failure does not always mean the process should simply stop.

In a fail-safe system, the design ensures that when a specified failure occurs, the equipment or process moves to, or remains in, a predefined safe state.

:small_blue_diamond: What is a Fail-Safe System?

A fail-safe system is designed so that, under specified failure conditions, the system responds in a way that minimizes the risk to people, equipment, and the environment.

In simple terms:

:warning: Failure β†’ Defined safe response β†’ Risk reduced :shield:


:factory: Example: Emergency Shutdown Valve

Consider a shutdown valve installed on a fuel-gas line.

If the safe condition requires the gas supply to be isolated:

:police_car_light: Dangerous condition / loss of required actuation energy
:down_arrow:
:locked: Shutdown valve closes
:down_arrow:
:no_entry: Fuel supply isolated

This is commonly described as a Fail-Close (FC) arrangement.

Other fail positions can include:

:unlocked: Fail Open (FO)
:pause_button: Fail in Place (FIP)

The appropriate fail position depends on the hazard analysis and required safe state.


:high_voltage: Example: De-Energize-to-Trip

A common safety philosophy is:

Healthy condition β†’ Energized

Trip condition / specified failure β†’ De-energized

For example:

:green_circle: Relay energized β†’ Equipment permitted to run

:high_voltage: Loss of power / trip signal
:down_arrow:
:red_circle: Relay de-energizes
:down_arrow:
:stop_sign: Equipment trips

This can help make certain failures detectable and drive the system toward the intended safe response.


:fire: Examples of Fail-Safe Behavior

Loss of instrument air:

:dashing_away: Air lost β†’ Valve moves to its designed fail position

Loss of electrical power:

:high_voltage: Power lost β†’ Equipment moves to a predefined safe condition, where the design supports this behavior

Emergency shutdown:

:police_car_light: ESD demand β†’ Final elements move to their defined safe positions


:warning: Very Important

Fail-safe does NOT mean failure cannot occur.

It means the system has been designed so that specified failures result in a defined response intended to reduce risk.

Also, fail-safe is not the same as fault-tolerant.

:shield: Fail-Safe:
Failure β†’ Move toward safe state.

:counterclockwise_arrows_button: Fault-Tolerant:
Fault occurs β†’ Continue performing the required function despite the fault.


:bullseye: Interview Question

What is a fail-safe system?

:backhand_index_pointing_right: A fail-safe system is designed so that, when specified failures or hazardous conditions occur, it automatically transitions to or maintains a predefined safe state intended to minimize risk.

:light_bulb: Remember:

:police_car_light: Don’t ask only, β€œWhat happens when the system works?”

:shield: A good safety design also asks, β€œWhat happens when something fails?”

#FailSafe #FailSafeSystem #SIS #ESD #FunctionalSafety #SafetyInstrumentedSystem #SafetyPLC #ProcessSafety #Instrumentation #IndustrialAutomation dcs #PLC #ControlSystems #OilAndGas #InstrumentationEngineer :police_car_light::gear::factory: