Hey guys, hope you are doing well. Today we are discussing "Double Jeopardy" which creates regular dilemma and stirs up arguments during PHA sessions. If you have participated as a team member or facilitated or scribed in a PHA session, you would be aware of the term "Double Jeopardy". When someone declares, “That’s double jeopardy,” during a PHA, they are definitely not fighting a legal case in court where double jeopardy prevents a person from being tried in court twice for the same offense. Instead, they are arguing that because two things have to go wrong to cause a scenario, the likelihood is so low that it is not credible and there is no need to consider the scenario.
"Double jeopardy" is defined as the simultaneous occurrence of two independent initiating events or other revealed failures. Double Jeopardy is not a discussion on multiple layers of protection as every scenario should have multiple layers of protection against the final unmitigated consequence. It is also not a deviation combined with failure of a safeguard that remains hidden.Can two things go wrong at a time? Of course, they can. But, do two things go wrong at a time? Yes, and majority of previous process incidents are the result of multiple failures as they involve a latent failure or are caused by a common mode of failure. We cannot cover all multiple failure scenarios in a PHA but some must be considered and analyzed further to ensure adequate controls are in place.
It can be argued that safeguards against single failures will also protect against multiple failures as they help to protect against the individual contributors of the multiple failures, and hence it is sufficient to address single failures and that multiple failures need not be addressed. Certainly, actions taken to prevent single failures that contribute to multiple failures will help to prevent the multiple failures. However, if multiple failure scenarios are dependent including failures which can disable multiple equipment simultaneously, such as the loss of control system power like DCS or PLC system. These common failure modes effects can be difficult to identify but can make simultaneous occurrence of failure scenarios credible. For example:
- In a reactor, if the agitator and cooling water fail simultaneously, it will not be considered as double jeopardy, since loss of power can be a common failure mode.
- In a vessel with dual relief valves but possibility of plugging of nozzle, simultaneous failure of relief valve is possible and should be considered in PHA.
This is a fantastic post. I found this blog to be quite interesting and informative. Continue to share more insightful posts. Also check out Fire and Safety Companies in Sharjah.
ReplyDelete
ReplyDeleteThank you for sharing the valuable content
Foamtech Antifire Company is a leading Fire Fighting Foam Manufacturers Company. And ISO 9001:2015, 14001:2015 & ISO 45001:2018 certified, the company deals in a wide range of products, meeting national and international standards. And also avail Dry Chemcial Powder at best price, With the base of high class Engineering technology and superior quality of work with base of our customer needs.
Great Blog Thank you so much for sharing this.
ReplyDeleteIndustrial Fire Evacuation Plan
I read a lot of information but I got the useful information I needed from here.
ReplyDeleteRead More, What Benefits LIC Jeevan Lakshya?
Information is pretty good and impressed me a lot. This article is quite in-depth and gives a good overview of the topic. If you are looking for Process Safety Gap Assessment than contact us.
ReplyDeleteYour blog consistently delivers valuable insights. I look forward to your posts every week!
ReplyDeleteHigh Pressure Magnetic Drive Pump