What is meant by a SILn system, subsystem or component?
A safety integrity level (SIL) is not a property of a system, subsystem or component. The correct interpretation of this phrase is that the system, subsystem or component is capable of supporting safety functions with a safety integrity level up to n. This in itself is not sufficient to achieve a safety function of the required safety integrity level. The safety integrity level capability of a subsystem determines the highest safety integrity level that can be claimed for any safety function that uses the subsystem. For this reason, the term safety integrity level claim limit is sometimes used instead. A SILn capability or claim limit (where n is 1, 2, 3 or 4) is determined for each subsystem by achieving a or b below. (a) The design requirements for SILn to prevent and control systematic faults in accordance with IEC 61508-2 and IEC 61508-3; or (b) The proven in use requirements for SILn in accordance with 7.4.7.6 to 7.4.7.10 of IEC 61508-2. What is functional safety assessment? This