ISO/TS 5083
(Main)Road vehicles — Safety for automated driving systems — Design, verification and validation
Road vehicles — Safety for automated driving systems — Design, verification and validation
This document provides guidance for achieving and demonstrating safety of an automated driving system (ADS) integrated in a road vehicle. The approach is based on safety principles derived from worldwide applicable publications and top-level safety objectives. It considers safety by design, verification and validation, and post deployment activities for level 3 and level 4 ADS features defined according to ISO/SAE PAS 22736[2]. In addition, it outlines cybersecurity considerations. The application of this document is intended for road vehicles, including trucks and buses and excluding motorcycles and mopeds. Any ADS or related elements that are in operation, or under development, prior to the publication of this document are exempted from the application of this document. NOTE While not covered in this document, safety during development activities is a key consideration. Development includes activities of design, verification and validation.
Véhicules routiers — Sécurité des systèmes de conduite automatisée — Conception, vérification et validation
General Information
Relations
Buy Standard
Standards Content (Sample)
FINAL DRAFT
Technical
Specification
ISO/DTS 5083
ISO/TC 22/SC 32
Road vehicles — Safety for
Secretariat: JISC
automated driving systems —
Voting begins on:
Design, verification and validation
2024-11-21
Véhicules routiers — Sécurité des systèmes de conduite
Voting terminates on:
automatisée — Conception, vérification et validation
2025-01-16
RECIPIENTS OF THIS DRAFT ARE INVITED TO SUBMIT,
WITH THEIR COMMENTS, NOTIFICATION OF ANY
RELEVANT PATENT RIGHTS OF WHICH THEY ARE AWARE
AND TO PROVIDE SUPPOR TING DOCUMENTATION.
IN ADDITION TO THEIR EVALUATION AS
BEING ACCEPTABLE FOR INDUSTRIAL, TECHNO
LOGICAL, COMMERCIAL AND USER PURPOSES, DRAFT
INTERNATIONAL STANDARDS MAY ON OCCASION HAVE
TO BE CONSIDERED IN THE LIGHT OF THEIR POTENTIAL
TO BECOME STAN DARDS TO WHICH REFERENCE MAY BE
MADE IN NATIONAL REGULATIONS.
Reference number
ISO/DTS 5083:2024(en) © ISO 2024
FINAL DRAFT
ISO/DTS 5083:2024(en)
Technical
Specification
ISO/DTS 5083
ISO/TC 22/SC 32
Road vehicles — Safety for
Secretariat: JISC
automated driving systems —
Voting begins on:
Design, verification and validation
Véhicules routiers — Sécurité des systèmes de conduite
Voting terminates on:
automatisée — Conception, vérification et validation
RECIPIENTS OF THIS DRAFT ARE INVITED TO SUBMIT,
WITH THEIR COMMENTS, NOTIFICATION OF ANY
RELEVANT PATENT RIGHTS OF WHICH THEY ARE AWARE
AND TO PROVIDE SUPPOR TING DOCUMENTATION.
© ISO 2024
IN ADDITION TO THEIR EVALUATION AS
All rights reserved. Unless otherwise specified, or required in the context of its implementation, no part of this publication may
BEING ACCEPTABLE FOR INDUSTRIAL, TECHNO
LOGICAL, COMMERCIAL AND USER PURPOSES, DRAFT
be reproduced or utilized otherwise in any form or by any means, electronic or mechanical, including photocopying, or posting on
INTERNATIONAL STANDARDS MAY ON OCCASION HAVE
the internet or an intranet, without prior written permission. Permission can be requested from either ISO at the address below
TO BE CONSIDERED IN THE LIGHT OF THEIR POTENTIAL
or ISO’s member body in the country of the requester.
TO BECOME STAN DARDS TO WHICH REFERENCE MAY BE
MADE IN NATIONAL REGULATIONS.
ISO copyright office
CP 401 • Ch. de Blandonnet 8
CH-1214 Vernier, Geneva
Phone: +41 22 749 01 11
Email: copyright@iso.org
Website: www.iso.org
Published in Switzerland Reference number
ISO/DTS 5083:2024(en) © ISO 2024
ii
ISO/DTS 5083:2024(en)
Contents Page
Foreword .vi
Introduction .vii
1 Scope . 1
2 Normative references . 1
3 Terms and definitions . 1
3.1 Human-related terms .1
4 Abbreviated terms . 7
5 Document overview and motivation . 7
5.1 Purpose .7
5.2 Overall goals of this document .7
5.3 Application of this document .7
5.4 Safety life cycle .8
5.4.1 Purpose .8
5.4.2 General .8
5.5 Description of ADS safety case .8
5.5.1 Purpose .8
5.5.2 General .8
5.5.3 How this document supports a layered structure of an ADS safety case .9
5.5.4 Perspective from the ADS-equipped vehicle .11
5.6 Role of the ADS within safe vehicle operation . 12
5.6.1 Purpose . 12
5.6.2 General . 12
5.6.3 Task dependency of ADS safety . 12
5.6.4 Time dependency of ADS safety. 13
5.6.5 Examples .14
5.7 Application of other standards . 15
5.7.1 Purpose . 15
5.7.2 Classification of standards . 15
5.7.3 Applying the related (safety) standards .16
5.8 Safety principles of ADS .17
5.8.1 Purpose .17
5.8.2 ADS safety principles.17
6 Safety strategy.18
6.1 Defining the ADS feature .18
6.1.1 Objectives .18
6.1.2 Requirements and recommendations .18
6.1.3 Example solution: ADS feature description with capabilities . 20
6.2 Defining the risk acceptance criteria . 20
6.2.1 Objectives . 20
6.2.2 Requirements and recommendations . 20
6.2.3 Example solution: absence of unreasonable risk and risk acceptance criteria .21
6.2.4 Example solution: selection and use of risk acceptance criteria .21
6.2.5 Example solution: Defining a risk acceptance criterion .21
6.2.6 Example solution: Quantitative risk balance .21
6.2.7 Example solution: A quantitative risk acceptance criterion .21
6.3 Defining safety requirements . 22
6.3.1 Objectives . 22
6.3.2 Requirements and recommendations . 22
6.3.3 Example solution: Quantitative risk acceptance criterion and incident
classification approach . 22
6.3.4 Example solution: Safety capabilities . 23
6.3.5 Example solution: ADS external assumptions with respect to injury risk . 23
iii
ISO/DTS 5083:2024(en)
7 Safety by design .23
7.1 ADS design . 23
7.1.1 Objectives . 23
7.1.2 Requirements and recommendations . 23
7.1.3 Example solution: A design for adapting tactical decisions to variations in the
operational capabilities . 23
7.1.4 Example solution: Elements defining the design . 23
7.2 ADS external design, pre-requisites and assumptions .24
7.2.1 Objectives .24
7.2.2 General .24
7.2.3 Requirements and recommendations .31
7.2.4 Example solution: Training for users .32
7.2.5 Example solution: Instructions to first responders .32
7.2.6 Example solution: Organizational aspects of a robo taxi service .32
7.2.7 Example solution: Organizational aspects of an L4 Hub-to-hub transport service .32
7.3 ADS Verification.
...
ISO/DTS 5083
ISO/TC 22/SC 32
ISO/CD TS 5083(en)
Secretariat: JISC
Date: 2024-11-05
Road vehicles — Safety for automated driving systems — Design,
verification and validation
Véhicules routiers — Sécurité des systèmes de conduite automatisée — Conception, vérification et validation
ISO/CD TSDTS 5083:2024(:(en)
All rights reserved. Unless otherwise specified, or required in the context of its implementation, no part of this publication
may be reproduced or utilized otherwise in any form or by any means, electronic or mechanical, including photocopying,
or posting on the internet or an intranet, without prior written permission. Permission can be requested from either ISO
at the address below or ISO’s member body in the country of the requester.
ISO copyright office
CP 401 • Ch. de Blandonnet 8
CH-1214 Vernier, Geneva
Phone: + 41 22 749 01 11
E-mail: copyright@iso.org
Website: www.iso.org
Published in Switzerland
ii
ISO/CD TSDTS 5083:2024(:(en)
Contents
Foreword . v
Introduction . vi
1 Scope . 1
2 Normative references . 1
3 Terms and definitions . 1
3.1 Human-related terms . 1
4 Abbreviated terms . 8
5 Document overview and motivation. 9
5.1 Purpose . 9
5.2 Overall goals of this document . 9
5.3 Application of this document. 9
5.4 Safety life cycle . 9
5.5 Description of ADS safety case . 10
5.6 Role of the ADS within safe vehicle operation . 17
5.7 Application of other standards . 21
5.8 Safety principles of ADS . 23
6 Safety strategy . 25
6.1 Defining the ADS feature . 25
6.2 Defining the risk acceptance criteria. 27
6.3 Defining safety requirements . 29
7 Safety by design . 30
7.1 ADS design . 30
7.2 ADS external design, pre-requisites and assumptions . 31
7.3 ADS Verification . 41
7.4 Verification and confirmation of aspects external to the ADS . 42
8 Validation . 43
8.1 Objectives . 43
8.2 General. 44
8.3 Requirements and recommendations . 44
8.4 Example solution: Metrics . 44
8.5 Example solution: Validation through computation of collision rates . 44
8.6 Example solution: Generating evidence for injury risk assumptions external to the ADS 44
9 Operation of the ADS-equipped vehicle . 45
9.1 Objectives . 45
9.2 General. 45
9.3 Requirements and recommendations . 50
10 Verification and validation requirement considerations . 51
10.1 General. 51
10.2 Example solution: Verification and validation . 51
Annex A (informative) Example application of the concepts of this document . 52
Annex B (informative) Safety for artificial intelligence (AI) – Application to automated driving
systems . 63
Annex C (informative) List of related standards . 83
Annex D (informative) Safety principles for ADS . 88
iii
ISO/CD TSDTS 5083:2024(:(en)
Annex E (informative) Safety strategy example solutions . 93
Annex F (informative) Safety by design and verification example solutions . 130
Annex G (informative) Validation example solutions . 170
Annex H (informative) Verification and validation example solutions . 179
Bibliography . 197
iv
ISO/CD TSDTS 5083:2024(:(en)
Foreword
ISO (the International Organization for Standardization) is a worldwide federation of national standards
bodies (ISO member bodies). The work of preparing International Standards is normally carried out through
ISO technical committees. Each member body interested in a subject for which a technical committee has been
established has the right to be represented on that committee. International organizations, governmental and
non-governmental, in liaison with ISO, also take part in the work. ISO collaborates closely with the
International Electrotechnical Commission (IEC) on all matters of electrotechnical standardization.
The procedures used to develop this document and those intended for its further maintenance are described
in the ISO/IEC Directives, Part 1. In particular, the different approval criteria needed for the different types of
ISO documentsdocument should be noted. This document was drafted in accordance with the editorial rules
of the ISO/IEC Directives, Part 2 (see www.iso.org/directives).
Attention is drawnISO draws attention to the possibility that some of the elementsimplementation of this
document may beinvolve the subjectuse of (a) patent(s). ISO takes no position concerning the evidence,
validity or applicability of any claimed patent rights in respect thereof. As of the date of publication of this
document, had not received notice of (a) patent(s) which may be required to implement this document.
However, implementers are cautioned that this may not represent the latest information, which may be
obtained from the patent database available at www.iso.org/patents. ISO shall not be held responsible for
identifying any or all such patent rights. Details of any patent rights identified during the development of this
document will be in the Introduction and/or on the ISO list of patent declarations received (see ).
Any trade name used in this document is information given for the convenience of users and does not
constitute an endorsement.
For an explanation onof the voluntary nature of standards, the meaning of ISO specific terms and expressions
related to conformity assessment, as well as information about ISO’sISO's adherence to the World Trade
Organization (WTO) principles in the Technical Barriers to Trade (TBT)), see
www.iso.org/iso/foreword.htmlthe following URL: .
This document was prepared by Technical Committee ISO/TC 22, Road Vehiclesvehicles, Subcommittee SC 32,
Electrical and electronic components and general system aspects.
This first edition cancels and replaces the first edition ,(ISO/TR 4804:2020), which has been technically
revised.
The main changes compared to the previous edition are as follows:
— a fully revised scope;
— the inclusion of objectives and requirements for normative clauses of the TSdocument;
— a revised presentation of the overarching safety strategy applicable to ADS development (including the
addition of clarifications on assumptions and requirements that are to be allocated externally to the ADS);
— connections to cybersecurity concerns; and
— a revision of informative Annexesannexes with example applications and further considerations of
Artificial Intelligenceartificial intelligence safety.
Any feedback or questions on this document should be directed to the user’s national standards body. A
complete listing of these bodies can be found at www.iso.org/members.html.
v
ISO/CD TSDTS 5083:2024(:(en)
Introduction
Automated driving is one of the key emerging technologies for road vehicles, where major goals in deploying
automated driving systems include the societal benefits due to broader access to mobility and the reduction
of human driver related crashes. Successful deployment is contingent upon ensuring safety of the ADS. This
document presents guidance and requirements for achieving safety through the ADS development, including
design, verification and validation, as well as operation post deployment.
The successful design and deployment of the ADS can involve a variety of stakeholders, from technology,
component, and sub-systemsubsystem suppliers to system integrators and vehicle OEMs, as well as
transportation service providers and regulatory bodies; this document is intended to be used by all those
involved.
vi
ISO/CD TSDTS 5083:2024(:(en)
Road vehicles — Safety for automated driving systems — Design,
verification and validation
1 Scope
This document provides guidance for achieving and demonstrating safety of an automated driving system
(ADS) integrated in a road vehicle. The approach is based on safety principles derived from worldwide
applicable publications and top-level safety objectives. It considers safety by design, verification and
validation, and post deployment activities for level 3 and level 4 ADS features defined according to ISO/SAE
[2 ]
PAS 22736 . . In addition, it outlines cybersecurity considerations.
The application of this document is intended for road vehicles, including trucks and buses and excluding
motorcycles and mopeds.
Any ADS or related elements that are in operation, or under development, prior to the publication of this
document are exempted from the application of this document.
NOTE While not covered in this document, safety during development activities is a key consideration. Development
includes activities of design, verification and validation.
2 Normative references
There are no normative references in this document.
3 Terms and definitions
3.1 General
For the purposes of this document, the following terms and definitions apply.
ISO and IEC maintain terminologicalterminology databases for use in standardization at the following
addresses:
— — ISO Online browsing platform: available at https://www.iso.org/obp
— — IEC Electropedia: available at https://www.electropedia.org/
3.23.1 Human-related terms
3.2.13.1.1 3.2.1
road user
traffic participant on, or adjacent to, an active roadway
Note 1 to entry: person
...
Questions, Comments and Discussion
Ask us and Technical Secretary will try to provide an answer. You can facilitate discussion about the standard in here.