Accendo Reliability

Your Reliability Engineering Professional Development Site

  • Home
  • About
    • Contributors
  • Reliability.fm
    • Speaking Of Reliability
    • Rooted in Reliability: The Plant Performance Podcast
    • Quality during Design
    • Critical Talks
    • Dare to Know
    • Maintenance Disrupted
    • Metal Conversations
    • The Leadership Connection
    • Practical Reliability Podcast
    • Reliability Matters
    • Reliability it Matters
    • Maintenance Mavericks Podcast
    • Women in Maintenance
    • Accendo Reliability Webinar Series
    • Asset Reliability @ Work
  • Articles
    • CRE Preparation Notes
    • on Leadership & Career
      • Advanced Engineering Culture
      • Engineering Leadership
      • Managing in the 2000s
      • Product Development and Process Improvement
    • on Maintenance Reliability
      • Aasan Asset Management
      • CMMS and Reliability
      • Conscious Asset
      • EAM & CMMS
      • Everyday RCM
      • History of Maintenance Management
      • Life Cycle Asset Management
      • Maintenance and Reliability
      • Maintenance Management
      • Plant Maintenance
      • Process Plant Reliability Engineering
      • ReliabilityXperience
      • RCM Blitz®
      • Rob’s Reliability Project
      • The Intelligent Transformer Blog
    • on Product Reliability
      • Accelerated Reliability
      • Achieving the Benefits of Reliability
      • Apex Ridge
      • Metals Engineering and Product Reliability
      • Musings on Reliability and Maintenance Topics
      • Product Validation
      • Reliability Engineering Insights
      • Reliability in Emerging Technology
    • on Risk & Safety
      • CERM® Risk Insights
      • Equipment Risk and Reliability in Downhole Applications
      • Operational Risk Process Safety
    • on Systems Thinking
      • Communicating with FINESSE
      • The RCA
    • on Tools & Techniques
      • Big Data & Analytics
      • Experimental Design for NPD
      • Innovative Thinking in Reliability and Durability
      • Inside and Beyond HALT
      • Inside FMEA
      • Integral Concepts
      • Learning from Failures
      • Progress in Field Reliability?
      • Reliability Engineering Using Python
      • Reliability Reflections
      • Testing 1 2 3
      • The Manufacturing Academy
  • eBooks
  • Resources
    • Accendo Authors
    • FMEA Resources
    • Feed Forward Publications
    • Openings
    • Books
    • Webinars
    • Journals
    • Higher Education
    • Podcasts
  • Courses
    • 14 Ways to Acquire Reliability Engineering Knowledge
    • Reliability Analysis Methods online course
    • Measurement System Assessment
    • SPC-Process Capability Course
    • Design of Experiments
    • Foundations of RCM online course
    • Quality during Design Journey
    • Reliability Engineering Statistics
    • Quality Engineering Statistics
    • An Introduction to Reliability Engineering
    • An Introduction to Quality Engineering
    • Process Capability Analysis course
    • Root Cause Analysis and the 8D Corrective Action Process course
    • Return on Investment online course
    • CRE Preparation Online Course
    • Quondam Courses
  • Webinars
    • Upcoming Live Events
  • Calendar
    • Call for Papers Listing
    • Upcoming Webinars
    • Webinar Calendar
  • Login
    • Member Home

by Dianna Deeney Leave a Comment

QDD 047 Risk Barriers as Swiss Cheese?

Risk Barriers as Swiss Cheese?

There’s a model that can help us visualize and consider the different barriers to harm: The Swiss Cheese Model of Accident Causation.

Learn what makes up this model and how ideas are represented. There are also different ways that the model is being used today.

How can we design for controls, policies, or actions that are part of the use of our product but outside of our control? We step through an example of a situation where we’re thinking about our product design in this way.

 

 

View the Episode Transcript

 

A cheese slice represents a control, action, or policy that’s put in place as a barrier to risk, including actions that lesson the consequences of an error.

Holes (or eyes in our slices of swiss) are the shortcomings or failures of our risk barriers. The classic Swiss Cheese Model includes active failures, latent failures, and preconditions.

The arrow represents a potential of harm. If the arrowhead makes it through all the slices of swiss, it means that the risk barriers failed and the harmful event was allowed to happen.

Citations

See how Flight Safety of Australia uses the Swiss Cheese Model to break-down and communicate risk barriers to prevent commercial airline crashes. Safety in mind: Swiss cheese and bowties | Flight Safety Australia

“Safety in mind: Swiss cheese and bowties.” Flight Safety Australia. Civil Aviation Safety Authority Australia. September 7, 2016. https://www.flightsafetyaustralia.com/2016/09/safety-in-mind-swiss-cheese-and-bowties/ Accessed Jan 10, 2021.

An article interviewing people about the Swiss Cheese Model and measuring the common understanding about the features of the model.

Perneger, Thomas V. “The Swiss Cheese Model of Safety Incidents: Are there Holes in the Metaphor?” BMC Health Serv Res. 2005; 5: 71. Published online 2005 Nov 9. doi: 10.1186/1472-6963-5-71. Accessed 2022 Jan 10.

Just for fun

Episode Transcript

I’ve got a riddle for you today. What does swiss cheese and risk management have in common? I’ll tell you the answer after the introduction.

Hello, and welcome to Quality during Design, the place to use quality thinking to create products others love, for less. My name is Dianna. I’m a senior level quality professional and engineer with over 20 years of experience in manufacturing and design. Listen in and then join the conversation at qualityduringdesign.com.

There’s an idea of how to execute risk management in systems. And it’s modeled after Swiss cheese. It’s called the Swiss Cheese Model of Accident Causation. It’s a visual model of risk management. Sometimes we just need that clear visual so we can all get on the same page and move forward together.

Let’s talk about the Swiss cheese model. First think of slices of deli Swiss. Like what you’d put on a sandwich. One slice of our Swiss has holes of varying sizes and locations (or eyes). No two slices are exactly the same. In system design, we’re layering and assembling different things to create a system. Each layer of control, action, or policy that we put in place to control a risk is a slice of swiss. The holes in our slices of swiss are the shortcomings in our systems. Risk is always trying to penetrate our layers like an arrow, but the only way it can do so is if the holes in our slices line up just right so the risk can make it through and become an undesired event like user harm. Sometimes it’s the case that the more layers we add, or the more slices of cheese, the more likely the shortcomings or the holes will not line up and the risk event will not turn into a harm. We can also fix the shortcomings, or plug the holes in our slices, to reduce the chance of harm.

The Swiss Cheese Model is credited to James T. Reason in the 1990s and 2000s. He was evaluating methods of assessing risk of complex systems like nuclear power plants, spacecraft, and offshore oil drilling rigs. He was concerned about failures caused from the interaction of technical systems and their operators. A complex system could have many layers of controls, actions and policies. And on any given day, a mishap or a shortcoming in one of those layers may be acceptable and okay, but the cumulative effect of errors or mishaps some shortcomings that happen to show up and don’t get fixed can lead to a situation where harm can occur.

I’ve mentioned that the cheese slice is a barrier to risk and that could be a control and action or a policy. And it includes actions that can lessen the consequences of an error. And I’ve also mentioned that the arrow represents the potential of harm. If the arrowhead makes it through all the slices of Swiss, it means that the risk barriers fail, and the harmful event was allowed to happen. The holes represent failure. In the classic Swiss Cheese Model of Accident Causation, holes involve active failures, preconditions and latent failures. Active failures can also be thought of as immediate causes or specific actions involving people making decisions. Maybe the operator bypasses the safety mechanism because they think it’s a pain to do their job with it. Latent failures can be thought of as underlying causes, like the built-in safety mechanisms on the standby waiting to be triggered, but there’s something wrong with it and it wouldn’t trigger, anyway. A latent failure is a failure of the system’s design that increases the chance of harm. Preconditions can be situational; are the conditions of the situation just right to promote a risk event?

The Swiss cheese model has been simplified over the years and used in a lot of different disciplines. The slices used may vary depending on application. In healthcare, data breaches can be attributed to a combination of different aspects like human, organization, and technology interfaces. Airlines use it with different slices, like specific acts, supervision, preconditions, and organizational influences. Recently it’s been used to describe the controls we can have in place to address this pandemic. I’ll post a gift on the podcast blog that uses the Swiss Cheese Model for that purpose.

For product design, this model can be used when thinking about controlling risks of a design that involves human interaction. Each slice of cheese would be a component of an organization that’s involved in the use of our product design. Let’s use an example from healthcare. Say we make two medical devices. One is coated with a special medicine. The other is not. The decision of which one to use is dependent upon the physician’s decision. And that is based on the treatment length of use and whether the patient is allergic to the coating. Patient harm may happen if a coded product is used on someone who’s allergic, that’s our risk. What are the barriers that are in place to prevent this risk? What are our slices of cheese? There are hospital procedures involving the patient intake and knowledge of allergies. There are different hospital procedures involving ordering and control of the stockroom. There’s the system used to get product from stock, a physician’s order being fulfilled by someone from the stockroom. There’re nurses prepping the product for the procedure, removing labels and packaging, and checking that the right products were pulled from stock. In knowing all the barriers, we can start thinking about how well they’ll prevent harm.

What are the shortcomings of the controls? Where are the holes in use? Will these holes line up and lead to coated product being used on a patient that’s allergic potentially leading to patient harm? If so, is there another control we need to add to prevent the risk? We are the ones designing and making the product. We’re not in control of hospital procedures, but we are in control of our product design. How can we help our users more easily identify that the product is coated? When do they need to check that? Are the part numbers and names of the product significantly different to reduce the chance that the physician will choose the right part number? Are the colors on the packaging distinctive, so the stockroom person can easily choose the right product? How about during the procedure: if the nurse preps the product and removes all the external labels, is there another way the product is identified as having coating? Is the product itself a different color? Do we need to include instructions for how to test for a patient allergy before using the product? Is there any way we can help the hospital staff to do this?

Knowing the origins of this Swiss Cheese Model, we can see that it can be used to help us think through complex systems. Not everyone is a fan though. Someone studied if the Swiss cheese model was clearly understood by everyone, that it was interpreted the same way by different people. The conclusion of the study was that it’s not interpreted the same way, but I don’t think that matters. It’s a model that we can use to visualize and communicate complex problems. I hope it will help you with your risk management ideas for your designs, both in developing them and communicating them.

Please go to my website at qualityduringdesign.com. You can visit me there. And it also has a catalog of resources, including all the podcasts and their transcripts. Use the subscribe forms to join the weekly newsletter, where I share more insights and links in your podcast app. Make sure you subscribe or follow quality during design to get the episodes and get notified when new ones are posted. This has been a production of Deeney Enterprises. Thanks for listening.

 

 

Filed Under: Quality during Design, The Reliability FM network

Leave a Reply Cancel reply

Your email address will not be published. Required fields are marked *

Quality during Design podcast logo

Tips for using quality tools and methods to help you design products others love, for less.


by Dianna Deeney
Quality during Design,
Hosted on Buzzsprout.com
Subscribe and enjoy every episode
Google
Apple
Spotify

Recent Episodes

QDD 101 Quality Tools are Legos of Development (and Their 7 Uses)

QDD 100 Lessons Learned from Coffee Pod Stories

QDD 099 Crucial Conversations in Engineering, with Shere Tuckey (A Chat with Cross-Functional Experts)

QDD 098 Challenges Getting Team Input in Concept Development

QDD 097 Brainstorming within Design Sprints

QDD 096 After the ‘Storm: Compare and Prioritize Ideas

QDD 095 After the ‘Storm: Pareto Voting and Screening Methods

QDD 094 After the ‘Storm: Group and Explore Ideas

QDD 093 Product Design with Brainstorming, with Emily Haidemenos (A Chat with Cross Functional Experts)

QDD 092 Ways to Gather Ideas with a Team

QDD 091 The Spirits of Technical Writing Past, Present, and Future

QDD 090 The Gifts Others Bring

QDD 089 Next Steps after Surprising Test Results

QDD 088 Choose Reliability Goals for Modules

QDD 087 Start a System Architecture Diagram Early

QDD 086 Why Yield Quality in the Front-End of Product Development

QDD 085 Book Cast

QDD 084 Engineering in the Color Economy

QDD 083 Getting to Great Designs

QDD 082 Get Clarity on Goals with a Continuum

QDD 081 Variable Relationships: Correlation and Causation

QDD 080 Use Meetings to Add Productivity

QDD 079 Ways to Partner with Test Engineers

QDD 078 What do We do with FMEA Early in Design Concept?

QDD 077 A Severity Scale based on Quality Dimensions

QDD 076 Use Force Field Analysis to Understand Nuances

QDD 075 Getting Use Information without a Prototype

QDD 074 Finite Element Analysis (FEA) Supplements Test

QDD 073 2 Lessons about Remote Work for Design Engineers

QDD 072 Always Plot the Data

QDD 071 Supplier Control Plans and Design Specs

QDD 070 Use FMEA to Design for In-Process Testing

QDD 069 Use FMEA to Choose Critical Design Features

QDD 068 Get Unstuck: Expand and Contract Our Problem

QDD 067 Get Unstuck: Reframe our Problem

QDD 066 5 Options to Manage Risks during Product Engineering

QDD 065 Prioritizing Technical Requirements with a House of Quality

QDD 064 Gemba for Product Design Engineering

QDD 063 Product Design from a Data Professional Viewpoint, with Gabor Szabo (A Chat with Cross Functional Experts)

QDD 062 How Does Reliability Engineering Affect (Not Just Assess) Design?

QDD 061 How to use FMEA for Complaint Investigation

QDD 060 3 Tips for Planning Design Reviews

QDD 059 Product Design from a Marketing Viewpoint, with Laura Krick (A Chat with Cross Functional Experts)

QDD 058 UFMEA vs. DFMEA

QDD 057 Design Input & Specs vs. Test & Measure Capability

QDD 056 ALT vs. HALT

QDD 055 Quality as a Strategic Asset vs. Quality as a Control

QDD 054 Design Specs vs. Process Control, Capability, and SPC

QDD 053 Internal Customers vs. External Customers

QDD 052 Discrete Data vs. Continuous Data

QDD 051 Prevention Controls vs. Detection Controls

QDD 050 Try this Method to Help with Complex Decisions (DMRCS)

QDD 049 Overlapping Ideas: Quality, Reliability, and Safety

QDD 048 Using SIPOC to Get Started

QDD 047 Risk Barriers as Swiss Cheese?

QDD 046 Environmental Stress Testing for Robust Designs

QDD 045 Choosing a Confidence Level for Test using FMEA

QDD 044 Getting Started with FMEA – It All Begins with a Plan

QDD 043 How can 8D help Solve my Recurring Problem?

QDD 042 Mistake-Proofing – The Poka-Yoke of Usability

QDD 041 Getting Comfortable with using Reliability Results

QDD 040 How to Self-Advocate for More Customer Face Time (and why it’s important)

QDD 039 Choosing Quality Tools (Mind Map vs. Flowchart vs. Spaghetti Diagram)

QDD 038 The DFE Part of DFX (Design For Environment and eXcellence)

QDD 037 Results-Driven Decisions, Faster: Accelerated Stress Testing as a Reliability Life Test

QDD 036 When to use DOE (Design of Experiments)?

QDD 035 Design for User Tasks using an Urgent/Important Matrix

QDD 034 Statistical vs. Practical Significance

QDD 033 How Many Do We Need To Test?

QDD 032 Life Cycle Costing for Product Design Choices

QDD 031 5 Aspects of Good Reliability Goals and Requirements

QDD 030 Using Failure Rate Functions to Drive Early Design Decisions

QDD 029 Types of Design Analyses possible with User Process Flowcharts

QDD 028 Design Tolerances Based on Economics (Using the Taguchi Loss Function)

QDD 027 How Many Controls do we Need to Reduce Risk?

QDD 026 Solving Symptoms Instead of Causes?

QDD 025 Do you have SMART ACORN objectives?

QDD 024 Why Look to Standards

QDD 023 Getting the Voice of the Customer

QDD 022 The Way We Test Matters

QDD 021 Designing Specs for QA

QDD 020 Every Failure is a Gift

QDD 019 Understanding the Purposes behind Kaizen

QDD 018 Fishbone Diagram: A Supertool to Understand Problems, Potential Solutions, and Goals

QDD 017 What is ‘Production Equivalent’ and Why Does it Matter?

QDD 016 About Visual Quality Standards

QDD 015 Using the Pareto Principle and Avoiding Common Pitfalls

QDD 014 The Who’s Who of your Quality Team

QDD 013 When it’s Not Normal: How to Choose from a Library of Distributions

QDD 012 What are TQM, QFD, Six Sigma, and Lean?

QDD 011 The Designer’s Important Influence on Monitoring After Launch

QDD 010 How to Handle Competing Failure Modes

QDD 009 About Using Slide Decks for Technical Design Reviews

QDD 008 Remaking Risk-Based Decisions: Allowing Ourselves to Change our Minds.

QDD 007 Need to innovate? Stop brainstorming and try a systematic approach.

QDD 006 HALT! Watch out for that weakest link

QDD 005 The Designer’s Risk Analysis affects Business, Projects, and Suppliers

QDD 004 A big failure and too many causes? Try this analysis.

QDD 003 Why Your Design Inputs Need to Include Quality & Reliability

QDD 002 My product works. Why don’t they want it?

QDD 001 How to Choose the Right Improvement Model

© 2023 FMS Reliability · Privacy Policy · Terms of Service · Cookies Policy

This site uses cookies to give you a better experience, analyze site traffic, and gain insight to products or offers that may interest you. By continuing, you consent to the use of cookies. Learn how we use cookies, how they work, and how to set your browser preferences by reading our Cookies Policy.