The promise of Safety-Driven V&V

‘A method of solution is perfect if we can foresee from the start, and even prove, that following that method we shall attain our aim.’ — Gottfried Wilhelm Leibniz

Introduction

Automated Driving Systems (ADS) force a paradigm shift in safety. ADS technology is expected to assume total ownership of driving safety despite the elements of surprise, chaos, and unpredictability inherent in the driving environment. This imposes unprecedented safety expectations on engineered artifacts and the organizations that create them. Fulfilling these expectations requires substantial innovation in Safety Verification and Validation (V&V), especially for ADS functionality that understands the driving environment, predicts how it may evolve, and plans safe maneuvers. This blog post describes critical elements of Foretellix’s innovative Safety-Driven V&V (SDV) approach and how SDV provides the paradigm shift for ensuring the safety of ADS and ADAS at scale.

SDV: The methodology

The SDV methodology is established to ensure that the Safety V&V effort contributes to and enables all the safety assurance needs for ADS and ADAS. It follows the current safety standards and upcoming regulations and can be tailored to the needs of specific companies, engineering cultures, and validation philosophies. The application of the methodology forces deep thinking about the safety claims to be made, supporting evidence, testing strategies and modalities, evaluating residual risk, etc. This leads to a comprehensive and cohesive safety validation program that provides a clear and actionable guide to crossing the safety finish line. In particular, SDV includes support for the following:

  • Safety case: The SDV tools and methodology generate artifacts that serve as evidence for safety case claims related to test results, coverage, etc. With the proper tooling and processes, the continuous and iterative generation of evidence artifacts serves as a basis for the so-called “continuous safety case” approach, in which safety considerations are defined and tracked continuously throughout the lifecycle.
  • Residual risk estimation: All approaches to residual risk, regardless of specifics, need to account for whether sufficient testing has occurred, whether the results are consistent with the organization’s views on risk acceptability, and the likelihood of undiscovered safety issues. In turn, Foretellix provides the foundational tools for supporting this and is working with leading customers on developing more abstract methodological guidance on how test spaces could be structured and discretized.
  • The evolution of Safety/V&V programs across the development lifecycle: The Safety and V&V activities in the early stages of feature development are very different compared to those done during pre-launch validation of a feature-complete ADS/ADAS stack. SDV has the depth and breadth to “tune the focus and intensity” of V&V to immediately obtain valuable results for the development stage. As the system matures, the same tools and processes can ramp up and build off the previous results for wider and/or more focused V&V explorations.
  • Bringing together the teams engaged in core autonomy development, V&V, and Safety: SDV methodology requires the teams to come together and define which requirements and goals must be explicit, how they should be articulated and tested, how the results are evaluated, etc. The SDV tools generate artifacts (e.g., test results, coverage reports) that need to be jointly viewed and discussed by the teams, typically as part of explicitly defined processes for this purpose.
  • Post-deployment monitoring: Harvesting field data from deployed fleets and using that to continuously increase confidence in the Safety Case, validate safety assumptions, and proactively identify any needed changes (and subsequently validate them) are all activities that are an integral part of SDV. Upcoming regulations will also require this type of post-deployment analysis and strengthening of the safety validation.
  • ODD expansion: SDV also increases the efficiency of V&V when expanding to new ODDs… be that about expanding geo-fences or expanding to more operational and weather situations within the same geo-fence.
  • Standards and regulations: SDV supports relevant parts of all modern ADS/ADAS safety standards and regulatory requirements, including but not limited to ISO 26262, ISO 21448, ISO 34502, UL 4600, IEEE 2846, and UNECE regulation 157. The workflow supported by the SDV methodology is aligned with the regulatory direction developed by UNECE.

SDV: The technology

SDV’s key technical offerings are:

  • The ASAM OpenSCENARIO® 2.0 language to elegantly describe abstract scenarios in a concise, declarative, arbitrarily combinable, reusable, and formal-yet-intuitive manner. Scenario descriptions include scenario parameters, their ranges and distributions, constraints, and other metrics (KPIs/SPIs, coverage, etc.) to be computed and checked as the scenario executes. These abstract descriptions are reusable across maps and various ODDs.
  • Constrained-random generation of a large number of valid concrete scenarios from the abstract scenario descriptions. The generator doesn’t just randomly choose scenario parameter values within their ranges. (Doing that generates many silly/impossible scenarios requiring subsequent pruning.) Instead, it understands the semantics of the driving domain and picks scenario parameter values consistent with each other and the laws of physics. Appropriate map locations are also automatically selected. For example, if an actor is behind the Ego vehicle at the start of the scenario and ahead of it at the end of the scenario, the generator automatically infers that a map with a minimum of two lanes would be needed and lane changes, overtaking, and a subsequent cut-in by actor ahead of Ego would all be involved.
  • Seamless use of real-world driving logs in Safety validation. The tools convert driving logs into a timeline of scenarios and automatically compute scenario parameters, their distributions, and scenario metrics. This enables checking AV performance, detecting anomalous behavior, assessing simulation accuracy, etc. This also allows assessments of test coverage across real-world and virtual testing.
  • Sophisticated analysis tools expressly designed to enable efficient examination and arbitrary exploration of millions of scenario simulations and real-world driving results. From debug exploration of single scenarios to triage of large batches of simulation runs to statistical queries across multiple runs.
  • Test suite management and optimization to guide iterative testing towards specific test objectives. Whether you want to run the most common scenarios, corner cases, or find situations where particular KPIs/SPIs are minimized, or increase coverage over input values, or efficiently seek out parameter combinations that cause failures, the test suite managers guide the selection of the next set of test cases by analyzing results of previous test runs.

Conclusion

At some point, OEMs will need to bite the bullet, put down the metaphorical pen, and say, “This is it! We are ready for launch.” Getting to that point requires a blueprint that shows how novel safety technologies and methodologies can collectively get you to the finish. SDV is exciting because it lights a path to that promised land.  It adds the missing ingredients and can carry Automated Driving Systems across the safety finish line. Leibniz would approve!

To learn more, download the Safety-Driven V&V Guide

Subscribe to our newsletter

Additional content for you

Automated Scenario Curation for Safer ADS

This is the second blog in a series. In the first blog (Accelerating Automated Driving System Deployment with Scalable, Data-Driven Evaluation), Mike Stellfox pointed out that the real challenge in AV development has shifted from simply building systems to ensuring we can truly trust them....

Interview with Glen De Vos - Foretellix’s Newest Board Member

You’re joining our board as Temasek’s representative, what about our technology, team, and vision excites you? What excites me about working with the Foretellix team is that they are offering a comprehensive solution to a critical issue that OEM’s and Tier 1’s are facing during the development of Level 2++, 3 and 4 advanced mobility systems. ...

Why High-Fidelity Sensor Simulation Is Critical for AV Development and Testing

Autonomous vehicles (AVs) must safely navigate complex and unpredictable environments. Yet even the most advanced perception systems face limitations when an object or road user is temporarily hidden from view. These occlusion scenarios, blind spots caused by obstructing vehicles, are among the most critical and difficult to test....

Register to receive ALKS scenarios verification code examples

AI, Autonomy, V&V and Abstractions – Automating at Hyper Speed

Subscribe to our newsletter

Book A Meeting

Subscribe to our newsletter

Ziv Binyamini

CEO & Co-Founder

Ziv is a verification visionary and a passionate leader. Previously, Ziv served as Corporate VP at Cadence running the simulation and verification business. Through his career at Cadence, Verisity and Intel, Ziv led the development of verification businesses including chip simulation and Verification IP, industry first Coverage Driven Verification solutions and test bench products including Specman for chip verification and Perspec for SoC HW/SW verification.

Yoav Hollander

CTO & Founder

Yoav is a world expert and leader in complex systems expert verification and validation. he Invented the “e” verification language and related methodology (later followed by the UVM methodology). Yoav founded Verisity to deliver “e” and related tools. Verisity was acquired by Cadence Design Systems. In the last few years, Yoav has been researching complex-system verification.

Gil Amid

Chief Regulatory Affairs Officer, VP Operations & Co-founder

Gil is a former Vice President of Intel Corp. Gil has 30 years of experience working for Intel , in which he led the development of EDA and CAD tools in all design domains as well as leading VLSI design projects. In his recent years he was in charge of (among others) the verification tools development organization within Intel.

Doron Ilan

CFO

Doron is an experienced CFO with over 20 years in corporate finance, in various private and public companies. As the CFO of 012 Smile Telecom [Nasdaq: BCOM], he led the company’s successful NASDAQ IPO, and later, as the CFO of SuperCom [SPCB] executed an M&A process and a public offering on NASDAQ. In recent years he was the CFO of Xfone, an Israeli telecom provider.

Udi Jacobi

Udi Jacobi

Chief Commercial Officer

Udi has over 20 years of commercial leadership experience, managing and growing businesses throughout the USA, Europe, and APAC. His experience spans a broad range of industries and disciplines, including Automotive, New Media, and Digital Transformation. Prior to joining Foretellix, Udi founded and successfully grew Brightcom Media into a multi-million-dollar profitable business.

Vicky Revzin

HR & Global Employee Operations Director

Vicky Revzin – HR & Global Employee Operations Director

Roger Ordman

VP Marketing

Roger has over 20 years of global experience managing product, marketing and business development teams. Roger’s experience spans the networking, mobile and automotive industries previously serving as EVP of Marketing at Aurora Labs, and Marketing and Product Director at HARMAN. Roger is a frequent speaker on emerging trends in automotive software and holds an engineering degree in Industrial Management from Tel Aviv University.

Sharon Rosenberg

Solution Architect & Chief Methodologist

Sharon has over two decades of experience in the verification and validation of highly complex systems. He is the author of two landmark verification & validation textbooks and a key contributor to ASAM OpenSCENARIO® 2.0.

Ron Grossberg

VP R&D

Ron is an experienced manager and a passionate software engineer with more than 20 years of experience. Previously Ron managed a group in Algotec (now a Philips subsidiary), fully in charge of the development of complex medical imaging software used by radiologists in thousands of hospitals around the globe. Ron started his way in the IDF programming academy and technological units.

Jeni Osternik

Jeni Osternik

VP Product & Execution

Jeni is a versatile leader with over 17 years of experience spanning product management, operations, engineering, and business leadership. He leads the company’s product and delivery execution, ensuring the successful alignment of business, technology, and customer value. Before joining Foretellix, Jeni held management roles in the defense and homeland security sectors, where he led multidisciplinary teams and large-scale international programs, driving growth and innovation across complex technology ecosystems.

Alex Hitzinger

CEO & Co-Founder

Alex started his automotive career at Toyota Motorsport before joining Cosworth and Red Bull Technology. Hitzinger then joined Porsche as Technical Director and Chief Engineer of Porsche 919, which won the 24 Hours of Le Mans in 2015. He spent three years at Apple as Head of Product Design for Project Titan. Most recently, Hitzinger served as Senior Vice President of Autonomous Driving at VW Group and Member of the Executive Board VWN, where he was involved in developing the ID Buzz. He also served as Chief Executive Officer of Artemis GmbH, where he was the Chief Architect of the revolutionary new vehicle concept for next-generation autonomous mobility for their flagship-product Audi Landjet.

Moshe Gavrielov

Chairman of the Board

Moshe Gavrielov last served as the President and CEO of Xilinx from 2008-2018, during which the company delivered three successive generations of technology leadership. These yielded revenue growth to over $2.5B, significantly increased profitability, and market share expansion. As a result market capitalization quadrupled during his tenure and approached $20B. Prior to that Moshe was the CEO of Verisity, delivered revenue growth to over $70M while leading its successful IPO in 2001 and led its sale to Cadence for $315M in 2005. Prior to Verisity, Moshe served in numerous executive management roles in LSI Logic, Digital Equipment and National Semiconductor.

Boaz Schwartz

Chairman of the Board

Boaz Schwartz is a seasoned finance professional and a tech investor. Dr. Schwartz has founded and managed Deutsche Bank Israel for 24 years and until December 2020. Following his retirement from Deutsche Bank, Boaz has become an active tech investor in both early and late-stage companies. Dr. Schwartz is a board member of IDC Herzliya, iArgento Ltd and the vice-Chairman of Zabar Solar Ltd. He earned a Ph.D in Finance from the University of Chicago; MBA with Distinction from the Wharton School at the University of Pennsylvania; MSc and BSc in Electrical Engineering from the University of Tel Aviv.

Gil Goren

CEO & Co-Founder

Gil Goren joined 83North in 2016, after more than a decade at EMC in a variety of roles in Boston and Tel Aviv. At his last role as SVP & Managing Partner at EMC Ventures he managed strategic partnerships Investments and M&A internationally. Prior investments include Anobit (acquired by Apple), XtremIO & ScaleIO (both acquired by EMC), Cyvera & Secdo (both acquired by Palo Alto Networks), Adallom (acquired by Microsoft), CloudEndure (acquired by Amazon) Jfrog, RedisLabs, Guardicore and VastData among others. Currently on the boards of VDOO, Foretellix, and IBEX. He has B.SC in Electrical Engineering from the Technion and MBA from Boston University.

Glen De Vos

Mr. De Vos has over 30 years of senior leadership experience in automotive and industrial technology sectors, particularly around autonomy and mobility. In his career he has held a number of leadership roles at Aptiv and its predecessor Delphi Automotive. Positions included Chief Technology Officer and President of the Advanced Safety and User Experience business unit. He currently serves as the CEO of MicroVision, Inc.

Mark Mohr

VP Global Sales & Business Development

Since March 2021 Mark is SVP of Vehicle Technology at Volvo Group Truck Technology. Before he was Head of Development Commercial Vehicle Division at ZF Friedrichshafen AG. In this role, Mark’s main was on driver assistance systems automation, new hardware, and software architectures besides the classical driveline and chassis business. Since his Ph.D. in Mechanical Engineering from the Technical University Kaiserslautern, Germany, he has a long experience in simulation and digital engineering.

Carl-Peter Forster

VP Global Sales & Business Development

Carl-Peter Forster started his career at McKinsey & Company as a management consultant in 1982. After four years there, he joined BMW in Munich, where he became a member of the Executive Board in 1999 as head of global manufacturing. In 2001, he joined the European division of General Motors and became Managing Director of Opel and Vice President of GM Europe. In 2006 he became CEO and President of GM Europe and joined the parent company’s Global Automotive Strategy Board. After leaving General Motors, he became Group CEO at Tata Motors, where he was responsible for the Jaguar and Land Rover brands. In 2013, he joined the boards of Geely Automotive Holdings and Volvo Cars.

Eran Sandhaus

Eran recently led Delphi Automotive’s (now Aptiv) Autonomous Driving and Connected Services business unit, overseeing global engineering teams, business staff and wholly owned subsidiaries focused on providing hardware, software, algorithms and cloud services to transform future mobility. Prior to Delphi, Eran was a senior executive for over 20 years in Fortune 500 companies including Qualcomm, Cypress, Texas Instruments and Marvell. During this period Eran led global businesses, operations and M&A focused on server communications, storage, mobile handsets and Internet-of-Things (IoT) for consumer, automotive and industrial applications.

Benny Schnaider

Benny Schnaider is a high-tech serial entrepreneur. Benny co-founded Ravello Systems and served as its President and Chairman. The company has developed an over-the-top cloud services. Since Ravello acquisition by Oracle in 2016, Benny serves as VP SW development for Oracle-Ravello. Previously, Benny co-founded and was the CEO Qumranet (KVM), acquired by Red Hat in 2008. Co-founded P-Cube, acquired by Cisco in 2004. Benny was the CEO and Founder of PentaCom Ltd., acquired by Cisco in 2000. Benny invests and serves as a board member in several startups like: Traffix Systems (acquired by F5 in 2012) and B-Hive (acquired by VMware in 2008), ScyllaDB, Otonomo, Colabo, CathWorks.