Overview
ISO/IEC/IEEE 15026-2:2022 - Systems and software engineering - Systems and software assurance - Part 2: Assurance case - specifies requirements for the structure terminology of assurance cases. Published as the second edition in 2022, the standard is applicable to developing and maintaining assurance cases and improves consistency, comparability and stakeholder communication by defining precise terms and a top-level structure for claims, arguments and evidence. It does not mandate any particular graphical notation or representation, nor does it place requirements on the quality of assurance-case content.
Key topics and requirements
The standard focuses on assurance case structure terminology and related requirements, including:
- Core definitions: formal terms such as assurance case, assurance case report, inference, claim, evidence, context, undeveloped argument.
- Use of assurance cases: guidance on presenting claims and addressing uncertainty so readers can assess truth and confidence in top-level claims.
- Structure of assurance cases: defined top-level components and types, including:
- Context type - scope and assumptions that bound claims.
- Evidence type - tangible artefacts supporting claims.
- Claim type - assertions about system properties.
- Inference type - reasoning steps deriving claims from premises.
- Supported claim and argument types - organization of subclaims and argument structure.
- Narrative introduction type - assurance case report content and role.
- Annexes and examples: informative examples of supported claims/arguments, sample top-level structures, and terminology comparisons to aid implementation.
- Normative linkages: references ISO/IEC/IEEE 15026-1 for concepts and vocabulary and aligns terminology with ISO/IEC/IEEE 12207, 15288 and 15289.
Practical applications and users
ISO/IEC/IEEE 15026-2:2022 is designed for practitioners who develop, review or rely on assurance cases:
- Systems and software engineers creating structured assurance arguments
- Safety, reliability and cybersecurity assurance teams building safety cases or dependability cases
- Project managers, suppliers and acquirers using assurance case reports for decision gates and lifecycle monitoring
- Regulators and auditors assessing the completeness, traceability and rigor of claims, evidence and inferences
Typical applications include assurance of safety, reliability, maintainability, human factors, operability and security properties where clear claims, arguments and evidence are needed to manage uncertainty and support decision-making.
Related standards
- ISO/IEC/IEEE 15026-1 (Concepts and vocabulary)
- Aligns terminology with ISO/IEC/IEEE 12207, 15288 and 15289
- Common notations and metamodels referenced in practice: CAE, GSN, SACM (mentioned as abbreviations in the standard)
Keywords: ISO/IEC/IEEE 15026-2:2022, assurance case, systems and software assurance, assurance case structure terminology, assurance case report, claims arguments evidence.