Standards

Standards we work to

We audit existing firmware against a target standard and develop firmware to safety standards from the start. We do the engineering and produce the evidence your certification body needs.

IEC 60730 / 60335 Class B: appliances

Software safety for household appliances and controls with a safety-relevant function. Delivered on production appliance motor-control firmware, including work to IEC 60730-1 Annex H.

IEC 60601 / ISO 14971: medical

Medical electrical equipment. We have worked on medical device programmes, covering standards review, hazard analysis referencing ISO 14971 risk management, and EMC pre-compliance to IEC 60601-1-2.

MISRA C

Compliance and gap analysis for automotive, industrial, and embedded systems. MISRA removes classes of undefined and risky behaviour from C. It does not tell you whether your requirements are right or your architecture is sound.

NASA JPL Power of 10

The Power of 10: Rules for Developing Safety-Critical Code, from NASA’s Jet Propulsion Laboratory. Ten rules covering restricted control flow, fixed loop bounds, no dynamic memory after initialization, function length, assertion density, and pointer use. These are built into our own coding standard rather than applied only when a client asks.

DO-178B / DO-178C

Airborne software assurance. We have audited flight-control software against DO-178B/C quality standards.

What we deliver

What an engagement produces

Compliance Audit

Independent review against a target standard, with a documented gap analysis and remediation plan.

Development to a Standard

New firmware written to the standard from the start, with traceability from requirement to test.

Requirements Traceability

Requirements linked to design, code, and tests, so coverage is demonstrable rather than asserted.

Defensive Architecture

Firmware designed to fail safe, contain faults, and remain analysable after the event.

Verification Evidence

Unit testing, coverage analysis, and worst-case resource analysis, in a form an assessor can use.

Failure Analysis

Crash-dump and exception analysis to find and close root causes of unsafe behaviour.

Why us

Why choose us

We've done the real thing

DO-178B/C audits of flight-control software, and IEC Class B firmware in production appliance motor control.

Multi-standard fluency

IEC Class B, MISRA, JPL, DO-178C, and medical device standards, matched to your market and risk.

Independent and defensible

Documented findings, gap analysis, and verification evidence your certification body can work from.

Standards are the floor

We put the effort where it reduces real risk.

FAQ

Common questions

No. We develop to and audit against these standards and produce the verification evidence. Certification is issued by an accredited body.

It covers the microcontroller self-tests, which is a real and useful part of the work. It does not cover your application: whether your control logic reaches a safe state when a sensor fails, whether the fault response is correct, or whether the hazard was identified in the requirements. Assessors look at the application-level safety argument, and that is where most of the effort sits.

We have worked on medical device programmes, covering standards review, hazard analysis against ISO 14971, and EMC pre-compliance to IEC 60601-1-2. We know the regime well, and we will say so early if a project needs a specialist medical software house.

No. It removes a category of C-language risk, which is worth doing. Standards are a floor, not the goal. MISRA, code review, and unit tests create value when tied to real risk and measurable outcomes.

Yes. Changes to certified products need impact analysis before any code changes, so the scope of re-verification is understood before work starts rather than discovered afterwards.

Most of the cost is unit testing, review gates, and requirements traceability, which we do on every project regardless of whether a standard is involved. The additional work is the standard’s specific evidence requirements and the gap between them and the current codebase, which the initial assessment sizes.

Yes, and it is a sensible first engagement. What the standard requires, what your current codebase gives you, and what the gap costs in effort.

Related services