Method and management system

How does a bowtie relate to fault trees and event trees?

The left side of a bowtie carries fault tree logic: the pathways leading to the top event. The right side carries event tree logic: the consequences branching after it. A bowtie merges the two on one page without gates or probability arithmetic. The gain is readability; the loss is the "and"/"or" distinction — a bowtie cannot show whether two causes are needed together or whether either alone is enough.

Two logics, one diagram

  • Left — tree logic descending from an event to its causes, flattened in a bowtie into straight lines.
  • Right — branching logic after an event according to whether barriers work, reduced in a bowtie to consequence boxes.

What is lost

Present in treesIn a bowtie
"And" / "or" gatesAbsent — every threat is treated as an independent pathway
Probability arithmeticAbsent — no numeric result
Common cause analysisPartly — the escalation factor column takes its place
Branch probabilitiesAbsent

What is gained

Readability on one page. A bowtie can be argued over at the same table as the crew; trees are usually presented rather than argued over. The real strength of the method is not arithmetic but shared understanding: maintenance, operations and safety looking at one diagram talk about the same barrier.

When to go back to a tree

If two causes only produce the top event together, a bowtie cannot show it and draws them as two separate pathways — making the protection look weaker than it is. That pathway needs tree logic.

Order of use

The productive order is to start with the bowtie and deepen where needed. A bowtie shows cheaply which pathway deserves depth; trees resolve that pathway expensively.

Manage this in Optifora

Optifora is not a single program but a compliance platform assembled from modules. The catalogue states which module is ready today and which is on the roadmap.

See what Optifora is