Design for ARINC 653 conformance: Architecting independent validation of a safety-critical RTOS | IEEE Conference Publication | IEEE Xplore