Skip to main content
HBT-COG-0653 · Dimension COG · Cognition

Swiss Cheese Model

Accidents occur when multiple layers of defenses fail simultaneously.

Systems·Mental Model·Grade B·draft· enriching…
In one paragraph

Swiss Cheese Model is accidents occur when multiple layers of defenses fail simultaneously. It sits in the Cognition dimension (COG) of the Human Behavior Taxonomy™ as element HBT-COG-0653, within the Systems family. The core principle: accidents occur when multiple layers of defenses fail simultaneously. In incentive terms, it matters because it changes the payoff people perceive before they choose — which means it can be designed for, or exploited.

Scientific Definition

Accidents occur when multiple layers of defenses fail simultaneously.

Plain-English Definition

Accidents occur when multiple layers of defenses fail simultaneously.

Feynman Explanation

Every layer has holes. Catastrophe finds the alignment.

Core Principle

Accidents occur when multiple layers of defenses fail simultaneously.

Mechanisms

Psychological

Pending editorial review.

Behavioral Economic

Accidents occur when multiple layers of defenses fail simultaneously.

Neurological

Pending editorial review.

Evolutionary

Pending editorial review.

Sociological

Pending editorial review.

Computational

Pending editorial review.

Systems

Risk management is about layers, not single controls.

Inputs (Triggers)

Pending editorial review.

Outputs (Behaviors)

Pending editorial review.

Behavioral Signature

Every layer has holes. Catastrophe finds the alignment.

Examples

Everyday
  • A plane crash requires several safeguards to fail at once.
Modern (Organizational)
  • Risk management is about layers, not single controls.
Historical

Pending editorial review.

Lab Commentary

Original analysis from The Incentives Lab — how this element behaves inside real payoff structures.

Why this element matters to incentive design

Most organizations meet this element as a personnel problem. It is not one. The mechanism underneath it is straightforward: accidents occur when multiple layers of defenses fail simultaneously. You can recognize it in the field by its signature: every layer has holes. Catastrophe finds the alignment. Every element in the Cognition dimension changes the perceived payoff of an action before the action happens, which is exactly where incentive design has leverage.

How it gets exploited

Left undesigned, risk management is about layers, not single controls. It is amplified whenever risk management is about layers, not single controls. Inside organizations that shows up as risk management is about layers, not single controls. The pattern is the same one Goodhart's Law describes: the measurable proxy attracts the effort, and the purpose behind it quietly loses funding.

How the Lab designs around it

The redesign move is to add independent layers and monitor near-misses. Design against it the way you would design against a known failure mode — assume it will appear, and price the exploit before someone finds it.

Famous Experiments

Pending editorial review.

Design Principles

  • Add independent layers and monitor near-misses.

Measurement Approaches

Pending editorial review.

Evidence

Evidence Grade
B (A strongest → E speculative)
Replication
★★★☆☆
Intervention Confidence
3 / 5
Consensus
Pending editorial review (HBT v1.0 auto-seed).
Limitations
Pending editorial review (HBT v1.0 auto-seed).
Open Research Questions

Pending editorial review.

Primary References

Pending editorial review.

Signature Section

The Perverse Incentive Lens™

How this behavior is exploited — and how to redesign around it.

Exploitation
Risk management is about layers, not single controls.
Amplifying Incentives
Risk management is about layers, not single controls.
Org Failure Modes
Risk management is about layers, not single controls.
Societal Failure Modes
Pending editorial review (HBT v1.0 auto-seed).
Ethical Considerations
Pending editorial review (HBT v1.0 auto-seed).
Redesign Strategies
Add independent layers and monitor near-misses.
Diagnostic Questions
  • Add independent layers and monitor near-misses.
Warning Signs

Pending editorial review.

Red Flags

Pending editorial review.

Intervention Playbook
Individual
Add independent layers and monitor near-misses.
Team
Pending editorial review (HBT v1.0 auto-seed).
Organization
Pending editorial review (HBT v1.0 auto-seed).
Policy
Pending editorial review (HBT v1.0 auto-seed).
AI Implications
Detection
Pending editorial review (HBT v1.0 auto-seed).
Measurement
Pending editorial review (HBT v1.0 auto-seed).
Mitigation
Pending editorial review (HBT v1.0 auto-seed).
Responsible Use
Pending editorial review (HBT v1.0 auto-seed).

Interactive Mini Network

Click any neighbor to re-center the graph and follow the threads of connection.

HBT-COG-0653 · COG
Swiss Cheese Model
SCAlAlloyingBoBottleneckBoBottlenecksBWBroken Windows TheoryBLBrook's LawBLBrooks's LawCaCatalystCTChaos TheoryCRChemical ReactionsCLConway's Law

Knowledge Graph Neighbors

Where Swiss Cheese Model is cited in the corpus

Questions about Swiss Cheese Model

What is Swiss Cheese Model?
Swiss Cheese Model is accidents occur when multiple layers of defenses fail simultaneously. It sits in the Cognition dimension (COG) of the Human Behavior Taxonomy™ as element HBT-COG-0653, within the Systems family. The core principle: accidents occur when multiple layers of defenses fail simultaneously. In incentive terms, it matters because it changes the payoff people perceive before they choose — which means it can be designed for, or exploited.
What is an example of Swiss Cheese Model?
Risk management is about layers, not single controls. The Incentives Lab catalogs everyday, organizational, and historical instances of this element on its Human Behavior Taxonomy™ page (HBT-COG-0653).
How is Swiss Cheese Model exploited?
Risk management is about layers, not single controls.
How do you design around Swiss Cheese Model?
Add independent layers and monitor near-misses.
Which behavioral dimension does Swiss Cheese Model belong to?
Swiss Cheese Model is classified in the Cognition dimension (COG) of the Human Behavior Taxonomy™, family "Systems", class "Mental Model". Its permanent identifier is HBT-COG-0653 and its evidence grade is B.

Version History

v1.1.0 · 2026-06-28Initial auto-seed from corpus.