formal methods, invariants, model checking, Requirements Specification, Requirements Verification, symbolic verification, theorem proving.