EU Commission New Rules For Auditing by NBs

The EU Commission published “Commission Recommendation of 24 September 2013 on the audits and assessments performed by notified bodies in the field of medical devices.”

This clarifies and strengthens the criteria for certifying (and auditing) notified bodies, and the criteria that the notified bodies have to use in assessing companies and products.

The main changes are that the member states are required to do a joint assessment of a potential notified body with experts from the Commission and then they must carry out surveillance and monitoring of notified bodies. It also requires notified bodies to do unannounced factory audits which they were not allowed to do before (but the FDA does these).

The recommendation states, “As publication of residual risks in the information given to the user does not reduce the risk, but publication of residual risks and warnings used as risk control measure may be beneficial, have residual risks been correctly placed on IFUs or provided in training, and have manufacturers evaluated whether those warnings are effective…” This clarifies that although labeling cannot reduce risk, labeling can still be used as a risk control measure.

SoftwareCPR Training Courses

IEC 62304 and Emerging Standards Impacting Medical Device and HealthIT Software

ISO 14971 Risk Management (typically with heavy emphasis on software aspect)

IEC 81001-5-1 Cybersecurity Lifecycle

ISO 13485 QMS Requirements & optionally ISO 19011 for leading audits

Being Agile Yet Compliant (AAMI TIR 45)

IEC 29119-1 Software and System Testing

US Classification for Software Devices

IEC 62366 Usability Process and Documentation

Or just email training@softwarecpr.com for more info.

Corporate Office

15148 Springview St.
Tampa, FL 33624
USA
+1-781-721-2921
Partners located in the US (CA, FL, MA, MN, TX) and Canada.