The FDA’s Role in Medical Device Cybersecurity

Cybersecurity issues arise when medical devices are capable of connecting to the Internet or other medical devices. Since the FDA is concerned with regulating the safety and effectiveness of medical devices, manufacturers must ensure that the computer systems of medical devices are protected against security breaches.

The link below provides the FDA Fact Sheet entitled, “The FDA’s Role in Medical Device Cybersecurity.” The document dispels some common myths about medical device cybersecurity. Notably, the document makes two important points about cybersecurity as it pertains to software:

  1. The FDA is not responsible for the validation of software changes made to address cybersecurity vulnerabilities – it is the medical device manufacturer that is responsible for validating all software design changes.
  2. The manufacturer of off-the-shelf (OTS) software used in medical devices is not the one responsible for validating its secure use in medical devices – it is the responsibility of the medical device manufacturer that chooses to use OTS software who is responsible for the security of the software for medical devices.

Cybersecurity Fact Sheet 2019

Upcoming Training

QSS Software Validation
Planned Instructors:  Brian Pate, John Murray
Location: Boston, MA, USA
Dates:  June 2-4, 2020
Registration Link

Receive $300 discount with Premium-Individual subscription purchase (or $333 per person for Premium-Company subscription)! 

Multi-Student Discounts as well!

to receive discount

Corporate Office

15148 Springview St
Tampa, FL 33624
Partners located in the US (CA, FL, MA, MN) and Italy.