By

Alan Kusinitz
http://www.fda.gov/MedicalDevices/DeviceRegulationandGuidance/UniqueDeviceIdentification/default.htm#ruleguidanc
Read More
Last week was the first offering of AAMI’s course on Agile Software Methods Compliance. Approximately 30 students attended from a wide range of medical device manufacturers including software engineers, quality, compliance, and regulatory managers. As a first offering this level of enrollment shows the high interest in more efficient and effective approaches to medical device...
Read More
The EU Commission published “Commission Recommendation of 24 September 2013 on the audits and assessments performed by notified bodies in the field of medical devices.” This clarifies and strengthens the criteria for certifying (and auditing) notified bodies, and the criteria that the notified bodies have to use in assessing companies and products. The main changes...
Read More
The FDA Safety and Innovation Act (FDASIA) workgroup completed its work and made its draft recommendations in September. The recommendations include: HIT should not be regulated except in cases where there is risk to the patient, a patient-safety risk framework should be used to allow application of regulatory oversight by risk, vendors should be required...
Read More
The Therapeutic Goods Administration of the Australian Department of Health released a document on 13-Sep-2013 entitled “Regulation of medical software and mobile medical ‘apps’.”  This explains at a high level Australia’s approach to regulation of medical software.  It indicates a risk based approach is taken and that all medical devices are expected to meet the...
Read More
The link provided is to a YouTube video by Henrik Kniberg on Agile Methods on key concepts focused on product ownership. Youtube – Agile Methods
Read More
FDA CDRH has increased its focus on networked medical devices, Health IT, wireless technologies, and telemedicine.  They have established a web page provide an overview which then has links to pages related to Mobile Medical Apps, Medical Device Data Systems, Home Health and Consumer Device, Health IT, and wireless medical devices.
Read More
FDA has recognized a total of 25 standards on medical device interoperability and cybersecurity. These standards can be categorized into 3 groups: Risk management standards for a connected and networked environment (IEC 80001 series and ASTM F2761-09) Interoperability standards that establish nomenclature, frameworks, and medical device specific communications, including system and software lifecycle processes (ISO/IEEE...
Read More
ICS-CERT is issuing this alert to provide early notice of a report of a hard-coded password vulnerability affecting roughly 300 medical devices across approximately 40 vendors. The document can be viewed at the following link: ICS-CERT_alert_med_dev
Read More
The final version of the ONC plan that has the objectives to use health IT to make care safer and to continuously improve the safety of health IT. The document can be viewed here: onc_patient_safety_plan
Read More
ONC guidance on annual surveillance plans by authorized certification bodies. Authorized Certification Bodies are expected to conduct surveillance on EHRs that they have certified. This guidance provides the priorities for topics to assess in the surveillance plan. Safety-related capabilities and security capabilities are two of the four areas for priority identified in this guidance. onc_surveillance_plan_guidance
Read More
ONC contract with the Joint Commission to investigate health IT-related safety events. The purpose of this contract is to ensure that there is an early detection system on health IT-related safety issues, including those associated with EHRs. The document can be viewed at the following link: ONC_tjc_contract
Read More
NIST was directed to prepare a cybersecurity framework for critical infrastructure in Presidential Executive Order 13636. Healthcare was identified as one of the areas with critical infrastructure. This draft for comment is only an outline of the framework. NIST_draft_outline_cybersecurity_framework
Read More
/docs/FDACybersecuritySafetyCommunication061413.pdf
Read More
/docs/FDACybersecuritySafetyCommunication061413.pdf
Read More
FDA issued a compliance letter to a company distributing an uncleared Mobile App for reading urine analysis strips on May 21, 2013. The full text of this letter is on our warning letter page.
Read More
Brian Pate of SoftwareCPR now leads our specialized validation services for Mobile Medical Apps (MMApps), including our own simulator-based testing and automated unit and functional testing. For mobile apps that are regulated medical devices, we provide full design control and premarket submission support by compliance and validation experts with specific mobile app technical knowledge that...
Read More
How Health IT will be regulated was being discussed by the U.S. government in February. A Health IT Patient Safety Action & Surveillance Plan was circulated by the Office of the National Coordinator for HIT (ONC) in December and is at the link provided. https://www.healthit.gov/sites/default/files/safetyplanhhspubliccomment.pdf A report on An Oversight Framework for Assuring Patient Safety in...
Read More
A workshop with approximately 80 invited medical wireless experts was held in October 2012. This report, at the link provided, documents the discussion and outcomes of this workshop. A follow-up meeting is planned for March 2013. 2012_Wireless_Workshop_Publication
Read More
The total number of FDA software, computer system, and electronic records warning letters in 2012 is approximately 30 which is up from 18 in 2011 and fewer in 2009 and 2010. This is based on the keyword searches we perform on a regular basis but is not guaranteed to be comprehensive.
Read More
This is one of the first mobile medical app recallsl we have seen posted. It is for an app that was only intended to be released in Brazil but was published on the iPhone store and available in the U.S. Its intended use is diabetes education. The full recall excerpt is available on our Recalls...
Read More
http://www.fda.gov/downloads/ForIndustry/FDAeSubmitter/UCM319824.pdf
Read More
The Global Harmonization Task Force revision of its guidance on Essential Principles of Safety and Performance of Medical Devices is at the link provided. GHTF Essential Principles. It includes requirements for software that are similar to the European Union’s essential requirements relating to software.
Read More
A 2003 computer science thesis done at the University of York entitled “The Safety of Software — Constructing and Assuring Arguments” is at the link provided. Software Safety Cases – PhD Thesis
Read More
1 5 6 7 8 9 18

SoftwareCPR Training Courses:

IEC 62304 and other emerging standards for Medical Device and HealthIT Software

Our flagship course for preparing regulatory, quality, engineering, operations, and others for the activities and documentation expected for IEC 62304 conformance and for FDA expectations. The goal is to educate on the intent and purpose so that the participants are able to make informed decisions in the future.  Focus is not simply what the standard says, but what is meant and discuss examples and approaches one might implement to comply.  Special deep discount pricing available to FDA attendees and other regulators.

3-days onsite with group exercises, quizzes, examples, Q&A.

Instructor: Brian Pate

Next public offering:  TBD

Email training@softwarecpr.com to request a special pre-registration discount.  Limited number of pre-registration coupons.

Registration Link:

TBD

 


 

Being Agile & Yet Compliant (Public or Private)

Our SoftwareCPR unique approach to incorporating agile and lean engineering to your medical device software process training course is now open for scheduling!

  • Agile principles that align well with medical
  • Backlog management
  • Agile risk management
  • Incremental and iterative software development lifecycle management
  •  Frequent release management
  • And more!

2-days onsite (4 days virtual) with group exercises, quizzes, examples, Q&A.

Instructors: Mike Russell, Ron Baerg

Next public offering: March 7 & 28, 2024

Virtual via Zoom

Registration Link:

Register Now

 


 

Medical Device Cybersecurity (Public or Private)

This course takes a deep dive into the US FDA expectations for cybersecurity activities in the product development process with central focus on the cybersecurity risk analysis process. Overall approach will be tied to relevant standards and FDA guidance documentation. The course will follow the ISO 14971:2019 framework for overall structure but utilize IEC 62304, IEC 81001-5-1, and AAMI TIR57 for specific details regarding cybersecurity planning, risk characterization, threat modeling, and control strategies.

2-days onsite with group exercises, quizzes, examples, Q&A.

Instructor: Dr Peter Rech, 2nd instructor (optional)

Next public offering:  TBD

Corporate Office

15148 Springview St.
Tampa, FL 33624
USA
+1-781-721-2921
Partners located in the US (CA, FL, MA, MN, TX) and Canada.