
Sign up to save your podcasts
Or
What will the future be for software as a medical device (SaMD) and cybersecurity? Manufacturers need to identify cybersecurity issues with their medical devices because incidents have become more frequent, severe, and impactful.
In this episode of the Global Medical Device Podcast, Etienne Nichols talks to Chris Gates, Director of Product Security at Velentium and author of Medical Device Cybersecurity for Engineers and Manufacturers.
Chris has more than 30 years of experience developing and securing medical devices for device manufacturers and collaborates with regulatory and standardization agencies to present, clarify, and systemize tools, techniques, and processes that enable the creation of secure medical devices.
Some of the highlights of this episode include:“I want something that’s workable, something that’s harmonized.”
“What you have to look for are the vulnerabilities or the end-root cause of all exploits and threats.”
“We want SBOMs. We want people to talk to. In case of a breach, we want some help.”
“Take a look at what you need to do to be a good corporate citizen and create secure medical devices. At the very least, look at it as a competitive advantage in the industry.”
Links:Velentium
Medical Device Cybersecurity for Engineers and Manufacturers
FDA - Cybersecurity in Medical Devices: Quality System Considerations and Content of Premarket Submissions
FDA - Quality Management System Regulation (QMSR)
International Organization for Standardization (ISO)
European Union - Medical Device Regulation (EU MDR)
Protecting and Transforming Cyber Healthcare (PATCH) Act
Supply Chain - Cybersecurity and Infrastructure Security Agency (CISA)
NIST Special Publication (SP) 800-161, Supply Chain Risk Management Practices for Federal Information Systems and Organizations
Software Bill Of Materials - National Telecommunications and Information Administration
Software Bill of Materials - CISA
OWASP CycloneDX Software Bill of Materials (SBOM) Standard
CycloneDX Tool Center
International Open Standard (ISO/IEC 5962:2021) - Software Package Data Exchange (SPDX)
Medcrypt
Cyber BOM (SBOM) Management - Cybellum
SBOM Use Case - RKVST
The Greenlight Guru True Quality Virtual Summit
Greenlight Guru YouTube Channel
MedTech True Quality Stories Podcast
Greenlight Guru Academy
Greenlight Guru
Global Medical Device Podcast Email
4.8
9191 ratings
What will the future be for software as a medical device (SaMD) and cybersecurity? Manufacturers need to identify cybersecurity issues with their medical devices because incidents have become more frequent, severe, and impactful.
In this episode of the Global Medical Device Podcast, Etienne Nichols talks to Chris Gates, Director of Product Security at Velentium and author of Medical Device Cybersecurity for Engineers and Manufacturers.
Chris has more than 30 years of experience developing and securing medical devices for device manufacturers and collaborates with regulatory and standardization agencies to present, clarify, and systemize tools, techniques, and processes that enable the creation of secure medical devices.
Some of the highlights of this episode include:“I want something that’s workable, something that’s harmonized.”
“What you have to look for are the vulnerabilities or the end-root cause of all exploits and threats.”
“We want SBOMs. We want people to talk to. In case of a breach, we want some help.”
“Take a look at what you need to do to be a good corporate citizen and create secure medical devices. At the very least, look at it as a competitive advantage in the industry.”
Links:Velentium
Medical Device Cybersecurity for Engineers and Manufacturers
FDA - Cybersecurity in Medical Devices: Quality System Considerations and Content of Premarket Submissions
FDA - Quality Management System Regulation (QMSR)
International Organization for Standardization (ISO)
European Union - Medical Device Regulation (EU MDR)
Protecting and Transforming Cyber Healthcare (PATCH) Act
Supply Chain - Cybersecurity and Infrastructure Security Agency (CISA)
NIST Special Publication (SP) 800-161, Supply Chain Risk Management Practices for Federal Information Systems and Organizations
Software Bill Of Materials - National Telecommunications and Information Administration
Software Bill of Materials - CISA
OWASP CycloneDX Software Bill of Materials (SBOM) Standard
CycloneDX Tool Center
International Open Standard (ISO/IEC 5962:2021) - Software Package Data Exchange (SPDX)
Medcrypt
Cyber BOM (SBOM) Management - Cybellum
SBOM Use Case - RKVST
The Greenlight Guru True Quality Virtual Summit
Greenlight Guru YouTube Channel
MedTech True Quality Stories Podcast
Greenlight Guru Academy
Greenlight Guru
Global Medical Device Podcast Email
4,338 Listeners
4,333 Listeners
26,195 Listeners
43,259 Listeners
10,641 Listeners
59,320 Listeners
111,501 Listeners
56,177 Listeners
9,243 Listeners
20 Listeners
6,442 Listeners
8,238 Listeners
637 Listeners
618 Listeners
81 Listeners