An Overview of Cybersecurity Regulations and Standards for Medical Device Software

被引:0
|
作者
Lechner, Nadica Hrgarek [1 ]
机构
[1] MED EL Elektromed Gerate GmbH, Furstenweg 77, A-6020 Innsbruck, Austria
关键词
cybersecurity; FDA; information security; medical device software; security risk management;
D O I
暂无
中图分类号
TP18 [人工智能理论];
学科分类号
081104 ; 0812 ; 0835 ; 1405 ;
摘要
This paper discusses current cybersecurity regulations and standards for medical device software set by government agencies and agencies developing industry and international standards such as the FDA (Food and Drug Administration), CFDA (China Food and Drug Administration), ISO (International Organization for Standardization), IEC (International Electrotechnical Commission), UL (Underwriters Laboratories), and others. The concepts described within this paper can be utilized by medical device manufacturers in order to establish a cybersecurity program as part of their quality management systems. In general, there are three complementary ways based on the NIST (National Institute of Standards and Technology) cybersecurity framework that can be used to remove gaps in the organization's cybersecurity. The first way focuses on designing software products that take cybersecurity into account (i.e., prevention). The second way is to perform security and penetration testing and to apply other cybersecurity controls to reduce attacks and vulnerabilities that could be exploited (i.e., detection). The third way emphasizes maintenance plan in case of a cyberattack (i.e., response and recovery).
引用
收藏
页码:237 / 249
页数:13
相关论文
共 50 条
  • [31] PERFORMANCE STANDARDS FOR MEDICAL DEVICE APPROVALS
    SILVER, FH
    GLASGOLD, AI
    ARCHIVES OF OTOLARYNGOLOGY-HEAD & NECK SURGERY, 1995, 121 (07) : 719 - 721
  • [32] MEETING MEDICAL DEVICE SECURITY STANDARDS
    Van De Graaf, Christine
    ELECTRONICS WORLD, 2012, 118 (1911): : 20 - +
  • [33] GRAPHICS SOFTWARE STANDARDS PROMOTE DEVICE INDEPENDENCE
    CARON, P
    GRAY, J
    SCHOFIELD, H
    COMPUTER DESIGN, 1983, 22 (14): : 89 - &
  • [34] lnHealth - A Rapid Medical Software Development Platform using "Internet of Things" (IoT) Communication Standards for Medical Device Interoperability
    Gorges, Matthias
    Petersen, Christian L.
    Ansermino, J. Mark
    ANESTHESIA AND ANALGESIA, 2016, 122
  • [36] The standards paradox: The future of medical device standards development and use
    Medtronic
    不详
    不详
    Biomed. Instrum. Technol., 2008, 1 SUPPL. (55-60):
  • [37] The role of healthcare technology management in facilitating medical device cybersecurity
    Busdicker M.
    Upendra P.
    Biomedical Instrumentation and Technology, 2017, 51 (Horizons): : 19 - 25
  • [38] FDA Joins New Effort to Strengthen Medical Device Cybersecurity
    Voelker, Rebecca
    JAMA-JOURNAL OF THE AMERICAN MEDICAL ASSOCIATION, 2018, 320 (19): : 1970 - 1970
  • [39] Medical Device Safety Management Using Cybersecurity Risk Analysis
    Kim, Dong-Won
    Choi, Jin-Young
    Han, Keun-Hee
    IEEE ACCESS, 2020, 8 (08): : 115370 - 115382
  • [40] Medical Device Cybersecurity Preparedness and Response: Lessons from WannaCry
    Goldman, Julian M.
    Guffrey, David
    ANESTHESIA AND ANALGESIA, 2018, 127 : 46 - 47