The Food and Drug Administration today released a plan to improve medical device safety. The plan calls for increased funding to develop an active surveillance capability for FDA’s National Evaluation System for health Technology (NEST) and conduct post-market studies to evaluate specific safety concerns. The agency also will explore ways to streamline post-market safety mitigations; spur innovation towards safer medical devices; advance device cybersecurity; and integrate its activities to promote safety across the product lifecycle. With respect to cybersecurity, the agency plans to update premarket guidance to better protect against risks such as ransomware campaigns and vulnerabilities that could enable a remote multi-patient attack. It also will consider requiring firms to build into a product’s design the ability to update and patch device security and provide a “software bill of materials” listing software embedded in a device, and developing a CyberMed Safety Analysis Board to serve as a resource to device makers and FDA. The agency is accepting comments on the plan at https://www.regulations.gov.

Related News Articles

Headline
The Cybersecurity and Infrastructure Security Agency Oct. 15 released an emergency directive advising federal agencies to take stock of their F5 BIG-IP…
Blog
Public
Cross-industry insights and new technology are helping HCA Healthcare reduce risk, improve outcomes and lead the future of high-reliability careFor Randy Fagin…
Headline
In part one of a new blog, John Riggi, AHA national advisor for cybersecurity and risk, and Scott Gee, AHA deputy national advisor for cybersecurity and risk,…
Headline
The Food and Drug Administration has identified a Class I recall of Abiomed Automated Impella Controllers due to the potential for serious injury or death. The…
Headline
The AHA’s social media toolkit for spreading awareness of the flu focuses on the beginning of fall and the availability of the flu vaccine for at-risk,…
Perspective
Public
This week, the FBI issued an urgent warning to all users — including hospitals — of a critical security soft spot within Oracle’s E-Business Suite, stating “…