Protiviti
Collaborative Security for Medical Devices Best Practices
Pages
6
Time to read
9 mins
Publication
Language
English
Pages
6
Time to read
9 mins
Publication
Language
English
This guide outlines best practices for medical device manufacturers (MDMs) and healthcare delivery organizations (HDOs) to enhance cybersecurity in medical devices. It emphasizes the importance of collaboration between MDMs and HDOs to address the cybersecurity risks associated with connected medical devices, which can impact patient safety and the security of patient data. The document details various strategies for effective collaboration, including the creation of a roles-and-responsibilities matrix, utilization of Manufacturer Disclosure Statements (MDS2) and Software Bill of Materials (SBOM), and the development of device security whitepapers. It also highlights the need for joint cybersecurity risk assessments and coordinated incident response planning. The guide stresses that enhancing cybersecurity requires a concerted effort from both MDMs and HDOs, leveraging best practices recommended by regulatory bodies such as the FDA and NIST. By sharing responsibilities and knowledge, organizations can build a robust defense against cyber threats, ensuring the safety of healthcare delivery systems and patient well-being.