FDA PCCP Beyond AI: Cybersecurity, Firmware Uses | Blue Goat
The FDA PCCP guidance isn't AI-only. Use a predetermined change control plan for cybersecurity patches, firmware updates, and SBOM component swaps.
Read articleEvery article in our archive in Compliance.
Showing 10 of 10 articles in Compliance
The FDA PCCP guidance isn't AI-only. Use a predetermined change control plan for cybersecurity patches, firmware updates, and SBOM component swaps.
Read article
FDA Section 524B applies to connected auto-injectors when the device constituent has software and any electronic interface, whether CDER or CDRH leads review.
Read article
What happens if you fail an FDA cybersecurity inspection: the 483-to-consent-decree enforcement ladder and the commercial fallout for device makers.
Read article
How to document update cadence for an FDA §524B submission: the regular cycle and the out-of-cycle expedited path reviewers expect under §524B(b)(2)(B).
Read article
FDA Section 524B applies to any new premarket submission for a cyber device, including legacy platforms.
Read article
A subsection-by-subsection walkthrough of FDA Section 524B for cyber medical devices: what §524B(a), (b)(1), (b)(2), (b)(3), (b)(4), and (c) require.
Read article
How to run CAPA for medical device cybersecurity findings: when a vulnerability or FDA deficiency triggers a CAPA, and what evidence closes it out.
Read article
How HHS 405(d) and the Health Industry Cybersecurity Practices (HICP) Medical Device Security practice maps to FDA Section 524B artifacts, and how.
Read article
When HIPAA applies to medical device manufacturers, how the 2025 Security Rule NPRM raises the bar, and how HIPAA obligations intersect with the FDA's.
Read article
IEC 62304 software safety classes (A/B/C) and FDA device classes (I/II/III) are not equivalent.
Read article30-minute strategy session. No cost, no commitment - just answers from people who've shipped 250+ FDA submissions.