Blue Goat CyberBlue Goat CyberSMMedical Device Cybersecurity
    K
    Blog · Podcast

    Integrating Project Management to Strengthen Cybersecurity Outcomes with Steve Curry | Ep. 34

    In this episode of The Med Device Cyber Podcast, host Christian Espinosa welcomes project management expert Steve Curry, founder of Mustard Seed, to discuss the critical role of robust project management in strengthening cybersecurity outcomes for MedTech innovators. Curry draws

    Hero illustration for the Podcast article: Integrating Project Management to Strengthen Cybersecurity Outcomes with Steve Curry | Ep. 34
    Christian Espinosa, Founder & CEO

    Reviewed by Christian Espinosa, MBA, CISSP · Founder & CEO

    Published August 2025 · Last reviewed May 2026

    The Med Device Cyber Podcast · with Steve Curry · August 31, 2025 In this episode of The Med Device Cyber Podcast, host Christian Espinosa welcomes project management expert Steve Curry, founder of Mustard Seed, to discuss the critical role of robust project management in strengthening cybersecurity outcomes for MedTech innovators. Curry draws on his extensive experience in the defense industry to highlight how rigorous planning and execution, often overlooked in the sciences, are essential for successful product development and market entry. The conversation emphasizes the importance of integrating cybersecurity, regulatory (FDA premarket, 510k), and risk management considerations early in the medical device product lifecycle, rather than treating them as afterthoughts. They discuss practical project management frameworks, including integrated master schedules and work breakdown structures, and the benefits of a phase-gate process for incorporating cybersecurity throughout the development cycle. The episode also touches on common challenges in MedTech project management, the rising scrutiny from investors regarding execution frameworks, and the strategic advantages of leveraging fractional or outsourced project management and cybersecurity expertise to navigate complex regulatory landscapes and accelerate time to market.

    Key Takeaways

    • Effective project management, including comprehensive planning and scheduling, is crucial for successful medical device development and strengthens cybersecurity outcomes.
    • Integrating cybersecurity and regulatory considerations early in the product lifecycle through a structured project management framework reduces costs, minimizes delays, and improves time to market.
    • Utilizing tools like an integrated master schedule and a phase-gate process helps account for all scope and ensures cybersecurity is addressed iteratively throughout design and development.
    • Investors are increasingly scrutinizing project and execution frameworks, including cybersecurity roadmaps, as a critical factor for MedTech startup success.
    • Fractional or outsourced project management and cybersecurity expertise can provide specialized support and efficiency, proving more cost-effective and comprehensive than hiring individual full-time roles for early to mid-stage MedTech companies.
    • Efficient meeting hygiene, including selective invitations and clear agendas, is vital to prevent time and resource wastage and improve overall team productivity.
    • Companies should carefully select project management software that can scale with their growth, with tools like SmartSheet often recommended for its user-friendliness and comprehensive features.
    • Continuous risk management and effective execution are key differentiators for MedTech innovators, helping to derisk projects and accelerate product commercialization.

    Listen on mdcpodcast.com · Watch on YouTube

    Listen to this episode

    Watch on YouTube


    Want help applying this to your own device program?

    Blue Goat Cyber is a specialist medical device cybersecurity firm: 250+ FDA submissions, zero rejections. If anything in this conversation hit close to home, book a 30-minute strategy session - no cost, no obligation.

    Related articles

    Keep reading

    Related services

    Put this into practice on your device

    Every Blue Goat Cyber engagement maps directly to FDA Section 524B and the SPDF - so the evidence you need lands in your submission, not in a separate report.

    Ready when you are

    Get FDA cleared without the cybersecurity headaches.

    30-minute strategy session. No cost, no commitment - just answers from people who've shipped 250+ submissions.