Last reviewed: May 1, 2026
Listen now
How can medical device companies own their data without compromising security?
In this episode, Kevin Derr from NeuronSphere joins Christian and Trevor to dive into the intersection of cybersecurity, compliance, and innovation in the MedTech world. They also explore why data ownership and secure system architecture are foundational for FDA compliance and patient safety.
Key points:
(0:47) From Big MedTech to Startup
-
Kevin shares his journey from Stryker and J&J to co-founding NeuronSphere, which was built to simplify the creation of compliant data products for MedTech engineers.
-
NeuronSphere is like a toolkit allows companies to retain full data ownership while meeting FDA and cybersecurity requirements.
(5:21) Ownership, Trust, and Compliance
-
Vendor solutions often fall short during V&V, triggering costly compliance upgrades.
-
NeuronSphere keeps ownership and compliance within the manufacturer's own infrastructure.
(11:12) Misconfigurations and Human Error
-
Misconfigured S3 buckets and default credentials are common sources of breaches.
-
Even the FBI and CIA have faced major data exposures from simple mistakes.
-
Human error remains the biggest vulnerability.
(17:00) Balancing Security and Functionality
-
FDA’s focus is patient safety and effectiveness, not just data protection.
-
Secure coding is often deprioritized due to deadlines and lack of training.
(33:21) FDA Guidance
-
The new FDA cybersecurity guidance is moving security discussions earlier in the development lifecycle.
-
Startups are now forced to consider data flow and security posture before first-in-human trials.
Learn about NeuronSphere: https://www.neuronsphere.io/
More episodes
Keep listening
-
Episode 69
Science Before Hype in MedTech Investing with Varun Turlapati of Chaanakya Capital
With Varun Turlapati
-
Episode 68
Why MedTech Needs More Than Approval with Michael Branagan Harris of HealthTech Strategies Limited
With Michael Branagan Harris
-
Episode 67
De-Risking Product Decisions in MedTech Startups with Brent Lavin of Ironwood MedTech Partners
With Brent Lavin
-
Episode 66
Vibe Coding Security Risks and Malicious Code Injection with Jake Rodriguez of Triangle Tech
With Jake Rodriguez