Blue Goat Cyber logoBlue Goat CyberSMMedical Device Cybersecurity
    K
    Podcast · Episode 34

    Integrating Project Management to Strengthen Cybersecurity Outcomes with Steve Curry

    With Steve Curry - What project management mistakes can med tech innovators avoid? What methods and tools can help med tech companies manage projects?

    Christian Espinosa, Founder & CEO at Blue Goat Cyber

    By Christian Espinosa, MBA, CISSP

    Founder & CEO · Blue Goat Cyber

    Listen now

    Key takeaways

    • Robust project management prevents cybersecurity from becoming a late-stage roadblock in MedTech innovation, accelerating time-to-market.
    • Adopting rigorous project management, akin to defense industry practices, is crucial for effectively managing risk, time, and resources in the medical device sector.
    • A foundational principle for success is to 'plan the work, then work the plan,' ensuring all development tasks, including cybersecurity, are thoroughly mapped out from inception.
    • Cybersecurity must be integrated as an iterative process throughout the entire product development lifecycle, rather than treated as a singular, end-of-project task.
    • Efficient project execution is vital for MedTech startups with limited funding, helping to conserve capital and minimize waste.
    • Effective project management, often overlooked, can significantly impact a company's growth and success in medical device development.
    • The discipline of creating and adhering to a detailed, comprehensive project plan is more critical than the specific project management software utilized.

    What project management mistakes can med tech innovators avoid? What methods and tools can help med tech companies manage projects?

    In this episode, Christian Espinosa welcomes Steve Curry to explore how strong project management can make or break a med tech company’s cybersecurity readiness. They discuss why many innovators overlook planning, how this oversight causes costly delays, and the benefits of integrating cybersecurity into every project phase. Steve shares practical strategies for execution, tool selection, and aligning team resources to ensure both speed to market and compliance success.

    Steve Curry founded MustardSeed, a company that brings world-class project management to the sciences. With a background in billion-dollar defense programs, Steve now helps med tech, biotech, and pharma companies execute better, faster, and smarter.

    Key points:

    (4:47) Core Challenges in Med Tech Project Management

    • Many companies skip creating a true project plan, leading to unachievable timelines.

    (11:16) Investor Perspectives and PMO Value

    • A skilled PMO can integrate teams, drive schedules, and improve decision-making.

    (18:16) Cybersecurity’s Place in the Project Plan

    • Cybersecurity is often added too late, causing redesigns and delays.

    (27:37) Tools, Efficiency, and Execution

    • Choosing the right project management software is critical and difficult to reverse.

    Learn about MustardSeed: https://www.mustardseedpmo.com/

    Notable quotes

    “I think our lives would greatly improve if we implemented some project management principles in our lives as well as our business and pretty much everything we do.”
    - Christian Espinosa
    “When you have large-scale firm fixed-price contracts, the project and program management best practices have to be good, or else your company might put lives in danger and/or you may have a loss of a couple hundred million dollars on that program.”
    - Steve Curry
    “I'm not so bothered if you want to put that plan down in Smartsheet or in Microsoft Project or Primavera P6, or if you want to draw it in the dirt. It doesn't really matter as long as you think through what needs to happen in what order.”
    - Steve Curry

    Frequently asked questions

    Bring this work to your device

    Need help with penetration testing?

    Blue Goat Cyber delivers medical device penetration testing for medical device manufacturers - from threat modeling to FDA-ready reports.

    Medical Device Penetration Testing

    More on Penetration Testing

    Ready when you are

    Get FDA cleared without the cybersecurity headaches.

    30-minute strategy session. No cost, no commitment - just answers from people who've shipped 250+ FDA submissions.