CyberMed

Resource Planning

Post-Market Security Management · 1 min read

5.11.1 Team Structure

Build a sustainable team:

Core Team:

  • Product Security Manager
  • Security Engineer
  • Vulnerability Analyst

Extended Team:

  • Development representatives
  • Quality/Regulatory liaison
  • Customer support
  • Legal counsel

External Resources:

  • Penetration testers
  • Incident response
  • Specialized expertise

5.11.2 Budget Considerations

Plan for ongoing costs:

Personnel:

  • Dedicated staff
  • Training/certification
  • Conferences

Tools:

  • Vulnerability scanners
  • Monitoring services
  • Analysis tools

Services:

  • H-ISAC membership
  • External assessments
  • Incident response retainer

Infrastructure:

  • Update servers
  • Security testing lab
  • Communication systems

Sources

Primary documents named in this section:

  1. Health Information Sharing and Analysis Center (Health-ISAC), Health-ISAC.

See how your device measures up

Take the free FDA 524B readiness assessment and get a personalized gap report covering this topic and more.

Check Your Readiness

Need the documents written, not just checked? CyberMed writes the eSTAR cybersecurity section and runs the penetration testing behind it.