
![]() |
Charlotte Stonestreet
Managing Editor |
Home> | INDUSTRY FOCUSES | >Medical & Pharmaceutical | >ISA cybersecurity standards extended to connected medical devices |
ISA cybersecurity standards extended to connected medical devices
13 February 2019
The Medical Device Innovation, Safety, and Security Consortium (MDISS), a major nonprofit public health and patient safety organisation, has announced it is developing a set of recommended practices and profiles for securing medical systems based on the normative requirements in the widely used ISA/IEC 62443 series of standards for industrial automation and control systems cybersecurity.
The intent is to share the information across the network of MDISS member organizations, which includes medical device manufacturers, healthcare software companies, hospital networks, and insurance companies. “MDISS is committed to improving the state of cybersecurity in medical devices and systems to reduce risks to patients. We view the ISA/IEC 62443 standards as providing a solid basis for the development of comprehensive profiles and recommended practices in this area,” states Dr. Dale Nordenberg, MDISS Executive Director.
The ISA/IEC 62443 standards are developed primarily by the ISA99 committee of the International Society of Automation, with simultaneous review and adoption by the Geneva-based International Electrotechnical Commission.ISA99 draws on the input of cybersecurity experts from across the globe in developing standards in a balanced, consensus process that is accredited by the American National Standards Institute. The standards are applicable to all industry sectors and critical infrastructure, providing a flexible and comprehensive framework to address and mitigate current and future security vulnerabilities in industrial automation and control systems.
Application to connected medical devices reflects the growing use of the standards across multiple sectors worldwide, points out long-time ISA99 co-chair Eric Cosman. “When we first formed the ISA99 committee, we deliberately stated our scope in terms of potential consequences rather than limiting ourselves to specific industries. This decision has served us well as the ISA/IEC 62443 standards not only have been applied across traditional manufacturing and industrial processing sectors, but also extended to rail transportation, building automation, and now medical systems.”
The MDISS announcement follows another recent indication of the widespread adoption of the ISA/IEC 62443 standards in which the United Nations Economic Commission for Europe confirmed it will integrate the standards into its forthcoming Common Regulatory Framework on Cybersecurity (CRF). The CRF will serve as an official UN policy position statement for the massive EU trade markets.
- Emerson earns industry-first cybersecurity certification
- Interoperability & cybersecurity cooperation
- ISA book advances the role of situation management
- ISA & the Automation Federation seek to reduce industrial cyber attack risks
- UN commission to integrate ISA standards into cybersecurity regulatory framework
- UL panel upholds ISA appeal of UL cybersecurity standard
- ISA & Siemens form industrial cybersecurity awareness partnership
- ROBOT FOR DELICATE ASSEMBLY
- maxon motor Benefits Compounding Pharmaceuticals Market
- The new maxon motor magazine is here.
- Prescription for production
- Technological remedies
- Medical machine evolution
- Axis Modules DC 061 and DC 062
- Pharmaceutical focus
- Waterproof motor & drive solutions
- Does pharma have productivity cure?