Healthcare safety consortium extends ISA cybersecurity standards to connected medical devices

ISA MDISS 400

February 25, 2019

The Medical Device Innovation, Safety, and Security Consortium (MDISS), a major nonprofit public health and patient safety organization, has announced it is developing a set of recommended practices and profiles for securing medical systems based on the normative requirements in the ISA/IEC 62443 series of standards for industrial automation and control systems cybersecurity.

The intent is to share the information across the network of MDISS member organizations, which includes medical device manufacturers, healthcare software companies, hospital networks, and insurance companies. “MDISS is committed to improving the state of cybersecurity in medical devices and systems to reduce risks to patients. We view the ISA/IEC 62443 standards as providing a solid basis for the development of comprehensive profiles and recommended practices in this area,” states Dr. Dale Nordenberg, MDISS Executive Director.

The ISA/IEC 62443 standards are developed primarily by the ISA99 committee of the International Society of Automation, with simultaneous review and adoption by the Geneva-based International Electrotechnical Commission.ISA99 draws on the input of cybersecurity experts from across the globe in developing standards in a balanced, consensus process that is accredited by the American National Standards Institute. The standards are applicable to all industry sectors and critical infrastructure, providing a flexible and comprehensive framework to address and mitigate current and future security vulnerabilities in industrial automation and control systems.

Application to connected medical devices reflects the growing use of the standards across multiple sectors worldwide, points out long-time ISA99 co-chair Eric Cosman. “When we first formed the ISA99 committee, we deliberately stated our scope in terms of potential consequences rather than limiting ourselves to specific industries. This decision has served us well as the ISA/IEC 62443 standards not only have been applied across traditional manufacturing and industrial processing sectors, but also extended to rail transportation, building automation, and now medical systems.”

The MDISS announcement follows another recent indication of the widespread adoption of the ISA/IEC 62443 standards in which the United Nations Economic Commission for Europe confirmed it will integrate the standards into its forthcoming Common Regulatory Framework on Cybersecurity (CRF). The CRF will serve as an official UN policy position statement for the massive EU trade markets.

Source

Related Articles


Changing Scene

  • Laurentide Controls Chooses Bécancour for Its 6th Centre

    Laurentide Controls Chooses Bécancour for Its 6th Centre

    With more than 50 years of industrial optimization experience in Eastern Canada, Laurentide Controls is officially opening its 6th centre, located in Bécancour. The objective is clear: bring expertise closer to industrial plants, speed up interventions, and generate measurable gains in reliability, productivity and energy performance – all directly benefiting businesses in the region and,… Read More…


Sponsored Content
The Easy Way to the Industrial IoT

The way to the Industrial IoT does not have to be complicated. Whether access to valuable data is required or new, data-driven services are to be generated, Weidmuller enables its customers to go from data to value the easy way. Weidmuller’s comprehensive and cutting-edge IIoT portfolio applies to greenfield and brownfield applications. Weidmuller offers components and solutions from data acquisition, data pre-processing, data communication and data analysis.

Visit Weidmuller’s Industrial IoT Portfolio.


ADVANCED Motion Controls Takes Servo Drives to New Heights (and Depths) with FlexPro Extended Environment Product Line

Advanced Motion Controls is proud to announce the addition of six new CANopen servo drives with Extended Environment capabilities to their FlexPro line. These new drives join AMC’s existing EtherCAT Extended Environment FlexPro drives, making the FlexPro line the go-to solution for motion control applications in harsh environments.

Many motion control applications take place in conditions that are less than ideal, such as extreme temperatures, high and low pressures, shocks and vibrations, and contamination. Electronics, including servo drives, can malfunction or sustain permanent damage in these conditions.

Read More


Service Wire Co. Announces New Titles for Key Executives

Bruce Kesler and Mark Gatewood have been given new titles and responsibilities for Service Wire Co.

Bruce Kesler has assumed the role of Senior Director – Business Development. Bruce will be responsible for Service Wire’s largest strategic accounts and our growing Strategic Accounts Team.

Mark Gatewood has been promoted to the role of Vice President – Sales & Marketing. In this role, Gatewood will lead the efforts of Service Wire Company’s entire sales and marketing organization in all market verticals.

Read More


Tri-Mach Announces the Purchase of an Additional 45,000 sq ft. Facility

Tri-Mach Elmira Facility

Recently, Tri-Mach Inc. was thrilled to announce the addition of a new 45,000 sq ft. facility. Located at 285 Union St., Elmira, ON, this facility expands Tri-Mach’s capabilities, allowing them to better serve the growing needs of their customers.

Positioning for growth, this additional facility will allow Tri-Mach to continue taking on large-scale projects, enhance product performance testing, and provide equipment storage for their customers. The building will also be the new home to their Skilled Trades Centre of Excellence.

Read More


JMP Parent Company, CONVERGIX Acquires AGR Automation, Expanding Global Reach

Convergix Automation Solutions has completed the acquisition of AGR Automation (“AGR”), a UK-based provider of custom, high-performance automation design and systems integration primarily to the life sciences industry.

Following Convergix’s acquisitions of JMP Solutions in August 2021 and Classic Design in February 2022, AGR marks the third investment in Crestview’s strategy to build Convergix into a diversified automation solutions provider targeting the global $500+ billion market, with a particular focus on the $70 billion global systems integration and connectivity segments. Financial terms of the transaction were not disclosed.

Read More


Latest Articles

  • Convergix: 4 Ways Factory Automation Improves Supply Chain Management

    Convergix: 4 Ways Factory Automation Improves Supply Chain Management

    Although the disruptions caused by the Covid-19 pandemic revealed the fragility of global supply chains, factory automation has stepped up to mitigate many of those shortcomings. Since the onset of the Covid-19 pandemic, manufacturers worldwide have become acutely aware of the interconnectivity of supply chains. More recent issues such as international trade disputes and labor… Read More…

  • Panduit: A Brief Evolution of Field-Terminated Fiber Connectors

    Panduit: A Brief Evolution of Field-Terminated Fiber Connectors

    Field termination of fiber optic cable connectors is nothing new, and while there have been various products to address field termination needs over the decades, the products discussed here are: field polish, mechanical splice, and fusion splice. Each of these has had time in the spotlight, and there are commonalities that hold true across all three. Chief… Read More…