Karen M. Sandler General Counsel July 23, 2010 OSCON Free Software on Medical Devices: Unchain My Heart!

Slides:



Advertisements
Similar presentations
Chapter 5 Preparing for Key FDA Meetings and Advisory Committee Meetings 1.
Advertisements

William H. Maisel, MD, MPH Director, Medical Device Safety Institute Beth Israel Deaconess Medical Center Statement to the FDA Risk Communication Advisory.
LEGAL CONSEQUENCES John Mullins 03/09/ POTENTIAL LIABILITIES IN SPORT Torts Law – negligence Contract law Statutory obligation - workplace health.
HACKING MEDICAL DEVICES BY JENNIFER GROSS. GROWTH OF MEDICAL TECHNOLOGIES Medical technologies and computer science continue to mesh Pacemakers Insulin.
What Patients Need and Want to Know from their Physicians FDA Perspective Brian Lewis, MD, Medical Reviewer, FDA Division of Cardiovascular Devices Electrophysiologist,
Copyright and Archives Peter B. Hirtle Co-Director Cornell Institute for Digital Collections
Jacky: “Safety-Critical Computing …” ► Therac-25 illustrated that comp controlled equipment could be less safe. ► Why use computers at all, if satisfactory.
Think Global, Act Local – Lessons Learned in a Global Compliance Experience Kathy Lundberg Chief Compliance Officer Boston Scientific.
Zhihao Jiang, Rahul Mangharam PRECISE Center University of Pennsylvania.
Adverse Event Reports on Automatic External Defibrillators from Oscar H Tovar MD and Beverly Gallauresi RN, MPH Food and Drug Administration.
Project Management Methodology More about Quality Control.
Licenses A Legal Necessity Copyright © 2015 – Curt Hill.
Evolving IT Framework Standards (Compliance and IT)
FDA Regulatory review in Minutes: What Product Development Executives Need-to-Know. Specifically, frequent causes of recalls and related areas that investigators.
The Latest Device Therapy in W. Herts Dr Philip Moore.
Legal and Ethical Issues. Major Topics Protecting Programs and Data Information and the Law Rights of Employees and Employers Software Failures Computer.
MassMEDIC Risk Management: Legal and Liability Issues with Home Healthcare Products Raymond C. Zemlin Goodwin Procter LLP (March 9, 2006) ©2006. Goodwin.
 Most people would say yes, while others disagree. If downloading from the internet is a quick and easy way to do things, why not?  Everybody likes.
Relationships July 9, Producers and Consumers SERI - Relationships Session 1.
Security and Privacy for Implantable Medical Devices Presented by : Dilip Simha.C.R.
Author’s Rights And the Role of Copyright Slides produced by the Copyright Education & Consultation Program.
Distribution of Pharmaceuticals and Medical Devices I am not liable, am I? London – September 4, 2016 Moritz Maurer, LL.M.
FDA & MOBILE/IT APPLICATIONS Drew Bennett Sr. Technical Licensing Specialist Office of Technology Transfer.
Blaine Best David Mette Katie Kodrich Allie Pitchler Kyle Killam “An error doesn’t become a mistake until you refuse to correct it.” - Orlando A. Battista.
Author(s): Brenda Gunderson, Ph.D., 2011 License: Unless otherwise noted, this material is made available under the terms of the Creative Commons Attribution–Non-commercial–Share.
Idiom Entertainment Patrick Burke, CEO Reed Brown, CFO Kate Raymer, CIO Sandra Kohlhepp, CTO Patrick Burke, CEO Reed Brown, CFO Kate Raymer, CIO Sandra.
Turning Data Into Insights. Is your private practice struggling to operate? Perhaps you feel caught between a growing client caseload and continually.
Economics for your Classroom from Ed Dolan’s Econ Blog The Looming Blood Surplus: A Case Study in Supply and Demand September 15, 2014 Ed Dolan’s Econ.
CS5261 Information Security CS 526 Topic 13 Secure Software: Market Failure and How? Topic 13: Secure Software.
FDA Workshop-External Defibrillators Quality Systems Practices and Adverse Reporting John Collins AHA/ASHE.
Schools Standards & Framework Act 1998 & Code of Practice Annual Consultation about Admission Arrangements Independent Schools Adjudication Independent.
CS5261 Information Security CS 526 Topic 9-A Secure Software: Market Failure Market failure of secure software.
Copyright, Don G. Gotterbarn, 2002 Professional Issues in the “Open Source Movement” D on Gotterbarn East Tennessee State University Copyright, Don G.
Privacy and Data Mining What Do “They” Know About You?
What is regression testing? Regression testing is a type of testing that ensures there are no defects/issues in exiting functionality because of new change.
About the Author A Lifetime of Software Development Started Writing Code at Age 11 Programming Summer Camp at Age 12 Writing Code Ever Since At Age 25,
Software Downloads Jason Long IST 110 Charles Ramsey June 1, 2009.
CS426Fall 2010/Lecture 171 Computer Security CS 426 Lecture 17 Market Failure of Secure Software.
Assessing fitness to drive in Category B licence holders in Great Britain Dr Heather Major Senior Medical Adviser DVLA Swansea
Date of download: 6/8/2016 Copyright © 2016 American Medical Association. All rights reserved. From: Pacemaker and ICD Generator Malfunctions: Analysis.
Aaron Williamson & Karen M. Sandler July 28, 2011 OSCON Legal Basics for Developers: A (AN?) FAQ.
FOSS4VGI: An Introduction to the Open Source Geospatial Community
Karen M. Sandler General Counsel April 7, 2011 Linux Foundation Collaboration Summit Sign on the Dotted Line: Employment Agreements, NDAs and Free and.
ELECTROPHYSIOLOGY DEVICES MARKET GLOBAL BRIEFING 2017 INCLUDING: ABLATION CATHETERS, PACEMAKERS, IMPLANTABLE CARDIOVERTER DEFIBRILLATORS, CARDIAC RESYNCHRONIZATION.
Author(s): Rahul Sami and Paul Resnick, 2009
7 Mavericks and Hacking 1.
Surveillance around the world
Medical Professional Adventures and Primerus Solutions
The Working Group on Medical Measurements The 23rd Forum Meeting
Security+ All-In-One Edition Chapter 1 – General Security Concepts
European app matters Charles Lowe
Chapter 4: Application Software
Most valuable asset in today’s world
CBRNE Project Team Meeting 01 November, 2011
Title of Presentation: And a Very Very Very Very Long Subtitle
Electronic voting – safe or not?
Education – Partnership – Solutions
Proximity-based Access Control for Implantable Medical Devices
INFORMATION SYSTEMS SECURITY and CONTROL
Chapter 27 Security Engineering
Welcome to “Introducing the BioScan MSA” with Dr
Author(s): Rahul Sami and Paul Resnick, 2009
Security Risk Assessment
Computer Security By: Muhammed Anwar.
Tobey Clark, Director*, Burlington USA
Privacy and Data Mining
Security Risk Assessment
Web-based N-Tier SQL Standards-based Single-code base Scaleable
Vulnerability in an Android App I Found last November - Attack and Countermeasure - Ken Okuyama Sony Digital Network Applications.
I am a student. We are students. You are a student. You are students. He is a student. She is a student. It is a student. They are students.
Presentation transcript:

Karen M. Sandler General Counsel July 23, 2010 OSCON Free Software on Medical Devices: Unchain My Heart!

Our software must be safe ● Cars ● Voting machines ● Financial markets ● Medical devices – Yesterday! 34,000 malfunctioning Boston Scientific ICDs

I am a lawyer. My story:

I am an activist.

I am a patient.

I am a cyborg?

Pacemakers can be maliciously hacked

I am an author.

Software has bugs. ≈

● In 2008, ≈ 350,000 pacemakers and 140,000 ICDs were implanted in the United States ● SEI estimates one defect for every 100 lines of code ● One study showed 98% of software failures analyzed in recalls would have been detected with all pairs testing.

Security through obscurity just doesn't work. ≈

Free and open source code – gives users the ability to independently assess the system and its risks – enables bugs to be patched more easily and quickly – removes dependence on a single party

The FDA – does not typically review source code – does not have a clear set of mandatory requirements for software – does not keep a repository of source code – preempts patients from suing under state product liability laws

I am a citizen.

I am a daughter.

Killed by Code: Software Transparency in Implantable Medical Devices

SFLC is a 501(c)(3) charity in the USA and accepts donations on its website at This talk and the slides are: Copyright © 2010, Karen M. Sandler These slides, this talk, and audio/video recordings thereof are licensed under the Creative Commons Attribution-No Derivative Works 3.0 United States License!