Medical Device Security Doesn't End at FDA Approval
Medical device security requires SBOMs, vulnerability monitoring and post-market controls long after FDA approval.
Medical device security requires SBOMs, vulnerability monitoring and post-market controls long after FDA approval.
In less than two weeks, a question about software safety moved from coffee-call conversation to an OpenSSF issue, a community schema, a validator, and active alignment with CycloneDX and SPDX. That speed is interesting. The way it happened is more interesting.