Threat Assessment and Risk Analysis (TARA) for Interoperable Medical Devices in the Operating Room Inspired by the Automotive Industry

被引:2
|
作者
Puder, Andreas [1 ]
Henle, Jacqueline [2 ]
Sax, Eric [3 ]
机构
[1] Getinge AB, Embedded Syst, D-76437 Rastatt, Germany
[2] FZI Res Ctr Informat Technol, Embedded Syst & Sensors Engn ESS, D-10117 Berlin, Germany
[3] Karlsruhe Inst Technol KIT, Inst Informat Proc Technol ITIV, D-76131 Karlsruhe, Germany
关键词
safety; security; medical devices; automotive; Failure-Mode and Effect Analysis (FMEA); Threat Assessment and Risk Analysis (TARA); processes; MANAGEMENT; SOFTWARE;
D O I
10.3390/healthcare11060872
中图分类号
R19 [保健组织与事业(卫生事业管理)];
学科分类号
摘要
Prevailing trends in the automotive and medical device industry, such as life cycle overarching configurability, connectivity, and automation, require an adaption of development processes, especially regarding the security and safety thereof. The changing requirements imply that interfaces are more exposed to the outside world, making them more vulnerable to cyberattacks or data leaks. Consequently, not only do development processes need to be revised but also cybersecurity countermeasures and a focus on safety, as well as privacy, have become vital. While vehicles are especially exposed to cybersecurity and safety risks, the medical devices industry faces similar issues. In the automotive industry, proposals and draft regulations exist for security-related risk assessment processes. The medical device industry, which has less experience in these topics and is more heterogeneous, may benefit from drawing inspiration from these efforts. We examined and compared current standards, processes, and methods in both the automotive and medical industries. Based on the requirements regarding safety and security for risk analysis in the medical device industry, we propose the adoption of methods already established in the automotive industry. Furthermore, we present an example based on an interoperable Operating Room table (OR table).
引用
下载
收藏
页数:28
相关论文
共 11 条
  • [1] Threat Analysis and Risk Assessment in Automotive Cyber Security
    Ward, David
    Ibarra, Ireri
    Ruddle, Alastair
    SAE INTERNATIONAL JOURNAL OF PASSENGER CARS-ELECTRONIC AND ELECTRICAL SYSTEMS, 2013, 6 (02): : 507 - 513
  • [2] Seven Pain Points of Threat Analysis and Risk Assessment in the Automotive Domain
    Tuma, Katja
    Widman, Mathias
    IEEE SECURITY & PRIVACY, 2021, 19 (05) : 78 - 82
  • [3] Semi-Automated Threat, Vulnerability & Risk Assessment (TVRA) for Medical Devices
    Moukafih, Nabil
    Zhang, Hongsen
    Epiphaniou, Gregory
    Maple, Carsten
    Taylor, Steve
    Carmichael, Laura
    17TH ACM INTERNATIONAL CONFERENCE ON PERVASIVE TECHNOLOGIES RELATED TO ASSISTIVE ENVIRONMENTS, PETRA 2024, 2024, : 687 - 693
  • [4] TARA plus : Controllability-aware Threat Analysis and Risk Assessment for L3 Automated Driving Systems
    Bolovinou, Anastasia
    Ugur, Atmaca
    Sheik, Al Tariq
    Ur-Rehman, Obaid
    Wallraf, Gerhard
    Amditis, Angelos
    2019 30TH IEEE INTELLIGENT VEHICLES SYMPOSIUM (IV19), 2019, : 8 - 13
  • [5] Cybersecurity Threat Analysis, Risk Assessment and Design Patterns for Automotive Networked Embedded Systems: A Case Study
    Dobaj, Juergen
    Ekert, Damjan
    Stolfa, Jakub
    Stolfa, Svatopluk
    Macher, Georg
    Messnarz, Richard
    JOURNAL OF UNIVERSAL COMPUTER SCIENCE, 2021, 27 (08) : 830 - 849
  • [6] An accelerated access pathway for innovative high-risk medical devices under the new European Union Medical Devices and health technology assessment regulations? Analysis and recommendations
    Tarricone, Rosanna
    Banks, Helen
    Ciani, Oriana
    Brouwer, Werner
    Drummond, Michael F.
    Leidl, Reiner
    Martelli, Nicolas
    Sampietro-Colom, Laura
    Taylor, Rod S.
    EXPERT REVIEW OF MEDICAL DEVICES, 2023, 20 (04) : 259 - 271
  • [7] Regulatory requirements and optimization of multiple criteria decision analysis to quantify the benefit-risk assessment of medical devices
    Su, Gui
    Deng, Dongyuan
    EXPERT REVIEW OF MEDICAL DEVICES, 2023, 20 (04) : 273 - 281
  • [8] Failure analysis, statistical risk assessment, and advanced modeling in a structured problem solving approach: Case study for a delamination defect in the automotive semiconductor industry
    Bergès, Corinne
    Electronic Device Failure Analysis, 2020, 22 (03): : 8 - 15
  • [9] Scientific Evidence in Health Technology Assessment Reports: An In-Depth Analysis of European Assessments on High-Risk Medical Devices
    Olberg, Britta
    Fuchs, Sabine
    Panteli, Dimitra
    Perleth, Matthias
    Busse, Reinhard
    VALUE IN HEALTH, 2017, 20 (10) : 1420 - 1426
  • [10] Representatives of the medical devices industry in the operating room: Legal risks and medico-ethical conflicts [Repräsentanten der Medizinprodukte-Industrie im Operationssaal: Rechtliche Risiken und medizinethische Konflikte]
    Paheenthararajah K.
    Hick C.
    Karenberg A.
    Rothschild M.
    Medizinrecht, 2014, 32 (1) : 7 - 17