cybersecurity-risk-assessor

Solid

Medical device cybersecurity risk assessment skill per FDA premarket and postmarket guidance

AI & Automation 814 stars 53 forks Updated today MIT

Install

View on GitHub

Quality Score: 95/100

Stars 20%
97
Recency 20%
100
Frontmatter 20%
70
Documentation 15%
100
Issue Health 10%
50
License 10%
100
Description 5%
100

Skill Content

# Cybersecurity Risk Assessor Skill ## Purpose The Cybersecurity Risk Assessor Skill evaluates cybersecurity risks for medical devices per FDA guidance and IEC 81001-5-1, supporting threat modeling, vulnerability assessment, and security control implementation. ## Capabilities - Threat modeling (STRIDE methodology) - Vulnerability assessment - SBOM (Software Bill of Materials) generation - Security control identification - Penetration testing planning - Cybersecurity documentation for FDA submissions - Attack surface analysis - Security architecture review - Coordinated vulnerability disclosure planning - Postmarket cybersecurity management - Patch management planning ## Usage Guidelines ### When to Use - Assessing device cybersecurity risks - Planning penetration testing - Preparing FDA cybersecurity submissions - Managing software dependencies ### Prerequisites - Software architecture documented - Network connectivity defined - Data flows identified - Third-party components cataloged ### Best Practices - Integrate cybersecurity from design inception - Maintain current SBOM - Plan for security updates throughout lifecycle - Establish vulnerability disclosure process ## Process Integration This skill integrates with the following processes: - Software Development Lifecycle (IEC 62304) - Medical Device Risk Management (ISO 14971) - 510(k) Premarket Submission Preparation - Post-Market Surveillance System Implementation ## Dependencies - FDA Cybersecurity guidance -...

Details

Author
a5c-ai
Repository
a5c-ai/babysitter
Created
4 months ago
Last Updated
today
Language
JavaScript
License
MIT

Related Skills