Blog

Cybersecurity Field Notes for Medical Device Teams.

Notes on FDA, EU MDR and UK cybersecurity expectations for medical devices, written for QA/RA and software leads.

RSS Feed

Blog posts

Alan ParkinsonAlan Parkinson

Won't an SBOM give away my IP?

It's one of the most common objections I hear from founders, and once you see what an SBOM actually contains, it's a much smaller worry than it first appears. Here's what it does and doesn't expose, why submitting it isn't the same as publishing it, and why the list of libraries you used was never the secret worth protecting

Alan ParkinsonAlan Parkinson

What is an SBOM? Think food labels, but for software

An SBOM (Software Bill of Materials) is essentially an ingredients list for software. Just like checking food labels for allergens, an SBOM lets you scan for known cybersecurity vulnerabilities in your product's third-party components.

Newsletter

Never miss an insight.
Subscribe to The Detective’s Notebook.

Practical cybersecurity regulatory insights and guides for medical device teams. Free, no spam, unsubscribe anytime.