The Med Device Cyber Podcast

Blue Goat Cyber

In a time where healthcare and technology are deeply intertwined, understanding medical device cybersecurity is not just important—it's essential. Welcome to The Med Device Cyber Podcast, your go-to resource for understanding the complexities of this critical field of cyber security. As the definitive podcast on medical device security, we explore everything from identifying and mitigating vulnerabilities to navigating this ever-evolving regulatory landscape. Hosted by Christian Espinosa, Founder & CEO of Blue Goat Cyber, and Trevor Slattery, Director of Medical Device Cybersecurity, each episode features expert insights into the latest cybersecurity threats, innovative solutions, and best practices for protecting the medical devices that are at the heart of modern healthcare. Whether you're a healthcare provider, a device manufacturer, a cybersecurity professional, or just someone looking to learn about the importance of cybersecurity in human lives, this podcast empowers you with the knowledge and tools to ensure patient safety and secure the future of medical technology. This podcast is brought to you by Blue Goat Cyber, specializing in providing elite cybersecurity solutions.

  1. Why MedTech Needs More Than Approval with Michael Branagan Harris of HealthTech Strategies Limited

    -6 ДН.

    Why MedTech Needs More Than Approval with Michael Branagan Harris of HealthTech Strategies Limited

    A device can clear regulatory hurdles and still struggle commercially if the evidence is too narrow. MedTech companies need proof that speaks to affordability, care quality, operational impact, and long term value, not just technical performance. Market selection matters just as much. The same solution may fit the United States, the UK, Germany, or the Netherlands very differently because reimbursement models, provider incentives, and care delivery systems are not built the same way. Episode Breakdown 00:00 Opening 09:02 What evidence actually needs to prove 14:16 Building a stronger adoption case 22:43 Economic logic across markets 28:36 Choosing where to launch 42:08 Key reflections 48:30 End The Med Device Cyber Podcast is brought to you by Blue Goat Cyber, cybersecurity experts providing essential security solutions for the medical device industry. Learn more by visiting https://bluegoatcyber.com. If you're interested in our services or partnering with us, schedule a Discovery Session: https://go.bluegoatcyber.com/meetings/blue-goat-cyber/discovery-session Christian Espinosa is the CEO and founder of Blue Goat Cyber. Trevor Slattery is the Chief Operating Officer at Blue Goat Cyber. Christian Espinosa on LinkedIn: https://www.linkedin.com/in/christianespinosa/ Trevor Slattery on LinkedIn: https://www.linkedin.com/in/trevor-slattery-34852b1a9 Blue Goat Cyber on LinkedIn: https://www.linkedin.com/company/blue-goat-cyber/ Blue Goat Cyber on Instagram: https://www.instagram.com/bluegoatcyber/ Blue Goat Cyber on Facebook: https://www.facebook.com/bluegoatcyber/ Blue Goat Cyber on YouTube: https://www.youtube.com/@BlueGoatCyber/?sub_confirmation=1

    49 мин.
  2. De-Risking Product Decisions in MedTech Startups with Brent Lavin of Ironwood MedTech Partners

    23 АПР.

    De-Risking Product Decisions in MedTech Startups with Brent Lavin of Ironwood MedTech Partners

    Product decisions made during early development determine commercialization outcomes years later. Wrong choices about regulatory pathways, feature sets, and market segments create compounding problems limiting commercial success. Christian Espinosa and Trevor Slattery explore product management with Brent Lavin, Chief Product Catalyst of Ironwood MedTech Partners, covering why 510(k) pathways average four years while PMA programs require seven to nine years, and how feature set alignment shapes success. The engineering mindset applies hypothesis testing to product development through iterative refinement. Practical for MedTech founders and product teams. Episode Breakdown: 00:02 Introduction04:35 Ironwood origin06:02 De-risking decisions10:15 Hypothesis testing14:30 Pathway selection18:45 Timelines22:20 Claims limits26:40 Feature alignment30:15 Segmentation34:55 Clinical trials38:45 Entrepreneurship40:45 Insights43:29 Close The Med Device Cyber Podcast is brought to you by Blue Goat Cyber, cybersecurity experts providing essential security solutions for the medical device industry. Learn more by visiting https://bluegoatcyber.com. If you're interested in our services or partnering with us, schedule a Discovery Session: https://go.bluegoatcyber.com/meetings/blue-goat-cyber/discovery-session Christian Espinosa is the CEO and founder of Blue Goat Cyber. Trevor Slattery is the Chief Operating Officer at Blue Goat Cyber. Christian Espinosa on LinkedIn: https://www.linkedin.com/in/christianespinosa/ Trevor Slattery on LinkedIn: https://www.linkedin.com/in/trevor-slattery-34852b1a9 Blue Goat Cyber on LinkedIn: https://www.linkedin.com/company/blue-goat-cyber/ Blue Goat Cyber on Instagram: https://www.instagram.com/bluegoatcyber/ Blue Goat Cyber on Facebook: https://www.facebook.com/bluegoatcyber/ Blue Goat Cyber on YouTube: https://www.youtube.com/@BlueGoatCyber/?sub_confirmation=1

    44 мин.
  3. Vibe Coding Security Risks and Malicious Code Injection with Jake Rodriguez of Triangle Tech

    16 АПР.

    Vibe Coding Security Risks and Malicious Code Injection with Jake Rodriguez of Triangle Tech

    Vibe coding enables rapid development through AI-generated code but introduces security risks when developers accept outputs without verification. Malicious actors can inject vulnerabilities through manipulated training data or prompt engineering. Supply chain attacks become easier when developers blindly trust AI implementations. Jake Rodriguez, Founder and CEO of Triangle Tech, joins Trevor Slattery and Christian Espinosa to explore the security implications of vibe coding, how attackers exploit AI code generation, and what verification processes prevent unverified code reaching production. Understanding generated code requires technical knowledge many vibe coding adopters lack. Practical for development and security teams. Episode Breakdown: 00:00 AI Search vs Google + Risks 01:13 Intro + AI, Marketing, Cybersecurity 01:39 Jake Rodriguez Background 04:27 What is SEO Today 06:30 AI Search vs Traditional SEO 08:50 How AI Finds Content (Reddit, Quora) 10:11 AI Bias and Hallucinations 10:58 Content Strategy + Personal Branding 12:27 Why Trust is Shifting (Podcasts, Events) 13:56 Bot Farms and Fake Engagement 15:02 Apple Branding Psychology 16:07 App Permissions and Cyber Risks 16:55 AI Voice Scams and Deepfakes 19:46 Using AI for Marketing 21:04 Prompt Engineering Tips 22:36 Where AI Works vs Fails 24:28 What is Vibe Coding 27:23 AI Risks in Medical Devices 30:46 Cybersecurity Challenges in MedTech 32:59 AI Jailbreaks and Security Threats 34:44 MedTech Marketing Strategy 35:43 SEO Landing Page Strategy 37:36 Key Takeaways 39:00 Outro The Med Device Cyber Podcast is brought to you by Blue Goat Cyber, cybersecurity experts providing essential security solutions for the medical device industry. Learn more by visiting https://bluegoatcyber.com. If you're interested in our services or partnering with us, schedule a Discovery Session: https://go.bluegoatcyber.com/meetings/blue-goat-cyber/discovery-session Christian Espinosa is the CEO and founder of Blue Goat Cyber. Trevor Slattery is the Chief Operating Officer at Blue Goat Cyber. Christian Espinosa on LinkedIn: https://www.linkedin.com/in/christianespinosa/ Trevor Slattery on LinkedIn: https://www.linkedin.com/in/trevor-slattery-34852b1a9 Blue Goat Cyber on LinkedIn: https://www.linkedin.com/company/blue-goat-cyber/ Blue Goat Cyber on Instagram: https://www.instagram.com/bluegoatcyber/ Blue Goat Cyber on Facebook: https://www.facebook.com/bluegoatcyber/ Blue Goat Cyber on YouTube: https://www.youtube.com/@BlueGoatCyber/?sub_confirmation=1

    39 мин.
  4. Why Clinical Trials Are the Most Expensive Capital Outlay for Startups with Rob Bedford, CEO of Franklyn Health

    9 АПР.

    Why Clinical Trials Are the Most Expensive Capital Outlay for Startups with Rob Bedford, CEO of Franklyn Health

    Early planning prevents expensive corrections when startups address clinical strategy, regulatory pathways, and cybersecurity requirements from day one rather than improvising solutions before launch. FDA pre-submission meetings provide feedback that de-risks strategies before execution. Clinical trial design shapes feasibility for startups with limited budgets. Understanding target markets determines sample requirements since United States sales need United States samples while Korean sales need Korean data. Reverse engineering where you want to sell enables appropriate planning. Good Clinical Practice guidelines establish responsibility layers. Manufacturers remain accountable for outcomes even when delegating work to CROs or contractors. Understanding responsible versus accountable shapes partner selection. Practical for regulatory and clinical strategy. Episode Breakdown: 00:01 Welcome03:45 CRO terminology07:20 Market research findings12:15 Startup needs16:40 Partnerships20:25 Operations24:10 Study types28:35 FDA strategy32:50 GCP guidelines36:15 Accountability39:40 Markets41:36 Thoughts The Med Device Cyber Podcast is brought to you by Blue Goat Cyber, cybersecurity experts providing essential security solutions for the medical device industry. Learn more by visiting https://bluegoatcyber.com. If you're interested in our services or partnering with us, schedule a Discovery Session: https://go.bluegoatcyber.com/meetings/blue-goat-cyber/discovery-session Christian Espinosa is the CEO and founder of Blue Goat Cyber. Trevor Slattery is the Chief Operating Officer at Blue Goat Cyber. Christian Espinosa on LinkedIn: https://www.linkedin.com/in/christianespinosa/ Trevor Slattery on LinkedIn: https://www.linkedin.com/in/trevor-slattery-34852b1a9 Blue Goat Cyber on LinkedIn: https://www.linkedin.com/company/blue-goat-cyber/ Blue Goat Cyber on Instagram: https://www.instagram.com/bluegoatcyber/ Blue Goat Cyber on Facebook: https://www.facebook.com/bluegoatcyber/ Blue Goat Cyber on YouTube: https://www.youtube.com/@BlueGoatCyber/?sub_confirmation=1

    42 мин.
  5. Traceability Requirements and Documentation Audit Trails with Dr. Basant Bajpai, CEO of Compliance MedQRA

    2 АПР.

    Traceability Requirements and Documentation Audit Trails with Dr. Basant Bajpai, CEO of Compliance MedQRA

    Quality management system implementation delays create cascading failures across medical device development timelines. Startups using SharePoint or Google Drive for documentation discover at audit time that these tools provide no traceability, no version control, and no evidence of systematic processes. Dr. Basant Bajpai discusses why design controls begin at the concept stage, regardless of whether companies acknowledge them, how reverse documentation costs 6-12 months when manufacturers reach the submission stage without proper systems, and what happens when scaling exposes foundational quality gaps. Simple automated systems that enforce traceability outperform both manual approaches and enterprise platforms that startups cannot fully utilize. Starting early with scalable infrastructure prevents wholesale system transitions during growth. Practical for medical device startups and innovators. Episode Breakdown: 00:00 Introduction Hook on QMS Mistakes and AI Boundaries00:49 Why AI Should Assist, Not Own, the Compliance Process01:09 Guest Introduction: Dr. Basant Bajpai and ComplianceMed QRA01:32 Why QMS Is a Survival System, Not Just Software02:20 The Biggest QMS Mistake Medtech Founders Make03:02 Why Early Stage Companies Must Start QMS Sooner Than They Think04:03 Why Shared Drives and Manual Systems Fail During Audits05:05 Start Simple: Build a Traceable Foundation Before You Scale06:08 Cybersecurity and Quality Are More Connected Than Most Founders Realize06:59 How AI Is Being Used Inside an Automated QMS08:00 Human in the Loop: Where AI Helps and Where Experts Must Step In08:48 The Risk of AI Hallucinations in Regulated Documentation10:03 When AI Can Invent Content and Why That Requires Extra Caution10:45 Why You Should Not Use AI Before Your QMS Basics Are Fully Built12:34 Regulator Reactions to AI in Compliance and Documentation13:29 Could Regulators Start Using AI Too?15:09 The Coming AI Arms Race in Regulatory Reviews17:04 Why Traceability Is Still the Hardest Problem for AI18:23 Why Manual Traceability Still Matters in an AI Assisted QMS20:24 AI in Healthcare: Big Opportunity, Big Responsibility22:14 What Happens When Companies Delay Quality System Implementation24:00 The Cost of Reverse Documentation and Missed Traceability25:20 Why Poor QMS Setup Becomes a Scaling Nightmare27:00 Medtech Startups: Limited Budgets, Too Many Critical Priorities28:10 The Cybersecurity Retrofit Problem and Why It Delays Submission29:07 Why New Regulatory Pressure Makes Early Planning Even More Important30:12 FDA Pushback on Weak Cybersecurity Documentation30:58 Awareness and Education as the Real Fix32:22 Final Takeaways: QMS, AI, and Cybersecurity34:05 Why AI Must Stay a Tool and Never Become the Decision Maker35:10 Closing Remarks The Med Device Cyber Podcast is brought to you by Blue Goat Cyber, cybersecurity experts providing essential security solutions for the medical device industry. Learn more by visiting https://bluegoatcyber.com. If you're interested in our services or partnering with us, schedule a Discovery Session: https://go.bluegoatcyber.com/meetings/blue-goat-cyber/discovery-session Christian Espinosa is the CEO and founder of Blue Goat Cyber. Trevor Slattery is the Chief Operating Officer at Blue Goat Cyber. Christian Espinosa on LinkedIn: https://www.linkedin.com/in/christianespinosa/ Trevor Slattery on LinkedIn: https://www.linkedin.com/in/trevor-slattery-34852b1a9 Blue Goat Cyber on LinkedIn: https://www.linkedin.com/company/blue-goat-cyber/ Blue Goat Cyber on Instagram: https://www.instagram.com/bluegoatcyber/ Blue Goat Cyber on Facebook: https://www.facebook.com/bluegoatcyber/ Blue Goat Cyber on YouTube: https://www.youtube.com/@BlueGoatCyber/?sub_confirmation=1

    35 мин.
  6. Early Design Decisions that Shape Medical Device Success with Chris Danek, CEO of Bessel

    26 МАР.

    Early Design Decisions that Shape Medical Device Success with Chris Danek, CEO of Bessel

    Early design decisions define the trajectory of a medical device long before commercialization begins. Choices related to software architecture, third-party components, and system connectivity establish both the opportunity and the risk profile of the product. Cybersecurity introduces a layer of complexity that many teams underestimate. It extends beyond protecting data and into safeguarding patient outcomes, ensuring system reliability, and meeting increasingly stringent regulatory expectations. Chris Danek, CEO of Bessel, joins Christian and Trevor to examine how a single overlooked dependency or unsupported component can become a critical vulnerability. In many cases, these issues remain hidden until late-stage testing or FDA review, where remediation becomes significantly more expensive and disruptive. Effective development requires integrating cybersecurity into requirements, architecture, and validation activities from the outset. Threat modeling, component vetting, and design-level decisions play a defining role in reducing downstream risk. The organizations that succeed are those that treat cybersecurity as a core engineering discipline. Building secure, scalable medical devices requires alignment between technical execution, regulatory strategy, and long-term product viability. Episode Breakdown: 00:01 Welcome02:54 Impact definition05:16 Security integration07:22 Connectivity requirements12:30 Architecture18:45 Requirements24:20 Development30:15 Certificates36:40 Privacy focus42:50 Risk scoring48:03 Regulators50:55 Thoughts The Med Device Cyber Podcast is brought to you by Blue Goat Cyber, cybersecurity experts providing essential security solutions for the medical device industry. Learn more by visiting https://bluegoatcyber.com. If you're interested in our services or partnering with us, schedule a Discovery Session: https://go.bluegoatcyber.com/meetings/blue-goat-cyber/discovery-session Christian Espinosa is the CEO and founder of Blue Goat Cyber. Trevor Slattery is the Chief Operating Officer at Blue Goat Cyber. Christian Espinosa on LinkedIn: https://www.linkedin.com/in/christianespinosa/ Trevor Slattery on LinkedIn: https://www.linkedin.com/in/trevor-slattery-34852b1a9 Blue Goat Cyber on LinkedIn: https://www.linkedin.com/company/blue-goat-cyber/ Blue Goat Cyber on Instagram: https://www.instagram.com/bluegoatcyber/ Blue Goat Cyber on Facebook: https://www.facebook.com/bluegoatcyber/ Blue Goat Cyber on YouTube: https://www.youtube.com/@BlueGoatCyber/?sub_confirmation=1

    51 мин.
  7. Patient Monitoring Systems and the Gingerbread Man: How Brandon Fertig, Senior Manager at Philips Healthcare Uses AI to Help Nurses PrioritizePatient Monitoring Systems and the Gingerbread Man: How Brandon Fertig, Senior Manager at Philips Healthcare Us

    19 МАР.

    Patient Monitoring Systems and the Gingerbread Man: How Brandon Fertig, Senior Manager at Philips Healthcare Uses AI to Help Nurses PrioritizePatient Monitoring Systems and the Gingerbread Man: How Brandon Fertig, Senior Manager at Philips Healthcare Us

    Alarm fatigue happens when monitoring systems raise so many false flags that clinical staff begin ignoring them, even when real critical events occur. A surgeon during an operation gets alarms indicating patient bleeding, but observes stable blood pressure and no visible bleeding. The surgeon trusts direct patient observation over machine output because edge cases require human judgment that AI cannot reliably provide. Brandon Fertig discusses why patient monitoring systems with visual indicators like the gingerbread man figure help nurses prioritize care without replacing their judgment, how edge cases become more important as automation increases, and why AI in healthcare should focus on efficiency rather than autonomous decision-making. Alarm noise versus signal, why ground truth patient observation matters more than machine alerts, and how human checkpoints handle situations AI cannot predict. Practical for understanding AI limitations in clinical settings. Episode Breakdown: 00:01 Welcome02:20 IT background05:03 Leadership08:33 Skills transfer12:15 Philips work16:40 Training22:30 AI tools28:45 Checkpoints34:20 Monitoring38:50 Quality40:54 Efficiency41:24 Judgment42:38 Advice The Med Device Cyber Podcast is brought to you by Blue Goat Cyber, cybersecurity experts providing essential security solutions for the medical device industry. Learn more by visiting https://bluegoatcyber.com. If you're interested in our services or partnering with us, schedule a Discovery Session: https://go.bluegoatcyber.com/meetings/blue-goat-cyber/discovery-session Christian Espinosa is the CEO and founder of Blue Goat Cyber. Trevor Slattery is the Chief Operating Officer at Blue Goat Cyber. Christian Espinosa on LinkedIn: https://www.linkedin.com/in/christianespinosa/ Trevor Slattery on LinkedIn: https://www.linkedin.com/in/trevor-slattery-34852b1a9 Blue Goat Cyber on LinkedIn: https://www.linkedin.com/company/blue-goat-cyber/ Blue Goat Cyber on Instagram: https://www.instagram.com/bluegoatcyber/ Blue Goat Cyber on Facebook: https://www.facebook.com/bluegoatcyber/ Blue Goat Cyber on YouTube: https://www.youtube.com/@BlueGoatCyber/?sub_confirmation=1

    43 мин.
  8. Spend Two Weeks in a Hospital Before Designing Your Medical Device (Professor Aamer Ahmed)

    12 МАР.

    Spend Two Weeks in a Hospital Before Designing Your Medical Device (Professor Aamer Ahmed)

    Devices that do not integrate into the clinical workflow sit unused regardless of technical sophistication. Physicians work in high-pressure environments where equipment must be 100 percent reliable, secure, and enhance workflow rather than disrupt it. Professor Aamer Ahmed, a Consultant in Cardiothoracic Anaesthesia, Professor of Anaesthesia and Critical Care at the University of Leicester, and co-founder of Hemeo, a medical technology company designing AI-based personalized Clinical Decision Support Systems for coagulation disorders, discusses with Christian Espinosa and Trevor Slattery why involving Key Opinion Leaders at the design stage prevents expensive redesigns, what alarm fatigue does to clinical decision-making, and how legal precedent will determine AI liability as therapeutic recommendations become more common. He also explains why the best medtech development approach involves spending time in hospitals observing physicians before engineering products, how digital twin models enable personalized clinical predictions, and why common sense is not always common practice in device design. The discussion offers practical advice for building devices clinicians actually use. Episode Breakdown: 00:01 Introduction00:33 Role explanation02:49 KOL involvement03:32 Workflow integration05:36 Seamless design07:13 Problem-first approach07:35 Clinical observation08:45 Digital twin12:20 IT security18:30 AI support22:15 Accountability26:40 Alarm fatigue32:10 Liability34:07 Advice38:13 Simplicity The Med Device Cyber Podcast is brought to you by Blue Goat Cyber, cybersecurity experts providing essential security solutions for the medical device industry. Learn more by visiting https://bluegoatcyber.com. If you're interested in our services or partnering with us, schedule a Discovery Session: https://meetings.hubspot.com/blue-goat-cyber/discovery-session Christian Espinosa is the CEO and founder of Blue Goat Cyber. Trevor Slattery is the Chief Operating Officer at Blue Goat Cyber. Christian Espinosa on LinkedIn: https://www.linkedin.com/in/christianespinosa/ Trevor Slattery on LinkedIn: https://www.linkedin.com/in/trevor-slattery-34852b1a9 Blue Goat Cyber on LinkedIn: https://www.linkedin.com/company/blue-goat-cyber/ Blue Goat Cyber on Instagram: https://www.instagram.com/bluegoatcyber/ Blue Goat Cyber on Facebook: https://www.facebook.com/bluegoatcyber/ Blue Goat Cyber on YouTube: https://www.youtube.com/@BlueGoatCyber/?sub_confirmation=1

    38 мин.

Оценки и отзывы

5
из 5
Оценок: 2

Об этом подкасте

In a time where healthcare and technology are deeply intertwined, understanding medical device cybersecurity is not just important—it's essential. Welcome to The Med Device Cyber Podcast, your go-to resource for understanding the complexities of this critical field of cyber security. As the definitive podcast on medical device security, we explore everything from identifying and mitigating vulnerabilities to navigating this ever-evolving regulatory landscape. Hosted by Christian Espinosa, Founder & CEO of Blue Goat Cyber, and Trevor Slattery, Director of Medical Device Cybersecurity, each episode features expert insights into the latest cybersecurity threats, innovative solutions, and best practices for protecting the medical devices that are at the heart of modern healthcare. Whether you're a healthcare provider, a device manufacturer, a cybersecurity professional, or just someone looking to learn about the importance of cybersecurity in human lives, this podcast empowers you with the knowledge and tools to ensure patient safety and secure the future of medical technology. This podcast is brought to you by Blue Goat Cyber, specializing in providing elite cybersecurity solutions.

Вам может также понравиться