Blue Goat Cyber

The Med Device Cyber Podcast

Science EN ↓ 89 episodes

In a time where healthcare and technology are deeply intertwined, understanding medical device cybersecurity is not just important—it's essential. Welcome to The Med Device Cyber Podcast, your go-to resource for understanding the complexities of this critical field of cyber security. As the definitive podcast on medical device security, we explore everything from identifying and mitigating vulnerabilities to navigating this ever-evolving regulatory landscape. Hosted by Christian Espinosa, Founder & CEO of Blue Goat Cyber, and Trevor Slattery, Director of Medical Device Cybersecurity, each epis...

Author

Blue Goat Cyber

Category

Science

Podcast website

bluegoatcyber.com

Latest episode

Jul 10, 2026

Where to listen?

Podcasts in the app Replaio Radio Coming soon

Podcasts are coming to the app soon. Install now and be the first to see a whole new take on podcasts

Get it on Google Play Install for free Android 5M+ downloads · 4.8 rating iOS soon

Episodes

When Medical Device Cyber Failures Become Fatal 30.12.2025

What past ransomware and medical device incidents might reveal gaps that manufacturers are still overlooking today? In this episode, Christian and Trevor examine real incidents where cybersecurity failures, software flaws, and insecure medical devices led to patient harm and death. They break down how ransomware attacks, implantable device vulnerabilities, and AI-driven therapies expose life-criti...

Trevor Slattery Answers Tough Medical Device Cyber Questions 23.12.2025

This episode puts Trevor in the hot seat. If you were put in the hot seat, could you clearly explain cybersecurity, safety, and lifecycle terms like Trevor? In this rapid-fire episode, Christian fires questions at Trevor about essential medical device cybersecurity concepts and standards. Together, they clarify how risk management, secure development, and lifecycle thinking intersect across safety...

The Differences Between Black, Grey, and White Penetration Testing 16.12.2025

MedTech developers, do you know which penetration testing methodology the FDA actually prefers for medical device submissions? In this episode, Christian and Trevor explain the differences between black, grey, and white box penetration testing and how each impacts the completeness and realism of cybersecurity assessments. They highlight why regulators increasingly expect deeper testing supported b...

How Cybersecurity Shapes Regulatory and Quality Success with Jim Goodmiller 09.12.2025

What risks do you take when cybersecurity is left off your development roadmap? In this episode, Christian, Trevor and guest Jim Goodmiller explore how cybersecurity intersects with regulatory expectations and quality systems, creating new challenges and opportunities for medtech innovators. Jim helps to explain why founders must integrate cybersecurity from concept through commercialization, espe...

Webinar: Why FDA Cybersecurity Submissions Fail and How to Get Yours Approved 04.12.2025

Medtech innovators and medical device manufacturers, how can you prevent cybersecurity deficiencies from delaying your FDA submission? In this webinar, Christian Espinosa, CEO of Blue Goat Cyber, and Trevor Slattery, CTO of Blue Goat Cyber, reveal the most common reasons FDA cybersecurity submissions fail and how you can avoid them. They explain the importance of early risk management, security-by...

Cybersecurity Qs MedTech Innovators Ask: Christian’s Hot Seat 02.12.2025

MedTech manufacturers, how can you avoid the cybersecurity pitfalls that most often lead to FDA rejection? In this episode, Trevor puts Christian “in the hot seat” to tackle the most common—and sometimes misunderstood—cybersecurity questions MedTech innovators ask. Christian breaks down key concepts such as ISO 13485, HIPAA vs. FDA expectations, SAMD vs. SIMD, global regulatory demands, and more....

What Is Required for an FDA Pre-Market Cyber Submission? 25.11.2025

What are the 18 required cybersecurity deliverables for a pre-market submission, and how do they map to eSTAR’s 13 sections? This episode breaks down the cybersecurity deliverables required for an FDA pre-market submission and explains why they apply consistently across all device types. Christian and Trevor walk through each deliverable in detail, outline how they map to eSTAR v6.0, and highlight...

Webinar: Postmarket Cybersecurity Management 20.11.2025

MedTech manufacturers, how prepared are you to monitor vulnerabilities continuously once your medical device reaches the market? Also, would you like a free checklist for your Cybersecurity Management Plan? (See link below!) This webinar dives into how medical device manufacturers should build, maintain, and document postmarket cybersecurity programs that align with FDA expectations. Christian and...

How Market Intelligence Shapes MedTech Growth with Kevin Saem 18.11.2025

In the MedTech space, how can you leverage market intelligence and machine learning for business development and sales enablement? In this episode, Christian and Trevor talk with Kevin Saem about how market intelligence and cybersecurity intersect in the MedTech space. They unpack how AI and data-driven insights are transforming sales enablement, investor confidence, and device security. They also...

Designing Secure Medical Device Software with Randy Horton 11.11.2025

In medical device software development, why should cybersecurity be viewed as an element of product quality, not an add-on? In this episode, Christian and Trevor speak with Randy Horton of Orthogonal about the future of medical device software development. Together, they unpack how DevSecOps, quality systems, and modern engineering practices can elevate safety and speed innovation in MedTech. From...

Cyber Risk Management for MedTech Legacy Devices 04.11.2025

What options do MedTech manufacturers have to bring older devices up to modern cybersecurity standards? Also, how does the FDA’s latest guidance change the process for updating legacy devices? In this episode, Christian and Trevor break down the evolving challenges of managing cybersecurity for MedTech legacy devices. They explain how the FDA’s recent guidance updates create new pathways for handl...

Webinar: Security Architecture Views: Protecting Medical Devices Through Strategic Design 30.10.2025

How can security architecture views strengthen a medical device manufacturer’s FDA submissions? This episode/webinar dives into the four critical security architecture views required by the FDA: global system, multi-patient harm, updatability and patchability, and secure use case views. Christian Espinosa and Trevor Slattery explain how each view strengthens product security while aligning with re...

Why AI Literacy Matters for the Future of Healthcare with José Acosta 28.10.2025

How can AI literacy reduce patient risk in healthcare settings? In this episode, Christian Espinosa and Trevor Slattery are joined by Dr. José Acosta. Together, they unpack the promise and pitfalls of artificial intelligence in healthcare—from the accuracy gap in diagnostics to the importance of ethics, alignment, and training. The conversation explores how clinicians can harness AI safely, ensuri...

What Is A Medical Device? 21.10.2025

MedTech developers and manufacturers, could your medical device unknowingly qualify as a “cyber device”? In this episode, Christian and Trevor break down what the FDA considers a “cyber device” and why so many manufacturers misunderstand this definition. They reveal how even basic interfaces like USB, HDMI, or Bluetooth can make a device cyber-enabled—and why that matters for regulatory compliance...

5 Most Common Misconceptions of Medical Device Security 14.10.2025

In this episode, Christian and Trevor unpack the five most common misconceptions that put medical device manufacturers at risk. From confusing data protection with patient safety to misunderstanding what qualifies as a cyber device, the hosts shed light on the blind spots that cause costly delays and compliance failures. They also explore how medical device cybersecurity differs fundamentally from...

What Happens When AI in Medical Devices Make Mistakes? 07.10.2025

MedTech manufacturers and developers, what happens if your AI-powered medical device makes a terrible, life-threatening mistake? This episode explores what happens when artificial intelligence in medical devices goes wrong. Christian Espinosa and Trevor Slattery break down the real-world consequences of AI failure, using a tragic mental health chatbot case to highlight the stakes of inadequate ove...

Medical Device Startups and Cybersecurity Challenges with Suzy Engwall 30.09.2025

What are some of the greatest challenges medical device startups face when bringing their products to market? This episode features Suzy Engwall, a healthcare innovation consultant with experience mentoring startups and guiding hospitals. She joins Christian Espinosa and Trevor Slattery to discuss the hidden roadblocks medical device innovators face—from funding gaps to internal hospital politics...

Top 10 Medical Device Vulnerabilities with Myles Kellerman 23.09.2025

How safe are the medical devices I rely on, and what are the biggest cybersecurity risks I should know about? In this episode, the team goes behind the scenes of real-world medical device penetration testing to reveal the 10 most common and dangerous cybersecurity vulnerabilities found in medical devices. The discussion covers practical examples, industry standards, and actionable advice for manuf...

Overcoming AI and Data Security Challenges in MedTech with May Lee 16.09.2025

How can you prepare your device for future quantum computing risks? In this episode of The Med Device Cyber Podcast, Christian and Trevor talk with May Lee of CS Life Sciences about the fast-changing world of medical device cybersecurity. They discuss the growing regulatory demands from the FDA, EU, and China, and why cybersecurity can no longer be an afterthought in device design. The conversatio...

When Cybersecurity Becomes a Crime 09.09.2025

What happens when cybersecurity flaws in medical devices cross the line into criminal violations? In this episode, Christian and Trevor unpack the groundbreaking case of Illumina, where cybersecurity misrepresentation led to Department of Justice enforcement. They explore how this signals a shift from technical risks to legal and patient safety consequences, highlighting the dangers of cutting cor...

Balancing Innovation and Regulation in MedTech Development with Karandeep Singh Badwal 02.09.2025

How can medtech innovators balance speed with compliance in medical devices? In this episode, Christian and Trevor sit down with Karandeep Singh Badwal about the challenges of balancing innovation with quality and regulatory compliance in medical devices, especially with the rise of AI and software-driven solutions. From cybersecurity gaps to the staggering startup failure rate, the conversation h...

Webinar: Hacking Med Devices—What Penetration Testing Reveals Before the FDA Does 28.08.2025

Cyber threats targeting medical devices are increasingly sophisticated. A single undiscovered vulnerability could delay your FDA submission and put patient safety at risk. Join Blue Goat Cyber’s CTO, Trevor Slattery, and Director of MedTech Cybersecurity, Myles Kellerman, in this webinar as they reveal real-world vulnerabilities uncovered during penetration testing. Gain exclusive insights from ac...

Integrating Project Management to Strengthen Cybersecurity Outcomes with Steve Curry 26.08.2025

What project management mistakes can med tech innovators avoid? What methods and tools can help med tech companies manage projects? In this episode, Christian Espinosa welcomes Steve Curry to explore how strong project management can make or break a med tech company’s cybersecurity readiness. They discuss why many innovators overlook planning, how this oversight causes costly delays, and the benef...

Webinar: Navigating FDA Cybersecurity Compliance: A Guide for RA/QA Professionals 21.08.2025

When you’re working with a manufacturer to ensure that a medical device has strong cybersecurity, what do you need to know from a regulatory perspective? In this episode, Christian and Trevor dive into the current state of cybersecurity, discussing emerging threats and defense strategies. They also explore the role of AI in both cyberattacks and security measures, offering insights into how busine...

Vulnerability, Penetration & Other Cybersecurity Testing Types Explained 19.08.2025

Which cybersecurity tests are the most crucial, and which ones does the FDA require for medical device approval? In this episode, Christian and Trevor break down the many types of cybersecurity testing required for medical devices. They explore the distinctions between vulnerability assessments, penetration testing, and other critical methods like fuzz testing, security requirement testing, and dy...

Listen to the The Med Device Cyber Podcast podcast in Replaio

Radio and podcasts in one app - free, with no sign-up. Install today and do not miss the launch

Get it on Google Play

Replaio is not a podcast publisher; show names, artwork and audio belong to their authors and are distributed through public RSS feeds.