Computerized Systems Used in Medical Device Clinical Investigations



Similar documents
HESI: Fetal Imaging Workshop 21 CFR Part 11 Electronic Records & Signatures. Presented by: Jonathan S. Helfgott

Guidance for Industry Computerized Systems Used in Clinical Investigations

Guidance for Industry COMPUTERIZED SYSTEMS USED IN CLINICAL TRIALS

REGULATIONS COMPLIANCE ASSESSMENT

Guidance for Industry

Role of eclinical Systems in FDA Regulated Studies. Jonathan S. Helfgott

FDA Regulation of Electronic Source Data in Clinical Investigations

Guidance for Industry

GCP INSPECTORS WORKING GROUP <DRAFT> REFLECTION PAPER ON EXPECTATIONS FOR ELECTRONIC SOURCE DOCUMENTS USED IN CLINICAL TRIALS

Nova Southeastern University Standard Operating Procedure for GCP. Title: Electronic Source Documents for Clinical Research Study Version # 1

Full Compliance Contents

Supplement to the Guidance for Electronic Data Capture in Clinical Trials

Tools to Aid in 21 CFR Part 11 Compliance with EZChrom Elite Chromatography Data System. White Paper. By Frank Tontala

Implement best practices by using FileMaker Pro 7 as the backbone of your 21 CFR 11 compliant system.

Eclipsys Sunrise Clinical Manager Enterprise Electronic Medical Record (SCM) and Title 21 Code of Federal Regulations Part 11 (21CFR11)

Agilent MicroLab Software with Spectroscopy Configuration Manager and Spectroscopy Database Administrator (SCM/SDA)

Reflection paper on expectations for electronic source data and data transcribed to electronic data collection tools in clinical trials

InfoCenter Suite and the FDA s 21 CFR part 11 Electronic Records; Electronic Signatures

Sponsor Site Questionnaire FAQs Regarding Maestro Care

LabChip GX/GXII with LabChip GxP Software

Guidance for Industry. 21 CFR Part 11; Electronic. Records; Electronic Signatures. Time Stamps

rsdm and 21 CFR Part 11

Electronic Document and Record Compliance for the Life Sciences

InfinityQS SPC Quality System & FDA s 21 CFR Part 11 Requirements

FDA Title 21 CFR Part 11:Electronic Records; Electronic Signatures; Final Rule (1997)

AutoSave. Achieving Part 11 Compliance. A White Paper

Guidance for Industry. 21 CFR Part 11; Electronic Records; Electronic Signatures. Electronic Copies of Electronic Records

Managing & Validating Research Data

ScreenMaster RVG200 Paperless recorder FDA-approved record keeping. Measurement made easy

DeltaV Capabilities for Electronic Records Management

Final Guidance on Electronic Source Data in Clinical Investigations Promoting esource Data Capture

Management of Imaging Data in Clinical Trials: John Sunderland, Ph.D. Department of Radiology University of Iowa

21 CFR Part 11 Electronic Records & Signatures

DeltaV Capabilities for Electronic Records Management

Self-Assessment of eresearch Compliance with 21 CFR Part 11, Electronic Record; Electronic Signatures

Electronic records and electronic signatures in the regulated environment of the pharmaceutical and medical device industries

ensure prompt restart of critical applications and business activities in a timely manner following an emergency or disaster

The Impact of 21 CFR Part 11 on Product Development

TIBCO Spotfire and S+ Product Family

HIPAA Security Alert

Guidance for electronic trial data capturing of clinical trials

Thermal Analysis. Subpart A General Provisions 11.1 Scope Implementation Definitions.

SUBJECT: SECURITY OF ELECTRONIC MEDICAL RECORDS COMPLIANCE WITH THE HEALTH INSURANCE PORTABILITY AND ACCOUNTABILITY ACT OF 1996 (HIPAA)

Software. For the 21 CFR Part 11 Environment. The Science and Technology of Small Particles

Oracle WebCenter Content

21 CFR PART 11 ELECTRONIC RECORDS, ELECTRONIC SIGNATURES CFR Part 11 Compliance PLA 2.1

Use of Electronic Health Record Data in Clinical Investigations

Compliance Response Edition 07/2009. SIMATIC WinCC V7.0 Compliance Response Electronic Records / Electronic Signatures. simatic wincc DOKUMENTATION

21 CFR Part 11 Compliance Using STATISTICA

Declaration of Conformity 21 CFR Part 11 SIMATIC WinCC flexible 2007

Compliance Matrix for 21 CFR Part 11: Electronic Records

Circular to All Licensed Corporations on Information Technology Management

Risk-Based Approach to 21 CFR Part 11

Guidance for Industry Part 11, Electronic Records; Electronic Signatures Scope and Application

FILEHOLD DOCUMENT MANAGEMENT SYSTEM 21 CFR PART 11 COMPLIANCE WHITE PAPER

Supplier Information Security Addendum for GE Restricted Data

Standard CIP Cyber Security Systems Security Management

Implementation of 21CFR11 Features in Micromeritics Software Software ID

FINAL May Guideline on Security Systems for Safeguarding Customer Information

TASK TDSP Web Portal Project Cyber Security Standards Best Practices

Intland s Medical Template

SECTION 15 INFORMATION TECHNOLOGY

POLICY ISSUES IN E-COMMERCE APPLICATIONS: ELECTRONIC RECORD AND SIGNATURE COMPLIANCE FDA 21 CFR 11 ALPHATRUST PRONTO ENTERPRISE PLATFORM

This is a controlled document. The master document is posted on the JRCO website and any print-off of this document will be classed as uncontrolled.

The Infrastructure Audit Trail and Part 11

Achieving PCI COMPLIANCE with the 2020 Audit & Control Suite.

A ChemoMetec A/S White Paper September 2013

Privacy Impact Assessment (PIA) Waiver Review System (WRS) Version Last Updated: December 2, 2013

U. S. Department of Energy Consolidated Audit Program Checklist 5 Laboratory Information Management Systems Electronic Data Management

Rackspace Archiving Compliance Overview

Electronic Records and Signatures: Compliance with Title 21 CFR Part 11 Requirements

SolidWorks Enterprise PDM and FDA 21CFR Part 11

Manual 074 Electronic Records and Electronic Signatures 1. Purpose

How To Write A Health Care Security Rule For A University

Data Management Policies. Sage ERP Online

Appendix 4-2: Sample HIPAA Security Risk Assessment For a Small Physician Practice

A Nemaris Company. Formal Privacy & Security Assessment For Surgimap version and higher

Software Manual Part IV: FDA 21 CFR part 11. Version 2.20

FDA 21 CFR Part 11 Electronic records and signatures solutions for the Life Sciences Industry

Assessment of Vaisala Veriteq vlog Validation System Compliance to 21 CFR Part 11 Requirements

Spectroscopy Configuration Manager (SCM) Software. 21 CFR Part 11 Compliance Booklet

Meeting the FDA s Requirements for Electronic Records and Electronic Signatures (21 CFR Part 11)

Clinical Data Management Overview

The Bureau of the Fiscal Service. Privacy Impact Assessment

OMCL Network of the Council of Europe QUALITY ASSURANCE DOCUMENT

Teleran PCI Customer Case Study

Procedure Title: TennDent HIPAA Security Awareness and Training

Rajan R. Pant Controller Office of Controller of Certification Ministry of Science & Technology rajan@cca.gov.np

DAIDS Appendix 2 No.: DWD-POL-DM-01.00A2. Data Management Requirements for Central Data Management Facilities

Data Management Unit Research Institute for Health Sciences, Chiang Mai University

21 CFR Part 11 Checklist

Log Management Standard 1.0 INTRODUCTION 2.0 SYSTEM AND APPLICATION MONITORING STANDARD. 2.1 Required Logging

PhlexEarchive: The Right Solution for Electronic Archiving of TMF Content

1. Contact Information. 2. System Information. Privacy Impact Assessment (PIA)

WHITEPAPER Complying with HIPAA LogRhythm and HIPAA Compliance

Transcription:

Computerized Systems Used in Medical Device Clinical Investigations Presented by Jonathan Helfgott Consumer Safety Officer Division of Bioresearch Monitoring Office of Compliance Center for Devices and Radiological Health

Objectives Understand FDA s requirements and expectations for Sponsors, Clinical Investigators, and others using Computerized Systems in Medical Device Clinical Investigations

Overview I. Users and Examples of Computerized Systems used in Clinical Investigations II. FDA Regulatory Requirements & Expectations III. Recommendations from FDA Guidance

Computer Systems in Clinical Investigations are Used By: Clinical Investigators (CIs) Sponsors Institutional Review Boards (IRBs) Study Coordinators (Monitors) Statisticians Data Managers Contract Research Organization (CROs)

Examples of Computerized Systems Used in Clinical Investigations: Electronic Case Report Forms (ecrfs) Electronic Patient Reported Outcomes (epro) Interactive Voice Response System (IVRS) Adverse Event Reporting Systems (AERS) Laboratory Information Management Systems (LIMS) Systems that automatically record data by integrating data from a medical device such as an ECG, Holter- Monitor, MRI, etc

Which Computerized System Should the Sponsor Choose? Design their own systems? Vendor-Purchased Systems? Hybrid- Electronic/Paper Systems?

FDA Regulatory Requirements 21 CFR 812.140(a) requires that participating Clinical Investigators maintain accurate, complete, and current records relating to the Investigator s participation in an investigation 21 CFR 812.140(b) requires Sponsors to maintain accurate, complete, and current records relating to an investigation

FDA Regulatory Requirements All 21 CFR Part 812 regulations apply equally to both paper records and electronic records The use of computerized systems in clinical investigations does not exempt IDEs from any Part 812 regulatory requirement

FDA Guidance, May 2007: Computerized Systems Used in Clinical Investigations Applies to computerized systems used for records in electronic form that are used to create, modify, maintain, archive, retrieve, or transmit clinical data required to be maintained, or submitted to the FDA

FDA Guidance, May 2007: Computerized Systems Used in Clinical Investigations Recommendation Categories: Training of Personnel Internal/ External Security Safeguards Source Documentation and Retention Other System Features Standard Operating Procedures

Training of Personnel All personnel who develop, maintain, or use the computerized systems should be trained Personnel must learn how to perform their assigned tasks Document the computer education, training, and experience

Internal Security Safeguards Access must be limited to authorized individuals Each user should have an individual account Passwords should be changed at established intervals The system should limit and record the number of unauthorized log-in attempts Automatic log off for long idle periods

External Security Safeguards Controls should be established to: Prevent unauthorized external software applications from altering, browsing, querying, or reporting data Prevent, detect, and mitigate effects of computer viruses, worms, or other potentially harmful software code on study data and software (e.g.-firewalls, antivirus, etc )

Source Documentation & Retention When original observations are entered directly into a computerized system, the electronic record is the source document Under 21 CFR 312.62, 511.1(b)(7)(ii) and 812.140, the clinical investigator must retain records required to be maintained under parts 312, 511.1(b), and 812, for a period of time specified in these regulations Applies to the retention of the original source document or a copy of the source document

Additional Recommendations During pre-ide meetings, identify all source documents that will be kept electronically throughout the duration of the Clinical Investigation It might be helpful to provide a detailed schematic of the data flow (e.g.-ecrf in XML format from clinical site Sponsor/CRO/Monitor Data Lock Statistical Review Clinical Report Submission to FDA)

Source Documentation & Retention The information provided to FDA should fully describe and explain how source data were obtained and managed, and how electronic records were used to capture data Maintain a cumulative record that indicates, for any point in time, the names of authorized personnel, their titles, and a description of their access privileges That record should be kept in the study documentation, accessible for use by appropriate study personnel and for inspection by FDA investigators

Other System Features: Direct Entry of Data For direct entry of data, the system should incorporate prompts, flags, or other help features to encourage consistent use of clinical terminology and to alert the user to data that are out of acceptable range

Other System Features: Audit Trails Computer-generated, time-stamped electronic audits trails are the preferred method for tracking changes to electronic source documentation Audit trails or other security methods used to capture electronic record activities should describe when, by whom, and the reason changes were made to the electronic record to ensure that only authorized additions, deletions, or alterations have occurred Ensure that audits cannot be overridden

Standard Operating Procedures Specific procedures and controls should be in place for: System setup/installation System operating manual (User s Manual) Validation and functionality testing Data collection and handling System maintenance (Service/Upgrade Logs)

Additional Recommendations: Identify and document all the specified requirements for the system Ensure that the system is capable of consistently meeting all specified requirements If a Vendor/CRO designed/maintained the system, did they provide you with a validation summary or report? Is there any documented User Site Testing?

Additional Recommendations Identify all the computer and software components used in the system The identification should be a detailed list that includes product names and specific version numbers to keep track of any modifications Sufficient backup and recovery procedures help protect against data loss at clinical sites (e.g. Redundant Servers or Hard-Drives)

Conclusion The intent of FDA s regulatory requirements and guidance is to ensure that electronic records used in clinical investigations are accurate, complete, and current These requirements are important because data is used to support a product s safety and effectiveness