FDA is Working on a Threat Modeling Playbook
Cyber experts at FDA unpack how it is shaping guidance for threat modeling to secure medical devices and health data.

The Food and Drug Administration (FDA), as part of a collaborative effort with industry, is developing and will soon release a playbook of best practices for threat modeling to bolster cybersecurity postures across industry and government.
Threat modeling is a structured process that works to identify potential security threats and vulnerabilities, quantify the seriousness of each and prioritize techniques to mitigate attack and protect IT resources. This type of modeling enables FDA to move toward verifiable security control.
Over the past year, FDA has engaged with the Medical Device Innovation Consortium (MDIC) and industry to conduct threat modeling bootcamps to drive adoption of threat modeling throughout the medical device ecosystem. The team is currently developing a playbook based on its lessons learned to increase the outreach and adoption of threat modeling best practices for medical devices.
“Threat modeling has become a recognized cybersecurity best practice,” Jessica Wilkerson, Cyber Policy Advisor at FDA, said during the agency’s Webinar for Medical Device Cybersecurity Threat Modeling. “Many organizations in both private and public sectors recommend threat modeling to help manage and respond to cyber security risks … but it’s very complex and requires an incredibly involved and an incredibly specialized set of knowledge and expertise to really effectively apply.”
The playbook is divided into four parts, focusing on different threat modeling techniques as well as the challenges organizations face in applying these techniques:
- Understand the medical device and how it operates
- Understand where an organization’s weaknesses and vulnerabilities lie
- Understand how to manage threats by eliminating, mitigating, accepting or transferring risk
- Understand that threat modeling is a continuous process.
To implement these recommendations for threat modeling, throughout both the development life cycle and organization, the playbook focuses on three elements: cybersecurity risk assessment, design controls and continuous improvement. These elements will ensure that organizations are continuously evaluating IT environments, development processes and vulnerabilities to bolster security and inform risk assessments.
“It’s the cousin to hazard analysis. The idea is that it’s very difficult to make scientific claims about medical device security if a manufacturer doesn’t provide a reasonable and reputable threat model specific to the device,” Kevin Fu, acting director for medical device cybersecurity at FDA’s Center for Devices and Radiological Health, said during FDA’s Science Forum earlier this year.
While the threat modeling playbook is catered to medical devices, the techniques used in the playbook can also be applied to software and other domains, then integrated throughout the development life cycle.
The playbook is meant to focus on threat modeling and how it fits into an organization’s larger processes, as opposed to serve as a prescriptive or best practice for overall cyber security risk-assessment processes, said FDA Cybersecurity Policy Analyst Matthew Hazelett.
“We just wanted to do some level setting and framing. The primary focus of the playbook is around threat modeling,” Hazelett said. “The playbook itself is not intended to provide or serve as a best practice on overall cybersecurity, risk assessment methodology.”
Wilkerson said that the playbook is not intended to be a “how-to” guide or checklist, but instead to be used as an educational resource. It will be very comprehensive and walk organizations through, from beginning to end, how they might effectively model. The playbook team plans to publish its work in the fourth quarter of 2021.
“This has been quite the undertaking and we are incredibly excited to be able to share this work with you,” Wilkerson said.
This is a carousel with manually rotating slides. Use Next and Previous buttons to navigate or jump to a slide with the slide dots
-
New Army Acquisition Plan Cites Autonomy, Predictive Analytics
Officials outline how the Army Transformation Initiative signals a broader shift toward efficiency with tech and acquisition reform.
4m read -
DOE National Labs Launch New AI Tools for Operational Efficiency
The Energy Department's National Laboratories are using AI to increase operational efficiency and drive research efforts forward.
3m read -
Human-AI Collaboration is Key to Secure Government Systems
Former CIA security chief emphasizes training and international standards for effective AI implementation.
23m watch -
Air Force, Coast Guard Talk Data Security Efforts for AI Development
The services' AI initiatives include efforts like creating clean training data, countering data poisoning and bridging siloed teams.
4m read -
Powering Defense with Transparent AI
AI and data innovation are transforming the Defense Department’s operations through cutting-edge initiatives.
20m read -
How Integrated Analytics Can Break Federal Data Silos
The Coleridge Initiative is leading the charge to modernize government data management, breaking down bureaucratic barriers by providing secure data access, advanced analytics and cross-agency collaboration tools.
11m watch -
Federal AI Infrastructure Requires a Smarter Foundation
Federal AI depends on a smarter infrastructure, from managing environmental impacts to improving data quality and workforce readiness.
4m read -
GSA Positions Itself as a Federal AI 'Enabler,' CAIO Says
CAIO Zach Whitman says the agency is focusing on "grounded practicality" in AI adoption throughout government.
5m read -
Harnessing AI for Data-Driven Resilience
Federal and industry leaders are modernizing data to ensure AI outputs are reliable and able to support resiliency efforts as threats continue to rise.
20m read -
DOD Prioritizes Data Agility with Risk-Based Shift, SWFT Program
DOD faces growing pressure to overcome legacy barriers and adopt agile, risk-based strategies exemplified in DOD’s new SWFT program.
4m read -
Navy’s Military Sealift Command Upgrades IT to Ensure Health Care Continuity
The Navy's Military Sealift Command is modernizing its IT infrastructure and consolidating data centers to improve health care and save costs.
3m read -
Technology Modernization Drives a More Efficient Government
Federal agencies are modernizing tech, data and cybersecurity to streamline operations, boost efficiency and improve government services.
20m read