Assesses software products to determine whether they meet the criteria for classification as Software as a Medical Device (SaMD). Conducts hazard identification and risk assessments in accordance with ISO 14971. Produces and maintains documentation to demonstrate compliance with the UK Medical Device Regulation (MDR), including the creation and maintenance of the Risk Management File and supports the regulatory lead in the production and ongoing integrity of the technical file and Quality Management System. Manages updates to documentation and safety cases throughout the device lifecycle, ensuring post-market surveillance, incident reporting and change control processes are embedded to maintain ongoing regulatory compliance.
SFIA Skills: Risk management (BURM)
Risk management (BURM) (Level 6)
Plans and manages the implementation of organisation-wide processes and procedures, tools and techniques for clinical risk management associated with digital systems. Manages clinical safety risk assessment activities within the organisation. Develops clinical risk management processes and procedures, and identifies and deploys appropriate tools and techniques (e.g. SWIFT, FMEA).
Patient safety risk (BURM) (Level 6)
Appraises patient safety risk in the procurement, design, development, deployment and decommissioning of information systems and technologies and ensures that all risk is assessed and managed appropriately to minimise or avoid harm.
Implementation and resources (BURM) (Level 6)
Plans and manages the implementation of organisation-wide processes and procedures, tools and techniques for the identification, assessment, and management of clinical risk inherent in the operation of processes and of potential risks arising from planned IT-enabled change.
Guidance (BURM) (Level 6)
Provides clinical safety leadership across the organisation, guiding the development and implementation of clinical risk management strategies. Advises on the design and operation of the organisation-wide clinical risk management system.
Risk strategy, processes and monitoring (BURM) (Level Six)
Identifies and categorises organisation-wide strategic and operational risks. Breaks down risks by sub-categories, such as compliance, architecture, environment, financial etc. and considers mitigation activities in the context of organisational risk appetite.
Risk countermeasures and response (BURM) (Level Six)
Advises on the evaluation of identified risks (including probability/frequency of occurrence, impact and severity). Advises on appropriate action, including contingency planning, and countermeasures.
Risk strategy, processes and monitoring (BURM) (Level 5)
Monitors status of risks, and reports status and need for action to key stakeholders.
Risk countermeasures and response (BURM) (Level 5)
Coordinates response to quantified risks, which may involve acceptance/retention, transfer, reduction or avoidance/elimination. Coordinates the development of countermeasures and contingency plans.
Financial awareness (BURM) (Level 5)
Demonstrates financial awareness as a part of risk management (e.g. cost-effectiveness analysis of proposed counter measures).
Risk strategy, processes and monitoring (BURM) (Level 4)
Monitors status of risks, and reports status and need for action to senior colleagues.
Risk countermeasures and response (BURM) (Level 4)
Assists with development of agreed countermeasures and contingency plans.
Financial awareness (BURM) (Level 4)
Demonstrates financial awareness as a part of risk management (e.g. cost-effectiveness analysis of proposed counter measures).
Risk strategy, processes and monitoring (BURM) (Level 3)
Maintains documentation of risks, threats, vulnerabilities and mitigation actions.
