1. Software Bill of Materials (SBOM)
SBOM의 구성 범위.
ENA robust SBOM includes both the device manufacturer-developed components and third party components, including purchased/licensed software and open-source software, and the upstream software dependencies that are required/depended upon by proprietary, purchased/licensed, and open-source software.KR견고한 SBOM은 장치 제조사가 개발한 구성요소뿐만 아니라 구매/라이선스된 소프트웨어 및 오픈 소스 소프트웨어를 포함한 제3자 구성요소, 그리고 자사 독점 소프트웨어, 구매/라이선스 소프트웨어, 오픈 소스 소프트웨어가 필요로 하거나 의존하는 상위 소프트웨어 종속성까지 모두 포함합니다.
제조사는 SBOM도 정기적으로 업데이트해야 함.
ENAn SBOM should be maintained as part of the device’s configuration management, be regularly updated to reflect any changes to the software in marketed devices, and should support documentation, such as the types detailed in 21 CFR 820.30(j) (Design History File) and 820.181 (Device Master Record).KRSBOM은 장치의 구성 관리의 일부로 유지되어야 하며, 시장에 출시된 장치의 소프트웨어 변경 사항을 반영하여 정기적으로 업데이트되어야 합니다. 또한, SBOM은 21 CFR 820.30(j) (설계 이력 파일) 및 820.181 (장치 마스터 기록)에 명시된 유형의 문서화를 지원해야 합니다.
시판 전 제출문서는 SBOM을 포함한다.
SBOM은 사용자에게 공개되어야 함.
ENFDA recommends that premarket submissions include SBOM documentation as outlined below. For cyber devices, an SBOM is required (see section 524B(b)(3) of the FD&C Act and Section VII.C.3 of this guidance).KRFDA는 시판 전 제출 문서에 아래에 설명된 SBOM 문서를 포함할 것을 권장합니다. 사이버 장치의 경우, SBOM은 필수입니다(연방식품의약품화장품법(FD&C Act) 제524B(b)(3)조 및 본 지침의 섹션 VII.C.3 참조).
ENSBOMs can also be an important tool for transparency with users of potential risks as part of labeling.KRSBOM은 라벨링의 일환으로 사용자에게 잠재적 위험에 대한 투명성을 제공하는 중요한 도구가 될 수 있습니다.