Principal Consultant - Cybersecurity, Quality & RegulatoryBrindusa Curcaneanu
Connect on LinkedIn ↗Brindusa Curcaneanu is a Quality & Cybersecurity expert with 25+ years of experience across medical devices, pharmaceuticals, and biopharma, specializing in AI-enabled medical devices, regulatory compliance, design controls, and risk management. She brings deep expertise across the Total Product Lifecycle (TPLC), spanning ISO 13485, IEC 62304, ISO 14971, FDA QSR, EU MDR, and MDSAP, with a strong track record of translating regulatory expectations into practical, audit-ready execution. Her career includes quality, regulatory, and cybersecurity roles at NeuroPace, Nevro, RefleXion Medical, Smiths Detection, Illumina, and other medical device and diagnostics companies.
She has extensive experience embedding Secure-by-Design principles into design controls, software lifecycles, and AI/ML systems. Her work spans cybersecurity risk management, SBOM lifecycle governance, AI-specific hazard analysis, model-change controls, PCCPs, and post-market surveillance, aligned with FDA, NIST AI RMF, EU AI Act, and international best practices.
Brindusa is a core contributor to the Health Sector Coordinating Council (HSCC) AI Secure-by-Design Guide and Playbook for Medical Devices, currently in development, helping shape industry guidance at the intersection of AI safety, cybersecurity, and regulatory compliance. She is an active participant in HSCC and CISA task forces, collaborating with regulators, manufacturers, and policy leaders to advance scalable, risk-based frameworks for connected and intelligent medical technologies.
Brindusa presented at HIMSS 2025 on pre-negotiated cybersecurity provisions for medical device contracts, addressing how manufacturers and healthcare providers can proactively manage cyber risk, regulatory expectations, and contractual accountability. Building on that work, she is a contributing author of HSCC's Model Contract-Language for MedTech Cybersecurity v2 (MC2v2), providing template contract language for cybersecurity agreements between device manufacturers and healthcare delivery organizations.
A committed mentor and people leader, Brindusa is actively involved with Women in Cybersecurity (WiCyS), supporting the development of the next generation of cybersecurity and quality professionals. Known for her ability to lead cross-functional teams, strengthen quality systems, and operationalize complex regulations, she champions practical, defensible processes that accelerate safe, compliant innovation.
Let's talk about your device
Whether you're pre-submission or already in the field, we can help you find the right next step.
