21 cfr part 11 compliance - database integrations

12
www.dbintegrations.com User Compliance: 21 CFR Part 11- eSignature Requirements

Upload: dbiatoms

Post on 07-Nov-2014

1.157 views

Category:

Health & Medicine


1 download

DESCRIPTION

How to comply with 21 CRF Part 11 - eSignature Requirements

TRANSCRIPT

Page 1: 21 CFR Part 11 Compliance - Database Integrations

www.dbintegrations.com

User Compliance:

21 CFR Part 11- eSignature

Requirements

Page 2: 21 CFR Part 11 Compliance - Database Integrations

What is 21 CFR Part 11?

21 CFR Part 11 presents FDA guidelines on electronic records and electronic signatures

• Defines criteria for electronic records and electronic signatures

• Defines responsibilities of FDA-regulated industries regarding controls, audits and validation systems

Page 3: 21 CFR Part 11 Compliance - Database Integrations

Who is responsible for 21 CFR Part

11 compliance?

Compliance responsibility shared by

Sponsor and CRO

• Compliance is technical and procedural

• Systems and users must work together to be

completely compliant

Page 4: 21 CFR Part 11 Compliance - Database Integrations

21 CFR Part 11 Security:

User Responsibilities

• Never share usernames or passwords

• Restrict access to usernames, passwords and emails

– If you use a shared or common email address, request username and password via phone

– Never log on as someone else

Page 5: 21 CFR Part 11 Compliance - Database Integrations

21 CFR Part 11 Security:

System Responsibilities

• Password expiration

– Regular basis (60, 90 days, etc.)

• Verification

– Security questions posed during password reset process

– Do not receive username AND temporary password combination within the SAME email

Page 6: 21 CFR Part 11 Compliance - Database Integrations

21 CFR Part 11 Security:

System Responsibilities

• If temporary passwords are sent via email

– Must be secure or encoded through a secure direct link to your email

– Require change of temporary password after first login

– Passwords must combine upper case, lower case, numbers

Page 7: 21 CFR Part 11 Compliance - Database Integrations

21 CFR Part 11:

e-Signature Requirements

Signature block must contain verification text:

“By my eSignature verification below, I verify that I understand that electronic signatures are legally

binding and have the same meaning as handwritten signatures. Pursuant to section 11.100 of Title 21 of

the Code of Federal Regulations, this is to certify that I confirm that this electronic signature is to be the legally

binding equivalent of my handwritten signature and that the data on this form is accurate to the best of my

knowledge.”

Page 8: 21 CFR Part 11 Compliance - Database Integrations

21 CFR Part 11:

Acknowledgement Form

Require & document acknowledgement:

“I understand that execution of this form constitutes my acknowledgement that I am being provided with an account

name and password, which constitute an electronic signature. Pursuant to section 11.100 of Title 21 of the Code of Federal Regulations, this is to certify that I confirm that this electronic signature is to be the legally binding equivalent of my hand

written signature. I understand that I am responsible for data entered into XX system under my account name and password. I understand that sharing of passwords is illegal, and agree to

keep my password secret. I agree to report any suspected fraudulent use of electronic systems to the Sponsor

immediately”

Page 9: 21 CFR Part 11 Compliance - Database Integrations

21 CFR Part 11 Security:

e-Signing Documents or CRFs

• To be compliant, a system must:

– Prompt user to re-enter username and password before e-signature

– Present clear, visual proof of signature, name, date, signature statement, and time of signature

– Provide history of all signatures (audit trail)

Page 10: 21 CFR Part 11 Compliance - Database Integrations

21 CFR Part 11 Security:

Reports

- To assure system integrity, request reports that show e-signature histories

Page 11: 21 CFR Part 11 Compliance - Database Integrations

If you have additional questions regarding

this slide presentation or anything else

related to compliant systems, please

email us at [email protected]

We are here as a resource and are happy to

provide additional information and insight.

www.dbintegrations.com

Page 12: 21 CFR Part 11 Compliance - Database Integrations

Database Integrations, Inc. 6770 Jamestown Drive

Alpharetta, GA 30005

Office: 678-829-1354

www.dbintegrations.com