{"id":1196,"date":"2010-05-25T11:32:52","date_gmt":"2010-05-25T18:32:52","guid":{"rendered":"https:\/\/blogs.plm.automation.siemens.com\/t5\/Polarion-Blog\/Polarion-Customers-achieve-FDA-CFR-21-Part-11-compliance\/ba-p\/380644"},"modified":"2026-03-26T05:35:46","modified_gmt":"2026-03-26T09:35:46","slug":"polarion-customers-achieve-fda-cfr-21-part-11-compliance","status":"publish","type":"post","link":"https:\/\/blogs.sw.siemens.com\/polarion\/polarion-customers-achieve-fda-cfr-21-part-11-compliance\/","title":{"rendered":"Polarion Customers achieve FDA CFR 21 Part 11 compliance"},"content":{"rendered":"<p><DIV style=\"background-color: #F9F9F9;border: 1px solid #CCCCCC;padding: 3px;font: 11px\/1.4em Arial, sans-serif;margin: 0.5em 0pt 0.5em 0.8em;width:300px;\"><A href=\"http:\/\/community.plm.automation.siemens.com\/legacyfs\/online\/siemensplm_blogs\/2010\/05\/medicalDevice1.png\" rel=\"nofollow noopener noreferrer\"><IMG class=\"alignright size-medium wp-image-807\" title=\"medicalDevice\" alt=\"\" src=\"http:\/\/community.plm.automation.siemens.com\/legacyfs\/online\/siemensplm_blogs\/2010\/05\/medicalDevice1-300x164.png\" width=\"300\" height=\"164\" \/><\/A><DIV style=\"text-align:center;\"> Image: flickr<\/DIV> <\/DIV><\/p>\n<p>The US Food and Drug Administration (FDA) is similar to many organizations embracing software to automate while forced to maintain legacy processes. <STRONG>FDA ruling 21 CFR Part 11<\/STRONG> specifies how electronic records and electronic signatures can be used as a substitute for paper records and handwritten signatures. It is directly applicable to Polarion customers involved with developing and manufacturing pharmaceuticals, medical devices, and research and testing thereof. Here we describe in detail the most challenging requirements of the FDA regulation and how our customers achieve compliance using Polarion without having to remodel or upset their organization\u2019s process, or methods.<br \/>\n<!--more Read more about how Polarion Customers achieve FDA CFR 21 Part 11 compliance--><br \/>\nAccording to the FDA, an \u201celectronic record means any combination of text, graphics, data, audio, pictorial, or other information representation in digital form that is created, modified, maintained, archived, retrieved, or distributed by a computer system.\u201d Polarion refers to these electronic records as artifacts. All electronic records\/artifacts managed by Polarion are maintained in accordance with FDA published rules and guidelines. Here we narrow the focus of this blog to electronic records which the FDA specifies must have electronic signatures.<\/p>\n<p>Electronic signatures are intended to be binding digital equivalents of handwritten signatures. The FDA states that an \u201celectronic signature is a computer data compilation of any symbol or series of symbols executed, adopted, or authorized by an individual to be the legally binding equivalent of the individual\u2019s handwritten signature.\u201d FDA rules specify that each electronic signature shall be unique to one (1) individual and shall not be reused by, or reassigned to, anyone else. The FDA specifically does not equate an electronic signature with proprietary digital signatures provided by vendors such as VeriSign or Adobe.<\/p>\n<p>The intent of this FDA ruling is to ensure there is clear accountability and an irrefutable record of each and every change made during the lifecycle of an artifact. Polarion customers enjoy the benefits of application lifecycle management (ALM) and understand how electronic records are maintained, tracked, and managed throughout their lifecycle of use, reuse, and derivatives thereof. Other pages on the Polarion website detail <A href=\"http:\/\/www.polarion.com\/products\/alm\/\" rel=\"nofollow noopener noreferrer\">ALM<\/A> and <A href=\"http:\/\/www.polarion.com\/products\/requirements\/\" rel=\"nofollow noopener noreferrer\">Requirements Management<\/A>; here we review how our customers use Polarion to achieve <A href=\"http:\/\/www.polarion.com\/products\/medical\/\" rel=\"nofollow noopener noreferrer\">FDA 21 CFR Part 11 compliance<\/A>.<\/p>\n<p><A href=\"http:\/\/community.plm.automation.siemens.com\/legacyfs\/online\/siemensplm_blogs\/2010\/05\/change.png\" rel=\"nofollow noopener noreferrer\"><IMG class=\"size-full wp-image-743 alignleft\" title=\"change_tn\" alt=\"\" src=\"http:\/\/community.plm.automation.siemens.com\/legacyfs\/online\/siemensplm_blogs\/2010\/05\/change_tn.png\" width=\"266\" height=\"81\" \/><\/A>Security practices that limit access to authorized users and hold them accountable for their actions. Access is limited to authorized users by positively identifying user through a unique user name and password. This information is controlled and centrally managed via secure Polarion license server. Every single user change is recorded and immutable.<br \/>\n<DIV class=\"medseparator\" style=\"width: 500px; height: 30px;\"><\/DIV><br \/>\n<A href=\"http:\/\/community.plm.automation.siemens.com\/legacyfs\/online\/siemensplm_blogs\/2010\/05\/release.png\" rel=\"nofollow noopener noreferrer\"><IMG class=\"size-full wp-image-745 alignleft\" title=\"Score Board\" alt=\"Score Board\" src=\"http:\/\/community.plm.automation.siemens.com\/legacyfs\/online\/siemensplm_blogs\/2010\/05\/release_tn.png\" width=\"264\" height=\"117\" \/><\/A>Polarion uses advanced analytics and reporting capabilities in the form of template and customized reports to help increase management oversight. Records can only be read or modified by users with security access and permissions established by administrator on project and\/or global basis.<br \/>\n<DIV class=\"medseparator\" style=\"width: 500px; height: 60px;\"><\/DIV><br \/>\n<A href=\"http:\/\/community.plm.automation.siemens.com\/legacyfs\/online\/siemensplm_blogs\/2010\/05\/workflow.png\" rel=\"nofollow noopener noreferrer\"><IMG class=\"alignleft size-full wp-image-748\" title=\"Configurable and secure workflow\" alt=\"Configurable and secure workflow\" src=\"http:\/\/community.plm.automation.siemens.com\/legacyfs\/online\/siemensplm_blogs\/2010\/05\/workflow_tn.png\" width=\"263\" height=\"127\" \/><\/A>Configurable and secure workflow reduces cycle time by automating routing and approval and incorporating escalation for overdue tasks. Polarion workflow rules manage change and approval routing per your organization\u2019s process, ensuring only those users and\/or only those electronic records with clearance, permission, or pre-requisites achieved are able to receive approval to progress. Work items or electronic records collaboration move along a pre-defined workflow, from one department to the next. Overdue tasks, bottlenecks, resource issues automatically escalate in real time status project plans and notifications.<br \/>\n<DIV class=\"medseparator\" style=\"width: 500px; height: 60px;\"><\/DIV><br \/>\n<A href=\"http:\/\/www.polarion.com\/products\/screenshots2011\/document-history.png\" rel=\"nofollow noopener noreferrer\"><IMG class=\"size-full wp-image-750 alignleft\" title=\"Automatic document control\" alt=\"Automatic document control\" src=\"http:\/\/www.polarion.com\/products\/screenshots2011\/pv_document-history.png\" width=\"223\" height=\"102\" \/><\/A>Automatic document control for revisions to ensure that only the current version of a standard operating procedure is available Full and immutable change history is recorded for each and every electronic record change\/approval, with side by side compare, and full search and query for audit report generation.<br \/>\n<DIV class=\"medseparator\" style=\"width: 500px; height: 40px;\"><\/DIV><br \/>\n<A href=\"http:\/\/community.plm.automation.siemens.com\/legacyfs\/online\/siemensplm_blogs\/2010\/05\/login.png\" rel=\"nofollow noopener noreferrer\"><IMG class=\"alignleft size-full wp-image-751\" title=\"Login\" alt=\"Login\" src=\"http:\/\/community.plm.automation.siemens.com\/legacyfs\/online\/siemensplm_blogs\/2010\/05\/login_tn.png\" width=\"138\" height=\"103\" \/><\/A> The username and password used at login positively, and undeniably, identifies the user. After login, changes and approvals are authenticated using electronic signatures.<br \/>\n<DIV class=\"medseparator\" style=\"width: 500px; height: 70px;\"><\/DIV><br \/>\n<A href=\"http:\/\/community.plm.automation.siemens.com\/legacyfs\/online\/siemensplm_blogs\/2010\/05\/traceability.png\" rel=\"nofollow noopener noreferrer\"><IMG class=\"size-full wp-image-754 alignleft\" title=\"traceability_tn\" alt=\"Traceability\" src=\"http:\/\/community.plm.automation.siemens.com\/legacyfs\/online\/siemensplm_blogs\/2010\/05\/traceability_tn.png\" width=\"192\" height=\"84\" \/><\/A>Accurate traceability maintained for all electronic records, throughout the entire lifecycle, including electronic signatures used for changes and approvals.<br \/>\n<DIV class=\"medseparator\" style=\"width: 500px; height: 60px;\"><\/DIV><br \/>\n<A href=\"http:\/\/www.polarion.com\/products\/screenshots2011\/import-document-word-overlay.png\" rel=\"nofollow noopener noreferrer\"><IMG class=\"alignleft size-full wp-image-757\" title=\"Live Doc\" alt=\"Live Doc\" src=\"http:\/\/www.polarion.com\/products\/screenshots2011\/pv_import-document-word-overlay.png\" width=\"217\" height=\"86\" \/><\/A>Polarion\u2019s \u201cimport-export round trip\u201d with MS Office is light years beyond all competitors for document control, version management, issue tracking, ease of use and fast adoption.<br \/>\n<DIV class=\"medseparator\" style=\"width: 500px; height: 50px;\"><\/DIV><br \/>\n<A href=\"http:\/\/www.polarion.com\/products\/screenshots2011\/documents_signature.png\" rel=\"nofollow noopener noreferrer\"><IMG class=\"alignleft size-full wp-image-757\" title=\"Live Doc\" alt=\"Live Doc\" src=\"http:\/\/www.polarion.com\/products\/screenshots2011\/pv_documents_signature.png\" width=\"217\" height=\"86\" \/><\/A><br \/>\nPolarion\u2019s management of electronic records is second to none. Electronic signatures for whatever process, artifacts, work items, or documents you choose are completely automated.<br \/>\n<DIV class=\"medseparator\" style=\"width: 500px; height: 50px;\"><\/DIV><br \/>\n<A href=\"http:\/\/community.plm.automation.siemens.com\/legacyfs\/online\/siemensplm_blogs\/2010\/05\/ea.png\" rel=\"nofollow noopener noreferrer\"><IMG class=\"alignleft size-full wp-image-758\" title=\"Integration\" alt=\"Integration\" src=\"http:\/\/community.plm.automation.siemens.com\/legacyfs\/online\/siemensplm_blogs\/2010\/05\/ea_tn.png\" width=\"213\" height=\"156\" \/><\/A>Polarion uniquely integrates and manages any electronic record, document type, or format from CAD through UML to MS Office, regardless of the software used to create them.<br \/>\n<DIV class=\"medseparator\" style=\"width: 500px; height: 140px;\"><\/DIV><br \/>\n<A href=\"http:\/\/community.plm.automation.siemens.com\/legacyfs\/online\/siemensplm_blogs\/2010\/05\/webbased.png\" rel=\"nofollow noopener noreferrer\"><IMG class=\"size-full wp-image-759 alignleft\" title=\"Polarion is web based\" alt=\"Polarion is web based\" src=\"http:\/\/community.plm.automation.siemens.com\/legacyfs\/online\/siemensplm_blogs\/2010\/05\/webbased_tn.png\" width=\"208\" height=\"135\" \/><\/A>Polarion is Web-based so that it can connect all employees, partners, suppliers involved from virtually anywhere. Polarion provides a centralized repository for easy access and collaboration by all authorized users. Polarion also provides off-line clients at no additional charge!<br \/>\n<DIV class=\"medseparator\" style=\"width: 500px; height: 90px;\"><\/DIV><br \/>\n<A href=\"http:\/\/community.plm.automation.siemens.com\/legacyfs\/online\/siemensplm_blogs\/2010\/05\/sdk.png\" rel=\"nofollow noopener noreferrer\"><IMG class=\"alignleft size-full wp-image-760\" title=\"Polarion SDK\" alt=\"Polarion SDK\" src=\"http:\/\/community.plm.automation.siemens.com\/legacyfs\/online\/siemensplm_blogs\/2010\/05\/sdk_tn.png\" width=\"220\" height=\"130\" \/><\/A>Polarion is totally open via API and Web Services. Please check out the <A href=\"http:\/\/www.polarion.com\/products\/extensions\/index.php\" rel=\"nofollow noopener noreferrer\">POP site<\/A> to see examples of how easy it is for Polarion customers to integrate with any third party application or create their own extensions and customizations.<br \/>\n<DIV class=\"medseparator\" style=\"width: 500px; height: 70px;\"><\/DIV><br \/>\n<A href=\"http:\/\/community.plm.automation.siemens.com\/legacyfs\/online\/siemensplm_blogs\/2010\/05\/reuse.png\" rel=\"nofollow noopener noreferrer\"><IMG class=\"size-full wp-image-761 alignleft\" title=\"Reusable Templates and Modules\" alt=\"Reusable Templates and Modules\" src=\"http:\/\/community.plm.automation.siemens.com\/legacyfs\/online\/siemensplm_blogs\/2010\/05\/reuse_tn.png\" width=\"196\" height=\"106\" \/><\/A>Polarion out of the box provides industry proven processes to get you going fast. These templates and modules may be reused, customized or used as examples to create your own. . There is a powerful <A href=\"http:\/\/extensions.polarion.com\/polarion\/extensions\/extension.jsp?extension=PE-44\" rel=\"nofollow noopener noreferrer\">template for IEC 62304 compliance<\/A> on the POP site.<br \/>\n<DIV class=\"medseparator\" style=\"width: 500px; height: 50px;\"><\/DIV><br \/>\n<A href=\"http:\/\/community.plm.automation.siemens.com\/legacyfs\/online\/siemensplm_blogs\/2010\/05\/lucene.png\" rel=\"nofollow noopener noreferrer\"><IMG class=\"alignleft size-full wp-image-762\" title=\"Lucene Search Engine\" alt=\"Lucene Search Engine\" src=\"http:\/\/community.plm.automation.siemens.com\/legacyfs\/online\/siemensplm_blogs\/2010\/05\/lucene_tn.png\" width=\"210\" height=\"80\" \/><\/A>Polarion\u2019s award winning Lucene on steroids hybrid search engine is part of all our products. A search window is available throughout the application. All reports may be saved on a project or global basis for others to use.<br \/>\n<DIV class=\"medseparator\" style=\"width: 500px; height: 30px;\"><\/DIV><br \/>\nPolarion provides a secure, time-stamped audit trail far exceeding all requirements for IEC 62304 and FDA 21 CFR Part 11 compliance.<br \/>\n<DIV class=\"medseparator\" style=\"width: 500px; height: 30px;\"><\/DIV><br \/>\n<STRONG>The following chart provides a detailed assessment of how Polarion satisfies the electronic signature requirements for FDA 21 CFR Part 11, Subpart C.<\/STRONG><br \/>\n<H3>FDA 21 CFR Part 11, Subpart C\u2014Electronic Signatures<\/H3><br \/>\n<TABLE style=\"margin-top: 1em; border-left: 1px solid #CCC; border-collapse: collapse;\" border=\"0\" cellspacing=\"0\" cellpadding=\"3\"><br \/>\n<TBODY><br \/>\n<TR><br \/>\n<TD style=\"color: white; background-color: #00aeef;\" colspan=\"2\" valign=\"top\"><STRONG>11.100 General requirements.<\/STRONG><\/TD><br \/>\n<\/TR><br \/>\n<TR><br \/>\n<TD style=\"vertical-align: top; border-right: 1px solid #CCC; border-bottom: 1px solid #CCC;\" width=\"50%\">(a) Each electronic signature shall be unique to one individual and shall not be reused by, or reassigned to, anyone else.<\/TD><br \/>\n<TD style=\"vertical-align: top; border-right: 1px solid #CCC; border-bottom: 1px solid #CCC;\">The unique username and password combination required by Polarion ensures the user is authenticated when logging in. All records created by a user are permanently linked to the user and recorded and versioned by Polarion. The Administrator can configure the system so that passwords cannot be reused. Many customers also integrate Polarion with their LDAP\/Active Directory.<\/TD><br \/>\n<\/TR><br \/>\n<TR><br \/>\n<TD style=\"vertical-align: top; border-right: 1px solid #CCC; border-bottom: 1px solid #CCC;\">(b) Before an organization establishes, assigns, certifies, or otherwise sanctions an individual&#8217;s electronic signature, or any element of such electronic signature, the organization shall verify the identity of the individual.<\/TD><br \/>\n<TD style=\"vertical-align: top; border-right: 1px solid #CCC; border-bottom: 1px solid #CCC;\">The customer is responsible for this requirement, not Polarion.<\/TD><br \/>\n<\/TR><br \/>\n<TR><br \/>\n<TD style=\"vertical-align: top; border-right: 1px solid #CCC; border-bottom: 1px solid #CCC;\">(c) Persons using electronic signatures shall, prior to or at the time of such use, certify to the agency that the electronic signatures in their system, used on or after August 20, 1997, are intended to be the legally binding equivalent of traditional handwritten signatures.<\/TD><br \/>\n<TD style=\"vertical-align: top; border-right: 1px solid #CCC; border-bottom: 1px solid #CCC;\">The customer is responsible for this requirement, not Polarion.<\/TD><br \/>\n<\/TR><br \/>\n<TR><br \/>\n<TD style=\"vertical-align: top; border-right: 1px solid #CCC; border-bottom: 1px solid #CCC;\">(1) The certification shall be submitted in paper form and signed with a traditional handwritten signature, to the Office of Regional Operations (HFC\u2013100), 5600 Fishers Lane, Rockville, MD 20857.<\/TD><br \/>\n<TD style=\"vertical-align: top; border-right: 1px solid #CCC; border-bottom: 1px solid #CCC;\">The customer is responsible for this requirement, not Polarion.<\/TD><br \/>\n<\/TR><br \/>\n<TR><br \/>\n<TD style=\"vertical-align: top; border-right: 1px solid #CCC; border-bottom: 1px solid #CCC;\">(2) Persons using electronic signatures shall, upon agency request, provide additional certification or testimony that a specific electronic signature is the legally binding equivalent of the signer&#8217;s handwritten signature.<\/TD><br \/>\n<TD style=\"vertical-align: top; border-right: 1px solid #CCC; border-bottom: 1px solid #CCC;\">The customer is responsible for this requirement, not Polarion.<\/TD><br \/>\n<\/TR><br \/>\n<TR><br \/>\n<TD style=\"color: white; background-color: #00aeef; vertical-align: top; border-right: 1px solid #CCC; border-bottom: 1px solid #CCC;\" colspan=\"2\" valign=\"top\"><STRONG>11.200&nbsp;&nbsp;&nbsp;Electronic signature components and controls.<\/STRONG><\/TD><br \/>\n<\/TR><br \/>\n<TR><br \/>\n<TD style=\"vertical-align: top; border-right: 1px solid #CCC; border-bottom: 1px solid #CCC;\">(a) Electronic signatures that are not based upon biometrics shall:<\/TD><br \/>\n<TD style=\"vertical-align: top; border-right: 1px solid #CCC; border-bottom: 1px solid #CCC;\"><\/TD><br \/>\n<\/TR><br \/>\n<TR><br \/>\n<TD style=\"vertical-align: top; border-right: 1px solid #CCC; border-bottom: 1px solid #CCC;\">(1) Employ at least two distinct identification components such as an identification code and password.<\/TD><br \/>\n<TD style=\"vertical-align: top; border-right: 1px solid #CCC; border-bottom: 1px solid #CCC;\">Polarion requires the user name and password combination to uniquely identify the user logging into the system. Privileges and access to actions are controlled by the security settings applied to the user. The security settings to which the user belongs are determined by an administrator who has appropriate security access to manage such groups.<\/TD><br \/>\n<\/TR><br \/>\n<TR><br \/>\n<TD style=\"vertical-align: top; border-right: 1px solid #CCC; border-bottom: 1px solid #CCC;\">(i) When an individual executes a series of signings during a single, continuous period of controlled system access, the first signing shall be executed using all electronic signature components; subsequent signings shall be executed using at least one electronic signature component that is only executable by, and designed to be used only by, the individual.<\/TD><br \/>\n<TD style=\"vertical-align: top; border-right: 1px solid #CCC; border-bottom: 1px solid #CCC;\">Polarion requires the user initiate a continuous period of controlled system access with a username and password combination. Each action that the individual executes within this period creates a historical record that contains information about the action and user.<br \/>\nThe username and password used at login positively, and undeniably, identifies the user.<br \/>\nIn subsequent signings, the Administrator can specify whether the password alone is sufficient for electronic signatures or that the username and password are both required.<\/TD><br \/>\n<\/TR><br \/>\n<TR><br \/>\n<TD style=\"vertical-align: top; border-right: 1px solid #CCC; border-bottom: 1px solid #CCC;\">(ii) When an individual executes one or more signings not performed during a single, continuous period of controlled system access, each signing shall be executed using all of the electronic signature components.<\/TD><br \/>\n<TD style=\"vertical-align: top; border-right: 1px solid #CCC; border-bottom: 1px solid #CCC;\">Polarion requires the user initiate a continuous period of controlled system access with a username and password combination. Each action that the individual executes within this period creates a historical record that contains information about the action and user.<\/TD><br \/>\n<\/TR><br \/>\n<TR><br \/>\n<TD style=\"vertical-align: top; border-right: 1px solid #CCC; border-bottom: 1px solid #CCC;\">(2) Be used only by their genuine owners; and<\/TD><br \/>\n<TD style=\"vertical-align: top; border-right: 1px solid #CCC; border-bottom: 1px solid #CCC;\">The customer is responsible for this requirement, not Polarion.<\/TD><br \/>\n<\/TR><br \/>\n<TR><br \/>\n<TD style=\"vertical-align: top; border-right: 1px solid #CCC; border-bottom: 1px solid #CCC;\">(3) Be administered and executed to ensure that attempted use of an individual&#8217;s electronic signature by anyone other than its genuine owner requires collaboration of two or more individuals.<\/TD><br \/>\n<TD style=\"vertical-align: top; border-right: 1px solid #CCC; border-bottom: 1px solid #CCC;\">Polarion Administrators can set strong password rules, password can be encrypted, and Polarion may be integrated with LDAP for additional controls and authentication.<\/TD><br \/>\n<\/TR><br \/>\n<TR><br \/>\n<TD style=\"vertical-align: top; border-right: 1px solid #CCC; border-bottom: 1px solid #CCC;\">(b) Electronic signatures based upon biometrics shall be designed to ensure that they cannot be used by anyone other than their genuine owners.<\/TD><br \/>\n<TD style=\"vertical-align: top; border-right: 1px solid #CCC; border-bottom: 1px solid #CCC;\">The customer is responsible for this requirement, not Polarion.<\/TD><br \/>\n<\/TR><br \/>\n<TR><br \/>\n<TD style=\"color: white; background-color: #00aeef;\" colspan=\"2\" valign=\"top\"><STRONG>11.300&nbsp;&nbsp;&nbsp;Controls for identification codes\/passwords.<\/STRONG><\/TD><br \/>\n<\/TR><br \/>\n<TR><br \/>\n<TD style=\"vertical-align: top; border-right: 1px solid #CCC; border-bottom: 1px solid #CCC;\">Persons who use electronic signatures based upon use of identification codes in combination with passwords shall employ controls to ensure their security and integrity. Such controls shall include:<\/TD><br \/>\n<TD style=\"vertical-align: top; border-right: 1px solid #CCC; border-bottom: 1px solid #CCC;\"><\/TD><br \/>\n<\/TR><br \/>\n<TR><br \/>\n<TD style=\"vertical-align: top; border-right: 1px solid #CCC; border-bottom: 1px solid #CCC;\">(a) Maintaining the uniqueness of each combined identification code and password, such that no two individuals have the same combination of identification code and password.<\/TD><br \/>\n<TD style=\"vertical-align: top; border-right: 1px solid #CCC; border-bottom: 1px solid #CCC;\">Polarion Administrators can set strong password rules, password may be encrypted; no two individuals may have the same combination of user name and password. Polarion may also be integrated with LDAP for additional controls and authentication.<\/TD><br \/>\n<\/TR><br \/>\n<TR><br \/>\n<TD style=\"vertical-align: top; border-right: 1px solid #CCC; border-bottom: 1px solid #CCC;\">(b) Ensuring that identification code and password issuances are periodically checked, recalled, or revised (e.g., to cover such events as password aging).<\/TD><br \/>\n<TD style=\"vertical-align: top; border-right: 1px solid #CCC; border-bottom: 1px solid #CCC;\">Polarion Administrators can manage and reset user names and passwords. Polarion may also be integrated with LDAP for additional controls and authentication.<\/TD><br \/>\n<\/TR><br \/>\n<TR><br \/>\n<TD style=\"vertical-align: top; border-right: 1px solid #CCC; border-bottom: 1px solid #CCC;\">(c) Following loss management procedures to electronically deauthorize lost, stolen, missing, or otherwise potentially compromised tokens, cards, and other devices that bear or generate identification code or password information, and to issue temporary or permanent replacements using suitable, rigorous controls.<\/TD><br \/>\n<TD style=\"vertical-align: top; border-right: 1px solid #CCC; border-bottom: 1px solid #CCC;\">Polarion Administrators can manage and reset user names and passwords. Polarion may also be integrated with LDAP for additional controls and authentication<\/TD><br \/>\n<\/TR><br \/>\n<TR><br \/>\n<TD style=\"vertical-align: top; border-right: 1px solid #CCC; border-bottom: 1px solid #CCC;\">(d) Use of transaction safeguards to prevent unauthorized use of passwords and\/or identification codes, and to detect and report in an immediate and urgent manner any attempts at their unauthorized use to the system security unit, and, as appropriate, to organizational management.<\/TD><br \/>\n<TD style=\"vertical-align: top; border-right: 1px solid #CCC; border-bottom: 1px solid #CCC;\">Polarion can detect, block, and report unauthorized access attempts. Polarion may also be integrated with LDAP for additional controls and authentication<STRONG>.<\/STRONG><\/TD><br \/>\n<\/TR><br \/>\n<TR><br \/>\n<TD style=\"vertical-align: top; border-right: 1px solid #CCC; border-bottom: 1px solid #CCC;\">(e) Initial and periodic testing of devices, such as tokens or cards, that bear or generate identification code or password information to ensure that they function properly and have not been altered in an unauthorized manner.<\/TD><br \/>\n<TD style=\"vertical-align: top; border-right: 1px solid #CCC; border-bottom: 1px solid #CCC;\">The customer is responsible for this requirement, not Polarion.<\/TD><br \/>\n<\/TR><br \/>\n<\/TBODY><br \/>\n<\/TABLE><br \/>\n<H2><A onclick=\"openBrWindow(this.href,'regWin','left=20,top=20,width=620,height=590,toolbar=0,resizable=1,scrollbars=1,status=0'); return false;\" href=\"http:\/\/www.polarion.com\/user\/direct_register.php?dl=Polarion_FDA_CFR_21_Part_11_Compliance.pdf\" rel=\"nofollow noopener noreferrer\">Download this article in PDF<\/A><\/H2><br \/>\n<SPAN style=\"color: #ffffff;\">Polarion<\/SPAN><\/p>\n","protected":false},"excerpt":{"rendered":"<p>Image: flickr   <\/p>\n<p>The US Food and Drug Administration (FDA) is similar to many organizations embracing software to automate while forced to maintain legacy processes. FDA ruling 21 CFR Part 11 specif&#8230;<\/p>\n","protected":false},"author":57253,"featured_media":0,"comment_status":"open","ping_status":"open","sticky":false,"template":"","format":"standard","meta":{"spanish_translation":"","french_translation":"","german_translation":"","italian_translation":"","polish_translation":"","japanese_translation":"","chinese_translation":"","footnotes":""},"categories":[1],"tags":[],"industry":[],"product":[],"coauthors":[],"class_list":["post-1196","post","type-post","status-publish","format-standard","hentry","category-news"],"_links":{"self":[{"href":"https:\/\/blogs.sw.siemens.com\/polarion\/wp-json\/wp\/v2\/posts\/1196","targetHints":{"allow":["GET"]}}],"collection":[{"href":"https:\/\/blogs.sw.siemens.com\/polarion\/wp-json\/wp\/v2\/posts"}],"about":[{"href":"https:\/\/blogs.sw.siemens.com\/polarion\/wp-json\/wp\/v2\/types\/post"}],"author":[{"embeddable":true,"href":"https:\/\/blogs.sw.siemens.com\/polarion\/wp-json\/wp\/v2\/users\/57253"}],"replies":[{"embeddable":true,"href":"https:\/\/blogs.sw.siemens.com\/polarion\/wp-json\/wp\/v2\/comments?post=1196"}],"version-history":[{"count":1,"href":"https:\/\/blogs.sw.siemens.com\/polarion\/wp-json\/wp\/v2\/posts\/1196\/revisions"}],"predecessor-version":[{"id":1197,"href":"https:\/\/blogs.sw.siemens.com\/polarion\/wp-json\/wp\/v2\/posts\/1196\/revisions\/1197"}],"wp:attachment":[{"href":"https:\/\/blogs.sw.siemens.com\/polarion\/wp-json\/wp\/v2\/media?parent=1196"}],"wp:term":[{"taxonomy":"category","embeddable":true,"href":"https:\/\/blogs.sw.siemens.com\/polarion\/wp-json\/wp\/v2\/categories?post=1196"},{"taxonomy":"post_tag","embeddable":true,"href":"https:\/\/blogs.sw.siemens.com\/polarion\/wp-json\/wp\/v2\/tags?post=1196"},{"taxonomy":"industry","embeddable":true,"href":"https:\/\/blogs.sw.siemens.com\/polarion\/wp-json\/wp\/v2\/industry?post=1196"},{"taxonomy":"product","embeddable":true,"href":"https:\/\/blogs.sw.siemens.com\/polarion\/wp-json\/wp\/v2\/product?post=1196"},{"taxonomy":"author","embeddable":true,"href":"https:\/\/blogs.sw.siemens.com\/polarion\/wp-json\/wp\/v2\/coauthors?post=1196"}],"curies":[{"name":"wp","href":"https:\/\/api.w.org\/{rel}","templated":true}]}}