Part 11 Never Required a Password

Michael Martone examines what 21 CFR Part 11 actually requires for electronic signatures: two distinct identification components and a signature only its owner can produce—not password re-entry. Modern passwordless SSO, controlled sessions, reauthentication, and an owner-only signing component can provide stronger identity assurance without freezing 1997 technology into the rule.
Get the full report
Thank you! Your submission has been received!
Oops! Something went wrong while submitting the form.