Check MDSAP Certification for Single Audit Covering Canada and US

24,Apr,2026

page views:

In the increasingly interconnected world of medical device regulation, manufacturers face the daunting task of navigating multiple, often overlapping quality system requirements. For companies targeting both Canada and the United States, the Medical Device Single Audit Program (MDSAP) offers a transformative solution. This program allows a single, recognized auditing organization to conduct one audit that satisfies the regulatory requirements of multiple jurisdictions simultaneously. If you are planning to market devices in Canada and the US, understanding how to check and leverage MDSAP certification can save time, reduce costs, and streamline your compliance strategy.

The core benefit of MDSAP is its ability to replace separate audits for each participating country. Instead of undergoing a Health Canada audit under the Canadian Medical Devices Regulations (CMDR) and a separate US Food and Drug Administration (FDA) inspection under 21 CFR Part 820 (soon to be replaced by ISO 13485-based QMSR), a single MDSAP audit covers both. For Canada, MDSAP is mandatory. Since January 1, 2019, Health Canada requires all medical device manufacturers seeking or maintaining a Medical Device Establishment License (MDEL) or a Medical Device Licence (MDL) to hold a valid MDSAP certificate. For the US, the FDA participates in MDSAP on a voluntary basis, but it is highly recommended. Holding MDSAP certification can significantly reduce the frequency of FDA routine inspections, as the FDA will generally accept MDSAP audit reports in lieu of its own inspections, provided the manufacturer has a satisfactory compliance history.

So, how do you check if your MDSAP certification is valid and covers both Canada and the US? First, you must verify that the certification was issued by an MDSAP-recognized Auditing Organization (AO). Certifying bodies such as BSI, DNV, TÜV SÜD, and others are authorized to conduct these audits. Each certificate should clearly list the participating regulatory authorities for which the audit is valid. When reviewing your certificate, look for the specific marking indicating “Canada – Health Canada” and “United States – FDA”. Some certificates may also include flags or logos representing each accepted authority. Additionally, the certificate must reference the applicable international standard—usually ISO 13485:2016, which serves as the base standard for MDSAP audits, in addition to country-specific regulatory requirements.

To ensure ongoing compliance, you must also check the status of your certificate with the MDSAP online database, which is maintained by the FDA or the Regulatory Authority Council. This database allows manufacturers, importers, and regulators to verify the current status of any MDSAP certificate number. A certificate that is “Suspended” or “Withdrawn” will not be accepted by either Health Canada or the FDA. Furthermore, the audit cycle must be maintained. MDSAP requires an initial full audit, followed by annual surveillance audits, and a recertification audit every three years. Missing a surveillance audit can invalidate your certification for both Canada and the US simultaneously.

For manufacturers already holding separate Certificates of Registration for Canada and the US, transitioning to a single MDSAP audit requires careful planning. You must select an AO that is recognized by all the authorities you need. During the transition audit, the auditor will assess your quality management system against the requirements of ISO 13485, as well as the specific regulatory requirements unique to Canada (such as recall reporting and medical device incident reporting under CMDR) and the US (including premarket notification, establishment registration, and device listing). The audit report will be shared with each participating authority, ensuring unified transparency.

One common pitfall is assuming that MDSAP covers all aspects of US FDA requirements. While it covers quality system regulation (QSR) and many general controls, it does not replace premarket submission requirements (510(k), PMA), nor does it cover the FDA’s Unique Device Identification (UDI) requirements or labeling compliance. Similarly, for Canada, MDSAP does not replace the need for a Medical Device Establishment Licence (MDEL) for importers and distributors, though manufacturers can use the MDSAP certificate to obtain or renew their MDEL.

In conclusion, checking your MDSAP certification for a single audit covering Canada and the US is not just about having a piece of paper. It is about verifying that the certificate is active, issued by a recognized body, explicitly covers both Health Canada and the FDA, and that your ongoing audit schedule is current. By mastering this single audit process, you can eliminate redundant regulatory burden, reduce audit fatigue, and focus resources on innovation and quality improvement. For any medical device manufacturer serious about North American market growth, MDSAP is no longer just an option—it is the strategic backbone of a streamlined global regulatory pathway.

We use cookie to improve your online experience. By continuing to browse this website, you agree to our use of cookie.

Cookies

Please read our Terms and Conditions and this Policy before accessing or using our Services. If you cannot agree with this Policy or the Terms and Conditions, please do not access or use our Services. If you are located in a jurisdiction outside the European Economic Area, by using our Services, you accept the Terms and Conditions and accept our privacy practices described in this Policy.
We may modify this Policy at any time, without prior notice, and changes may apply to any Personal Information we already hold about you, as well as any new Personal Information collected after the Policy is modified. If we make changes, we will notify you by revising the date at the top of this Policy. We will provide you with advanced notice if we make any material changes to how we collect, use or disclose your Personal Information that impact your rights under this Policy. If you are located in a jurisdiction other than the European Economic Area, the United Kingdom or Switzerland (collectively “European Countries”), your continued access or use of our Services after receiving the notice of changes, constitutes your acknowledgement that you accept the updated Policy. In addition, we may provide you with real time disclosures or additional information about the Personal Information handling practices of specific parts of our Services. Such notices may supplement this Policy or provide you with additional choices about how we process your Personal Information.


Cookies

Cookies are small text files stored on your device when you access most Websites on the internet or open certain emails. Among other things, Cookies allow a Website to recognize your device and remember if you've been to the Website before. Examples of information collected by Cookies include your browser type and the address of the Website from which you arrived at our Website as well as IP address and clickstream behavior (that is the pages you view and the links you click).We use the term cookie to refer to Cookies and technologies that perform a similar function to Cookies (e.g., tags, pixels, web beacons, etc.). Cookies can be read by the originating Website on each subsequent visit and by any other Website that recognizes the cookie. The Website uses Cookies in order to make the Website easier to use, to support a better user experience, including the provision of information and functionality to you, as well as to provide us with information about how the Website is used so that we can make sure it is as up to date, relevant, and error free as we can. Cookies on the Website We use Cookies to personalize your experience when you visit the Site, uniquely identify your computer for security purposes, and enable us and our third-party service providers to serve ads on our behalf across the internet.

We classify Cookies in the following categories:
 ●  Strictly Necessary Cookies
 ●  Performance Cookies
 ●  Functional Cookies
 ●  Targeting Cookies


Cookie List
A cookie is a small piece of data (text file) that a website – when visited by a user – asks your browser to store on your device in order to remember information about you, such as your language preference or login information. Those cookies are set by us and called first-party cookies. We also use third-party cookies – which are cookies from a domain different than the domain of the website you are visiting – for our advertising and marketing efforts. More specifically, we use cookies and other tracking technologies for the following purposes:

Strictly Necessary Cookies
These cookies are necessary for the website to function and cannot be switched off in our systems. They are usually only set in response to actions made by you which amount to a request for services, such as setting your privacy preferences, logging in or filling in forms. You can set your browser to block or alert you about these cookies, but some parts of the site will not then work. These cookies do not store any personally identifiable information.

Functional Cookies
These cookies enable the website to provide enhanced functionality and personalisation. They may be set by us or by third party providers whose services we have added to our pages. If you do not allow these cookies then some or all of these services may not function properly.

Performance Cookies
These cookies allow us to count visits and traffic sources so we can measure and improve the performance of our site. They help us to know which pages are the most and least popular and see how visitors move around the site. All information these cookies collect is aggregated and therefore anonymous. If you do not allow these cookies we will not know when you have visited our site, and will not be able to monitor its performance.

Targeting Cookies
These cookies may be set through our site by our advertising partners. They may be used by those companies to build a profile of your interests and show you relevant adverts on other sites. They do not store directly personal information, but are based on uniquely identifying your browser and internet device. If you do not allow these cookies, you will experience less targeted advertising.

How To Turn Off Cookies
You can choose to restrict or block Cookies through your browser settings at any time. Please note that certain Cookies may be set as soon as you visit the Website, but you can remove them using your browser settings. However, please be aware that restricting or blocking Cookies set on the Website may impact the functionality or performance of the Website or prevent you from using certain services provided through the Website. It will also affect our ability to update the Website to cater for user preferences and improve performance. Cookies within Mobile Applications

We only use Strictly Necessary Cookies on our mobile applications. These Cookies are critical to the functionality of our applications, so if you block or delete these Cookies you may not be able to use the application. These Cookies are not shared with any other application on your mobile device. We never use the Cookies from the mobile application to store personal information about you.

If you have questions or concerns regarding any information in this Privacy Policy, please contact us by email at . You can also contact us via our customer service at our Site.