Computerized System Governance and Classification

This section defines how computerized systems are identified, scoped, classified, owned, and governed before and during validation. It addresses intended use, GxP impact, software complexity, GAMP 5 principles and categories, supplier assessment, cloud and hosted services, supporting infrastructure, and end-user applications. Emphasis is placed on using system risk, configuration, data criticality, and supplier capability to establish a proportionate lifecycle strategy.