Become a partner

Cybersecurity minimum in terms of standards and regulation

Ivan Makatura - general director, Cyber Security Competence and Certification Center ·

In today's digital era, with medical services increasingly relying on electronic health records and telemedicine, it is essential that healthcare professionals understand the basics of cybersecurity and the processes involved in protecting patients' health information and data. This presentation will provide a basic overview of cybersecurity issues in the context of the requirements of legislation governing the provision of essential services, the processing of personal health data, the operation of health information systems, and the use of medical devices. The aim of the lecture is to explain which data, information, processes are critical in the context of healthcare delivery, to describe the basics of security measures and applicable technical standards.

Cybersecurity in healthcare is not just about technology, but above all about protecting patients and the continuity of care. The lecture summarized the basic principles, new regulations, and practical priorities. The following overview explains the essence of the problem and what hospitals and healthcare professionals should focus on.

From confidentiality to availability: what we actually protect

Information security rests on three objectives: confidentiality (so that data does not reach unauthorized parties), integrity (so that it is not altered), and availability (so that it is there when we need it). When it comes to electronic processing, we speak of cybersecurity, but the meaning is the same: to protect data, systems, and applications at all levels. Every system has vulnerabilities, so vendors continuously release "patches" and updates that fix the holes. A threat is the possibility that something may happen; risk is the combination of likelihood and impact; and when the risk materializes, an incident occurs—often triggered by simple yet effective techniques such as phishing.

Read more

Ivan Makatura

Cybersecurity Association
Director-General of the Cyber Security Competence and Certification Centre, Member of the Management Board of the European Centre for Sectoral, Technological and Research Competences, forensic expert in the field of security and protection of information systems, certified auditor of cyber security, certified manager of cyber security and lead a…
Páčil sa ti článok? Zdieľaj ho a povedz o ňom aj ostatným