Cybersecurity complexities in the medical device industry

Paul Lockley – VP Sales, EMEA:

Recently, I had the pleasure of speaking at the 6th Annual European Medical Device and Diagnostic Cybersecurity Conference. The event covered a wide range of cyber-related issues, including SBOM complexities, the NIS2 directive, hospital cybersecurity challenges, threat modelling, vulnerabilities, and weak links in IoMT security. Amid these discussions, the complexity of getting things done in a large organisation stood out the most.

During a roundtable workshop I chaired on the complexities of creating and managing SBOMs, I expected the primary challenge to be the creation process itself or aligning the SBOM to devices. However, what emerged was a picture of organisational complexity, where different departments or divisions had conflicting demands. Instead of centralised services and shared best practices, there was divisional infighting—not in all cases, but enough to raise concerns. For senior executives, this presents a tough challenge. In matters of cybersecurity and compliance, a unified direction is essential for achieving true operational resilience. Harmony within the organisation must come from the CISO downwards, driving direction and control from the enterprise level to the very edge.

Another major topic of discussion was the depth and breadth of legislation, and the clear direction companies should take to address the evolving landscape of risk. With most existing requirements being enterprise-based, the question arises: how does changing regulation impact tomorrow’s connected landscapes? New entrants like NIS2, CRA, and MDR IDVR are among the factors changing the landscape. While designing future changes is one thing, managing the current fleet of systems, services, and devices—likely to remain in place for some time—is another. Zero Trust offers a great approach to simplifying the way cyber risk is addressed across platforms and legislation. However, Zero Trust is not a product to be bought; it is a methodology and mindset encapsulated by the phrase, “Trust nothing, verify always.”

The encouraging news is that most modern cybersecurity companies, which address the identity of the “thing” rather than the “who”, have the ability to collaborate. This is crucial because tomorrow’s attacks will come from multiple fronts and with various intents. Building a formidable defence will rely on technologies that serve as parts of a broader solution rather than complete solutions themselves. A rich ecosystem of technology partners and the capacity to easily integrate with wider services will determine whether an organisation becomes a “brick in the wall” or a “hole in the fence.”

Navigating the complexities of cybersecurity in the medical device industry requires a unified approach and a collaborative mindset. Organisations must strive for harmony from the top down and embrace methodologies like Zero Trust to effectively manage risks. By fostering a rich ecosystem of technology partners, companies can build a robust defence against the multifaceted threats of the future.

Tern plc (LON:TERN) backs exciting, high growth IoT innovators in Europe. They provide support and create a genuinely collaborative environment for talented, well-motivated teams. Device Authority is focused on securing connected device ecosystems and is recognized as the global leader in Device Identity Lifecycle Management and Identity and Access Management (IAM) for the Internet of Things (IoT).

Click to view all articles for the EPIC:
Or click to view the full company profile:
Facebook
X
LinkedIn
Tern plc

More articles like this

Tern plc

The future of surgical training lies in virtual reality

Surgical advancements over the past century have been remarkable, yet the reality remains that more than 5 billion people globally lack access to safe surgical procedures. This is largely due to a shortage of trained surgeons.

Tern plc

Empowering rare disease communities through AI

Rare disease communities encounter a range of challenges that go far beyond just patient care, many of which are frequently overlooked in broader health strategies. With more than 7,000 rare diseases affecting relatively small and diverse

Tern plc

How IoT automation is transforming industry

The integration of the Internet of Things (IoT) is reshaping the way industries operate, particularly through innovations like smart manufacturing, predictive maintenance, and remote monitoring. With these advancements, industries can streamline processes, improve productivity, and enhance

Tern plc

Understanding business valuation methods

Knowing how to value your business is crucial when planning to sell or raise capital. Both buyers and investors will require insight into the business’s current financial standing and its projected performance. A variety of methods

Tern plc

Harnessing ‘Data for Good’

The importance of data in addressing global challenges has grown significantly as we near 2025. The “Data for Good” movement continues to evolve, driven by advances in technology, increased global collaboration, and a rising focus on

Tern plc

How IoT automation is transforming industrial operations

The integration of IoT into industrial automation is reshaping the landscape of industries by improving efficiency, reducing costs, and enhancing safety. The ability to connect physical devices to the internet has revolutionised sectors such as manufacturing,

Tern plc

Strategic approaches for successful IIoT implementation

Recent research highlights a significant challenge in the realm of IoT projects, with 74% of companies finding their initiatives unsuccessful. This is often due to extended timeframes, lack of expertise, and insufficient understanding of IoT requirements.

Tern plc

Unlocking the potential of AI and IIoT in modern manufacturing

Advanced technology in manufacturing often conjures images of high-tech environments like the automotive industry or robotic warehouses. However, with the increasing accessibility of artificial intelligence (AI) solutions, many more manufacturing operations can now benefit from these

Tern plc

FundamentalVR elevates surgical training with advanced Stylus integration

FundamentalVR, a global leader in immersive surgical training, has recently integrated Logitech’s MX Ink MR Stylus into its state-of-the-art VR platform. This development significantly boosts the realism and precision of VR-based surgical simulations, offering healthcare professionals

Tern plc

Unlocking the potential of IIoT for future success

As with any new technological advancement, the journey from initial excitement to widespread adoption often follows a familiar trajectory. The Internet of Things (IoT), which connects countless devices in our daily lives, is no exception. According

Tern plc

Transforming surgical training through Virtual Reality innovation

FundamentalVR is at the forefront of revolutionising surgical training through immersive virtual reality (VR) technologies. Under the leadership of Chief Technology Officer Vicky Smalley, the company is dedicated to advancing human capability in surgery and medicine.

Tern plc

Securing your business in the age of IoT connectivity

Protecting your business in the digital age with a solid IoT security framework is essential. The rise of interconnected devices has transformed how businesses function, offering numerous advantages like enhanced efficiency and streamlined operations. However, this

Tern plc

The Wyld Connect AT452 Satellite Tracker

The Wyld Connect AT452 Satellite Tracker offers an extensive solution for location-based tracking, harnessing low earth orbiting satellites to provide worldwide network coverage. Following successful trials in South America, Wyld is set to roll out this

Tern plc

Enhancing healthcare communication with Drug-GPT insights

Understanding the nuanced perspectives of both patients and healthcare professionals (HCPs) is crucial for developing effective and empathetic communication strategies. A recent case study demonstrates how Drug-GPT’s Audience Analyzer enabled a healthcare advertising agency to achieve