Where Do Privacy and Cybersecurity Intersect

When talking about MedTech, what makes it different from other industries is the collection and sharing of PHI (protected health information). PHI has privacy regulations in accordance with HIPAA (Health Insurance Portability and Accountability Act).

On top of HIPAA, MedTech companies are now dealing with new regulations, such as the California Consumer Privacy Act (CCPA). California enacted the law to fill gaps in data privacy. The CCPA actually extends some of HIPAA’s regulations to include more companies that deal with PHI but are outside the “covered entities” of HIPAA, such as providers of wearables.

MedTech must abide by these regulations on the privacy aspect. What brings cybersecurity to the conversation is that threat actors find PHI very attractive and seek to breach it. In a 2019 report, 82 percent of healthcare organizations using IoT (internet of things) MedTech devices were the target of a cyberattack. Hackers see these as ripe opportunities to infiltrate networks and spread malware. Beyond stealing PHI, threat actors hack medical devices to do physical harm and enemy advancement.

MOre Info: comptia a jobs

Comments

Popular posts from this blog

Tech Industry Takes the Lead in Redefining Work

CompTIA A+ 220-1001 and A+ 220-1002 exam

Questions a+ certification