Preventing digitally sourced patient harm: managing cyber risk throughout digitally-enabled medical devices' life cycle

No ratings

Presented at BSides Canberra 2024 by

Mainstream narrative within the cyber security industry tells us that financial loss, legal exposure, and organisational reputational damage are the most serious impacts that we can expect from malicious cyber activity. However, when examining the role that digital technologies play within delivering life-saving medical care via digitally-enabled medical devices, we begin to realise that the consequences of unmanaged cyber risk within this context can be literally life-threatening. Nick Baty will discuss why taking a 'whole-of-lifecycle' based approach is the only proportionate way to managing cyber security risk associated with digitally-enabled medical devices. This session will cover off: o What is a digitally-enabled medical device (it's not always what you think)?; o Cyber threats facing digitally-enabled medical devices today, and what the impact can be; o Recent examples of digitally-enabled medical device compromises; o What is meant by a 'life-cycle' based approach?; o How might it be implemented, and what are the challenges facing adoption?; and o How can cyber security professionals support the adoption of this approach in their own small way