Spanish Healthcare Service Works On Resilience

The digitisation of healthcare systems and the reliance on technology to run hospitals and healthcare facilities have made the healthcare sector an attractive target for cyber criminals. Hackers know that medical devices don’t contain any patient data themselves, however, they see them as an easy target, lacking the security found on other network devices like laptops and computers.

Threats against medical devices can cause problems for healthcare organisations, giving hackers access to other network devices or letting them install costly ransomware. Secure network devices help limit the damage caused by an attack on medical devices.

In response the  rising number of cyber threats on medical organisations, Spain’s health sector is taking decisive action.

Following the regional Catalan Government allocated funds to combat cyber threats, the Spanish Private Health Alliance (ASPE) convened a forum to deal with the serious problem. This move underscores the escalating concern over cybercrime within Spain’s health sector. 

Cyber attacks on Spanish healthcare have been increasing, affecting hospitals and healthcare centres across the country. In 2022 more than 500 institutions reported incidents, which, according to data from INCIBE, the National Institute of Cybersecurity, was an increase of 48% compared to 2021. 

The  Cybercrime Threat

The health sector in Spain is facing a significant challenge. The convergence of health data at a European level further exposes patient records to potential threats. Both public and private healthcare entities in Spain, including ASPE and the Catalan government, are rallying resources to combat this menace.

According to ASPE's Director, ‘cyber security in the health system is not an option, it is something fundamental,'  highlighting the healthcare sector’s dedication to maintaining trust through robust cybersecurity measures.  These concerns are amplified by the European Union’s move towards a unified health data market, raising the stakes for data security.

However, according to analysis by leading Spanish firm, Aiuken Cybersecurity there is  a gap between ASPE's goals and the current needs of Spanish healthcare. Aiuken criticises the sector’s outdated technological infrastructures and calls for increased investment to deter cybercriminals. The principal threats faced by the health sector includ3s ransomware. Indeed, ransomware attack on one of Barcelona’ s main hospitals last year that  crippled the main computer system and forced the cancellation of 150 non-urgent operations and up to 3,000 patient appointments.

To counter these threats, solutions such as restricting access to electronic health records and enhancing training for those with access are being proposed. With a concerted effort to improve cybersecurity, including the development of action plans and regulatory advice, Spain’s health sector aims to certify under the National Security Scheme. 

This initiative is a big step towards safeguarding patient data and ensuring the integrity of healthcare services against cyber threats, which are taking place on health systems around the world.

Euro Weekly News     |    ETKHO    |    Dig Watch     |    SC Magazine     |    Security Week     |    Swivel Secure

Image: Ideogram

You Might Also Read: 

Scottish Health Service Patient Data Hacked & Stolen:

___________________________________________________________________________________________

If you like this website and use the comprehensive 6,500-plus service supplier Directory, you can get unrestricted access, including the exclusive in-depth Directors Report series, by signing up for a Premium Subscription.

  • Individual £5 per month or £50 per year. Sign Up
  • Multi-User, Corporate & Library Accounts Available on Request

Cyber Security Intelligence: Captured Organised & Accessible


 

« Cambridge University Medical IT System Hacked
A New Era Of Accelerated Computing »

CyberSecurity Jobsite
Perimeter 81

Directory of Suppliers

Cyber Security Supplier Directory

Cyber Security Supplier Directory

Our Supplier Directory lists 6,000+ specialist cyber security service providers in 128 countries worldwide. IS YOUR ORGANISATION LISTED?

CSI Consulting Services

CSI Consulting Services

Get Advice From The Experts: * Training * Penetration Testing * Data Governance * GDPR Compliance. Connecting you to the best in the business.

Perimeter 81 / How to Select the Right ZTNA Solution

Perimeter 81 / How to Select the Right ZTNA Solution

Gartner insights into How to Select the Right ZTNA offering. Download this FREE report for a limited time only.

IT Governance

IT Governance

IT Governance is a leading global provider of information security solutions. Download our free guide and find out how ISO 27001 can help protect your organisation's information.

MIRACL

MIRACL

MIRACL provides the world’s only single step Multi-Factor Authentication (MFA) which can replace passwords on 100% of mobiles, desktops or even Smart TVs.

Help Net Security

Help Net Security

Help Net Security has been a prime resource for information security news and insight since 1998.

Egress Software Technologies

Egress Software Technologies

Egress Software Technologies is a leading provider of data security services designed to protect shared information throughout its lifecycle.

Softtek

Softtek

Softtek provides comprehensive software Quality Assurance and Testing that identifies the correctness, completeness, and quality level of software products.

Secusmart

Secusmart

Secusmart provide highly secure and encrypted speech and data communication solutions.

National Information Technology Development Agency (NITDA) - Nigeria

National Information Technology Development Agency (NITDA) - Nigeria

The National Information Technology Development Agency (NITDA) is committed to implementing the Nigerian National Information Technology Policy.

Splone

Splone

Splone is a Berlin-based IT security research team and consultancy. We help improve IT-security by offering red team assements, penetration tests, audits and customized consulting.

ISARR

ISARR

The ISARR software platform - your bespoke Risk, Resilience & Security Management solution. Simple, cost effective and adaptable, now and into the future.

Keysight Technologies

Keysight Technologies

Keysight is dedicated to providing tomorrow’s test technologies today, enabling our customers to connect and secure the world with their innovations.

SynSaber

SynSaber

SynSaber is a data collection, detection, and visibility solution that forms the foundation of industrial cybersecurity.

Qrypt

Qrypt

Qrypt has developed the only cryptographic solution capable of securing information indefinitely with mathematical proof as evidence.

Nanitor

Nanitor

Nanitor is a powerful cybersecurity management platform focusing on hardening security fundamentals across your global IT infrastructure.

Lumifi

Lumifi

Lumifi provide end-to-end cybersecurity resilience solutions with a specialty in managed detection and response (MDR) services.

Zokyo

Zokyo

Zokyo is a venture studio that builds, secures, and funds legendary web3/crypto businesses.

Core4ce

Core4ce

Core4ce is a mission-oriented company that serves as a trusted partner to the national security community.

Rezonate

Rezonate

Rezonate discovers, profiles, and protects Identities and their entire access journey to cloud infrastructure and critical SaaS applications. Preventing and stopping cyberattacks.

AFRY

AFRY

AFRY is a world leading engineering company, trusted as a supplier of services and solutions within the industry, energy, and infrastructure sectors as well as for authorities.