Spanish Healthcare Service Works On Resilience

The digitisation of healthcare systems and the reliance on technology to run hospitals and healthcare facilities have made the healthcare sector an attractive target for cyber criminals. Hackers know that medical devices don’t contain any patient data themselves, however, they see them as an easy target, lacking the security found on other network devices like laptops and computers.

Threats against medical devices can cause problems for healthcare organisations, giving hackers access to other network devices or letting them install costly ransomware. Secure network devices help limit the damage caused by an attack on medical devices.

In response the  rising number of cyber threats on medical organisations, Spain’s health sector is taking decisive action.

Following the regional Catalan Government allocated funds to combat cyber threats, the Spanish Private Health Alliance (ASPE) convened a forum to deal with the serious problem. This move underscores the escalating concern over cybercrime within Spain’s health sector. 

Cyber attacks on Spanish healthcare have been increasing, affecting hospitals and healthcare centres across the country. In 2022 more than 500 institutions reported incidents, which, according to data from INCIBE, the National Institute of Cybersecurity, was an increase of 48% compared to 2021. 

The  Cybercrime Threat

The health sector in Spain is facing a significant challenge. The convergence of health data at a European level further exposes patient records to potential threats. Both public and private healthcare entities in Spain, including ASPE and the Catalan government, are rallying resources to combat this menace.

According to ASPE's Director, ‘cyber security in the health system is not an option, it is something fundamental,'  highlighting the healthcare sector’s dedication to maintaining trust through robust cybersecurity measures.  These concerns are amplified by the European Union’s move towards a unified health data market, raising the stakes for data security.

However, according to analysis by leading Spanish firm, Aiuken Cybersecurity there is  a gap between ASPE's goals and the current needs of Spanish healthcare. Aiuken criticises the sector’s outdated technological infrastructures and calls for increased investment to deter cybercriminals. The principal threats faced by the health sector includ3s ransomware. Indeed, ransomware attack on one of Barcelona’ s main hospitals last year that  crippled the main computer system and forced the cancellation of 150 non-urgent operations and up to 3,000 patient appointments.

To counter these threats, solutions such as restricting access to electronic health records and enhancing training for those with access are being proposed. With a concerted effort to improve cybersecurity, including the development of action plans and regulatory advice, Spain’s health sector aims to certify under the National Security Scheme. 

This initiative is a big step towards safeguarding patient data and ensuring the integrity of healthcare services against cyber threats, which are taking place on health systems around the world.

Euro Weekly News     |    ETKHO    |    Dig Watch     |    SC Magazine     |    Security Week     |    Swivel Secure

Image: Ideogram

You Might Also Read: 

Scottish Health Service Patient Data Hacked & Stolen:

___________________________________________________________________________________________

If you like this website and use the comprehensive 6,500-plus service supplier Directory, you can get unrestricted access, including the exclusive in-depth Directors Report series, by signing up for a Premium Subscription.

  • Individual £5 per month or £50 per year. Sign Up
  • Multi-User, Corporate & Library Accounts Available on Request

Cyber Security Intelligence: Captured Organised & Accessible


 

« Cambridge University Medical IT System Hacked
A New Era Of Accelerated Computing »

CyberSecurity Jobsite
Check Point

Directory of Suppliers

Authentic8

Authentic8

Authentic8 transforms how organizations secure and control the use of the web with Silo, its patented cloud browser.

Practice Labs

Practice Labs

Practice Labs is an IT competency hub, where live-lab environments give access to real equipment for hands-on practice of essential cybersecurity skills.

Syxsense

Syxsense

Syxsense brings together endpoint management and security for greater efficiency and collaboration between IT management and security teams.

CSI Consulting Services

CSI Consulting Services

Get Advice From The Experts: * Training * Penetration Testing * Data Governance * GDPR Compliance. Connecting you to the best in the business.

IT Governance

IT Governance

IT Governance is a leading global provider of information security solutions. Download our free guide and find out how ISO 27001 can help protect your organisation's information.

Tresorit

Tresorit

Tresorit helps teams to collaborate securely and easily by protecting their data with end-to-end encryption.

Ethio-CERT

Ethio-CERT

National Cyber Emergency Readiness and Response Team of Ethiopia.

Security Onion Solutions

Security Onion Solutions

Security Onion Solutions is the creator and maintainer of Security Onion, a free and open platform for threat hunting, network security monitoring, and log management.

Nexcom International

Nexcom International

Nexcom operates six global businesses - IoT Automation, Intelligent Digital Security, Internet of Things, Intelligent Platform & Services, Mobile Computing Solutions, Network & Communications.

CERT-PH

CERT-PH

CERT-PH is the National Computer Emergency Response Team and the highest body for cybersecurity related activities in the Philippines.

Yaana Technologies

Yaana Technologies

Yaana is a leading provider of intelligent compliance solutions including lawful interception, data retention & disclosure, and advanced security analytics.

Inavate Consulting

Inavate Consulting

Inavate Consulting are experts in defining and implementing information assurance solutions and governance frameworks. Our ISO27001 consultants are the most experienced in the industry.

Secure Diversity

Secure Diversity

Secure Diversity is an innovative non-profit organization with leaders that think out of the box to create strategies & solutions to increase diversity in the cybersecurity industry.

PureSquare

PureSquare

PureSquare exist to empower people with simple solutions for their increasingly complex digital security & online privacy needs.

Tsaaro Academy

Tsaaro Academy

Tsaaro Academy is a unique privacy certification training platform and here you earn a privacy certification CEH, CISM and DPO from India’s No.1 Privacy training platform.

Framework Security

Framework Security

With Framework Security, you get more than a consultancy; you get a partner dedicated to simplifying cybersecurity and protecting your business in the most efficient way possible.

Assura

Assura

Assura provides innovative cybersecurity advisory and managed services to all industries including government, healthcare, financial, manufacturing, and transportation sectors.

Advania UK

Advania UK

Advania are one of Microsoft’s leading partners in the UK, specialising in Azure, Security, Dynamics 365 and Microsoft 365.

Computer Futures

Computer Futures

Computer Futures are a global specialist IT recruitment partner, matching candidates with roles across niche IT markets and core technologies.

CyFox

CyFox

CYFOX is at the forefront of cybersecurity innovation, specializing in providing cutting-edge AI-driven solutions tailored for any businesses.

Quantum Knight

Quantum Knight

Quantum Knight is the most performant commercial-grade embeddable cryptography. Lock down any resource from any location or device. Take control of your data now.