SlideShare a Scribd company logo
CyberSecurity and Data Challenges
by
João Bocas
www.digitalsalutem.com
CyberSecurity Essentials Risks and How to Protect your Company Basic EU Legislation on Data Management
WHY IS IT IMPORTANT ?
It’s Compulsory – new laws
( GDPR )
Avoid Data breaches
Prevent future pitfalls and
setbacks
Health Data and Regulations
DIGITAL HEALTH SERVICE
Health data are "all data pertaining to the health status of
a user”. This includes ECG, weight and other biometric
data tracking, blood pressure, healthcare payments,
prescriptions, diseases .. and many more, in addition to
user identifiers (including random numbers or dynamic IP
addresses of users)
Health data is considered privacy sensitive and service providers have a criminal law
responsibility for its management.
GDPR defines high level requirements and principles that define
WHAT must be done
GDPR
Privacy and Security by Design
Consent
Right to data
portability
Right to be
forgotten
DPIA
Data
Retention
policy
Sensitive data
mgmt
Companies must figure out HOW to implement GDPR requirements with the
help of Security specialists
Data and application security
requirements
Technical implementation of
data protection requirements
Administrative requirementsGDPR
Privacy and Security by Design
Consent
Right to
data
portability
Right to be
forgotten
DPIA
Data
Retention
policy
Sensitive
data mgmt
implies a set of
practical requirements
GDPR
administrative,
technical and
security
implications
The work of customers, partners and healthcare institutions – you
need to identify HOW to implement requirements
Administrative/Legal
Data Protection
Security
- privacy policy
- terms and conditions
- ensure data processing is legal
- internal documentation
- have a DPO for large processing
- risk assessments
- legally valid audit logs
- collect and enforce consents
- data portability
- right to be forgotten
- have a DPO for large processing
- other GDPR and national requirements
- data encryption
- secure data transfers
- secure indexing for search
- API security (auth and permissions)
- encrypted data backups
- disaster recovery and SLA
and many more
and many more
and many more
The work of customers, partners and healthcare institutions – you
need to identify HOW to implement requirements
Administrative
Data Protection
Security
- privacy policy
- terms and conditions
- ensure data processing is legal
- internal documentation
- have a DPO for large processing
- risk assessments
- legally valid audit logs
- collect and enforce consents
- data portability
- right to be forgotten
- have a DPO for large processing
- other GDPR and national requirements
- data encryption
- secure data transfers
- secure indexing for search
- API security (auth and permissions)
- encrypted data backups
- disaster recovery and SLA
Typical cloud (IaaS) guarantees
Technical requirements
to ensure compliance
and security
Administrative requirements
The work of companies, lawyers and security experts consist in
identifying HOW to implement requirements
Administrative/Legal
Data Protection
Security
- privacy policy
- terms and conditions
- ensure data processing is legal
- internal documentation
- have a DPO for large processing
- risk assessments
- legally valid audit logs
- collect and enforce consents
- data portability
- right to be forgotten
- have a DPO for large processing
- other GDPR and national requirements
- data encryption
- secure data transfers
- secure indexing for search
- API security (auth and permissions)
- encrypted data backups
- disaster recovery and SLA
Typical cloud (IaaS) guarantees
Administrative requirements
HIGLY RISKS AND COSTLY
Non-compliance can leads to huge fines and
possible business problems.
Requires: time, resource and a lot of
knowledge from dev, data experts.
Implementing all requirements is risky and costly
KNOWLEDGE
RESOURCE
S
COSTS
Time is money. Security and
compliance expertise are
expensive.
Learning curve, development, testing,
maintenance, updates, reliability and
uptime.
It’s hard to find security and
compliance knowledge. In addition
security is not your core business.
implementing in house can cost ~500K for a 5-year project
TIME
HACKS
+ 800% of Health hacks from
2014.
FINES
up to 20M for violations with GDPR. In
2016 35 companies has been fined in
UK for £3.2M
RISKS
NO GO!
From hospitals, insurance or other
customers due to non compliance,
lack of trust & security assessments.
for data breaches and non-compliance
Interoperability
Secure data storage
Legal compliance
To Consider :
-patient profiles
-data streams
- ECG measurements
-locations
- activity tracking
Global and EU Compliance
Compliance with the current and
forthcoming EU,Member States and US
data protection & security regulations on
healthcare (e.g. GDPR, HIPAA, ePrivacy,
etc).
Encryption of data in transit and at rest ,
access control panels, data backup, audit
logs, and many more to ensure security
and compliance.
CE marked or ISO 13485 certified medical software or devices. You will need to provide
documentation, release updates and tests that you need to include in your Quality
Management System to certify your medical product.
Risk assessments and documentation to
enable you to work with hospitals, insurances,
or to perform technical due diligence with
investors.
EU & HIPAA LAW COMPLIANCE DATA SECURITY BE READY TO WORK WITH ANYONE
REQUIRED : ISO 9001 & 27001 CERTIFIED
&
HY IS IT IMPORTANT ?
Main Take Aways :
• Think about Data Privacy from the
outset – Development Phases
• Think Global / Compliance right away
• How to avoid data breach and risk in
manipulating data
• Data is an opportunity, but always a
threat if not taken seriously
http://www.chino.io
http://www.eugdpr.org/
https://www.pwc.co.uk/
HY IS IT IMPORTANT ?
TASK ……
HY IS IT IMPORTANT ?
Q & A ?
HY IS IT
IMPORTANT
Get in touch :
joao@digitalsalutem.com
@WearablesExpert
+44 7731983936

More Related Content

What's hot

GDPR: the Steps Event Planners Need to Follow
GDPR: the Steps Event Planners Need to FollowGDPR: the Steps Event Planners Need to Follow
GDPR: the Steps Event Planners Need to Follow
etouches
 
EU GDPR - 12 Steps To Compliance
EU GDPR - 12 Steps To Compliance EU GDPR - 12 Steps To Compliance
EU GDPR - 12 Steps To Compliance
Tom Haynes
 
Health insurance portability and accountability act (hipaa)
Health insurance portability and accountability act (hipaa)Health insurance portability and accountability act (hipaa)
Health insurance portability and accountability act (hipaa)
ZyLAB
 
Data Protection: Transitioning to the GDPR
Data Protection: Transitioning to the GDPRData Protection: Transitioning to the GDPR
Data Protection: Transitioning to the GDPR
ImogenRutherford
 
Data Protection & GDPR Health Check Service Overview
Data Protection & GDPR Health Check Service OverviewData Protection & GDPR Health Check Service Overview
Data Protection & GDPR Health Check Service Overview
DVV Solutions Third Party Risk Management
 
The implications of gdpr for the solutions industry tatech 2018
The implications of gdpr for the solutions industry tatech 2018The implications of gdpr for the solutions industry tatech 2018
The implications of gdpr for the solutions industry tatech 2018
Shane Gray
 
Understanding gdpr compliance gdpr analytics tools
Understanding gdpr compliance  gdpr analytics toolsUnderstanding gdpr compliance  gdpr analytics tools
Understanding gdpr compliance gdpr analytics tools
RominaMariaBaltariu
 
GDPR: Your Journey to Compliance
GDPR: Your Journey to ComplianceGDPR: Your Journey to Compliance
GDPR: Your Journey to Compliance
Cobweb
 
GDPR Benefits and a Technical Overview
GDPR  Benefits and a Technical OverviewGDPR  Benefits and a Technical Overview
GDPR Benefits and a Technical Overview
Ernest Staats
 
GDPR for Dummies
GDPR for DummiesGDPR for Dummies
GDPR for Dummies
Caroline Boscher
 
How to Collect and Process Data Under GDPR?
How to Collect and Process Data Under GDPR?How to Collect and Process Data Under GDPR?
How to Collect and Process Data Under GDPR?
Piwik PRO
 
GDPR
GDPRGDPR
GDPR
Gopi PD
 
Addressing analytics, data warehouse and Big Data challenges beyond database ...
Addressing analytics, data warehouse and Big Data challenges beyond database ...Addressing analytics, data warehouse and Big Data challenges beyond database ...
Addressing analytics, data warehouse and Big Data challenges beyond database ...
Chris Doolittle
 
GDPR Crash Course
GDPR Crash CourseGDPR Crash Course
GDPR Crash Course
DataWorks Summit
 
HealthCare Compliance - HIPAA & HITRUST
HealthCare Compliance - HIPAA & HITRUSTHealthCare Compliance - HIPAA & HITRUST
HealthCare Compliance - HIPAA & HITRUST
Kimberly Simon MBA
 
GDPR non-compliance risks & GDPR365
GDPR non-compliance risks & GDPR365GDPR non-compliance risks & GDPR365
GDPR non-compliance risks & GDPR365
Jaco Liebenberg
 
Impact of GDPR on Data Collection and Processing
Impact of GDPR on Data Collection and ProcessingImpact of GDPR on Data Collection and Processing
Impact of GDPR on Data Collection and Processing
PromptCloud
 
Findability Day 2016 - What is GDPR?
Findability Day 2016 - What is GDPR?Findability Day 2016 - What is GDPR?
Findability Day 2016 - What is GDPR?
Findwise
 
Best Practices for Managing Individual Rights under the GDPR [Webinar Slides]
Best Practices for Managing Individual Rights under the GDPR [Webinar Slides]Best Practices for Managing Individual Rights under the GDPR [Webinar Slides]
Best Practices for Managing Individual Rights under the GDPR [Webinar Slides]
TrustArc
 
Vuzion Love Cloud GDPR Event
Vuzion Love Cloud GDPR Event Vuzion Love Cloud GDPR Event
Vuzion Love Cloud GDPR Event
Vuzion
 

What's hot (20)

GDPR: the Steps Event Planners Need to Follow
GDPR: the Steps Event Planners Need to FollowGDPR: the Steps Event Planners Need to Follow
GDPR: the Steps Event Planners Need to Follow
 
EU GDPR - 12 Steps To Compliance
EU GDPR - 12 Steps To Compliance EU GDPR - 12 Steps To Compliance
EU GDPR - 12 Steps To Compliance
 
Health insurance portability and accountability act (hipaa)
Health insurance portability and accountability act (hipaa)Health insurance portability and accountability act (hipaa)
Health insurance portability and accountability act (hipaa)
 
Data Protection: Transitioning to the GDPR
Data Protection: Transitioning to the GDPRData Protection: Transitioning to the GDPR
Data Protection: Transitioning to the GDPR
 
Data Protection & GDPR Health Check Service Overview
Data Protection & GDPR Health Check Service OverviewData Protection & GDPR Health Check Service Overview
Data Protection & GDPR Health Check Service Overview
 
The implications of gdpr for the solutions industry tatech 2018
The implications of gdpr for the solutions industry tatech 2018The implications of gdpr for the solutions industry tatech 2018
The implications of gdpr for the solutions industry tatech 2018
 
Understanding gdpr compliance gdpr analytics tools
Understanding gdpr compliance  gdpr analytics toolsUnderstanding gdpr compliance  gdpr analytics tools
Understanding gdpr compliance gdpr analytics tools
 
GDPR: Your Journey to Compliance
GDPR: Your Journey to ComplianceGDPR: Your Journey to Compliance
GDPR: Your Journey to Compliance
 
GDPR Benefits and a Technical Overview
GDPR  Benefits and a Technical OverviewGDPR  Benefits and a Technical Overview
GDPR Benefits and a Technical Overview
 
GDPR for Dummies
GDPR for DummiesGDPR for Dummies
GDPR for Dummies
 
How to Collect and Process Data Under GDPR?
How to Collect and Process Data Under GDPR?How to Collect and Process Data Under GDPR?
How to Collect and Process Data Under GDPR?
 
GDPR
GDPRGDPR
GDPR
 
Addressing analytics, data warehouse and Big Data challenges beyond database ...
Addressing analytics, data warehouse and Big Data challenges beyond database ...Addressing analytics, data warehouse and Big Data challenges beyond database ...
Addressing analytics, data warehouse and Big Data challenges beyond database ...
 
GDPR Crash Course
GDPR Crash CourseGDPR Crash Course
GDPR Crash Course
 
HealthCare Compliance - HIPAA & HITRUST
HealthCare Compliance - HIPAA & HITRUSTHealthCare Compliance - HIPAA & HITRUST
HealthCare Compliance - HIPAA & HITRUST
 
GDPR non-compliance risks & GDPR365
GDPR non-compliance risks & GDPR365GDPR non-compliance risks & GDPR365
GDPR non-compliance risks & GDPR365
 
Impact of GDPR on Data Collection and Processing
Impact of GDPR on Data Collection and ProcessingImpact of GDPR on Data Collection and Processing
Impact of GDPR on Data Collection and Processing
 
Findability Day 2016 - What is GDPR?
Findability Day 2016 - What is GDPR?Findability Day 2016 - What is GDPR?
Findability Day 2016 - What is GDPR?
 
Best Practices for Managing Individual Rights under the GDPR [Webinar Slides]
Best Practices for Managing Individual Rights under the GDPR [Webinar Slides]Best Practices for Managing Individual Rights under the GDPR [Webinar Slides]
Best Practices for Managing Individual Rights under the GDPR [Webinar Slides]
 
Vuzion Love Cloud GDPR Event
Vuzion Love Cloud GDPR Event Vuzion Love Cloud GDPR Event
Vuzion Love Cloud GDPR Event
 

Similar to Cybersecurity & Data Challenges

Data Privacy and Security in UAE.pptx
Data Privacy and Security in UAE.pptxData Privacy and Security in UAE.pptx
Data Privacy and Security in UAE.pptx
Adarsh748147
 
CBC GDPR The Physics
CBC GDPR The PhysicsCBC GDPR The Physics
CBC GDPR The Physics
Jason Chapman
 
The Countdown to the GDPR Regulations
The Countdown to the GDPR RegulationsThe Countdown to the GDPR Regulations
The Countdown to the GDPR Regulations
Elliot Reeman
 
Data privacy and security in uae
Data privacy and security in uaeData privacy and security in uae
Data privacy and security in uae
RishalHalid1
 
Data Protection and Data Privacy
Data Protection and Data PrivacyData Protection and Data Privacy
Data Protection and Data Privacy
IT Governance Ltd
 
Data Quality-Driven GDPR: Compliance with Confidence
Data Quality-Driven GDPR: Compliance with ConfidenceData Quality-Driven GDPR: Compliance with Confidence
Data Quality-Driven GDPR: Compliance with Confidence
Precisely
 
Understanding the EU's new General Data Protection Regulation (GDPR)
Understanding the EU's new General Data Protection Regulation (GDPR)Understanding the EU's new General Data Protection Regulation (GDPR)
Understanding the EU's new General Data Protection Regulation (GDPR)
Acquia
 
GDPR in the Healthcare Industry
GDPR in the Healthcare IndustryGDPR in the Healthcare Industry
GDPR in the Healthcare Industry
EMMAIntl
 
Data protection
Data protectionData protection
Data protection
RaviPrashant5
 
Keep Calm and Comply: 3 Keys to GDPR Success
Keep Calm and Comply: 3 Keys to GDPR SuccessKeep Calm and Comply: 3 Keys to GDPR Success
Keep Calm and Comply: 3 Keys to GDPR Success
Sirius
 
What's Next - General Data Protection Regulation (GDPR) Changes
What's Next - General Data Protection Regulation (GDPR) ChangesWhat's Next - General Data Protection Regulation (GDPR) Changes
What's Next - General Data Protection Regulation (GDPR) Changes
Ogilvy Consulting
 
General Data Protection Regulation (GDPR) Implications for Canadian Firms
General Data Protection Regulation (GDPR) Implications for Canadian FirmsGeneral Data Protection Regulation (GDPR) Implications for Canadian Firms
General Data Protection Regulation (GDPR) Implications for Canadian Firms
accenture
 
Horner Downey & Co Newsletter- GDPR
Horner Downey & Co Newsletter- GDPRHorner Downey & Co Newsletter- GDPR
Horner Downey & Co Newsletter- GDPR
Jenny Ferguson
 
My presentation- Ala about privacy and GDPR
My presentation- Ala about privacy and GDPRMy presentation- Ala about privacy and GDPR
My presentation- Ala about privacy and GDPR
zayadeen2003
 
The Essential Guide to GDPR
The Essential Guide to GDPRThe Essential Guide to GDPR
The Essential Guide to GDPR
Tim Hyman LLB
 
The Essential Guide to GDPR
The Essential Guide to GDPRThe Essential Guide to GDPR
The Essential Guide to GDPR
Tim Hyman LLB
 
Impact of GDPR on Third Party and M&A Security
Impact of GDPR on Third Party and M&A SecurityImpact of GDPR on Third Party and M&A Security
Impact of GDPR on Third Party and M&A Security
EQS Group
 
Flash Friday: Data Quality & GDPR
Flash Friday: Data Quality & GDPRFlash Friday: Data Quality & GDPR
Flash Friday: Data Quality & GDPR
Precisely
 
California Consumer Privacy Act (CCPA)
California Consumer Privacy Act (CCPA)California Consumer Privacy Act (CCPA)
California Consumer Privacy Act (CCPA)
Happiest Minds Technologies
 
GDPR Compliance with Microsoft 365
GDPR Compliance with Microsoft 365 GDPR Compliance with Microsoft 365
GDPR Compliance with Microsoft 365
ayeshaurooj104
 

Similar to Cybersecurity & Data Challenges (20)

Data Privacy and Security in UAE.pptx
Data Privacy and Security in UAE.pptxData Privacy and Security in UAE.pptx
Data Privacy and Security in UAE.pptx
 
CBC GDPR The Physics
CBC GDPR The PhysicsCBC GDPR The Physics
CBC GDPR The Physics
 
The Countdown to the GDPR Regulations
The Countdown to the GDPR RegulationsThe Countdown to the GDPR Regulations
The Countdown to the GDPR Regulations
 
Data privacy and security in uae
Data privacy and security in uaeData privacy and security in uae
Data privacy and security in uae
 
Data Protection and Data Privacy
Data Protection and Data PrivacyData Protection and Data Privacy
Data Protection and Data Privacy
 
Data Quality-Driven GDPR: Compliance with Confidence
Data Quality-Driven GDPR: Compliance with ConfidenceData Quality-Driven GDPR: Compliance with Confidence
Data Quality-Driven GDPR: Compliance with Confidence
 
Understanding the EU's new General Data Protection Regulation (GDPR)
Understanding the EU's new General Data Protection Regulation (GDPR)Understanding the EU's new General Data Protection Regulation (GDPR)
Understanding the EU's new General Data Protection Regulation (GDPR)
 
GDPR in the Healthcare Industry
GDPR in the Healthcare IndustryGDPR in the Healthcare Industry
GDPR in the Healthcare Industry
 
Data protection
Data protectionData protection
Data protection
 
Keep Calm and Comply: 3 Keys to GDPR Success
Keep Calm and Comply: 3 Keys to GDPR SuccessKeep Calm and Comply: 3 Keys to GDPR Success
Keep Calm and Comply: 3 Keys to GDPR Success
 
What's Next - General Data Protection Regulation (GDPR) Changes
What's Next - General Data Protection Regulation (GDPR) ChangesWhat's Next - General Data Protection Regulation (GDPR) Changes
What's Next - General Data Protection Regulation (GDPR) Changes
 
General Data Protection Regulation (GDPR) Implications for Canadian Firms
General Data Protection Regulation (GDPR) Implications for Canadian FirmsGeneral Data Protection Regulation (GDPR) Implications for Canadian Firms
General Data Protection Regulation (GDPR) Implications for Canadian Firms
 
Horner Downey & Co Newsletter- GDPR
Horner Downey & Co Newsletter- GDPRHorner Downey & Co Newsletter- GDPR
Horner Downey & Co Newsletter- GDPR
 
My presentation- Ala about privacy and GDPR
My presentation- Ala about privacy and GDPRMy presentation- Ala about privacy and GDPR
My presentation- Ala about privacy and GDPR
 
The Essential Guide to GDPR
The Essential Guide to GDPRThe Essential Guide to GDPR
The Essential Guide to GDPR
 
The Essential Guide to GDPR
The Essential Guide to GDPRThe Essential Guide to GDPR
The Essential Guide to GDPR
 
Impact of GDPR on Third Party and M&A Security
Impact of GDPR on Third Party and M&A SecurityImpact of GDPR on Third Party and M&A Security
Impact of GDPR on Third Party and M&A Security
 
Flash Friday: Data Quality & GDPR
Flash Friday: Data Quality & GDPRFlash Friday: Data Quality & GDPR
Flash Friday: Data Quality & GDPR
 
California Consumer Privacy Act (CCPA)
California Consumer Privacy Act (CCPA)California Consumer Privacy Act (CCPA)
California Consumer Privacy Act (CCPA)
 
GDPR Compliance with Microsoft 365
GDPR Compliance with Microsoft 365 GDPR Compliance with Microsoft 365
GDPR Compliance with Microsoft 365
 

More from João Bocas

Wearables & Monitoring - Keynote in Lisbon
Wearables & Monitoring - Keynote in LisbonWearables & Monitoring - Keynote in Lisbon
Wearables & Monitoring - Keynote in Lisbon
João Bocas
 
Internet das coisas ( IoT ) , como potenciar esta tecnologia na Saùde
Internet das coisas ( IoT ) , como potenciar esta tecnologia na SaùdeInternet das coisas ( IoT ) , como potenciar esta tecnologia na Saùde
Internet das coisas ( IoT ) , como potenciar esta tecnologia na Saùde
João Bocas
 
What's Next Wearable Technology
What's Next Wearable TechnologyWhat's Next Wearable Technology
What's Next Wearable Technology
João Bocas
 
Digital Medicine & The Future Preventative Healthcare
Digital Medicine & The Future Preventative HealthcareDigital Medicine & The Future Preventative Healthcare
Digital Medicine & The Future Preventative Healthcare
João Bocas
 
The Future of Wearable Technology at MANCEF 2020
The Future of Wearable Technology at MANCEF 2020The Future of Wearable Technology at MANCEF 2020
The Future of Wearable Technology at MANCEF 2020
João Bocas
 
The Future of Digital Personal Health Management
The Future of Digital Personal Health ManagementThe Future of Digital Personal Health Management
The Future of Digital Personal Health Management
João Bocas
 
Global Sources Online Show - Medical and Healthcare
Global Sources Online Show - Medical and Healthcare Global Sources Online Show - Medical and Healthcare
Global Sources Online Show - Medical and Healthcare
João Bocas
 
PRIS20 - Research and Innovation Summit 2020 ( Keynote )
PRIS20 - Research and Innovation Summit 2020 ( Keynote ) PRIS20 - Research and Innovation Summit 2020 ( Keynote )
PRIS20 - Research and Innovation Summit 2020 ( Keynote )
João Bocas
 
Commercialising Health Tech Innovation
Commercialising Health Tech InnovationCommercialising Health Tech Innovation
Commercialising Health Tech Innovation
João Bocas
 
Animal Health Investment Europe 2020
Animal Health Investment Europe 2020Animal Health Investment Europe 2020
Animal Health Investment Europe 2020
João Bocas
 
The Future of Healthcare - VMworld Europe 2019
The Future of Healthcare - VMworld Europe 2019The Future of Healthcare - VMworld Europe 2019
The Future of Healthcare - VMworld Europe 2019
João Bocas
 
How Emerging Technologies Impact Human Health - Novartis
How Emerging Technologies Impact Human Health - Novartis How Emerging Technologies Impact Human Health - Novartis
How Emerging Technologies Impact Human Health - Novartis
João Bocas
 
IQVIA UK TECHNOLOGY CONFERENCE 2019
IQVIA UK TECHNOLOGY CONFERENCE 2019IQVIA UK TECHNOLOGY CONFERENCE 2019
IQVIA UK TECHNOLOGY CONFERENCE 2019
João Bocas
 
Investment Insight - Technology in Healthcare ( HSBC - Private Banking )
Investment Insight - Technology in Healthcare ( HSBC - Private Banking ) Investment Insight - Technology in Healthcare ( HSBC - Private Banking )
Investment Insight - Technology in Healthcare ( HSBC - Private Banking )
João Bocas
 
Euro Hypertension 2018 - Paris
Euro Hypertension 2018 - Paris Euro Hypertension 2018 - Paris
Euro Hypertension 2018 - Paris
João Bocas
 
INCmty - Keynote on Digital Health Innovation and Emerging Technologies
INCmty -  Keynote on Digital Health Innovation and Emerging TechnologiesINCmty -  Keynote on Digital Health Innovation and Emerging Technologies
INCmty - Keynote on Digital Health Innovation and Emerging Technologies
João Bocas
 
Digital Leadership & Influencer Marketing
Digital Leadership & Influencer MarketingDigital Leadership & Influencer Marketing
Digital Leadership & Influencer Marketing
João Bocas
 
Simulation for Digital Health Workshop
Simulation for Digital Health WorkshopSimulation for Digital Health Workshop
Simulation for Digital Health Workshop
João Bocas
 
Emerging Wearable Technologies- True Potential in Clinical Trials
Emerging Wearable Technologies- True Potential in Clinical TrialsEmerging Wearable Technologies- True Potential in Clinical Trials
Emerging Wearable Technologies- True Potential in Clinical Trials
João Bocas
 
Investment Readiness + B2B connections
Investment Readiness + B2B connections Investment Readiness + B2B connections
Investment Readiness + B2B connections
João Bocas
 

More from João Bocas (20)

Wearables & Monitoring - Keynote in Lisbon
Wearables & Monitoring - Keynote in LisbonWearables & Monitoring - Keynote in Lisbon
Wearables & Monitoring - Keynote in Lisbon
 
Internet das coisas ( IoT ) , como potenciar esta tecnologia na Saùde
Internet das coisas ( IoT ) , como potenciar esta tecnologia na SaùdeInternet das coisas ( IoT ) , como potenciar esta tecnologia na Saùde
Internet das coisas ( IoT ) , como potenciar esta tecnologia na Saùde
 
What's Next Wearable Technology
What's Next Wearable TechnologyWhat's Next Wearable Technology
What's Next Wearable Technology
 
Digital Medicine & The Future Preventative Healthcare
Digital Medicine & The Future Preventative HealthcareDigital Medicine & The Future Preventative Healthcare
Digital Medicine & The Future Preventative Healthcare
 
The Future of Wearable Technology at MANCEF 2020
The Future of Wearable Technology at MANCEF 2020The Future of Wearable Technology at MANCEF 2020
The Future of Wearable Technology at MANCEF 2020
 
The Future of Digital Personal Health Management
The Future of Digital Personal Health ManagementThe Future of Digital Personal Health Management
The Future of Digital Personal Health Management
 
Global Sources Online Show - Medical and Healthcare
Global Sources Online Show - Medical and Healthcare Global Sources Online Show - Medical and Healthcare
Global Sources Online Show - Medical and Healthcare
 
PRIS20 - Research and Innovation Summit 2020 ( Keynote )
PRIS20 - Research and Innovation Summit 2020 ( Keynote ) PRIS20 - Research and Innovation Summit 2020 ( Keynote )
PRIS20 - Research and Innovation Summit 2020 ( Keynote )
 
Commercialising Health Tech Innovation
Commercialising Health Tech InnovationCommercialising Health Tech Innovation
Commercialising Health Tech Innovation
 
Animal Health Investment Europe 2020
Animal Health Investment Europe 2020Animal Health Investment Europe 2020
Animal Health Investment Europe 2020
 
The Future of Healthcare - VMworld Europe 2019
The Future of Healthcare - VMworld Europe 2019The Future of Healthcare - VMworld Europe 2019
The Future of Healthcare - VMworld Europe 2019
 
How Emerging Technologies Impact Human Health - Novartis
How Emerging Technologies Impact Human Health - Novartis How Emerging Technologies Impact Human Health - Novartis
How Emerging Technologies Impact Human Health - Novartis
 
IQVIA UK TECHNOLOGY CONFERENCE 2019
IQVIA UK TECHNOLOGY CONFERENCE 2019IQVIA UK TECHNOLOGY CONFERENCE 2019
IQVIA UK TECHNOLOGY CONFERENCE 2019
 
Investment Insight - Technology in Healthcare ( HSBC - Private Banking )
Investment Insight - Technology in Healthcare ( HSBC - Private Banking ) Investment Insight - Technology in Healthcare ( HSBC - Private Banking )
Investment Insight - Technology in Healthcare ( HSBC - Private Banking )
 
Euro Hypertension 2018 - Paris
Euro Hypertension 2018 - Paris Euro Hypertension 2018 - Paris
Euro Hypertension 2018 - Paris
 
INCmty - Keynote on Digital Health Innovation and Emerging Technologies
INCmty -  Keynote on Digital Health Innovation and Emerging TechnologiesINCmty -  Keynote on Digital Health Innovation and Emerging Technologies
INCmty - Keynote on Digital Health Innovation and Emerging Technologies
 
Digital Leadership & Influencer Marketing
Digital Leadership & Influencer MarketingDigital Leadership & Influencer Marketing
Digital Leadership & Influencer Marketing
 
Simulation for Digital Health Workshop
Simulation for Digital Health WorkshopSimulation for Digital Health Workshop
Simulation for Digital Health Workshop
 
Emerging Wearable Technologies- True Potential in Clinical Trials
Emerging Wearable Technologies- True Potential in Clinical TrialsEmerging Wearable Technologies- True Potential in Clinical Trials
Emerging Wearable Technologies- True Potential in Clinical Trials
 
Investment Readiness + B2B connections
Investment Readiness + B2B connections Investment Readiness + B2B connections
Investment Readiness + B2B connections
 

Recently uploaded

Bath patient Fundamental of Nursing.pptx
Bath patient Fundamental of Nursing.pptxBath patient Fundamental of Nursing.pptx
Bath patient Fundamental of Nursing.pptx
MianProductions
 
Unlocking the Secrets to Safe Patient Handling.pdf
Unlocking the Secrets to Safe Patient Handling.pdfUnlocking the Secrets to Safe Patient Handling.pdf
Unlocking the Secrets to Safe Patient Handling.pdf
Lift Ability
 
一比一原版(EUR毕业证)鹿特丹伊拉斯姆斯大学毕业证如何办理
一比一原版(EUR毕业证)鹿特丹伊拉斯姆斯大学毕业证如何办理一比一原版(EUR毕业证)鹿特丹伊拉斯姆斯大学毕业证如何办理
一比一原版(EUR毕业证)鹿特丹伊拉斯姆斯大学毕业证如何办理
gjsma0ep
 
Luxurious Spa In Ajman Chandrima Massage Center
Luxurious Spa In Ajman Chandrima Massage CenterLuxurious Spa In Ajman Chandrima Massage Center
Luxurious Spa In Ajman Chandrima Massage Center
Chandrima Spa Ajman
 
NEEDLE STICK INJURY - JOURNAL CLUB PRESENTATION - DR SHAMIN EABENSON
NEEDLE STICK INJURY - JOURNAL CLUB PRESENTATION - DR SHAMIN EABENSONNEEDLE STICK INJURY - JOURNAL CLUB PRESENTATION - DR SHAMIN EABENSON
NEEDLE STICK INJURY - JOURNAL CLUB PRESENTATION - DR SHAMIN EABENSON
SHAMIN EABENSON
 
The Power of Superfoods and Exercise.pdf
The Power of Superfoods and Exercise.pdfThe Power of Superfoods and Exercise.pdf
The Power of Superfoods and Exercise.pdf
Dr Rachana Gujar
 
Time line.ppQAWSDRFTGYUIOPÑLKIUYTREWASDFTGY
Time line.ppQAWSDRFTGYUIOPÑLKIUYTREWASDFTGYTime line.ppQAWSDRFTGYUIOPÑLKIUYTREWASDFTGY
Time line.ppQAWSDRFTGYUIOPÑLKIUYTREWASDFTGY
DianaRodriguez639773
 
Can Allopathy and Homeopathy Be Used Together in India.pdf
Can Allopathy and Homeopathy Be Used Together in India.pdfCan Allopathy and Homeopathy Be Used Together in India.pdf
Can Allopathy and Homeopathy Be Used Together in India.pdf
Dharma Homoeopathy
 
Pneumothorax and role of Physiotherapy in it.
Pneumothorax and role of Physiotherapy in it.Pneumothorax and role of Physiotherapy in it.
Pneumothorax and role of Physiotherapy in it.
Vishal kr Thakur
 
chatgptfornlp-230314021506-2f03f614.pdf. 21506-2f03f614.pdf
chatgptfornlp-230314021506-2f03f614.pdf. 21506-2f03f614.pdfchatgptfornlp-230314021506-2f03f614.pdf. 21506-2f03f614.pdf
chatgptfornlp-230314021506-2f03f614.pdf. 21506-2f03f614.pdf
marynayjun112024
 
Gemma Wean- Nutritional solution for Artemia
Gemma Wean- Nutritional solution for ArtemiaGemma Wean- Nutritional solution for Artemia
Gemma Wean- Nutritional solution for Artemia
smuskaan0008
 
PrudentRx: A Resource for Patient Education and Engagement
PrudentRx: A Resource for Patient Education and EngagementPrudentRx: A Resource for Patient Education and Engagement
PrudentRx: A Resource for Patient Education and Engagement
PrudentRx Program
 
R3 Stem Cell Therapy: A New Hope for Women with Ovarian Failure
R3 Stem Cell Therapy: A New Hope for Women with Ovarian FailureR3 Stem Cell Therapy: A New Hope for Women with Ovarian Failure
R3 Stem Cell Therapy: A New Hope for Women with Ovarian Failure
R3 Stem Cell
 
Innovative Minds France's Most Impactful Healthcare Leaders.pdf
Innovative Minds France's Most Impactful Healthcare Leaders.pdfInnovative Minds France's Most Impactful Healthcare Leaders.pdf
Innovative Minds France's Most Impactful Healthcare Leaders.pdf
eurohealthleaders
 
MBC Support Group for Black Women – Insights in Genetic Testing.pdf
MBC Support Group for Black Women – Insights in Genetic Testing.pdfMBC Support Group for Black Women – Insights in Genetic Testing.pdf
MBC Support Group for Black Women – Insights in Genetic Testing.pdf
bkling
 
GIT BS.pptx about human body their structure and
GIT BS.pptx about human body their structure andGIT BS.pptx about human body their structure and
GIT BS.pptx about human body their structure and
MuzafarBohio
 
U Part Wigs_ A Natural Look with Minimal Effort Jokerwigs.in.pdf
U Part Wigs_ A Natural Look with Minimal Effort Jokerwigs.in.pdfU Part Wigs_ A Natural Look with Minimal Effort Jokerwigs.in.pdf
U Part Wigs_ A Natural Look with Minimal Effort Jokerwigs.in.pdf
Jokerwigs arts and craft
 
CANSA support - Caring for Cancer Patients' Caregivers
CANSA support - Caring for Cancer Patients' CaregiversCANSA support - Caring for Cancer Patients' Caregivers
CANSA support - Caring for Cancer Patients' Caregivers
CANSA The Cancer Association of South Africa
 
LEAD Innovation Launch_WHO Innovation Initiative.pptx
LEAD Innovation Launch_WHO Innovation Initiative.pptxLEAD Innovation Launch_WHO Innovation Initiative.pptx
LEAD Innovation Launch_WHO Innovation Initiative.pptx
ChetanSharma78255
 
Tips for Pet Care in winters How to take care of pets.
Tips for Pet Care in winters How to take care of pets.Tips for Pet Care in winters How to take care of pets.
Tips for Pet Care in winters How to take care of pets.
Dinesh Chauhan
 

Recently uploaded (20)

Bath patient Fundamental of Nursing.pptx
Bath patient Fundamental of Nursing.pptxBath patient Fundamental of Nursing.pptx
Bath patient Fundamental of Nursing.pptx
 
Unlocking the Secrets to Safe Patient Handling.pdf
Unlocking the Secrets to Safe Patient Handling.pdfUnlocking the Secrets to Safe Patient Handling.pdf
Unlocking the Secrets to Safe Patient Handling.pdf
 
一比一原版(EUR毕业证)鹿特丹伊拉斯姆斯大学毕业证如何办理
一比一原版(EUR毕业证)鹿特丹伊拉斯姆斯大学毕业证如何办理一比一原版(EUR毕业证)鹿特丹伊拉斯姆斯大学毕业证如何办理
一比一原版(EUR毕业证)鹿特丹伊拉斯姆斯大学毕业证如何办理
 
Luxurious Spa In Ajman Chandrima Massage Center
Luxurious Spa In Ajman Chandrima Massage CenterLuxurious Spa In Ajman Chandrima Massage Center
Luxurious Spa In Ajman Chandrima Massage Center
 
NEEDLE STICK INJURY - JOURNAL CLUB PRESENTATION - DR SHAMIN EABENSON
NEEDLE STICK INJURY - JOURNAL CLUB PRESENTATION - DR SHAMIN EABENSONNEEDLE STICK INJURY - JOURNAL CLUB PRESENTATION - DR SHAMIN EABENSON
NEEDLE STICK INJURY - JOURNAL CLUB PRESENTATION - DR SHAMIN EABENSON
 
The Power of Superfoods and Exercise.pdf
The Power of Superfoods and Exercise.pdfThe Power of Superfoods and Exercise.pdf
The Power of Superfoods and Exercise.pdf
 
Time line.ppQAWSDRFTGYUIOPÑLKIUYTREWASDFTGY
Time line.ppQAWSDRFTGYUIOPÑLKIUYTREWASDFTGYTime line.ppQAWSDRFTGYUIOPÑLKIUYTREWASDFTGY
Time line.ppQAWSDRFTGYUIOPÑLKIUYTREWASDFTGY
 
Can Allopathy and Homeopathy Be Used Together in India.pdf
Can Allopathy and Homeopathy Be Used Together in India.pdfCan Allopathy and Homeopathy Be Used Together in India.pdf
Can Allopathy and Homeopathy Be Used Together in India.pdf
 
Pneumothorax and role of Physiotherapy in it.
Pneumothorax and role of Physiotherapy in it.Pneumothorax and role of Physiotherapy in it.
Pneumothorax and role of Physiotherapy in it.
 
chatgptfornlp-230314021506-2f03f614.pdf. 21506-2f03f614.pdf
chatgptfornlp-230314021506-2f03f614.pdf. 21506-2f03f614.pdfchatgptfornlp-230314021506-2f03f614.pdf. 21506-2f03f614.pdf
chatgptfornlp-230314021506-2f03f614.pdf. 21506-2f03f614.pdf
 
Gemma Wean- Nutritional solution for Artemia
Gemma Wean- Nutritional solution for ArtemiaGemma Wean- Nutritional solution for Artemia
Gemma Wean- Nutritional solution for Artemia
 
PrudentRx: A Resource for Patient Education and Engagement
PrudentRx: A Resource for Patient Education and EngagementPrudentRx: A Resource for Patient Education and Engagement
PrudentRx: A Resource for Patient Education and Engagement
 
R3 Stem Cell Therapy: A New Hope for Women with Ovarian Failure
R3 Stem Cell Therapy: A New Hope for Women with Ovarian FailureR3 Stem Cell Therapy: A New Hope for Women with Ovarian Failure
R3 Stem Cell Therapy: A New Hope for Women with Ovarian Failure
 
Innovative Minds France's Most Impactful Healthcare Leaders.pdf
Innovative Minds France's Most Impactful Healthcare Leaders.pdfInnovative Minds France's Most Impactful Healthcare Leaders.pdf
Innovative Minds France's Most Impactful Healthcare Leaders.pdf
 
MBC Support Group for Black Women – Insights in Genetic Testing.pdf
MBC Support Group for Black Women – Insights in Genetic Testing.pdfMBC Support Group for Black Women – Insights in Genetic Testing.pdf
MBC Support Group for Black Women – Insights in Genetic Testing.pdf
 
GIT BS.pptx about human body their structure and
GIT BS.pptx about human body their structure andGIT BS.pptx about human body their structure and
GIT BS.pptx about human body their structure and
 
U Part Wigs_ A Natural Look with Minimal Effort Jokerwigs.in.pdf
U Part Wigs_ A Natural Look with Minimal Effort Jokerwigs.in.pdfU Part Wigs_ A Natural Look with Minimal Effort Jokerwigs.in.pdf
U Part Wigs_ A Natural Look with Minimal Effort Jokerwigs.in.pdf
 
CANSA support - Caring for Cancer Patients' Caregivers
CANSA support - Caring for Cancer Patients' CaregiversCANSA support - Caring for Cancer Patients' Caregivers
CANSA support - Caring for Cancer Patients' Caregivers
 
LEAD Innovation Launch_WHO Innovation Initiative.pptx
LEAD Innovation Launch_WHO Innovation Initiative.pptxLEAD Innovation Launch_WHO Innovation Initiative.pptx
LEAD Innovation Launch_WHO Innovation Initiative.pptx
 
Tips for Pet Care in winters How to take care of pets.
Tips for Pet Care in winters How to take care of pets.Tips for Pet Care in winters How to take care of pets.
Tips for Pet Care in winters How to take care of pets.
 

Cybersecurity & Data Challenges

  • 1. CyberSecurity and Data Challenges by João Bocas www.digitalsalutem.com
  • 2. CyberSecurity Essentials Risks and How to Protect your Company Basic EU Legislation on Data Management
  • 3. WHY IS IT IMPORTANT ?
  • 4. It’s Compulsory – new laws ( GDPR ) Avoid Data breaches Prevent future pitfalls and setbacks
  • 5. Health Data and Regulations DIGITAL HEALTH SERVICE Health data are "all data pertaining to the health status of a user”. This includes ECG, weight and other biometric data tracking, blood pressure, healthcare payments, prescriptions, diseases .. and many more, in addition to user identifiers (including random numbers or dynamic IP addresses of users) Health data is considered privacy sensitive and service providers have a criminal law responsibility for its management.
  • 6. GDPR defines high level requirements and principles that define WHAT must be done GDPR Privacy and Security by Design Consent Right to data portability Right to be forgotten DPIA Data Retention policy Sensitive data mgmt
  • 7. Companies must figure out HOW to implement GDPR requirements with the help of Security specialists Data and application security requirements Technical implementation of data protection requirements Administrative requirementsGDPR Privacy and Security by Design Consent Right to data portability Right to be forgotten DPIA Data Retention policy Sensitive data mgmt implies a set of practical requirements
  • 8. GDPR administrative, technical and security implications The work of customers, partners and healthcare institutions – you need to identify HOW to implement requirements Administrative/Legal Data Protection Security - privacy policy - terms and conditions - ensure data processing is legal - internal documentation - have a DPO for large processing - risk assessments - legally valid audit logs - collect and enforce consents - data portability - right to be forgotten - have a DPO for large processing - other GDPR and national requirements - data encryption - secure data transfers - secure indexing for search - API security (auth and permissions) - encrypted data backups - disaster recovery and SLA and many more and many more and many more
  • 9. The work of customers, partners and healthcare institutions – you need to identify HOW to implement requirements Administrative Data Protection Security - privacy policy - terms and conditions - ensure data processing is legal - internal documentation - have a DPO for large processing - risk assessments - legally valid audit logs - collect and enforce consents - data portability - right to be forgotten - have a DPO for large processing - other GDPR and national requirements - data encryption - secure data transfers - secure indexing for search - API security (auth and permissions) - encrypted data backups - disaster recovery and SLA Typical cloud (IaaS) guarantees Technical requirements to ensure compliance and security Administrative requirements
  • 10. The work of companies, lawyers and security experts consist in identifying HOW to implement requirements Administrative/Legal Data Protection Security - privacy policy - terms and conditions - ensure data processing is legal - internal documentation - have a DPO for large processing - risk assessments - legally valid audit logs - collect and enforce consents - data portability - right to be forgotten - have a DPO for large processing - other GDPR and national requirements - data encryption - secure data transfers - secure indexing for search - API security (auth and permissions) - encrypted data backups - disaster recovery and SLA Typical cloud (IaaS) guarantees Administrative requirements HIGLY RISKS AND COSTLY Non-compliance can leads to huge fines and possible business problems. Requires: time, resource and a lot of knowledge from dev, data experts.
  • 11. Implementing all requirements is risky and costly KNOWLEDGE RESOURCE S COSTS Time is money. Security and compliance expertise are expensive. Learning curve, development, testing, maintenance, updates, reliability and uptime. It’s hard to find security and compliance knowledge. In addition security is not your core business. implementing in house can cost ~500K for a 5-year project TIME HACKS + 800% of Health hacks from 2014. FINES up to 20M for violations with GDPR. In 2016 35 companies has been fined in UK for £3.2M RISKS NO GO! From hospitals, insurance or other customers due to non compliance, lack of trust & security assessments. for data breaches and non-compliance
  • 12. Interoperability Secure data storage Legal compliance To Consider : -patient profiles -data streams - ECG measurements -locations - activity tracking
  • 13. Global and EU Compliance Compliance with the current and forthcoming EU,Member States and US data protection & security regulations on healthcare (e.g. GDPR, HIPAA, ePrivacy, etc). Encryption of data in transit and at rest , access control panels, data backup, audit logs, and many more to ensure security and compliance. CE marked or ISO 13485 certified medical software or devices. You will need to provide documentation, release updates and tests that you need to include in your Quality Management System to certify your medical product. Risk assessments and documentation to enable you to work with hospitals, insurances, or to perform technical due diligence with investors. EU & HIPAA LAW COMPLIANCE DATA SECURITY BE READY TO WORK WITH ANYONE REQUIRED : ISO 9001 & 27001 CERTIFIED &
  • 14. HY IS IT IMPORTANT ? Main Take Aways : • Think about Data Privacy from the outset – Development Phases • Think Global / Compliance right away • How to avoid data breach and risk in manipulating data • Data is an opportunity, but always a threat if not taken seriously
  • 16. HY IS IT IMPORTANT ? TASK ……
  • 17. HY IS IT IMPORTANT ? Q & A ?
  • 18. HY IS IT IMPORTANT Get in touch : joao@digitalsalutem.com @WearablesExpert +44 7731983936

Editor's Notes

  1. Because is compulsory ( New Laws ) Avoid Data Breaches Future Pitfalls and setbacks
  2. From 25th May 2018 – Everybody needs to be compliant
  3. GDPR – General Data Protection Regulation DPIA – Data Protection Impact Assessment
  4. DPO – Data Protection Officer IaaS – Infrastructure as a Service SLA -
  5. Fines Rise 155% UK of the most Fines Countries ( Only Italy had more Fines )
  6. Reflective task…. ( While we are here )….. Think about an action Plan or Steps to take to implement some of the best practices and get ready ( 2018 ) GDPR Legislation.