loading
Papers Papers/2022 Papers Papers/2022

Research.Publish.Connect.

Paper

Systematisation of Security Risk Knowledge Across Different Domains: A Case Study of Security Implications of Medical Devices

Topics: Regulatory and Technical Compliance Aspects of Security and Privacy; Risk and Reputation Management; Security and Privacy in Cloud and Pervasive Computing; Security in IoT and Edge Computing; Systematization of Knowledge in Privacy and Security

Authors: Laura Carmichael 1 ; Steve Taylor 1 ; Samuel Senior 1 ; Mike Surridge 1 ; Gencer Erdogan 2 and Simeon Tverdal 2

Affiliations: 1 IT Innovation Centre, University of Southampton, Southampton, U.K. ; 2 Sustainable Communication Technologies, SINTEF Digital, Oslo, Norway

Keyword(s): Systematisation of Knowledge, Risk Management, Cybersecurity, Connected Medical Devices, In Vitro Diagnostic Devices.

Abstract: Shared terminology and understanding are vital for effective cybersecurity risk management for connected medical and in vitro diagnostic device systems, given that such processes are collaborative and require cross-domain expertise particularly, e.g., in the areas of patient safety, cyber-physical security, and privacy. However, fostering effective, interdisciplinary risk communication can be challenging — especially where, e.g., different terms are used with the same meaning, or the same risk management terms are interpreted differently across domains. In this paper, we focus on the systematisation of security risk knowledge across different domains related to the cybersecurity of connected medical and in vitro diagnostic device systems. This work relates to knowledge base extensions for a specified cybersecurity risk assessment tool—Spyderisk—as part of the NEMECYS project.

CC BY-NC-ND 4.0

Sign In Guest: Register as new SciTePress user now for free.

Sign In SciTePress user: please login.

PDF ImageMy Papers

You are not signed in, therefore limits apply to your IP address 3.135.64.92

In the current month:
Recent papers: 100 available of 100 total
2+ years older papers: 200 available of 200 total

Paper citation in several formats:
Carmichael, L., Taylor, S., Senior, S., Surridge, M., Erdogan, G. and Tverdal, S. (2025). Systematisation of Security Risk Knowledge Across Different Domains: A Case Study of Security Implications of Medical Devices. In Proceedings of the 11th International Conference on Information Systems Security and Privacy - Volume 1: ICISSP; ISBN 978-989-758-735-1; ISSN 2184-4356, SciTePress, pages 337-348. DOI: 10.5220/0013306100003899

@conference{icissp25,
author={Laura Carmichael and Steve Taylor and Samuel Senior and Mike Surridge and Gencer Erdogan and Simeon Tverdal},
title={Systematisation of Security Risk Knowledge Across Different Domains: A Case Study of Security Implications of Medical Devices},
booktitle={Proceedings of the 11th International Conference on Information Systems Security and Privacy - Volume 1: ICISSP},
year={2025},
pages={337-348},
publisher={SciTePress},
organization={INSTICC},
doi={10.5220/0013306100003899},
isbn={978-989-758-735-1},
issn={2184-4356},
}

TY - CONF

JO - Proceedings of the 11th International Conference on Information Systems Security and Privacy - Volume 1: ICISSP
TI - Systematisation of Security Risk Knowledge Across Different Domains: A Case Study of Security Implications of Medical Devices
SN - 978-989-758-735-1
IS - 2184-4356
AU - Carmichael, L.
AU - Taylor, S.
AU - Senior, S.
AU - Surridge, M.
AU - Erdogan, G.
AU - Tverdal, S.
PY - 2025
SP - 337
EP - 348
DO - 10.5220/0013306100003899
PB - SciTePress