Cyber Risk Consultant
Worldwide, Oo
Almost everyday news surfaces about how an organization has been hacked or consumer information has been stolen, yet few people realized that the many of the healthcare systems and medical devices are susceptible to the same types of attacks. More and more medical devices are being connected to various networks, increasing the risk that they are hacked into, which could lead to the loss of patient information, an error that causes patient harm, or even the destruction of the machine. Being a part of the Medical Device Security and Safety (MeDSS) team at Deloitte, we work with major medical device manufactures and healthcare providers to help assess and mitigate risks that might cause those types of situations. I am also the PMO lead for the MeDSS team, providing logistical, organizational and strategic support of the team to make sure that each clients need are served. Additional accomplishments include:• Assisted global medical device manufacturers and healthcare providers in the securing of networked medical devices through the design, development, and implementation of product security programs, which align with industry leading practices, regulations, and standards.• Identified cybersecurity gaps as they pertained to devices designed, developed, or managed by device manufacturers and healthcare providers with the goal of enabling ongoing, secure, safe, and reliable operations across the enterprise through the performance of security risk assessments.• Prepared organizations for certifications relevant to the securing of devices designed, developed, and managed by the organization, as well as the data which is stored or transmitted by those devices.• Responsible for knowledge of risk management tools, client related regulatory requirements, risk and control frameworks, tailoring of required assessment practice statements, and creating assessment reports and recommendations.